An update for rh-postgresql96-postgresql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
security update
The flaws, neither of which is being actively exploited, were fixed merely days after the monthly Patch Tuesday rollout The post Microsoft issues two emergency Windows patches appeared first on WeLiveSecurity
Reading Time: ~ 3 min. Fine-tuning privacy for any preference A DNS filtering service that accommodates DNS over HTTPS (DoH) can strengthen an organization’s ability to control network traffic and turn away threats. DoH can offer businesses far greater control and flexibility over their privacy than the old system. The most visible use of DNS […]
An update for kernel is now available for Red Hat Enterprise Linux 7.7 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update for kernel-alt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
**Version 5.0.3** (2020-10-09) – issue #15983 Require twig ^2.9 – issue Fix option to import files locally appearing as not available – issue #16048 Fix to allow NULL as a default bit value – issue #16062 Fix “htmlspecialchars() expects parameter 1 to be string, null given” on Export xml – issue #16078 Fix no charts […]
An update for kernel is now available for Red Hat Enterprise Linux 7.4 Advanced Update Support, Red Hat Enterprise Linux 7.4 Telco Extended Update Support, and Red Hat Enterprise Linux 7.4 Update Services for SAP Solutions.
An update for kernel-rt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Several vulnerabilities have been discovered in the Linux kernel that may lead to the execution of arbitrary code, privilege escalation, denial of service or information leaks.
createrepo_c 0.16.1 – Update to 0.16.1 – Add the section number to the manual pages – Parse xml snippet in smaller parts (RhBug:1859689) – Add module metadata support to createrepo_c (RhBug:1795936) librepo 1.12.1 – Update to 1.12.1 – Validate path read from repomd.xml (RhBug:1868639) libdnf 0.54.2 – Update to 0.54.2 – history: Fix dnf history […]
createrepo_c 0.16.1 – Update to 0.16.1 – Add the section number to the manual pages – Parse xml snippet in smaller parts (RhBug:1859689) – Add module metadata support to createrepo_c (RhBug:1795936) librepo 1.12.1 – Update to 1.12.1 – Validate path read from repomd.xml (RhBug:1868639) libdnf 0.54.2 – Update to 0.54.2 – history: Fix dnf history […]
createrepo_c 0.16.1 – Update to 0.16.1 – Add the section number to the manual pages – Parse xml snippet in smaller parts (RhBug:1859689) – Add module metadata support to createrepo_c (RhBug:1795936) librepo 1.12.1 – Update to 1.12.1 – Validate path read from repomd.xml (RhBug:1868639) libdnf 0.54.2 – Update to 0.54.2 – history: Fix dnf history […]
createrepo_c 0.16.1 – Update to 0.16.1 – Add the section number to the manual pages – Parse xml snippet in smaller parts (RhBug:1859689) – Add module metadata support to createrepo_c (RhBug:1795936) librepo 1.12.1 – Update to 1.12.1 – Validate path read from repomd.xml (RhBug:1868639) libdnf 0.54.2 – Update to 0.54.2 – history: Fix dnf history […]
createrepo_c 0.16.1 – Update to 0.16.1 – Add the section number to the manual pages – Parse xml snippet in smaller parts (RhBug:1859689) – Add module metadata support to createrepo_c (RhBug:1795936) librepo 1.12.1 – Update to 1.12.1 – Validate path read from repomd.xml (RhBug:1868639) libdnf 0.54.2 – Update to 0.54.2 – history: Fix dnf history […]
createrepo_c 0.16.1 – Update to 0.16.1 – Add the section number to the manual pages – Parse xml snippet in smaller parts (RhBug:1859689) – Add module metadata support to createrepo_c (RhBug:1795936) librepo 1.12.1 – Update to 1.12.1 – Validate path read from repomd.xml (RhBug:1868639) libdnf 0.54.2 – Update to 0.54.2 – history: Fix dnf history […]
security update
An update that solves four vulnerabilities and has 9 fixes is now available.
New version 3.2.7 Security fix for CVE-2020-25862, CVE-2020-25863, CVE-2020-25866
New version 3.2.7 Security fix for CVE-2020-25862, CVE-2020-25863, CVE-2020-25866
An update that fixes one vulnerability is now available.
An update that fixes two vulnerabilities is now available.
An update that contains security fixes can now be installed.
Reading Time: ~ 2 min. Backdoor Found in Children’s Smartwatch Researchers have discovered that the X4, made by Norwegian smartwatch seller Xplora, contains a backdoor that could allow for information to be stolen. The X4 watch is designed specifically for children with a limited number of capabilities, mostly for children’s security. The backdoor, however, could […]
The videoconferencing platform is making the feature available to users of both free and paid tiers The post Zoom to begin rolling out end‑to‑end encryption appeared first on WeLiveSecurity
An update that fixes two vulnerabilities is now available.
An issue has been found in PowerDNS Authoritative Server allowing an authorized user to cause the server to exit by inserting a crafted record in a MASTER type zone under their control. The issue is due to the fact that the Authoritative Server will exit when it runs into a parsing error while looking up […]
NULL Pointer Dereference that leads to arbitrary code execution’¯in the context of the current user. (CVE-2020-9746) References: – https://bugs.mageia.org/show_bug.cgi?id=27432
The TCP dissector could crash (CVE-2020-25862). The MIME Multipart dissector could crash (CVE-2020-25863). The BLIP dissector could crash (CVE-2020-25866).
A vulnerability was discovered where an attacker can cause an XSS attack through the transformation feature. If an attacker sends a crafted link to the victim with the malicious JavaScript, when the victim clicks on the link, the JavaScript will run and complete the instructions made by the attacker. (CVE-2020-26934)
CVE-2020-26116: HTTP request method CRLF injection in httplib
security update
Priyank Nigam discovered that HttpComponents Client, a Java HTTP agent implementation, could misinterpret malformed authority component in a request URI and pick the wrong target host for request execution.
Some footage has already appeared on adult sites, with cybercriminals offering lifetime access to the entire loot for US$150 The post 50,000 home cameras reportedly hacked, footage posted online appeared first on WeLiveSecurity
An update that contains security fixes can now be installed.
An update that contains security fixes can now be installed.
Update to 3.17.7 — https://www.claws-mail.org/news.php
