This is a security update for JBoss EAP Continuous Delivery 16.0. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
This is a security update for JBoss EAP Continuous Delivery 14.0. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
An error in Cyrus IMAP Server allows mailboxes to be created with administrative privileges.
Update to upstream 3.6.14 release, and security fix for CVE-2020-13777.
Fixes CVE-2020-10995, CVE-2020-12244 and CVE-2020-10030
Update to upstream 3.6.14 release, and security fix for CVE-2020-13777. —- – Fix certificate chain validation involving the expired “AddTrust External Root”. – Disable RSA blinding during FIPS self-tests to avoid hanging if there is not enough entropy for `getrandom()` – Add `–waitresumption` option to `gnutls-cli` to force the client to wait for resumption data […]
Fixes CVE-2019-20479
– Update to 1.20.12 release – ifcfg-rh: handle “802-1x.{,phase2-}ca-path” (rh #1841395, CVE-2020-10754)
Update to upstream 3.6.14 release, and security fix for CVE-2020-13777.
Reading Time: ~ 2 min. Nintendo Accounts Breached Stemming from a cyber-attack back in April, Nintendo has just announced that roughly 300,000 user accounts have been compromised, though most belong to systems that are now inoperable. From the excessive unauthorized purchases, the attackers likely used credential-stuffing methods to access accounts and make digital purchases through […]
security update
security update
security update
An update that fixes three vulnerabilities is now available.
An update that fixes 10 vulnerabilities is now available.
An update that solves 25 vulnerabilities and has 132 fixes is now available.
An update that fixes four vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
An update that fixes four vulnerabilities is now available.
Active APT group adds cunning remote template injectors for Word and Excel documents; unique Outlook mass-mailing macro The post Gamaredon group grows its game appeared first on WeLiveSecurity
An update that fixes four vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that fixes 7 vulnerabilities is now available.
An update for net-snmp is now available for Red Hat Enterprise Linux 7.7 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Multiple security issues have been found in Thunderbird which could result in the setup of a non-encrypted IMAP connection, denial of service or potentially the execution of arbitrary code.
The latest Patch Tuesday knocks out a record-high number of vulnerabilities, including new bugs in the SMB protocol The post Microsoft ships hefty patch load this month appeared first on WeLiveSecurity
An update that fixes one vulnerability is now available.
Three vulnerabilities have been found in the MySQL Connector/J JDBC driver. For the oldstable distribution (stretch), these problems have been fixed
Multiple security issues have been found in Thunderbird which could result in the setup of a non-encrypted IMAP connection, denial of service or potentially the execution of arbitrary code.
It was discovered that there was an escaping issue in libphp-phpmailer, an email generation utility class for the PHP programming language.
This update ships updated CPU microcode for some types of Intel CPUs and provides mitigations for the Special Register Buffer Data Sampling (CVE-2020-0543), Vector Register Sampling (CVE-2020-0548) and L1D Eviction Sampling (CVE-2020-0549) hardware vulnerabilities.
An update that solves four vulnerabilities and has one errata is now available.
security update
security update
security update
An obscure Indian company operated a scheme targeting banks, non-profits, politicians and journalists all over the world, a report says The post Vast hack‑for‑hire scheme targeted thousands of people, organizations appeared first on WeLiveSecurity
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update for expat is now available for Red Hat Enterprise Linux 7.7 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Upstream details at : https://access.redhat.com/errata/RHSA-2020:2432
hw: Special Register Buffer Data Sampling (SRBDS) (CVE-2020-0543) * hw: L1D Cache Eviction Sampling (CVE-2020-0549) * hw: Vector Register Data Sampling (CVE-2020-0548) SL6 x86_64 microcode_ctl-1.17-33.26.el6_10.x86_64.rpm microcode_ctl-debuginfo-1.17-33.26.el6_10.x86_64.rpm i386 microcode_ctl-1.17-33.26.el6_10.i686.rpm microcode_ctl-debuginfo-1.17-33.26.el6_10.i686.rpm [More…]
kernel: NULL pointer dereference due to KEYCTL_READ on negative key (CVE-2017-12192) SL6 x86_64 kernel-2.6.32-754.30.2.el6.x86_64.rpm kernel-debug-2.6.32-754.30.2.el6.x86_64.rpm kernel-debug-debuginfo-2.6.32-754.30.2.el6.i686.rpm kernel-debug-debuginfo-2.6.32-754.30.2.el6.x86_64.rpm kernel-debug-devel-2.6.32-754.30.2.el6.i686.rpm kernel-debug-devel-2.6.32-754.30.2.el [More…]
