LinuxSecurity.com: – Security fix for CVE-2016-8670 – Security fix for CVE-2016-6911 – Security fixfor CVE-2016-7568 – For Fedora 26 disabled two tests – they are failing becauseof freetype 2.7 (https://github.com/libgd/libgd/issues/302,https://github.com/libgd/libgd/issues/217)
LinuxSecurity.com: Security Report Summary
LinuxSecurity.com: Security fix for CVE-2016-9844
LinuxSecurity.com: Security Report Summary
security update
LinuxSecurity.com: ARM guests may induce host asynchronous abort [XSA-201, CVE-2016-9815,CVE-2016-9816, CVE-2016-9817, CVE-2016-9818] (#1399747) qemu: Divide by zerovulnerability in cirrus_do_copy (#1399055) [CVE-2016-9921, CVE-2016-9922] Qemu:9pfs: memory leakage via proxy/handle callbacks (#1402278) qemu ioport arrayoverflow [XSA-199, CVE-2016-9637]
LinuxSecurity.com: – update to the new upstream version (50.1.0) – fixed X Window crashes(mozbz#1271100)
security update
security update
security update
LinuxSecurity.com: Security Report Summary
security update
LinuxSecurity.com: Update to Chromium 55. Security fix for CVE-2016-5199, CVE-2016-5200,CVE-2016-5201, CVE-2016-5202, CVE-2016-9651, CVE-2016-5208, CVE-2016-5207,CVE-2016-5206, CVE-2016-5205, CVE-2016-5204, CVE-2016-5209, CVE-2016-5203,CVE-2016-5210, CVE-2016-5212, CVE-2016-5211, CVE-2016-5213, CVE-2016-5214,CVE-2016-5216, CVE-2016-5215, CVE-2016-5217, CVE-2016-5218, CVE-2016-5219,CVE-2016-5221, CVE-2016-5220, CVE-2016-5222, CVE-2016-9650, CVE-2016-5223,CVE-2016-5226, CVE-2016-5225, CVE-2016-5224, CVE-2016-9652
LinuxSecurity.com: – update to the new upstream version (50.1.0) – fixed X Window crashes(mozbz#1271100)
LinuxSecurity.com: * Security fix for CVE-2016-9888
LinuxSecurity.com: Disable insecure FLX plugin (rhbz#1397441)
LinuxSecurity.com: vmncdec: Sanity-check width/height before using it —- Remove insecure nsfplugin (#1395126)
security update
LinuxSecurity.com: – update to the new upstream version (50.1.0) – fixed X Window crashes(mozbz#1271100)
LinuxSecurity.com: Update to Chromium 55. Security fix for CVE-2016-5199, CVE-2016-5200,CVE-2016-5201, CVE-2016-5202, CVE-2016-9651, CVE-2016-5208, CVE-2016-5207,CVE-2016-5206, CVE-2016-5205, CVE-2016-5204, CVE-2016-5209, CVE-2016-5203,CVE-2016-5210, CVE-2016-5212, CVE-2016-5211, CVE-2016-5213, CVE-2016-5214,CVE-2016-5216, CVE-2016-5215, CVE-2016-5217, CVE-2016-5218, CVE-2016-5219,CVE-2016-5221, CVE-2016-5220, CVE-2016-5222, CVE-2016-9650, CVE-2016-5223,CVE-2016-5226, CVE-2016-5225, CVE-2016-5224, CVE-2016-9652
LinuxSecurity.com: This updates includes a rebase from tomcat 8.0.38 up to 8.0.39 which resolvesmultiple CVEs: * #1397493 – CVE-2016-6816 CVE-2016-6817 CVE-2016-8735 tomcat:various flaws
LinuxSecurity.com: Apport could be made to run programs as your login if it opened aspecially crafted file.
LinuxSecurity.com: This updates includes a rebase from tomcat 8.0.38 up to 8.0.39 which resolvesmultiple CVEs: * #1397493 – CVE-2016-6816 CVE-2016-6817 CVE-2016-8735 tomcat:various flaws
LinuxSecurity.com: Security Report Summary
LinuxSecurity.com: An update for flash-plugin is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: An update for firefox is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: New mozilla-firefox packages are available for Slackware 14.1, 14.2, and -current to fix security issues. [More Info…]
LinuxSecurity.com: Update LXC to the latest stable version. See[here](https://linuxcontainers.org/lxc/news/) for the list of changes.
LinuxSecurity.com: **Version 1.2.3** – Searching in both contacts and groups when LDAP addressbookwith group_filters option is used – Fix vulnerability in handling of mail()’s5th argument – Fix To: header encoding in mail sent with mail() method (#5475) -Fix flickering of header topline in min-mode (#5426) – Fix bug where folderslist would scroll to top when […]
LinuxSecurity.com: Update LXC to the latest stable version. See[here](https://linuxcontainers.org/lxc/news/) for the list of changes.
security update
security update
LinuxSecurity.com: This updates includes a rebase from tomcat 8.0.38 up to 8.0.39 which resolvesmultiple CVEs: * #1397493 – CVE-2016-6816 CVE-2016-6817 CVE-2016-8735 tomcat:various flaws
LinuxSecurity.com: Security Report Summary
LinuxSecurity.com: Multiple vulnerabilities have been found in Node.js, the worst of which can allow remote attackers to cause Denial of Service conditions.
LinuxSecurity.com: Multiple vulnerabilities have been found in WebKitGTK+, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in Zabbix, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in WebKitGTK+, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: Security Report Summary
LinuxSecurity.com: Multiple vulnerabilities have been found in Botan, the worst of which allows remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in SQUASHFS, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: A vulnerability in Bash could potentially lead to arbitrary code execution.
LinuxSecurity.com: A buffer overflow in Pixman might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: An integer overflow in TigerVNC might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: A vulnerability in XStream may allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in systemd, the worst of which may allow execution of arbitrary code.
security update
LinuxSecurity.com: Security fix for CVE-2016-6318
LinuxSecurity.com: This updates adds a patch to fix CVE-2016-9573 and CVE-2016-9572.
LinuxSecurity.com: update
LinuxSecurity.com: Multiple heap overflows in SoX may allow remote attackers to execute arbitrary code.
LinuxSecurity.com: A vulnerability in Docker could lead to the escalation of privileges.
LinuxSecurity.com: Multiple vulnerabilities have been found in VirtualBox, the worst of which allows local users to escalate privileges.
LinuxSecurity.com: Two vulnerabilities have been found in exFAT allowing remote attackers to execute arbitrary code or cause Denial of Service.
LinuxSecurity.com: Multiple heap overflows in SoX may allow remote attackers to execute arbitrary code.
LinuxSecurity.com: A heap-based buffer overflow vulnerability in libmms might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: update
LinuxSecurity.com: A vulnerability in Docker could lead to the escalation of privileges.
LinuxSecurity.com: Multiple vulnerabilities have been found in VirtualBox, the worst of which allows local users to escalate privileges.
security update
security update
LinuxSecurity.com: An update for python-XStatic-jquery-ui is now available for Red Hat OpenStack Platform 8.0 (Liberty). Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: An update for python-XStatic-jquery-ui is now available for Red Hat OpenStack Platform 9.0 (Mitaka). Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: Security fix for CVE-2016-8740
LinuxSecurity.com: An update for rh-mariadb100-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: An update for rh-mariadb101-mariadb is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…]
security update
LinuxSecurity.com: Multiple vulnerabilities have been found in OpenJPEG, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: A vulnerability in CrackLib could lead to the execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities were found in Binutils, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in socat, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: A vulnerability in Coreutils could lead to the execution of arbitrary code or a Denial of Service condition.
LinuxSecurity.com: Multiple vulnerabilities were found in SQLite, the worst of which may allow execution of arbitrary code.
LinuxSecurity.com: A buffer overflow in jq might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Security fix for CVE-2016-7433, CVE-2016-7426, CVE-2016-7429, CVE-2016-9310,CVE-2016-9311
LinuxSecurity.com: Update to the latest upstream release, which fixes CVE-2016-8704, CVE-2016-8705,CVE-2016-8706.
LinuxSecurity.com: phpMyAdmin 4.6.5.1 (2016-11-26) =============================== A patch-levelrelease fixing two small issues: * an issue affecting a small number of usersusing $cfg[‘Servers’][$i][‘hide_db’] or $cfg[‘Servers’][$i][‘only_db’]. * anissue affecting the create table dialog where the partition selection tool wasoverzealous and made it difficult to create a new table. There are also minorimprovements to the Czech language file. phpMyAdmin […]
LinuxSecurity.com: php-gettext 1.0.12 ================== * Security fix for potential codeinjection bug (LP#1515334) * Do not assume mbstring functions are alwaysthere, pass text through if they aren’t (LP#734494)
LinuxSecurity.com: Security fix for CVE-2016-7433, CVE-2016-7426, CVE-2016-7429, CVE-2016-9310,CVE-2016-9311
LinuxSecurity.com: An update for sudo is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: The 4.8.11 stable kernel update contains a number of important fixes across thetree.
LinuxSecurity.com: Add fix for gstreamer FLIC decoder vulnerability
LinuxSecurity.com: Fix Integer overflow when allocating render buffer in vmnc decoder
LinuxSecurity.com: New upstream vesion, 1.17.27 . Security fix for CVE-2015-0860
LinuxSecurity.com: An update for bind is now available for Red Hat Enterprise Linux 6.2 Advanced Update Support, Red Hat Enterprise Linux 6.4 Advanced Update Support, Red Hat Enterprise Linux 6.5 Advanced Update Support, Red Hat Enterprise Linux 6.5 Telco Extended Update Support, Red Hat Enterprise [More…]
LinuxSecurity.com: Multiple vulnerabilities have been found in ARJ, the worst of which may allow attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in Mercurial, the worst of which could lead to the remote execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in OpenSSH, the worst of which allows remote attackers to cause Denial of Service.
LinuxSecurity.com: A buffer overflow in PECL HTTP might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in OpenSSL, the worst of which allows attackers to conduct a time based side-channel attack.
