Menu

Category Archives: Security

Articles about security

New expat packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues.

Ukraine blames Belarus for PC-wiping ‘ransomware’ that has no recovery method and nukes target boxen
Pulling Back the Curtain: About LinuxSecurity.com>
Umbrella company Parasol Group confirms cyber attack as ‘root cause’ of prolonged network outage

An update that fixes 24 vulnerabilities is now available.

Several security issues were fixed in Pillow.

An update for httpd is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

A bad day in the office for the REvil ransomware gang, as Russia arrests 14 members
Data-wiping malware hitting Ukrainian computers displays fake ransom demand

Update to 1.12.3 Fixes these two security issues: * CVE-2021-43860 or https://github.com/flatpak/flatpak/security/advisories/GHSA-qpjc-vq3c-572j * CVE-2022-21682 or https://github.com/flatpak/flatpak/security/advisories/GHSA-8ch7-5j3h-g4fx Full release notes: https://github.com/flatpak/flatpak/releases/tag/1.12.3

It was discovered that sphinxsearch, a fast standalone full-text SQL search engine, could allow arbitrary files to be read by abusing a configuration option.

North Korea pulled in $400m in cryptocurrency heists last year – report

Multiple security issues were discovered in Thunderbird, which could result in denial of service or the execution of arbitrary code. For Debian 9 stretch, these problems have been fixed in version

Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, information disclosure, denial of service or spoofing.

security update

security update

Security fix for CVE-2021-4122

– kombu 5.2.3: https://github.com/celery/kombu/blob/master/Changelog.rst#523 – celery 5.2.3: https://github.com/celery/celery/blob/master/Changelog.rst#523

– kombu 5.2.3: https://github.com/celery/kombu/blob/master/Changelog.rst#523 – celery 5.2.3: https://github.com/celery/celery/blob/master/Changelog.rst#523

Update to 0.9.6, see https://github.com/uriparser/uriparser/blob/uriparser-0.9.6/ChangeLog for details.

Network Intrusion Detection Using Snort>

CPAN 2.28 allows Signature Verification Bypass. (CVE-2020-16156) References: – https://bugs.mageia.org/show_bug.cgi?id=29878 – https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/SZ32AJIV4RHJMLWLU5QULGKMMIHYOMDC/

This update provides Mbed TLS 2.16.12, with a number of bug fixes and a security fix. Mbed TLS has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure. (CVE-2021-44732)

A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp. (CVE-2021-3997) References:

CWE-122 Heap-based Buffer Overflow (CVE-2021-4136) CWE-125 Out-of-bounds Read (CVE-2021-4166) CWE-416 Use After Free (CVE-2021-4173) CWE-416 Use After Free (CVE-2021-4187)

Buffer overflow vulnerability in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp. (CVE-2021-40985) References:

Russia starts playing by the rules: FSB busts 14 REvil ransomware suspects

security update

The 5.15.14 stable kernel update contains a number of important fixes across the tree.

Top Illicit Carding Marketplace UniCC Abruptly Shuts Down  
Making loyalty pay: How to keep your loyalty rewards safe from scammers

Is loyalty fraud on your radar? Here’s why your hard-earned reward points and air miles may be easy pickings for cybercriminals. The post Making loyalty pay: How to keep your loyalty rewards safe from scammers appeared first on WeLiveSecurity

Real Big Phish: Mobile Phishing & Managing User Fallibility
Critical Cisco Contact Center Bug Threatens Customer-Service Havoc
Multi-day IT systems outage whacks umbrella biz Parasol Group amid fears of a cyber attack
‘Be Afraid:’ Massive Cyberattack Downs Ukrainian Gov’t Sites
Talking cyber on the ManageEngine Insights podcast
Ukraine shrugs off mass govt website defacement as world turns to stare at Russia
Russian Security Takes Down REvil Ransomware Gang
Three Plugins with Same Bug Put 84K WordPress Sites at Risk
Adobe Cloud Abused to Steal Office 365, Gmail Credentials

kernel: perf_event_parse_addr_filter memory (CVE-2020-25704) * kernel: fuse: fuse_do_getattr() calls make_bad_inode() in inappropriate situations (CVE-2020-36322) * kernel: Heap buffer overflow in firedtv driver (CVE-2021-42739) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE Bug Fix(es): * [More…]

An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

An update for samba is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update is now available for ansible-runner for Red Hat Ansible Automation Platform 2.0 Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Visibility, immutability, security … a revolutionary approach to fighting off ransomware
Microsoft Yanks Buggy Windows Server Updates
Federal Communications Commission proposed stricter rules on how telco carriers should report data breaches
North Korean APTs Stole ~$400M in Crypto in 2021
Orca Security tells AWS fail tale with a happy ending

Security fix for CVE-2021-46059, CVE-2022-0158, CVE-2022-0156

security update

security update

Security fix for CVE-2021-41500. Upstream notes for version 1.2.7 read: “Bug fixes, Python 3.10 compatibility”.

Continuous security and compliance for hybrid cloud, the Red Hat way
US Military Ties Prolific MuddyWater Cyberespionage APT to Iran
Cryptocurrency scams: What to know and how to protect yourself

As you attempt to strike it rich in the digital gold rush, make sure you know how to recognize various schemes that want to part you from your digital coins The post Cryptocurrency scams: What to know and how to protect yourself appeared first on WeLiveSecurity

Ukrainian cops nab husband and wife suspected to be part of $1m ransomware operation
New GootLoader Campaign Targets Accounting, Law Firms
Hackers are posting out malicious USB drives to businesses
Austrian watchdog rules German company’s use of Google Analytics breached GDPR by sending data to US
Admins report Hyper-V and domain controller issues after first Patch Tuesday of 2022

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

This update upgrades Thunderbird to version 91.5.0. * Mozilla: Iframe sandbox bypass with XSLT (CVE-2021-4140) * Mozilla: Race condition when playing audio files (CVE-2022-22737) * Mozilla: Heap-buffer-overflow in blendGaussianBlur (CVE-2022-22738) * Mozilla: Use-after-free of ChannelEventQueue::mOwner (CVE-2022-22740) * Mozilla: Browser window spoof using fullscreen mode (CVE-2022-22741) [More…]

This update upgrades Firefox to version 91.5.0 ESR. * Mozilla: Iframe sandbox bypass with XSLT (CVE-2021-4140) * Mozilla: Race condition when playing audio files (CVE-2022-22737) * Mozilla: Heap-buffer-overflow in blendGaussianBlur (CVE-2022-22738) * Mozilla: Use-after-free of ChannelEventQueue::mOwner (CVE-2022-22740) * Mozilla: Browser window spoof using fullscreen mode (CVE-2022-22741) [More…]

Several security issues were fixed in Pillow.

Several security issues were fixed in Ghostscript.

Volunteer Dutch flaw finders bag $100k to forward national bug bounty goal

Apache Log4j 1.2 could be made to crash or run programs if it received specially crafted input.

Smashing Security podcast #257: Pokemon-hunting cops and the Spine Collector scammer
Ransomware puts New Mexico prison in lockdown: Cameras, doors go offline
Widespread, Easily Exploitable Windows RDP Bug Opens Users to Data Theft
Amazon, Azure Clouds Host RAT-ty Trio in Infostealing Campaign

security update

security update

Stolen TikTok Videos, Bent on Fraud, Invade YouTube Shorts
New York AG Warns 17 Firms of Credential Attacks
Ransomware demands… a new approach to security
CES 2022: Wireless power for all

We don’t need no stinkin’ wall power as CES shows off the power and promise of usable long-range wireless charging The post CES 2022: Wireless power for all appeared first on WeLiveSecurity

Signed kernel drivers – Unguarded gateway to Windows’ core

ESET researchers look at malware that abuses vulnerabilities in kernel drivers and outline mitigation techniques against this type of exploitation The post Signed kernel drivers – Unguarded gateway to Windows’ core appeared first on WeLiveSecurity

Hackers raided Panasonic server for months, stealing personal data of job seekers
Phishers Rip Off High-Profile EA Gamers

It was discovered that roundcube, a skinnable AJAX based webmail solution for IMAP servers, did not properly sanitize HTML messages. This would allow an attacker to perform Cross-Site Scripting (XSS) attacks.

Info-saturated techie builds bug alert service that phones you to warn of new vulns

An update that fixes two vulnerabilities is now available.

lxml could be made to execute arbitrary code if it received a specially crafted XML or HTML file.

Several security issues were fixed in Ghostscript.

Two issues were found in GDAL, a geospatial library, that could lead to denial of service via application crash or possibly the execution of arbitrary code if maliciously crafted data was parsed.

openssl: Read buffer overruns processing ASN.1 strings (CVE-2021-3712) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE SL7 x86_64 openssl-1.0.2k-23.el7_9.x86_64.rpm openssl-debuginfo-1.0.2k-23.el7_9.i686.rpm openssl-debuginfo-1.0.2k-23.el7_9.x86_64.rpm openssl-libs-1.0.2k-23.e [More…]

Microsoft starts 2022 with big bundle fixes for 96 security bugs in its software
Make sure you’re up-to-date with Sonicwall SMA 100 VPN box patches – security hole exploit info is now out
Here’s REALLY How to Do Zero-Trust Security
Microsoft Faces Wormable, Critical RCE Bug & 6 Zero-Days
MacOS Bug Could Let Creeps Snoop On You
WordPress Bugs Exploded in 2021, Most Exploitable
FIN7 Mails Malicious USB Sticks to Drop Ransomware
CES 2022 – the “anyone can make an electric car” edition

But as we learned in mashing up other technologies, the security devil is in the details The post CES 2022 – the “anyone can make an electric car” edition appeared first on WeLiveSecurity

‘Fully Undetected’ SysJoker Backdoor Malware Targets Windows, Linux & macOS
Critical SonicWall NAC Vulnerability Stems from Apache Mods
Hacking group accidentally infects itself with Remote Access Trojan horse
Millions of Routers Exposed to RCE by USB Kernel Bug