The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
security update
security update
An update that fixes 11 vulnerabilities is now available.
An update that fixes 9 vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
An update that fixes one vulnerability is now available.
(Almost) everything you always wanted to know about virtual private networks, but were afraid to ask The post Virtual private networks: 5 common questions about VPNs answered appeared first on WeLiveSecurity
An update is now available for Red Hat build of Eclipse Vert.x. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. For
USN-5487-1 introduced a regression in Apache.
Educating employees about how to spot phishing attacks can strike a much-needed blow for network defenders The post Phishing awareness training: Help your employees avoid the hook appeared first on WeLiveSecurity
Squid could be made to crash if it received specially crafted network traffic.
An update that contains security fixes can now be installed.
An update that contains security fixes can now be installed.
postgresql: Autovacuum, REINDEX, and others omit “security restricted operation” sandbox (CVE-2022-1552) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE SL7 x86_64 postgresql-debuginfo-9.2.24-8.el7_9.i686.rpm postgresql-debuginfo-9.2.24-8.el7_9.x86_64.rpm postgresql-libs-9.2.24-8. [More…]
An update that contains security fixes can now be installed.
An update that contains security fixes can now be installed.
How crypto mixers, also known as crypto tumblers, are used to obscure the trail of digital money The post Crypto mixers: What are they and how are they used? appeared first on WeLiveSecurity
Several vulnerabilities were discovered in NTFS-3G, a read-write NTFS driver for FUSE. A local user can take advantage of these flaws for local root privilege escalation.
Several security issues were fixed in QEMU.
OpenSSL could be made to crash or run programs when the c_rehash script is used.
An update that fixes one vulnerability is now available.
Several security issues were fixed in Apache HTTP Server.
This update includes the latest changes to the leap second list, including an update to its expiry date, which was set for the end of June.
security update
Brief introduction CVE-2017-13755
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that solves 17 vulnerabilities and has 26 fixes is now available.
security update
security update
It was discovered that exo, a support library for the Xfce desktop environment, would allow executing remote .desktop files. In some scenario, an attacker could use this vulnerability to trick an user an execute arbitrary code on the platform with the privileges of that user.
Security fix for CVE-2015-20107
Security fix for CVE-2015-20107
Update to version 2.1.1 CVE-2022-24065
New version 2.8.5 is released. This new version address the security issue CVE-2022-31033 related to header information leak.
Security fix for CVE-2015-20107
As the risk of receiving a malware-laden email increases, take a moment to consider how to spot attacks involving malicious spam The post How to spot malicious spam – Week in security with Tony Anscombe appeared first on WeLiveSecurity
The 5.18.5 stable kernel update contains mitigation for the processor MMIO stale-data vulnerabilities. These are covered by CVE-2022-21166 CVE-2022-21125 and CVE-2022-21123
Update to 2.36.3: * Support capturing already encoded video streams, which takes advantage of encoding done in hardware by devices which support this feature. * Avoid using experimental GStreamer elements for video demuxing. * Avoid using the legacy GStreamer VA-API decoding plug-ins, which often cause rendering issues and are not much maintained. Their usage can […]
Rebuild for ntfs-3g CVE
Emotet malware is back with ferocious vigor, according to ESET telemetry in the first four months of 2022. Will it survive the ever-tightening controls on macro-enabled documents? The post How Emotet is changing tactics in response to Microsoft’s tightening of Office macro security appeared first on WeLiveSecurity
