An update that solves one vulnerability and has 13 fixes is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
Upstream details at : https://access.redhat.com/errata/RHSA-2019:0710
Upstream details at : https://access.redhat.com/errata/RHSA-2019:0697
Upstream details at : https://access.redhat.com/errata/RHSA-2019:0717
Upstream details at : https://access.redhat.com/errata/RHSA-2019:0711
An update that fixes 6 vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that solves one vulnerability and has 15 fixes is now available.
An update that fixes three vulnerabilities is now available.
An update that solves two vulnerabilities and has three fixes is now available.
An update that fixes 5 vulnerabilities is now available.
Several security issues were fixed in Ruby.
An update for ceph and grafana is now available for Red Hat Ceph Storage 2.5 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
An update for httpd24-httpd and httpd24-mod_auth_mellon is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Mathy Vanhoef (NYUAD) and Eyal Ronen (Tel Aviv University & KU Leuven) found multiple vulnerabilities in the WPA implementation found in wpa_supplication (station) and hostapd (access point). These vulnerability are also collectively known as “Dragonblood”.
The package thunderbird before version 60.6.1-1 is vulnerable to arbitrary code execution.
The package apache before version 2.4.39-1 is vulnerable to multiple issues including privilege escalation, access restriction bypass and denial of service.
The package gnutls before version 3.6.7-1 is vulnerable to multiple issues including arbitrary code execution and denial of service.
The package evolution before version 3.32.0-1 is vulnerable to content spoofing.
Backport more patches: – shared/install: Preserve escape characters for escaped unit names (https://github.com/coreos/bugs/issues/2569) – timedate: fix emitted value when ntp client is enabled/disabled (#1696586) – udev: run programs in the specified order (#1696784) – core: add Manager::honor_device_enumeration flag (https://pagure.io/fedora-
Multiple vulnerabilities have been found in Git, the worst of which could result in the arbitrary execution of code.
An update that fixes 11 vulnerabilities is now available.
Several security issues were fixed in wpa_supplicant and hostapd.
An update that solves three vulnerabilities and has 9 fixes is now available.
An update for flash-plugin is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which
Several security issues were fixed in Apache.
It was discovered that SPIP, a website engine for publishing, did not properly sanitize its user input. This would allow an authenticated user to perform arbitrary command execution.
An update that solves one vulnerability and has 5 fixes is now available.
New upstream release 0.14.2 which also fixes CVE-2019-3878 and CVE-2019-3877
update to the bugfix release 3.9.0
update to the bugfix release 3.9.0
security update
An update that fixes one vulnerability is now available.
Various vulnerabilities were discovered in Samba, SMB/CIFS file, print, and login server/client for Unix
An update that fixes three vulnerabilities is now available.
An update for katello-installer-base which configures qpid-dispatch-router is now available for Red Hat Satellite 6.2 for RHEL 6 and Red Hat Satellite 6.2 for RHEL 7. Red Hat Product Security has rated this update as having a security impact
An update for katello-installer-base which configures qpid-dispatch-router is now available for Red Hat Satellite 6.3 for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update for katello-installer-base which configures qpid-dispatch-router is now available for Red Hat Satellite 6.4 for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update that fixes three vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
An update for kernel is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Several security issues were fixed in Wget.
Several security issues were fixed in Wget.
An update for openssh is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
Several memory leaks were discovered in proftpd-dfsg, a versatile, virtual-hosting FTP daemon, when mod_facl or mod_sftp is used which could lead to memory exhaustion and a denial-of-service.
security update
Several security issues were fixed in ClamAV.
An update that fixes two vulnerabilities is now available.
An update that solves one vulnerability and has three fixes is now available.
An update that fixes 11 vulnerabilities is now available.
An update that fixes three vulnerabilities is now available.
An update that solves one vulnerability and has four fixes is now available.
An update that solves two vulnerabilities and has one errata is now available.
Multiple vulnerabilities have been found in ClamAV, the worst of which could result in a Denial of Service condition.
A vulnerability in emerge-delta-webrsync and Portage could result in a man-in-the-middle attack.
Multiple vulnerabilities have been found in Mailman, the worst of which could result in the arbitrary execution of code.
An update that solves 8 vulnerabilities and has 102 fixes is now available.
An update that fixes three vulnerabilities is now available.
security update
New httpd packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue.
Cedric Krier discovered that missing access validation in Tryton could result in information disclosure . For the stable distribution (stretch), this problem has been fixed in
Security fix for CVE-2019-8936
Security fix for CVE-2019-8936
security update
**PHP version 7.3.4** (04 April 2019) **Core:** * Fixed bug php#77738 (Nullptr deref in zend_compile_expr). (Laruence) * Fixed bug php#77660 (Segmentation fault on break 2147483648). (Laruence) * Fixed bug php#77652 (Anonymous classes can lose their interface information). (Nikita) * Fixed bug php#77345 (Stack Overflow caused by circular reference in garbage collection). (Alexandru
Security fix for CVE-2019-8936
New openjpeg packages are available for Slackware 14.2 and -current to fix security issues.
New wget packages are available for Slackware 14.2 and -current to fix a security issue.
An update that fixes one vulnerability is now available.
An update that fixes 16 vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that solves two vulnerabilities and has 16 fixes is now available.
Kusano Kazuhiko discovered a buffer overflow vulnerability in the handling of Internationalized Resource Identifiers (IRI) in wget, a network utility to retrieve files from the web, which could result in the execution of arbitrary code or denial of service when recursively
An update that fixes 11 vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that fixes four vulnerabilities is now available.
security update
security update
security update
security update
An update that fixes one vulnerability is now available.
An update that solves one vulnerability and has one errata is now available.
An update that fixes one vulnerability is now available.
An update that fixes three vulnerabilities is now available.
An update that fixes three vulnerabilities is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that solves two vulnerabilities and has one errata is now available.
Multiple vulnerabilities were found in the PuTTY SSH client, which could result in denial of service and potentially the execution of arbitrary code. In addition, in some situations random numbers could potentially be re-used.
Several vulnerabilities have been found in the Apache HTTP server. CVE-2019-0217
An update that fixes 16 vulnerabilities is now available.
An update that fixes 15 vulnerabilities is now available.
Adam Dobrawy, Frederico Silva and Gregory Brzeski from HyperOne.com discovered that pdns, an authoritative DNS server, did not properly validate user-supplied data when building a HTTP request from a DNS query in the HTTP Connector of the Remote backend. This would allow a
AdvanceCOMP could be made to run arbitrary code if it opened a specially crafted file.
Several security issues were fixed in the Apache HTTP Server.
Multiple vulnerabilities have been found in Xen, the worst of which could result in privilege escalation.
An update that fixes three vulnerabilities is now available.
An update that solves three vulnerabilities and has 17 fixes is now available.
An update that solves three vulnerabilities and has 17 fixes is now available.
