Menu

Monthly Archives: February 2018

LinuxSecurity.com: Two vulnerabilities were discovered in the libraries of the Vorbis audio compression codec, which could result in denial of service or the execution of arbitrary code if a malformed media file is processed.

LinuxSecurity.com: Multiple vulnerabilities have been discovered in the Xen hypervisor: CVE-2017-17563

US govt staffers use personal gear on work networks, handle biz docs on the reg – study
Dell EMC Patches Critical Flaws in VMAX Enterprise Storage Systems
Hua-no-wei! NSA, FBI, CIA bosses put Chinese mobe makers on blast
Crypto-gurus: Which idiots told the FBI that Feds-only backdoors in encryption are possible?
Researchers Find New Twists In ‘Olympic Destroyer’ Malware

LinuxSecurity.com: An update is now available for Red Hat JBoss Fuse and Red Hat JBoss A-MQ. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

Three in hospital after NSA cops open fire on campus ram-raid SUV

Type: Vulnerability. Microsoft Excel is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Outlook is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Office is prone to a memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Outlook is prone to a remote privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft ChakraCore is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Internet Explorer and Edge are prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to an information disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.

LinuxSecurity.com: FreeType could be made to crash if it opened a specially crafted file.

Watch our ads or we’ll use your CPU for cryptomining

LinuxSecurity.com: An update for httpd24-apr is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

LinuxSecurity.com: An update for openstack-aodh is now available for Red Hat OpenStack Platform 11.0 (Ocata). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: Joonun Jang discovered that the advzip tool in advancecomp, a collection of recompression utilities, was prone to a heap-based buffer overflow. This might allow an attacker to cause a denial-of-service (application crash) or other unspecified impact via

LinuxSecurity.com: An update for openstack-nova is now available for Red Hat OpenStack Platform 11.0 (Ocata). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: An update for erlang is now available for Red Hat OpenStack Platform 11.0 (Ocata). Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which

LinuxSecurity.com: An update for collectd is now available for Red Hat OpenStack Platform 11.0 Operational Tools for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

School Principal Gets 9 Years in Prison for Trading Nude Pictures of Students
Flaw in Telegram Windows App Used for Cryptomining & Backdoor
Patch now! Microsoft fixes over 50 serious security flaws

This week saw the second Tuesday of the month, and everyone who is responsible for protecting Windows computers knows what that means: another bundle of security patches have been released by Microsoft. The post Patch now! Microsoft fixes over 50 serious security flaws appeared first on WeLiveSecurity

Someone hacked this advertising screen to mine Bitcoin
Roses are red, Kaspersky is blue: ‘That ban’s unconstitutional!’ Boo hoo hoo
Bitcoin mining to zap more energy than households in Iceland this year
How safe are you around your smart TV?

Smart TVs afford us the opportunity to use them for purposes that are more commonly associated with computers. In fact, that’s what these TVs have become – internet-connected ‘computers’, much like mobile phones. It would no doubt help if we thought of them as such and treated them accordingly. The post How safe are you […]

New AI technology used by UK government to fight extremist content
Cryptocurrency startup LoopX exit scams with $4.5M in ICO
From tomorrow, Google Chrome will block crud ads. Here’s how it’ll work
South China waters are red, Brit warships are blue, HMS Sutherland’s sailing there
Maybe Better If You Don’t Read This Story on Public WiFi
Microsoft working to scale Blockchain for grand distributed ID scheme
OpenSSL alpha adds TLS 1.3 support

LinuxSecurity.com: A denial of service vulnerability has been discovered in graphicsmagick, a collection of image processing tools and associated libraries.

Meltdown-and-Spectre-detector comes to Windows Analytics
Roses are red, Windows error screens are blue. It’s 2018, and an email can still pwn you

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Risk Level: Very Low. Type: Trojan.

Two Nasty Outlook Bugs Fixed in Microsoft’s Feb. Patch Tuesday Update
Hacker extracts customer data from Canadian Telecom Firm after rebuttal
While Western Union wired customers’ money, hackers transferred their personal deets

LinuxSecurity.com: The package mpv before version 1:0.27.1-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: The package exim before version 4.90.1-1 is vulnerable to arbitrary code execution.

LinuxSecurity.com: An update that solves 8 vulnerabilities and has 13 fixes is now available.

Shock horror! Telegram messaging app proves insecure yet again!

LinuxSecurity.com: Several security issues were fixed in libvorbis.

Millions of Android Phones Hacked to Mine Monero Coins
Venerable Unicode Technique Used to Deliver Cryptomining Malware Through Telegram

Type: Vulnerability. Multiple CPU Hardware are prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Multiple CPU Hardware are prone to an information-disclosure vulnerability; fixes are available.

LinuxSecurity.com: An update that fixes one vulnerability is now available.

LinuxSecurity.com: Red Hat JBoss Data Grid 7.1.2 is now available for download from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,