HTTP-Daemon could allow HTTP Request Smuggling attacks.
An update that solves 11 vulnerabilities and has 44 fixes is now available.
An update that fixes four vulnerabilities is now available.
An update that solves 10 vulnerabilities, contains one feature and has 43 fixes is now available.
An update that solves 9 vulnerabilities and has 9 fixes is now available.
The container sles-15-sp1-chost-byos-v20220715-x86-64 was updated. The following patches have been included in this update:
The container suse/sle15 was updated. The following patches have been included in this update:
The container bci/python was updated. The following patches have been included in this update:
The container bci/bci-minimal was updated. The following patches have been included in this update:
The container suse/sle15 was updated. The following patches have been included in this update:
Rebuild for CVE-2022-{24675,28327,29526} in golang and other go ecosystem CVEs — This contains the result from the mass rebuild in F35 for all packages that require `golang` and provide binaries to mitigate the following CVEs: `golang` itself: – CVE-2022-24675 golang: encoding/pem: fix stack overflow in Decode – CVE-2022-28327 golang: crypto/elliptic: panic caused by oversized scalar […]
Rebuild for CVE-2022-{24675,28327,29526} in golang and other go ecosystem CVEs — This contains the result from the mass rebuild in F35 for all packages that require `golang` and provide binaries to mitigate the following CVEs: `golang` itself: – CVE-2022-24675 golang: encoding/pem: fix stack overflow in Decode – CVE-2022-28327 golang: crypto/elliptic: panic caused by oversized scalar […]
security update
security update
An update that fixes 5 vulnerabilities is now available.
Why downloading pirated video games may ultimately cost you dearly and how to stay safe while gaming online The post Think twice before downloading pirated games – Week in security with Tony Anscombe appeared first on WeLiveSecurity
The container suse/sle15 was updated. The following patches have been included in this update:
The container bci/bci-micro was updated. The following patches have been included in this update:
The container bci/bci-init was updated. The following patches have been included in this update:
The container suse/sle15 was updated. The following patches have been included in this update:
**Version 2.13.0** Enhancement * 106: Refined types as per laminas/laminas- coding-standard:2.3.x upgrades thanks to @Ocramius * 103: Update to laminas/laminas-coding-standard:2.3.x, improved types and internal API thanks to @gsteel —- **Version 2.12.0** Bug * 99: Merge release 2.11.3 into 2.12.x thanks to @github-actions[bot] * 92: Fix typo in property name in
The heavyweights are now moving into API security, cementing it as “A Thing” The post API security moves mainstream appeared first on WeLiveSecurity
An update that solves 15 vulnerabilities and has one errata is now available.
An update that fixes one vulnerability is now available.
The container bci/dotnet-sdk was updated. The following patches have been included in this update:
The container suse/sle15 was updated. The following patches have been included in this update:
security update
security update
The 5.18.11 stable kernel update contains a number of important fixes across the tree. In addition to the 5.18.11 stable patches, this build contains the retbleed patches scheduled for 5.18.12 kernels.
– fix unpreserved file permissions (CVE-2022-32207) – fix Set-Cookie denial of service (CVE-2022-32205) – fix HTTP compression denial of service (CVE-2022-32206) – fix FTP-KRB bad message verification (CVE-2022-32208)
security update
In a world of ever-evolving cyberthreats, collaboration and knowledge exchange are vital for keeping an edge on attackers The post Collaboration and knowledge sharing key to progress in cybersecurity appeared first on WeLiveSecurity
An update that solves one vulnerability and has three fixes is now available.
An update that solves 21 vulnerabilities and has 6 fixes is now available.
An update that fixes one vulnerability is now available.
An update that contains security fixes can now be installed.
Python could be made to run arbitrary code if it received a specially crafted input.
HTTP-Daemon could allow HTTP Request Smuggling attacks.
It’s all fun and games until you get hacked – and this is just one risk of downloading cracked games The post Play it safe: 5 reasons not to download pirated games appeared first on WeLiveSecurity
An update that solves 9 vulnerabilities and has four fixes is now available.
An update that solves 15 vulnerabilities and has 22 fixes is now available.
An update that fixes one vulnerability is now available.
uriparser could be made to crash if it received specially crafted input.
The container bci/ruby was updated. The following patches have been included in this update:
The container bci/python was updated. The following patches have been included in this update:
security update
Several security issues were fixed in X.Org X Server.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
GnuPG could allow forged signatures.
AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances. This could reveal sixteen bytes of data that was preexisting in the memory that wasn’t written. In the special case of “in place” encryption, sixteen bytes of the plaintext would be […]
security update
