Menu

Monthly Archives: May 2019

Isaac Boukris and Andrew Bartlett discovered that the S4U2Self Kerberos extension used in Samba’s Active Directory support was susceptible to man-in-the-middle attacks caused by incomplete checksum validation.

Multiple issues have been addressed in Qt4. CVE-2018-15518

It’s 2019 and a WhatsApp call can hack a phone: Zero-day exploit infects mobes with spyware

Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Microsoft ASP.NET Core is prone to a remote denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows JET Database Engine is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows is prone to local information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows JET Database Engine is prone to a remote code-execution vulnerability; fixes are available.

Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Microsoft Windows JET Database Engine is prone to a remote code-execution vulnerability; fixes are available.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan, Virus, Worm.

Risk Level: Very Low. Type: Trojan.

Pair of Cisco Bugs, One Unpatched, Affect Millions of Devices
Twitter Leaks Apple iOS Users’ Location Data to Ad Partner

security update

Risk Level: Very Low. Type: Trojan.

Sim swapping hackers charged with stealing $2.5m worth of crypto
ScarCruft APT Adds Bluetooth Harvester to its Malware Bag of Tricks
ThreatList: Top 5 Most Dangerous Attachment Types
Zara Larsson wants your password so she can watch Game of Thrones
Verizon’s data breach report: What the numbers say

What are some of the most interesting takeaways from Verizon’s latest annual security report? The post Verizon’s data breach report: What the numbers say appeared first on WeLiveSecurity

An update that fixes one vulnerability is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes 16 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes three vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes 7 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

Spying on personal alarms and GPS trackers is as simple as sending an SMS
IRS extends tax filing deadline following attack on Wolters Kluwer CCH cloud accounting service
Two people indicted for massive Anthem health data breach

An update that fixes 9 vulnerabilities is now available.

Study finds Android smartphones riddled with suspect ‘bloatware’
Break up Facebook, cofounder says: it’s an un-American monopoly
Go on, Skippy, spill yer guts: 10.5 million+ Australians’ data was breached in past 3 months

The PostgreSQL project has release a new minor release of the 9.4 branch. For Debian 8 “Jessie”, this has been uploaded as version

An update for python-jinja2 is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Baltimore hit with more ransomware, ChinaMobile gets the boot in the US, and another (mild) Systemd system-d’oh!
How to make Microsoft 70-412 exam preparation effective with Prepaway web resource

Updated openssh packages fix security vulnerabilities: Due to missing character encoding in the progress display, the object name can be used to manipulate the client output, for example to employ ANSI codes to hide additional files being transferred (CVE-2019-6109).

Updated cronie packages fix security vulnerabilities: Cronie before 1.5.3 allows local users to cause a denial of service (daemon crash) via a large crontab file because the calloc return value is not checked (CVE-2019-9704).

Updated tcpreplay package fixes security vulnerabilities: An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_layer4_v6() located at get.c. This can be triggered by sending a crafted pcap file to the tcpreplay-edit binary.

A vulnerability was found in the svgsalamander library. If the library is being used in a web application for processing user supplied SVG files then the app is vulnerable to SSRF (CVE-2017-5617). References:

Updated mxml packages fix security vulnerabilities: An issue has been found in Mini-XML (aka mxml) 2.12. It is a stack-based buffer overflow in mxml_write_node in mxml-file.c via vectors involving a double-precision floating point number and the ”

The updated packages fix security vulnerabilities: A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allow an unauthenticated, remote attacker to cause a denial of service (DoS)

Updated qt4 packages fix security vulnerability: A malformed PPM image causes a division by zero and a crash in qppmhandler.cpp (CVE-2018-19872).

Updated bash package fixes security vulnerability: A vulnerability in which shell did not prevent user BASH_CMDS, allowing the user to execute any command with the permissions of the shell (CVE-2019-9924).

pax_decode_header in sparse.c in GNU Tar before 1.32 had a NULL pointer dereference when parsing certain archives that have malformed extended headers (CVE-2019-9923). References:

Updated openexr package fixes security vulnerabilities: It was discovered that makeMultiView.cpp in exrmultiview in OpenEXR 2.3.0 has an out-of-bounds write, leading to an assertion failure or possibly unspecified other impact (CVE-2018-18444).

Updated python packages fix security vulnerability: A ‘file:’ blacklist bypass in URIs by using the ‘local-file:’ scheme instead (CVE-2019-9948).

Updated sysstat package fix security vulnerabilities: Out-of-bounds read during a memmove call inside the remap_struct function (CVE-2018-19416).

What is VPS Hosting? How Does it Work?
Hackers steal source code of top anti-virus firms to sell online
Panic as panic alarms meant to keep granny and little Timmy safe prove a privacy fiasco

Update to April 2019 CPU. See: http://mail.openjdk.java.net/pipermail/jdk- updates-dev/2019-April/000951.html

FIN7 Linked to Escalating Active Exploits for Microsoft SharePoint Bug

security update

security update

Xbox 2 update – Microsoft pulls off great news for Xbox fans
News Wrap: Facebook Regulation, Verizon DBIR, Hidden Airbnb Cameras
Got SQLite? Get patching: Another RCE hole’s just been found
The WannaCry Security Legacy and What’s to Come
Nvidia Warns Windows Gamers on GPU Driver Flaws
Symantec boss Greg Clark exits biz amid dismal financials
Students pull off below-the-belt mailing list prank

An update that contains security fixes can now be installed.

An update that solves one vulnerability and has one errata is now available.

Chrome browser pushes SameSite cookie security overhaul
Stay Safe: 5 Tips to Keep Fraudsters at Bay
ThreatList: Nigerian Cybercrime Surged 54 Percent in 2018

Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in denial of service, sandbox bypass, information disclosure or the execution of arbitrary code.

Just in time for the Wiki-end: Chelsea Manning released from prison

Reading Time: ~2 min. Dharma Ransomware Employs Diversion Tactics Researchers recently discovered a new ransomware variant that displays an ESET AV removal screen once launched in order to divert the a victim’s attention from the silent encryption taking place. Initially dropped by an email spam campaign, the payload comes as a password protected zip archive, […]

Who pwns the watchmen? Maybe Russians selling the source code for three US antivirus vendors
275m personal records swiped from exposed MongoDB database
FTC renews call for single federal privacy law
Airbnb Superhost’s creepy spycam sniffed out by sleuthing infosec pro
Double-sided printing data ballsup leaves insurance giant Chubb with egg on its face

Multiple vulnerabilities were discovered in the Symfony PHP framework which could lead to cache bypass, authentication bypass, information disclosure, open redirect, cross-site request forgery, deletion of arbitrary files, or arbitrary code execution.

security update

Uncle Sam accuses Chinese pair of romping through Anthem’s servers for almost a year

Security, Performance updates, fiexes blocker with crashing httpd BZ 1708248

Security, Performance updates, fiexes blocker with crashing httpd BZ 1708248

‘Unhackable’ Biometric USB Offers Up Passwords in Plain Text
Chinese Hackers Behind 2015 Anthem Data Breach Indicted

The 5.0.13 update contains a number of important fixes across the tree. There is no kernel-headers build this time. The tools version is 5.0.12 because originally it was built with the 5.0.12 kernel version but 5.0.13 was built before 5.0.12 could be filed in bodhi.

The 5.0.13 update contains a number of important fixes across the tree. There is no kernel-headers build this time. The tools version is 5.0.12 because originally it was built with the 5.0.12 kernel version but 5.0.13 was built before 5.0.12 could be filed in bodhi.

Security, Performance updates, fiexes blocker with crashing httpd BZ 1708248

Update Ruby on Rails to 5.2.3. Fixes CVE-2019-5418 CVE-2019-5419 CVE-2019-5420.

Update Ruby on Rails to 5.2.3. Fixes CVE-2019-5418 CVE-2019-5419 CVE-2019-5420.

Update Ruby on Rails to 5.2.3. Fixes CVE-2019-5418 CVE-2019-5419 CVE-2019-5420.

Air Force intel bod Daniel Hale charged with ‘leaking top secret drone documents’ to journo
Hackers steal Amazon sellers’ funds in “extensive” attack
Hackers Take Over IoT Devices to ‘Click’ on Ads
Alpine Linux Docker Images Shipped for 3 Years with Root Accounts Unlocked