security update
Reading Time: ~ 3 min. 1949, 1971, 1979, 1981, 1983 and 1991. Yes, these are numbers. You more than likely even recognize them as years. However, without context you wouldn’t immediately recognize them as years in which Sicily’s Mount Etna experienced major eruptions. Data matters, but only if it’s paired with enough context to create […]
Tobias Maedel discovered that the mod_copy module of ProFTPD, a FTP/SFTP/FTPS server, performed incomplete permission validation for the CPFR/CPTO commands.
July CPU update. See: http://openjdk.java.net/groups/vulnerability/advisories/2019-07-16 and https://mail.openjdk.java.net/pipermail/jdk-updates-dev/2019-July/001423.html
This release includes four security fixes: – Prevent an attack where a federated server could send redactions for arbitrary events in v1 and v2 rooms. – Prevent a denial-of-service attack where cycles of redaction events would make Synapse spin infinitely. – Prevent an attack where users could be joined or parted from public rooms without […]
This kernel update is based on the upstream 5.1.20 and fixes atleast the following security issue: With Xen, virtual device backends and device models running in domain 0, or other backend driver domains, need to be able to map guest memory
A system hardening measure could be bypassed.
ESET research uncovers a cyberespionage operation targeting the Venezuelan military The post Sharpening the Machete appeared first on WeLiveSecurity
An update that fixes one vulnerability is now available.
Several minor issues have been fixed in vim, a highly configurable text editor.
Multiple vulnerabilities have been found in libpng, the worst of which could result in a Denial of Service condition.
Multiple vulnerabilities have been found in Binutils, the worst of which may allow remote attackers to cause a Denial of Service condition. [More…]
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that solves 8 vulnerabilities and has one errata is now available.
An update that solves two vulnerabilities and has 10 fixes is now available.
An update that fixes three vulnerabilities is now available.
Reading Time: ~ 2 min. Ransomware Targets Louisiana School Districts At least four school districts in Louisiana fell victim to a series of ransomware attacks in recent weeks, forcing the governor to issue a state of emergency to allow federal agencies to assist local governments during these situations. The IT systems for each of these […]
An update that fixes one vulnerability is now available.
SoX could be made to crash if it received a specially crafted MP3 file.
Several vulnerabilities were discovered in Subversion, a version control system. The Common Vulnerabilities and Exposures project identifies the following problems:
Various minor issues have been addressed in the GLib library. GLib is a useful general-purpose C library used by projects such as GTK+, GIMP, and GNOME.
The first in an occasional series demystifying Latin American banking trojans The post From Carnaval to Cinco de Mayo – The journey of Amavaldo appeared first on WeLiveSecurity
A XSS vulnerability was discovered in SquirrelMail. Due to improper handling of RCDATA and RAWTEXT type elements, the built-in sanitization mechanism can be bypassed. Malicious script content from HTML e-mails can be executed within the application context via
Sigil could be made to overwrite files.
Several security issues were fixed in Django.
Several security issues were fixed in the Linux kernel.
security update
