https://security-tracker.debian.org/tracker/DSA-5634-1
As adversaries increasingly set their sights on vulnerable enterprise VPN software to infiltrate corporate networks, concerns mount about VPNs themselves being a source of cyber risk
* bsc#1220068 * bsc#1220070 Cross-References: * CVE-2024-25710
* bsc#1215300 * bsc#1217116 * bsc#1218733 Cross-References:
* bsc#1218733 Cross-References: * CVE-2023-51780
* bsc#1215300 * bsc#1217116 * bsc#1218733 Cross-References:
* bsc#1215300 * bsc#1218733 Cross-References: * CVE-2023-4921
* bsc#1210619 Cross-References: * CVE-2023-1829
https://security-tracker.debian.org/tracker/DSA-5633-1
* bsc#1219152 * bsc#1219724 * bsc#1219992 * bsc#1219993 * bsc#1219994
* bsc#1219724 * bsc#1219992 * bsc#1219993 * bsc#1219997 * bsc#1220014
* bsc#1219049 Cross-References: * CVE-2024-22211
* bsc#1219049 Cross-References: * CVE-2024-22211
The 6.7.6 stable kernel update contains a number of important fixes across the tree.
Update to 115.8.0 https://www.mozilla.org/en-US/security/advisories/mfsa2024-07/ https://www.thunderbird.net/en-US/thunderbird/115.8.0/releasenotes/
Cross-References: * CVE-2023-44487 CVSS scores:
* bsc#1185232 * bsc#1185261 * bsc#1185441 * bsc#1185621 * bsc#1187071
* bsc#1166486 * bsc#1185861 * bsc#1185863 * bsc#1186449 * bsc#1191256
* bsc#1177083 * bsc#1181995 * jsc#ECO-3329 * jsc#PM-2475 * jsc#PM-2730
* bsc#1071995 * bsc#1084842 * bsc#1114592 * bsc#1124644 * bsc#1128794
* bsc#1214052 Cross-References: * CVE-2023-4039
Welcome to the wild west of the digital world where cyber scammers lurk around every pixelated corner. Cybercrime isn’t just a futuristic Hollywood plotline, it’s a real threat that targets everyone—from wide-eyed kids to seasoned adults and wise grandparents. And guess what? It’s on the rise faster than your Wi-Fi connection during peak hours (okay, […]
A vulnerability has been discovered in btrbk which can lead to remote code execution.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
The system could be made to crash under certain conditions.
It was discovered that iwd, the iNet Wireless Daemon, does not properly handle messages in the 4-way handshake used when connecting to a protected WiFi network for the first time. An attacker can take advantage of this flaw to gain unauthorized access to a protected WiFi
An issue has been found in libjwt, a C library to handle JWT (JSON Web Token). Due to using strcmp(), which does not use constant time during execution, a timing side channel attack might be possible.
Update to 122.0.6261.57 High CVE-2024-1669: Out of bounds memory access in Blink High CVE-2024-1670: Use after free in Mojo Medium CVE-2024-1671: Inappropriate implementation in Site Isolation Medium CVE-2024-1672: Inappropriate implementation in Content Security Policy
Backport fix for CVE-2023-5841.
Update to 2.6.0, fixes CVE-2023-52425, CVE-2023-52426.
Update to python3.11.8, backport fix for CVE-2023-27043.
https://security-tracker.debian.org/tracker/DSA-5631-1
Coming in two waves, the campaign sought to demoralize Ukrainians and Ukrainian speakers abroad with disinformation messages about war-related subjects
Rebase to version 2.6.0
Update to qt-5.15.12.
Update to qt-5.15.12.
Update to qt-5.15.12.
Update to qt-5.15.12.
Update to qt-5.15.12.
* bsc#1210638 Cross-References: * CVE-2023-27043
Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure.
Update to latest upstream. Fixes CVE-2023-50387 and CVE-2023-50868
New upstream release (123.0)
update to 122.0.6261.57 High CVE-2024-1669: Out of bounds memory access in Blink High CVE-2024-1670: Use after free in Mojo Medium CVE-2024-1671: Inappropriate implementation in Site Isolation Medium CVE-2024-1672: Inappropriate implementation in Content Security Policy
Update to latest upstream. Fixes CVE-2023-50387 and CVE-2023-50868
https://security-tracker.debian.org/tracker/DSA-5630-1
https://security-tracker.debian.org/tracker/DSA-5629-1
