git: Remote code execution in recursive clones with nested submodules (CVE-2019-1387) SL7 x86_64 git-1.8.3.1-21.el7_7.x86_64.rpm git-daemon-1.8.3.1-21.el7_7.x86_64.rpm git-debuginfo-1.8.3.1-21.el7_7.x86_64.rpm git-gnome-keyring-1.8.3.1-21.el7_7.x86_64.rpm git-svn-1.8.3.1-21.el7_7.x86_64.rpm noarch emacs-git-1.8.3.1-21.el7_7.noarch.rpm emacs-git-el-1.8.3.1-21.el [More…]
OpenJDK: Use of unsafe RSA-MD5 checkum in Kerberos TGS (Security, 8229951) (CVE-2020-2601) * OpenJDK: Serialization filter changes via jdk.serialFilter property modification (Serialization, 8231422) (CVE-2020-2604) * OpenJDK: Improper checks of SASL message properties in GssKrb5Base (Security, 8226352) (CVE-2020-2590) * OpenJDK: Incorrect isBuiltinStreamHandler causing URL normalization iss [More…]
An update for rh-dotnet30-dotnet and rh-dotnet31-dotnet is now available for .NET Core on Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which
An update is now available for Red Hat Process Automation Manager. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
An update is now available for Red Hat Decision Manager. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
An ESET-commissioned survey sheds light on the browsing habits of Australians and how they protect themselves online The post Cyberawareness in Australia: The good and the bad appeared first on WeLiveSecurity
An update that solves three vulnerabilities and has three fixes is now available.
The company will also soon launch anti-fingerprinting measures aimed at detecting and mitigating covert tracking and workarounds The post Google to end support for third‑party cookies in Chrome appeared first on WeLiveSecurity
An update that solves one vulnerability and has three fixes is now available.
Applications using libpcap could be made to crash if given specially crafted data.
An update that fixes three vulnerabilities is now available.
An update that fixes 7 vulnerabilities is now available.
Upstream details at : https://access.redhat.com/errata/RHSA-2020:0085
Several security issues were fixed in PHP.
The US intelligence agency expects attackers to waste no time in developing tools aimed at exploiting the vulnerability The post Microsoft patches severe Windows flaw after tip‑off from NSA appeared first on WeLiveSecurity
security update
Multiple cable modem models from various manufacturers found vulnerable to takeover attacks The post Millions of modems at risk of remote hijacking appeared first on WeLiveSecurity
An update that fixes four vulnerabilities is now available.
An update that fixes one vulnerability is now available.
Upstream details at : https://access.redhat.com/errata/RHSA-2020:0086
An update for kernel is now available for Red Hat Enterprise Linux 7.4 Advanced Update Support, Red Hat Enterprise Linux 7.4 Telco Extended Update Support, and Red Hat Enterprise Linux 7.4 Update Services for SAP Solutions.
Today, Microsoft is officially pulling the plug on its support for Windows 7. What’s your plan? The post Windows 7 end of life: Time to move on appeared first on WeLiveSecurity
Several security issues were fixed in SDL_image.
A heap-based buffer overflow in _cairo_image_surface_create_from_jpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in gThumb and Pix
When it comes to protection against this insidious type of scam, the telcos’ authentication procedures leave a lot be desired, a study finds The post 5 major US wireless carriers vulnerable to SIM swapping attacks appeared first on WeLiveSecurity
An update that solves one vulnerability and has 10 fixes is now available.
An update that fixes one vulnerability is now available.
Updated makepasswd fix insecure default length of password By default, makepasswd generates password with a length between 6 to 8 characters (48 to 64bits). This update raise the default to 16 characters (128 bits).
GraphicsMagick has been updated to fix security issues. References: – https://bugs.mageia.org/show_bug.cgi?id=26056 – http://www.graphicsmagick.org/NEWS.html#december-24-2019
This update is based on upstream 5.4.10 and fixes atleast the following security issues: ext4_empty_dir in fs/ext4/namei.c in the Linux kernel through 5.3.12 allows a NULL pointer dereference because ext4_read_dirblock(inode,0,DIRENT_HTREE)
Updated unbound package to version 1.9.6 to fix various potential security vulnerabilities. References: – https://bugs.mageia.org/show_bug.cgi?id=25974
An update that fixes four vulnerabilities is now available.
Fixes bugzilla 1126076
Update to v1.15.7 (CVE-2018-1002102 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints)
New bugfix and security upstream release, see http://www.graphicsmagick.org/NEWS.html#december-24-2019
1.5.7, fix for CVE-2019-13107
Release of 19.05.5. Closes security issues CVE-2019-19727, CVE-2019-19728.
An update that fixes one vulnerability is now available.
An update that fixes four vulnerabilities is now available.
security update
New mozilla-thunderbird packages are available for Slackware 14.2 and -current to fix security issues.
