LinuxSecurity.com: joernchen of Phenoelit discovered that git, a fast, scalable, distributed revision control system, is prone to an arbitrary code execution vulnerability via a specially crafted .gitmodules file in a project cloned with –recurse-submodules.
LinuxSecurity.com: Security fix for CVE-2018-17336
LinuxSecurity.com: Security fix for CVE-2018-16435
LinuxSecurity.com: Security fix for CVE-2018-10897
LinuxSecurity.com: An update that fixes one vulnerability is now available.
Striking the balance between supply, demand and safety is a major concern The post Virus Bulletin 2018: Supply chain hacking grows up appeared first on WeLiveSecurity
LinuxSecurity.com: An update that solves two vulnerabilities and has three fixes is now available.
LinuxSecurity.com: An update that fixes 10 vulnerabilities is now available.
LinuxSecurity.com: An update that solves one vulnerability and has one errata is now available.
LinuxSecurity.com: An update that fixes three vulnerabilities is now available.
What are some essential steps you can take to increase your online safety – now and in the long run? The post Make it a cyber-habit: Five simple steps to staying safe online appeared first on WeLiveSecurity
Reading Time: ~2 min.Brazilian Bank Traffic Rerouted by Massive Botnet A botnet containing more than 100,000 routers and other devices was recently spotted hijacking traffic destined for several Brazilian banks. The hijacking victims are then sent to one of at least 50 confirmed phishing sites that will attempt to steal any information the user will […]
LinuxSecurity.com: Use a more restrictive blacklist in several policy abstractions.
LinuxSecurity.com: Several security issues were fixed in ImageMagick.
security update
LinuxSecurity.com: Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
LinuxSecurity.com: An update that fixes three vulnerabilities is now available.
Answers could help raise awareness of situations that people fear The post Why ask the public about cybercrime and cybersecurity? appeared first on WeLiveSecurity
LinuxSecurity.com: dnsmasq, a DNS forwarder and DHCP server, ships the DNS Root Zone Key Signing Key (KSK), used as the DNSSEC trust anchor. ICANN will rollover the KSK in 11 October 2018, and DNS resolvers will need the new key
Some tips for helping to keep your data more secure from the floor of VB 2018 The post Virus Bulletin 2018: Attack velocity ramps up appeared first on WeLiveSecurity
LinuxSecurity.com: Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
LinuxSecurity.com: The package python-django before version 2.1.2-1 is vulnerable to information disclosure.
LinuxSecurity.com: Several security issues were fixed in the Apache HTTP Server.
LinuxSecurity.com: Two security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code inside the sandboxed content process.
LinuxSecurity.com: Several security vulnerabilities were discovered in ImageMagick, an image manipulation program, that allow remote attackers to cause denial of service (application crash, excessive memory allocation, or other
LinuxSecurity.com: An update is now available for Red Hat JBoss Web Server 5.0 for RHEL 6 and Red Hat JBoss Web Server 5.0 for RHEL 7. Red Hat Product Security has rated this release as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
LinuxSecurity.com: An update is now available for Red Hat JBoss Web Server 5.0 for RHEL 6 and Red Hat JBoss Web Server 5.0 for RHEL 7. Red Hat Product Security has rated this release as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
LinuxSecurity.com: Several security issues were fixed in Liblouis.
The social networking behemoth is expected to face a formal investigation by Ireland’s Data Protection Commission in what could be the “acid test” of GDPR since the law became effective in May The post Facebook: No evidence attackers used stolen access tokens on third-party sites appeared first on WeLiveSecurity
LinuxSecurity.com: Several security issues were fixed in WebKitGTK+.
Some online resources that will help you find the most suitable IT forensic tools for each case The post IT forensic tools: How to find the right one for each incident appeared first on WeLiveSecurity
LinuxSecurity.com: New mozilla-firefox packages are available for Slackware 14.2 and -current to fix a security issue.
LinuxSecurity.com: Multiple vulnerabilities have been found in Mozilla Firefox, the worst of which may allow execution of arbitrary code.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
security update
LinuxSecurity.com: Add few patches from Kurt Roeckx
LinuxSecurity.com: – Update to bind-9.11.4-P2 – Add /dev/urandom to chroot (#1631515) – Fix multilib conflicts of devel package – Add support for OpenSSL provided random data
LinuxSecurity.com: This is an update to Mozilla’s CA certificates list version 2.26, which has been published as part of Mozilla NSS 3.39. For additional details, please refer to the NSS 3.39 release notes: https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.39_release_notes
LinuxSecurity.com: Security fix for CVE-2018-17294
LinuxSecurity.com: Update to 1.8.14, which includes fix for CVE-2018-14645.
LinuxSecurity.com: 4.1.5 GA —- 4.1.4 GA Security Fix for CVE-2018-10904 Security Fix for CVE-2018-10907 Security Fix for CVE-2018-10911 Security Fix for CVE-2018-10913 Security Fix for CVE-2018-10914 Security Fix for CVE-2018-10923 Security Fix for CVE-2018-10926 Security Fix for CVE-2018-10927 Security Fix for CVE-2018-10928 Security Fix for CVE-2018-10929 Security Fix for CVE-2018-10930 —- missing
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Worm.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low.
WeLiveSecurity is happy to support the European Cyber Security Month (ECSM) with its own “two cents”, split into four articles over the course of October that will be dedicated to promoting the campaign’s goals The post Why keeping your cyber-wits about you matters appeared first on WeLiveSecurity
LinuxSecurity.com: An update that solves 5 vulnerabilities and has four fixes is now available.
