This is the May 2024 security update for .NET 7. This is the last upstream release of .NET 7. After this update, .NET 7 reaches its End of Life (EOL). Full release notes: https://github.com/dotnet/core/blob/main/release- notes/7.0/7.0.19/7.0.19.md
GNOME Remote Desktop would allow unintended access to sensitive information or remote desktop connections.
As AI gets closer to the ability to cause physical harm and impact the real world, “it’s complicated” is no longer a satisfying response
* bsc#1219386 Cross-References: * CVE-2023-5992
update to 125.0.6422.76 * High CVE-2024-5157: Use after free in Scheduling * High CVE-2024-5158: Type Confusion in V8 * High CVE-2024-5159: Heap buffer overflow in ANGLE * High CVE-2024-5160: Heap buffer overflow in Dawn
7.6.7.2
Update to 115.11.0 https://www.mozilla.org/en-US/security/advisories/mfsa2024-23/ https://www.thunderbird.net/en-US/thunderbird/115.11.0/releasenotes/
https://security-tracker.debian.org/tracker/DSA-5697-1
https://security-tracker.debian.org/tracker/DSA-5698-1
https://security-tracker.debian.org/tracker/DSA-5699-1
* bsc#1224277 Cross-References: * CVE-2023-45733 * CVE-2023-45745
Several security issues were fixed in klibc.
* bsc#1223603 Cross-References: * CVE-2024-4340
* bsc#1224038 * bsc#1224051 Cross-References: * CVE-2024-4317
Several security issues were fixed in the Linux kernel.
An update that fixes four vulnerabilities is now available.
Add implicit rejection in PKCS#1 v1.5 in OpenSSL.
* bsc#1216644 * bsc#1218259 * bsc#1220211 * bsc#1220832 * bsc#1222685
* bsc#1216644 * bsc#1218259 * bsc#1220211 * bsc#1220832 * bsc#1221302
* bsc#1220211 * bsc#1220832 * bsc#1221302 * bsc#1222685 * bsc#1223514
* bsc#1219296 * bsc#1220211 * bsc#1220828 * bsc#1220832 * bsc#1221302
* bsc#1221302 * bsc#1222882 * bsc#1223514 Cross-References:
* bsc#1216644 * bsc#1218259 * bsc#1220211 * bsc#1220832 * bsc#1221302
https://security-tracker.debian.org/tracker/DSA-5695-1
https://security-tracker.debian.org/tracker/DSA-5696-1
* bsc#1219296 * bsc#1220211 * bsc#1220828 * bsc#1220832 * bsc#1221302
* bsc#1216644 * bsc#1218259 * bsc#1220211 * bsc#1220832 * bsc#1222685
* bsc#1220211 * bsc#1220832 * bsc#1222685 * bsc#1223514
* bsc#1210619 * bsc#1218487 * bsc#1222685 * bsc#1223514
* bsc#1216644 * bsc#1218259 * bsc#1220211 * bsc#1220832 * bsc#1221302
* bsc#1220832 * bsc#1221302 * bsc#1222685 * bsc#1223514
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
* bsc#1224277 Cross-References: * CVE-2023-45733 * CVE-2023-45745
* bsc#1216644 * bsc#1218259 * bsc#1220211 * bsc#1220832 * bsc#1221302
* bsc#1219296 * bsc#1220211 * bsc#1220828 * bsc#1220832 * bsc#1221302
* bsc#1221302 * bsc#1223514 Cross-References: * CVE-2022-48651
An update that fixes one vulnerability is now available.
This is a security and bug fix release.
Security fix for CVE-2024-3727 Automatic update for buildah-1.35.4-1.fc39. Changelog for buildah * Fri May 10 2024 Packit – 1.35.4-1 – Update to 1.35.4 upstream release
This is a security and bug fix release.
Backport fix for CVE-2024-34069.
This week, ESET experts released several research publications that shine the spotlight on a number of notable campaigns and broader developments on the threat landscape
update to 125.0.6422.60 * High CVE-2024-4947: Type Confusion in V8 * High CVE-2024-4948: Use after free in Dawn * Medium CVE-2024-4949: Use after free in V8 * Low CVE-2024-4950: Inappropriate implementation in Downloads
update to 125.0.6422.60 * High CVE-2024-4947: Type Confusion in V8 * High CVE-2024-4948: Use after free in Dawn * Medium CVE-2024-4949: Use after free in V8 * Low CVE-2024-4950: Inappropriate implementation in Downloads
new upstream update (126.0)
* bsc#1216644 * bsc#1218259 * bsc#1220211 * bsc#1220832 * bsc#1221302
* bsc#1220211 * bsc#1220832 * bsc#1221302 * bsc#1222685 * bsc#1222882
Two vulnerabilities were discovered in BIND, a DNS server implementation, which may result in denial of service. CVE-2023-50387
