Cumulative bug-fix release from upstream.
– fix disclosure of HTTP auth credentials via SNI data (CVE-2021-38165)
Rebuild for CVE-2021-3672 in c-ares library
Update to 1.1.1l version
Update to 2.0.1; fix RHBZ#1932066 (unsafe use of strncpy), fix RHBZ#1932066
security update
An update that solves 20 vulnerabilities and has 106 fixes is now available.
An update that fixes 5 vulnerabilities is now available.
Rebase with Security fix for CVE-2021-3781
Update to 1.93, fixes CVE-2020-19752
Fix issue with incorrect obsoletes.
While Apple did issue a patch for the vulnerability, it seems that the fix can be easily circumvented The post Bug in macOS Finder allows remote code execution appeared first on WeLiveSecurity
Yet another APT group that exploited the ProxyLogon vulnerability in March 2021 The post FamousSparrow: A suspicious hotel guest appeared first on WeLiveSecurity
Multiple issues have been discovered in mupdf. CVE-2016-10246
Misconfigurations of cloud resources can lead to various security incidents and ultimately cost your organization dearly. Here’s what you can do to prevent cloud configuration conundrums. The post Plugging the holes: How to prevent corporate data leaks in the cloud appeared first on WeLiveSecurity
Red Hat Advanced Cluster Management for Kubernetes 2.1.11 General Availability release images, which provide a security fix and update the container images. Red Hat Product Security has rated this update as having a security impact
A security update is now available for Red Hat JBoss Enterprise Application Platform 7.4. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
A security update is now available for Red Hat JBoss Enterprise Application Platform 7.4 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
A security update is now available for Red Hat JBoss Enterprise Application Platform 7.4 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
The group used phishing, BEC and other types of attacks to swindle victims out of millions The post European police dismantle cybercrime ring with ties to Italian Mafia appeared first on WeLiveSecurity
A security vulnerability has been found in Kaminari, a pagination engine plugin for Rails 3+ and other modern frameworks, that would allow an attacker to inject arbitrary code into pages with pagination links.
Several security issues were fixed in WebKitGTK.
SQL parse could be made to denial of service if it received a specially crafted regular expression.
IBM s390x systems could be made to crash or run programs as an administrator.
The container suse/sle15 was updated. The following patches have been included in this update:
The container suse/sles12sp5 was updated. The following patches have been included in this update:
security update
Update to 2.32.4: * Do not append .asc extension to downloaded text/plain files. * Fix several crashes and rendering issues. * Fix CVE-2021-30858
– CVE-2021-22947 – STARTTLS protocol injection via MITM – CVE-2021-22946 – protocol downgrade required TLS bypassed – CVE-2021-22945 – use-after-free and double-free in MQTT sending
Backport patch for CVE-2021-23437.
Backport patch for CVE-2021-23437.
Backport patch for CVE-2021-23437.
Backport patch for CVE-2021-23437.
security update
Rebase with Security fix for CVE-2021-3781
Rebuild for dovecot 2.3.16 —- Rebuild for dovecot 2.3.16
– fix disclosure of HTTP auth credentials via SNI data (CVE-2021-38165)
An update for rh-ruby27-ruby is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
