Fix CVE-2019-11372
Fix CVE-2019-11372
**horde 5.2.21** * [mjr] SECURITY: Fix XSS vulnerability in the Cloud Block.
**turba 4.2.24** * [mjr] SECURITY: Fix XSS vulnerability in display of contact tags. * [jan] Clarify objectClass filter examples for LDAP backends (Ralf Lang).
security update
Type: Vulnerability. Microsoft Internet Explorer is prone to an information-disclosure vulnerability.
libvirt-domain.c in libvirt supports virDomainGetTime API calls by guest agents with an RO connection, even though an RW connection was supposed to be required. This could lead to could lead to potentially disclosing unintended
An update that fixes two vulnerabilities is now available.
An update for openstack-neutron is now available for Red Hat OpenStack Platform 14.0 (Rocky). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Dovecot could be made to crash if it received specially crafted network traffic.
An update for openstack-neutron is now available for Red Hat OpenStack Platform 13.0 (Queens). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update for openstack-ceilometer is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which
An update for openstack-neutron, openstack-neutron-lbaas, and python-networking-bigswitch is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact
An update for openstack-cinder is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
An update is now available for Red Hat Ceph Storage 3.2. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
A minor version update (from 7.2 to 7.3) is now available for Red Hat Fuse. The purpose of this text-only errata is to inform you about the security issues fixed in this release. Red Hat Product Security has rated this update as having a security impact
An update that solves three vulnerabilities and has four fixes is now available.
WavPack could be made to crash if it received a speciallycrafted file.
Criminal activities against accountants on the rise – Buhtrap and RTM still active The post Buhtrap backdoor and ransomware distributed via major advertising platform appeared first on WeLiveSecurity
security update
An update that fixes two vulnerabilities is now available.
An update that solves one vulnerability and has four fixes is now available.
An update that solves two vulnerabilities and has three fixes is now available.
An update that fixes two vulnerabilities is now available.
An update that solves 11 vulnerabilities and has one errata is now available.
An update for rh-python35-python is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Evince could be made to expose sensitive information if it receiveda specially crafted file.
Several security issues were fixed in MySQL.
GStreamer Base Plugins could be made to crash or run programs if it received specially crafted network traffic.
An update that solves one vulnerability and has one errata is now available.
An update that fixes one vulnerability is now available.
An update that solves one vulnerability and has one errata is now available.
An update that fixes 16 vulnerabilities is now available.
An update that fixes 7 vulnerabilities is now available.
An update that fixes four vulnerabilities is now available.
An update that solves 8 vulnerabilities and has one errata is now available.
An update that fixes 8 vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
An update that fixes 6 vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
An update that solves 5 vulnerabilities and has three fixes is now available.
An update that fixes one vulnerability is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that solves one vulnerability and has three fixes is now available.
An update that solves one vulnerability and has two fixes is now available.
An update that solves one vulnerability and has one errata is now available.
An update that solves one vulnerability and has one errata is now available.
An update that solves one vulnerability and has one errata is now available.
A use-after-free vulnerability was discovered in the png_image_free() function in the libpng PNG library, which could lead to denial of service or potentially the execution of arbitrary code if a malformed image is processed.
security update
An update that solves 13 vulnerabilities and has one errata is now available.
An update that fixes two vulnerabilities is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
Reading Time: ~4 min. Today we chat with Web Analyst Manager Serena Peruzzi. Serena constantly filters through the web to analyze content. Sometimes her position requires looking through difficult material, but other times you can find her traveling, organizing company events, and even gardening! See how Serena helps build Webroot’s company culture in this Employee […]
Zack Flack found several issues in monit, a utility for monitoring and managing daemons or similar programs.
Hanno Bck discovered that GNOME Evolution is prone to OpenPGP signatures being spoofed for arbitrary messages using a specially crafted HTML email. This issue was mitigated by moving the security
