https://security-tracker.debian.org/tracker/DSA-5760-1
Several security issues were fixed in the Linux kernel.
* bsc#1228696 * bsc#1228697 * bsc#1228698 Cross-References:
CVE-2024-23184: A large number of address headers in email resulted in excessive CPU usage. CVE-2024-23185: Abnormally large email headers are now truncated or discarded, with a limit of 10MB on a single header and 50MB for all the headers of all the parts of an email.
CVE-2024-23184: A large number of address headers in email resulted in excessive CPU usage. CVE-2024-23185: Abnormally large email headers are now truncated or discarded, with a limit of 10MB on a single header and 50MB for all the headers of all the parts of an email.
* bsc#1210619 * bsc#1220145 * bsc#1220537 * bsc#1222685 * bsc#1223059
* bsc#1225202 * bsc#1225302 Cross-References: * CVE-2021-47378
* bsc#1210619 * bsc#1223363 * bsc#1223683 * bsc#1225013 * bsc#1225202
* bsc#1226463 * bsc#1227138 Cross-References: * CVE-2024-5535
* bsc#1225202 Cross-References: * CVE-2021-47378
* bsc#1225202 * bsc#1225302 Cross-References: * CVE-2021-47378
Multiple security issues were discovered in Python, a high-level, interactive, object-oriented language: CVE-2024-0397
* bsc#1225983 Cross-References: * CVE-2024-21096
* bsc#1225202 Cross-References: * CVE-2021-47378
https://security-tracker.debian.org/tracker/DSA-5759-1
* bsc#1027519 * bsc#1227355 * bsc#1228574 * bsc#1228575
Several vulnerabilities were discovered in Apache Traffic Server, a reverse and forward proxy server, which could result in denial of service or request smuggling.
Security: processing of a specially crafted mp4 file by the ngx_http_mp4_module might cause a worker process crash (CVE-2024-7347). Thanks to Nils Bars.
Security: processing of a specially crafted mp4 file by the ngx_http_mp4_module might cause a worker process crash (CVE-2024-7347). Thanks to Nils Bars.
Security: processing of a specially crafted mp4 file by the ngx_http_mp4_module might cause a worker process crash (CVE-2024-7347). Thanks to Nils Bars.
Security: processing of a specially crafted mp4 file by the ngx_http_mp4_module might cause a worker process crash (CVE-2024-7347). Thanks to Nils Bars.
https://security-tracker.debian.org/tracker/DSA-5758-1
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
* bsc#1224188 Cross-References: * CVE-2021-36386
* bsc#1129596 Cross-References: * CVE-2019-9656
Phishing using PWAs? ESET Research’s latest discovery might just ruin some users’ assumptions about their preferred platform’s security
An update that fixes 20 vulnerabilities is now available.
* bsc#1228574 * bsc#1228575 Cross-References: * CVE-2024-31145
* bsc#1226316 * bsc#1228648 Cross-References: * CVE-2024-6600
* bsc#1219559 * bsc#1221563 Cross-References: * CVE-2023-52425
* bsc#1228613 * bsc#1228693 * bsc#1228694 * bsc#1228695 * bsc#1228696
Bump to version 5.9.4
https://security-tracker.debian.org/tracker/DSA-5757-1
Should the payment of a ransomware demand be illegal? Should it be regulated in some way? These questions are some examples of the legal minefield that cybersecurity teams must deal with
* bsc#1224044 Cross-References: * CVE-2024-34397
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in QEMU.
Fix web process cache suspend/resume when sandbox is enabled. Fix accelerated images disappearing after scrolling. Fix video flickering with DMA-BUF sink. Fix pointer lock on X11. Fix movement delta on mouse events in GTK3.
