An update that fixes two vulnerabilities is now available.
lxml could be made to execute arbitrary code if it received a specially crafted XML or HTML file.
Several security issues were fixed in Ghostscript.
Two issues were found in GDAL, a geospatial library, that could lead to denial of service via application crash or possibly the execution of arbitrary code if maliciously crafted data was parsed.
openssl: Read buffer overruns processing ASN.1 strings (CVE-2021-3712) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE SL7 x86_64 openssl-1.0.2k-23.el7_9.x86_64.rpm openssl-debuginfo-1.0.2k-23.el7_9.i686.rpm openssl-debuginfo-1.0.2k-23.el7_9.x86_64.rpm openssl-libs-1.0.2k-23.e [More…]
But as we learned in mashing up other technologies, the security devil is in the details The post CES 2022 – the “anyone can make an electric car” edition appeared first on WeLiveSecurity
An update that solves two vulnerabilities, contains one feature and has 13 fixes is now available.
An update that fixes one vulnerability is now available.
Introduced regression Exiv2.
An update that solves one vulnerability and has two fixes is now available.
Several vulnerabilities were discovered in WordPress, a web blogging tool. They allowed remote attackers to perform SQL injection, run unchecked SQL queries, bypass hardening, or perform Cross-Site Scripting (XSS) attacks.
Use-after-free in sampled_data_sample (called from sampled_data_continue and interp). (CVE-2021-45944) Heap-based buffer overflow in sampled_data_finish (called from sampled_data_continue and interp). (CVE-2021-45949)
security update
Version 0.102 of ClamAV, an anti-virus toolkit, is end-of-life. ClamAV has been updated to version 0.103 to be able to receive virus signature updates.
The container suse/sles/15.3/virt-operator was updated. The following patches have been included in this update:
The container suse/sles/15.3/libguestfs-tools was updated. The following patches have been included in this update:
The container suse/sles/15.3/virt-handler was updated. The following patches have been included in this update:
The container suse/sles/15.3/virt-controller was updated. The following patches have been included in this update:
The container suse/sles/15.3/virt-api was updated. The following patches have been included in this update:
Multiple security issues were discovered in Ghostscript, the GPL PostScript/PDF interpreter, which could result in denial of service and potentially the execution of arbitrary code if malformed document files are processed.
It was discovered that roundcube, a skinnable AJAX based webmail solution for IMAP servers, did not properly sanitize HTML messages. This would allow an attacker to perform Cross-Side Scripting (XSS) attacks.
security update
security update
Security fix for CVE-2021-45463
https://www.mediawiki.org/wiki/Release_notes/1.36#MediaWiki_1.36.3
These updated packages fix a buffer overflow in the faces reader.
An update for rh-nodejs14-nodejs and rh-nodejs14-nodejs-nodemon is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
It was discovered that sphinxsearch, a fast standalone full-text SQL search engine, could allow arbitrary files to be read by abusing a configuration option.
2020 may have been the year of establishing remote connectivity and addressing the cybersecurity skills gap, but 2021 presented security experts, government officials and businesses with a series of unpresented challenges. The increased reliance on decentralized connection and the continued rapid expansion of digital transformation by enterprises, small to medium-sized businesses (SMBs) and individuals, provided […]
Security fix for CVE-2021-4136, CVE-2021-4166, CVE-2021-4173, CVE-2021-4186
Add wayland detection and pass flags to improve experience when wayland is used. —- Update to 96.0.4664.110. You know the drill, lots of security bugs fixed, update if you like security, hit that like and subscribe button. CVE-2021-4052 CVE-2021-4053 CVE-2021-4054 CVE-2021-4055 CVE-2021-4056 CVE-2021-4057 CVE-2021-4058 CVE-2021-4059 CVE-2021-4061 CVE-2021-4062 CVE-2021-4063
A sea of sensors will soon influence almost everything in your world The post CES 2022: More sensors than people appeared first on WeLiveSecurity
From social engineering to looking over your shoulder, here are some of the most common tricks that bad guys use to steal passwords The post 5 ways hackers steal passwords (and how to stop them) appeared first on WeLiveSecurity
Several security issues were fixed in WebKitGTK.
Several security issues were fixed in Apache HTTP Server.
Several security issues were fixed in the kernel.
The container bci/openjdk was updated. The following patches have been included in this update:
The container bci/openjdk-devel was updated. The following patches have been included in this update:
The container bci/minimal was updated. The following patches have been included in this update:
Each year, as online shopping ramps up in the weeks before the holidays, so do online scams targeting the elderly. This season – in many ways unprecedented – is no different in this regard. In fact, COVID-19, Zoom meetings, vaccination recommendations and travel warnings all provide ample and unique precedent for social engineering attacks. Not […]
security update
The following updated rpms for Oracle Linux 7 have been uploaded to the Unb= reakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
How can you help your kids navigate Instagram safely? Here are a few tips to help you protect their privacy on the app. The post Instagram and teens: A quick guide for parents to keep their kids safe appeared first on WeLiveSecurity
Several security issues were fixed in Django.
The container sles-15-sp3-chost-byos-v20220103 was updated. The following patches have been included in this update:
The container suse-sles-15-sp3-chost-byos-v20220103-hvm-ssd-x86_64 was updated. The following patches have been included in this update:
The container suse-sles-15-sp3-chost-byos-v20220103-gen2 was updated. The following patches have been included in this update:
