The Facebook-owned messaging service plans to roll out the feature to both iOS and Android users in the coming weeks. The post WhatsApp announces end‑to‑end encrypted backups appeared first on WeLiveSecurity
Discover the best ways to mitigate your organization’s attack surface, in order to maximize cybersecurity. The post What is a cyberattack surface and how can you reduce it? appeared first on WeLiveSecurity
Squashfs-Tools could be made to overwrite files.
An update that fixes one vulnerability is now available.
An update that solves one vulnerability and has one errata is now available.
Several security issues were fixed in curl.
Squashfs-Tools could be made to overwrite files.
The container ses/7/rook/ceph was updated. The following patches have been included in this update:
From cybercriminal evergreens like phishing to the verification badge scam we look at the most common tactics fraudsters use to trick their victims The post Beware of these 5 common scams you can encounter on Instagram appeared first on WeLiveSecurity
An update that fixes four vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that fixes four vulnerabilities is now available.
An update that fixes four vulnerabilities is now available.
The 5.13.15 stable kernel update contains a number of important fixes across the tree.
update to 1.1.1l
This advisory resolves CVE issues filed against XP2 releases that have been fixed in the underlying EAP 7.3.x base. There are no changes to the EAP XP2 code base. NOTE: This advisory is informational only. There are no code changes
This update upgrades Thunderbird to version 78.14.0. * Mozilla: Memory safety bugs fixed in Firefox 92, Firefox ESR 78.14 and Firefox ESR 91.1 (CVE-2021-38493) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE — SL7 x86_64 – thunderbird-78.14.0-1.el7_9.x86_64.rpm – thunderbird-debuginfo-78.1 [More…]
This update upgrades Firefox to version 78.14.0 ESR. * Mozilla: Memory safety bugs fixed in Firefox 92, Firefox ESR 78.14 and Firefox ESR 91.1 (CVE-2021-38493) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE — SL7 x86_64 – firefox-78.14.0-1.el7_9.i686.rpm – firefox-78.14.0-1.el7_9.x86_64.r [More…]
An update that contains security fixes can now be installed.
Several security issues were fixed in the kernel.
Update to Chromium 93. There have been … a few security fixes since the last Fedora chromium update. This update fixes the following CVEs: CVE-2021-30565 CVE-2021-30566 CVE-2021-30567 CVE-2021-30568 CVE-2021-30569 CVE-2021-30571 CVE-2021-30572 CVE-2021-30573 CVE-2021-30574 CVE-2021-30575 CVE-2021-30576 CVE-2021-30577 CVE-2021-30578 CVE-2021-30579 CVE-2021-30580 CVE-2021-30581
security update
It was found that the patch for CVE-2021-3592 introduced a regression which prevented ssh connections to the host system. Since there is no imminent solution for the problem, the patch for CVE-2021-3592 has been reverted. Updated qemu packages are now available to correct this issue.
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (buster), this problem has been fixed
security update
security update
security update
Firefox could be made to crash or run programs as your login if it opened a malicious website.
* New upstream version (92.0)
Update to latest upstream release 2.0.12
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code.
Ghostscript could be made to crash, access files, or run programs if it opened a specially crafted file.
It was discovered that Ghostscript, the GPL PostScript/PDF interpreter, does not properly validate access for the “%pipe%”, “%handle%” and “%printer%” io devices, which could result in the execution of arbitrary code if a malformed Postscript file is processed (despite the -dSAFER
security update
The university suffered a ransomware attack, however there is no evidence so far of data being accessed or stolen. The post Howard University suffers cyberattack, suspends online classes in aftermath appeared first on WeLiveSecurity
Kevin Israel discovered that Postorius, the administrative web frontend for Mailman 3, didn’t validate whether a logged-in user owns the email address when unsubscribing.
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code.
Update to CVE release 3003.3-1 https://saltproject.io/security_announcements/salt-security- advisory-2021-sep-02/ CVE-2021-21996 CVE-2021-22004 CVE-2021-31607
Build of libtpms 0.8.5
8u302 update
Update to CVE release 3003.3-1 https://saltproject.io/security_announcements/salt-security- advisory-2021-sep-02/ CVE-2021-21996 CVE-2021-22004 CVE-2021-31607
