Menu

Monthly Archives: February 2022

An update for kpatch-patch is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

EncroChat defendants’ lawyers make bid to halt trial

c3p0 could be made to crash if it opened a specially crafted file.

An update is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

NFT Investors Lose $1.7M in OpenSea Phishing Attack

security update

security update

security update

security update

security update

French speakers blasted by sextortion scams with no text or links
FBI warns of fake CEO attacks taking place via video conferencing systems
Sex attacker jailed after police track his hire bike

An update for sg-core-container is now available for Service Telemetry Framework 1.4. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Several security issues were fixed in Expat.

Time for people to patch backup plugin for WordPress

An update for the ruby:2.6 module is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for the ruby:2.6 module is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

US to attack cyber criminals first, ask questions later – if it protects victims

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Top chipmakers ignore India’s semiconductor factory subsidies

The container suse/sles12sp5 was updated. The following patches have been included in this update:

New expat packages are available for Slackware 14.0, 14.1, 14.2, 15.0, and -current to fix security issues.

Update to 2.54.3. Cherry pick misc SELinux policy fixes. Fixes for CVE-2021-44731, CVE-2021-44730, CVE-2021-4120.

**phpMyAdmin 5.1.3** – 2022-02-11 This version primarily addresses a regression that caused the navigation pane to not function correctly when multiple pages of tables were shown. Version 5.1.3 includes a security hardening improvement. The issue, reported by Rafael Pedrero, could allow users to cause an error that would reveal the path on disk where phpMyAdmin […]

Update to 2.54.3. Cherry pick misc SELinux policy fixes. Fixes for CVE-2021-44731, CVE-2021-44730, CVE-2021-4120.

New version 3.2.8 Security fix for CVE-2021-33582 Security fix for CVE-2021-32056

It was discovered that Twisted, a Python event-based framework for internet applications, is affected by HTTP request splitting vulnerabilities, and may expose sensitive data when following redirects. An attacker may bypass validation checks and retrieve

The container suse/sles12sp4 was updated. The following patches have been included in this update:

The container suse/sles12sp3 was updated. The following patches have been included in this update:

Linux Snap package tool fixes make-me-root bugs

Update to 2.34.6: * Fix accessibility not working when the Bubblewrap sandbox is enabled. * Fix rendering of scrollbars when overlay scrollbars are disabled. * Fix several crashes and rendering issues. * Security fixes: CVE-2022-22620

Security fix for CVE-2021-4115

New version 3.2.8 Security fix for CVE-2021-33582 Security fix for CVE-2021-32056

security update

CISA publishes list of free security tools for business protection
Adobe warns of second critical security hole in Adobe Commerce, Magento
Irony alert! PHP fixes security flaw in input validation code
New Critical RCE Bug Found in Adobe Commerce, Magento
Should we expect to keep communication private in the digital age?
Severe WordPress Plug-In UpdraftPlus Bug Threatens Backups
Iranian State Broadcaster Clobbered by ‘Clumsy, Buggy’ Code
Microsoft offers defense against ‘ice phishing’ crypto scammers

An update that fixes two vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Stop pixelating! New tool reveals the secrets of “redacted” documents
When you’re fending off cyber-attackers, it is possible to be just too tooled up
Taiwan cracks down on China spying on tech firms
Interpol: Policing model needs to change with cybercrime
Baby Golang-Based Botnet Already Pulling in $3K/Month for Operators
S3 Ep70: Bitcoin, billing blunders, and 0-day after 0-day after 0-day [Podcast + Transcript]
U.S. government warns that sensitive data is being stolen from defence contractors
Folding the impossible into the reality of normal life

Progress is a driving force of humanity, but what does that word “progress” really mean and what part do we have to play? The post Folding the impossible into the reality of normal life appeared first on WeLiveSecurity

SonicWall on ransomware 2022: ‘Every good vendor’ was hit
Ukrainian DDoS Attacks Should Put US on Notice–Researchers
Microsoft Teams Targeted With Takeover Trojans
Kill Cloud Risk: Get Everybody to Stop Fighting Over App Security – Podcast
Privacy and computer security are too important to be left to political meddling

An update that solves 5 vulnerabilities and has two fixes is now available.

Several security issues were fixed in libarchive.

Facebook is one bad Chrome extension away from another Cambridge Analytica scandal
UK cybersecurity revenue up 14% on last year to £10.1bn
Smashing Security podcast #262: Macro progress, eyeball-tracking ads, and encryption backdoors
Is a focus on tech skills for CISOs holding us back in the boardroom?

An update that fixes three vulnerabilities is now available.

An update that fixes 43 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

The container suse/sles12sp5 was updated. The following patches have been included in this update:

Google expands Privacy Sandbox to Android
Russia ‘stole US defense data’ from IT systems
TrickBot Ravages Customers of Amazon, PayPal and Other Top Brands
Emergency updates: Adobe, Chrome patch security bugs under active attack
Massive LinkedIn Phishing, Bot Attacks Feed on the Job-Hungry

security update

security update

VMWare fixes holes that could allow virtual machine escapes
Questions linger after IRS’s about‑face on facial recognition

Why would a tax agency contractor’s privacy policy mention collecting information about my Facebook friends? The post Questions linger after IRS’s about‑face on facial recognition appeared first on WeLiveSecurity

High-Severity RCE Bug Found in Popular Apache Cassandra Database
Critical VMware Bugs Open ESXi, Fusion & Workstation to Attackers
Emotet Now Spreading Through Malicious Excel Files

Red Hat OpenShift Container Platform release 4.7.43 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.7.

An update for the ruby:2.5 module is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Red Hat OpenShift Container Platform release 4.7.43 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.7.

Red Hat OpenShift Container Platform release 4.8.31 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.8.

Red Hat OpenShift Container Platform release 4.7.43 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.7.

An update for the ruby:2.5 module is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

We get the privacy we deserve from our behavior
Singapore introduces potent anti-scam measures
India’s Reserve Bank deputy governor calls for crypto ban
Cambodia doesn’t have the gear for controversial National Internet Gateway
25 years on, Microsoft makes another stab at stopping macro malware
If NFTs were honest…