The lottery’s operator has found that attackers probably used an automated method known as ‘credential stuffing’ to access up to 150 customer accounts. The post UK’s National Lottery urges millions of players to change their passwords appeared first on WeLiveSecurity
LinuxSecurity.com: The package lib32-libcurl-gnutls before version 7.59.0-1 is vulnerable to multiple issues including denial of service and information disclosure.
LinuxSecurity.com: The package libcurl-gnutls before version 7.59.0-1 is vulnerable to multiple issues including denial of service and information disclosure.
LinuxSecurity.com: The package lib32-libcurl-compat before version 7.59.0-1 is vulnerable to multiple issues including denial of service and information disclosure.
LinuxSecurity.com: The package libcurl-compat before version 7.59.0-1 is vulnerable to multiple issues including denial of service and information disclosure.
LinuxSecurity.com: The package lib32-curl before version 7.59.0-1 is vulnerable to multiple issues including denial of service and information disclosure.
LinuxSecurity.com: The package curl before version 7.59.0-1 is vulnerable to multiple issues including denial of service and information disclosure.
LinuxSecurity.com: The package clamav before version 0.99.4-1 is vulnerable to multiple issues including arbitrary code execution and denial of service.
LinuxSecurity.com: An update that fixes one vulnerability is now available.
security update
LinuxSecurity.com: An update that fixes one vulnerability is now available.
LinuxSecurity.com: An update that solves 7 vulnerabilities and has one errata is now available.
LinuxSecurity.com: The package firefox before version 59.0.1-1 is vulnerable to arbitrary code execution.
LinuxSecurity.com: The package libvorbis before version 1.3.6-1 is vulnerable to multiple issues including arbitrary code execution and denial of service.
LinuxSecurity.com: An update for firefox is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which
LinuxSecurity.com: Multiple vulnerabilities have been found in KDE Plasma Workspaces, the worst of which allows local attackers to execute arbitrary commands.
LinuxSecurity.com: Multiple vulnerabilities have been found in Adobe Flash Player, the worst of which allows remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in Gentoo’s JabberD 2.x ebuild, the worst of which allows local attackers to escalate privileges. [More…]
LinuxSecurity.com: Multiple vulnerabilities have been found in Oracle’s JDK and JRE software suites, the worst of which may allow execution of arbitrary code. [More…]
LinuxSecurity.com: Multiple vulnerabilities were found in cURL, an URL transfer library: CVE-2018-1000120
LinuxSecurity.com: The package ntp before version 4.2.8.p11-1 is vulnerable to multiple issues including arbitrary code execution, content spoofing and denial of service.
security update
security update
security update
LinuxSecurity.com: An update that fixes 6 vulnerabilities is now available.
security update
security update
LinuxSecurity.com: Richard Zhu and Huzaifa Sidhpurwala discovered that an out-of-bounds memory write when playing Vorbis media files could result in the execution of arbitrary code.
LinuxSecurity.com: An update that fixes one vulnerability is now available.
LinuxSecurity.com: An update that fixes one vulnerability is now available.
LinuxSecurity.com: An update that fixes one vulnerability is now available.
LinuxSecurity.com: Huzaifa Sidhpurwala discovered that an out-of-bounds memory write in the codebook parsing code of the Libtremor multimedia library could result in the execution of arbitrary code if a malformed Vorbis file is opened.
security update
LinuxSecurity.com: Richard Zhu discovered that an out-of-bounds memory write in the codeboook parsing code of the Libvorbis multimedia library could result in the execution of arbitrary code.
LinuxSecurity.com: Some vulnerabilities have been found in ClamAV, an open source antivirus engine:
LinuxSecurity.com: An update that fixes 27 vulnerabilities is now available.
Malware in the official Google store never stops appearing. For cybercriminals, sneaking their malicious applications into the marketplace of genuine apps is a huge victory. The post Tricks that cybercriminals use to hide in your phone appeared first on WeLiveSecurity
The Cyber News Rundown brings you the latest happenings in cybersecurity news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst and a guy with a passion for all things security. Any questions? Just ask. Global Gas Station Software Found Unsecured Researchers have recently discovered a vulnerability that would allow anyone to […]
Risk Level: Very Low. Type: Worm.
Risk Level: Very Low. Type: Trojan.
LinuxSecurity.com: Several security issues have been found in the Mozilla Firefox web browser: Multiple memory safety errors and other implementation errors may lead to the execution of arbitrary code, denial of service or information disclosure.
LinuxSecurity.com: An update that fixes 8 vulnerabilities is now available.
LinuxSecurity.com: An update that fixes 6 vulnerabilities is now available.
LinuxSecurity.com: This update upgrades Firefox to version 52.7.0 ESR. * Mozilla: Memory safety bugs fixed in Firefox 59 and Firefox ESR 52.7 (MFSA 2018-07) (CVE-2018-5125) * Mozilla: Buffer overflow manipulating SVG animatedPathSegList (MFSA 2018-07) (CVE-2018-5127) * Mozilla: Out-of-bounds write with malformed IPC messages (MFSA 2018-07) (CVE-2018-5129) * Mozilla: Mismatched RTP payload type can trigger memo […]
LinuxSecurity.com: This update upgrades Firefox to version 52.7.0 ESR. * Mozilla: Memory safety bugs fixed in Firefox 59 and Firefox ESR 52.7 (MFSA 2018-07) (CVE-2018-5125) * Mozilla: Buffer overflow manipulating SVG animatedPathSegList (MFSA 2018-07) (CVE-2018-5127) * Mozilla: Out-of-bounds write with malformed IPC messages (MFSA 2018-07) (CVE-2018-5129) * Mozilla: Mismatched RTP payload type can trigger memo […]
security update
security update
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0527
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0526
LinuxSecurity.com: Several security issues have been found in the Mozilla Firefox web browser: Multiple memory safety errors and other implementation errors may lead to the execution of arbitrary code or denial of service.
LinuxSecurity.com: An update for ceph is now available for Red Hat Ceph Storage 3.0 for Ubuntu 16.04. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
