Risk Level: Very Low. Type: Trojan, Virus, Worm.
LinuxSecurity.com: An update for ghostscript is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
LinuxSecurity.com: An update for ghostscript is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
LinuxSecurity.com: Some HTML emails can trick messagelib into opening a new browser window when displaying said email as HTML. This happens even if the option to allow the HTML emails to access remote servers is disabled in KMail settings. This means that the owners of the servers referred in the email can see in their […]
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
LinuxSecurity.com: Several security issues were fixed in Perl.
LinuxSecurity.com: Several security issues were fixed in Perl.
LinuxSecurity.com: Multiple vulnerabilities have been found in WebKitGTK+, the worst of which may lead to arbitrary code execution.
LinuxSecurity.com: A vulnerability in Nagios allows local users to escalate privileges.
LinuxSecurity.com: Multiple vulnerabilities have been found in ConnMan, the worst of which could result in the remote execution of code.
LinuxSecurity.com: Multiple vulnerabilities have been found in PHP, the worst of which could result in a Denial of Service condition.
Risk Level: Very Low.
Risk Level: Very Low. Type: Trojan.
Fitness-tracking apps use dodgy in-app payments to steal money from unaware iPhone and iPad users The post Scam iOS apps promise fitness, steal money instead appeared first on WeLiveSecurity
A welcome return to the hacker conferences of yesteryear The post CyberwarCon – focusing on the impact of cyber-badness appeared first on WeLiveSecurity
LinuxSecurity.com: An update for rh-postgresql10-postgresql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Risk Level: Very Low. Type: Trojan.
LinuxSecurity.com: A flaw was found in mod_perl 2.0 through 2.0.10 which allows attackers to execute arbitrary Perl code by placing it in a user-owned .htaccess file, because (contrary to the documentation) there is no configuration option that permits Perl code for the administrator’s control of HTTP request processing without also permitting unprivileged users to run
LinuxSecurity.com: It was discovered that Requests incorrectly handled certain HTTP headers. An attacker could possibly use this issue to access sensitive information (CVE-2018-18074). References:
LinuxSecurity.com: The kdeconnect-kde package has been updated to version 1.3.3, which fixes an issue with modern encryption algorithms being disabled with SSH, and also fixes several bugs and updates compatibility with the Android app.
security update
security update
LinuxSecurity.com: A regression issue has been resolved in the poppler PDF rendering shared library introduced with version 0.26.5-2+deb8u5.
LinuxSecurity.com: Jayakrishna Menon and Christophe Hauser discovered an integer overflow vulnerability in Perl_my_setenv leading to a heap-based buffer overflow with attacker-controlled input.
LinuxSecurity.com: Several vulnerabilities were found in QEMU, a fast processor emulator: CVE-2016-2391
