An update that solves two vulnerabilities and has one errata is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update is now available for Red Hat OpenShift Application Runtimes. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Several security issues were fixed in python-ecdsa.
Several security issues were fixed in MySQL.
An update for libcomps is now available for Red Hat Enterprise Linux 7 Extras. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
New kernel packages are available for Slackware 14.2 to fix security issues.
A vulnerability was discovered in mosquitto, a MQTT version 3.1/3.1.1 compatible message broker, allowing a malicious MQTT client to cause a denial of service (stack overflow and daemon crash), by sending a specially crafted SUBSCRIBE packet containing a topic with a extremely
VCPUOP_initialise DoS [XSA-296, CVE-2019-18420] missing descriptor table limit checking in x86 PV emulation [XSA-298, CVE-2019-18425] Issues with restartable PV type change operations [XSA-299, CVE-2019-18421] (#1767726) add-to-physmap can be abused to DoS Arm hosts [XSA-301, CVE-2019-18423] passed through PCI devices may corrupt host memory after deassignment [XSA-302, CVE-2019-18424]
8u232 update
Security fix for CVE-2019-15142, CVE-2019-15143, CVE-2019-15144 and CVE-2019-15145.
Update to 1.1.20
Security fix for CVE-2019-16275
Rich Mirch discovered that the pg_ctlcluster script didn’t drop privileges when creating socket/statistics temporary directories, which could result in local privilege escalation.
An update that fixes 11 vulnerabilities is now available.
security update
security update
Security fix for CVE-2019-14664, CVE-2019-12269 and compatibility with Thunderbird 68
Update to Samba 4.10.10 – Security fixes for CVE-2019-10218, CVE-2019-14833, CVE-2019-14847
Type: Vulnerability. Philips IntelliBridge EC40 and EC80 is prone to an unauthorized-access vulnerability; fixes are available.
Type: Vulnerability. Multiple Veritas products are prone to an arbitrary command-injection vulnerability; fixes are available.
Type: Vulnerability. Multiple Siemens Products are prone to a denial-of-service vulnerability; fixes are available.
Type: Vulnerability. Siemens Desigo PX is prone to denial of service vulnerability; fixes are available.
Type: Vulnerability. Redhat Syndesis is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. McAfee Threat Intelligence Exchange Server is prone to an unauthorized-access vulnerability; fixes are available.
Type: Vulnerability. OpenStack Mistral is prone to a local information-disclosure vulnerability; fixes are available.
Type: Vulnerability. McAfee Total Protection is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Exim is prone to an arbitrary code-execution vulnerability; fixes are available.
Update to latest stable (78.0.3904.97). This build contains a number of bug fixes and security updates. Changes can be viewed here: https://chromium.googles ource.com/chromium/src/+log/78.0.3904.86..78.0.3904.92?n=10000
An update that solves one vulnerability and has two fixes is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that solves two vulnerabilities and has one errata is now available.
Reading Time: ~ 2 min. Orvis Internal Credentials Leaked A database containing login credentials for numerous internal systems belonging to Orvis, one of America’s oldest retailers, was found to be publicly available for an unknown amount of time. Why the database was publicly accessible at all is still unclear, but the retailer has determined that […]
An update that contains security fixes can now be installed.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that solves 49 vulnerabilities and has two fixes is now available.
Tim Brown discovered a shared memory permissions vulnerability in the Mesa 3D graphics library. Some Mesa X11 drivers use shared-memory XImages to implement back buffers for improved performance, but Mesa
An update that fixes one vulnerability is now available.
An update that fixes 11 vulnerabilities is now available.
Type: Vulnerability. Google Pixel is prone to a privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Magento CMS is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Lenovo ThinkPad is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Drupal Open Social is prone to a session-fixation vulnerability; fixes are available.
Type: Vulnerability. IBM Spectrum Protect Plus is prone to insecure file-permission vulnerability; fixes are available.
Type: Vulnerability. systemd is prone to an security-bypass vulnerability; fixes are available.
Type: Vulnerability. Lenovo is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. IBM QRadar SIEM is prone to an unspecified cross-site scripting vulnerability; fixes are available.
Type: Vulnerability. TIBCO EBX Add-on is prone to a cross-site scripting vulnerability; fixes are available.
Type: Vulnerability. TIBCO EBX is prone to multiple unspecified cross-site scripting vulnerabilities; fixes are available.
Type: Vulnerability. Intel Xeon Scalable Processors are prone to a denial-of-service vulnerability; fixes are available.
Type: Vulnerability. Envoy is prone to a remote denial-of-service vulnerability; fixes are available.
Type: Vulnerability. TIBCO EBX Add-on is prone to a cross-site scripting vulnerability; fixes are available.
Type: Vulnerability. Istio is prone to a remote denial-of-service vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Multiple Intel Processors are prone to a denial of service vulnerability; fixes are available.
Type: Vulnerability. VMware Workstation and Fusion are prone to multiple security vulnerabilities; fixes are available
Type: Vulnerability. Trusted Platform Module is prone to an unspecified security vulnerability; fixes are available.
Type: Vulnerability. Multiple Intel Products are prone to a denial-of-service vulnerability; fixes are available.
Type: Vulnerability. Intel Software Guard Extensions is prone to a local information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Multiple Intel Products are prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. SAP Netweaver Application Server Java is prone to a remote privilege-escalation vulnerability; a fix is available.
Type: Vulnerability. SAP Treasury and Risk Management is prone to an authorization-bypass vulnerability; fixes are available.
Type: Vulnerability. Multiple Cisco Products are prone to a remote code-execution vulnerability.
Type: Vulnerability. Multiple Intel Processors are prone to a local information-disclosure vulnerability; fixes are available.
Type: Vulnerability. SAP ERP Sales and S/4HANA Sales are prone to an authorization-bypass vulnerability; fixes are available.
Type: Vulnerability. Microsoft Edge is prone to a remote memory-corruption vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Excel is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft Windows is prone to a local information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Excel is prone to a remote code-execution vulnerability; fixes are available.
Type: Vulnerability. Microsoft SharePoint is prone to an information-disclosure vulnerability; fixes are available.
Type: Vulnerability. Microsoft Visual Studio is prone to a remote privilege-escalation vulnerability; fixes are available.
Type: Vulnerability. Microsoft Azure Stack is prone to a security vulnerability that may allow attackers to conduct spoofing attacks; fixes are available.
