It was discovered that there was a code injection issue in PyXDG, a library used to locate “FreeDesktop.org” configuration/cache/etc. directories.
security update
An update that fixes 13 vulnerabilities is now available.
An update that fixes 13 vulnerabilities is now available.
An update that fixes 13 vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
Two vulnerabilities were discovered in the ZNC IRC bouncer which could result in remote code execution (CVE-2019-12816) or denial of service via invalid encoding (CVE-2019-9917).
do not install /usr/libexec/crio – conflicts with crio —- Resolves: #1715668 – CVE-2019-10152
Resolves: #1715758 – CVE-2019-9946
https://lists.wikimedia.org/pipermail/mediawiki-announce/2019-June/000230.html
security update
Reading Time: ~ 2 min. Radiohead Refuses Ransom, Releases Stolen Tracks The band Radiohead recently fell victim to a hack in which 18 hours of previously unreleased sessions were ransomed for $150,000. Rather than pay the ludicrous fee, the band instead opted to release the tracks through Bandcamp for a donation to charity. The unreleased […]
An update that fixes one vulnerability is now available.
An update that fixes four vulnerabilities is now available.
The package thunderbird before version 60.7.1-1 is vulnerable to multiple issues including arbitrary code execution and denial of service.
The package chromium before version 75.0.3770.90-1 is vulnerable to arbitrary code execution.
Joe Vennix discovered an authentication bypass vulnerability in dbus, an asynchronous inter-process communication system. The implementation of the DBUS_COOKIE_SHA1 authentication mechanism was susceptible to a symbolic link attack. A local attacker could take advantage of this flaw
Upstream announcement: Welcome to **phpMyAdmin 4.9.0.1**, a bugfix release that includes important security fixes. This release fixes two security vulnerabilities: * PMASA-2019-3 is an SQL injection flaw in the Designer feature * PMASA-2019-4 is a CSRF attack that’s possible through the ‘cookie’ login form Upgrading is highly recommended for all users. Using the ‘http’
Update to [3.3.8](https://github.com/vakata/jstree/compare/3.3.5…3.3.8).
New mozilla-thunderbird packages are available for Slackware 14.2 and -current to fix security issues.
Update to 1.1.33 and fix CVE-2019-11068
Security fix for CVE-2019-11459.
dovecot updated to 2.3.6, includes several security fixes
Upstream announcement: Welcome to **phpMyAdmin 4.9.0.1**, a bugfix release that includes important security fixes. This release fixes two security vulnerabilities: * PMASA-2019-3 is an SQL injection flaw in the Designer feature * PMASA-2019-4 is a CSRF attack that’s possible through the ‘cookie’ login form Upgrading is highly recommended for all users. Using the ‘http’
An update that fixes one vulnerability is now available.
An update that fixes 5 vulnerabilities is now available.
The package openssl before version 1.1.1.c-1 is vulnerable to information disclosure.
The package vim before version 8.1.1467-1 is vulnerable to arbitrary code execution.
The package gvim before version 8.1.1467-1 is vulnerable to arbitrary code execution.
The package lib32-openssl before version 1:1.1.1.c-1 is vulnerable to information disclosure.
An update that fixes one vulnerability is now available.
An update that fixes 15 vulnerabilities is now available.
An update for python is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
1717503 – Security issue: patch 8.1.1365: source command doesn’t check for the sandbox
La Liga has taken substantial flak for tapping into microphones and geolocation services in fans‘ phones in a bid to root out piracy The post Spain’s top soccer league fined over its app’s ‘tactics’ appeared first on WeLiveSecurity
Type: Vulnerability. Microsoft Windows is prone to a remote denial-of-service vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote denial-of-service vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote denial of service vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
