ESET researchers dicovered that Trojanized applications used to steal bitcoin were hosted inadvertently by the popular website download.cnet.com. The post Dangerous malware stealing bitcoin hosted on Download.com for years appeared first on WeLiveSecurity
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
LinuxSecurity.com: The package calibre before version 3.19.0-1 is vulnerable to arbitrary command execution.
LinuxSecurity.com: The package dovecot before version 2.3.0.1-1 is vulnerable to multiple issues including information disclosure and denial of service.
LinuxSecurity.com: Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the execution of arbitrary code.
LinuxSecurity.com: mailman: Cross-site scripting (XSS) vulnerability in web UI (CVE-2018-5950) SL6 x86_64 mailman-2.1.12-26.el6_9.3.x86_64.rpm mailman-debuginfo-2.1.12-26.el6_9.3.x86_64.rpm i386 mailman-2.1.12-26.el6_9.3.i686.rpm mailman-debuginfo-2.1.12-26.el6_9.3.i686.rpm – Scientific Linux Development Team
LinuxSecurity.com: mailman: Cross-site scripting (XSS) vulnerability in web UI (CVE-2018-5950) SL7 x86_64 mailman-2.1.15-26.el7_4.1.x86_64.rpm mailman-debuginfo-2.1.15-26.el7_4.1.x86_64.rpm – Scientific Linux Development Team
LinuxSecurity.com: An update for kernel is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
LinuxSecurity.com: An update for 389-ds-base is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
LinuxSecurity.com: An update for libreoffice is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
LinuxSecurity.com: An update for qemu-kvm is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
Risk Level: Very Low. Type: Trojan.
The attack itself unfolded within the span of two minutes on March 7. Hackers made a flurry of automated transactions that involved the digital currencies Viacoin (VIA) and Bitcoin (BTC). The post Cryptocurrency exchange announces bounty on hackers appeared first on WeLiveSecurity
LinuxSecurity.com: Several vulnerabilities have been discovered in Samba, a SMB/CIFS file, print, and login server for Unix. The Common Vulnerabilities and Exposures project identifies the following issues:
To smuggle the backdoor onto a targeted machine, the group uses a two-stage attack whereby a dropper package first gains a foothold on the system and sets the stage for the backdoor itself. This process involves some trickery commonly associated with targeted operations of this kind. The post OceanLotus ships new backdoor using old tricks […]
security update
LinuxSecurity.com: An update for bind is now available for Red Hat Enterprise Linux 6.4 Advanced Update Support, Red Hat Enterprise Linux 6.5 Advanced Update Support, Red Hat Enterprise Linux 6.6 Advanced Update Support, Red Hat Enterprise Linux 6.6 Telco Extended Update Support, and Red Hat Enterprise
We live in the future. Not one with teleportation, time travel, or flying cars, but one where talking to inanimate objects is the “normal,” even “cool” thing to do. According to The Smart Audio Report from NPR and Edison Research, 39 million people now own an interactive, voice-activated smart speaker and, in just a few […]
LinuxSecurity.com: An update is now available for Red Hat OpenShift Container Platform 3.7, 3.6, 3.5, 3.4, and 3.3. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
LinuxSecurity.com: dhcp: Buffer overflow in dhclient possibly allowing code execution triggered by malicious server (CVE-2018-5732) * dhcp: Reference count overflow in dhcpd allows denial of service (CVE-2018-5733) SL7 x86_64 dhclient-4.2.5-58.el7_4.3.x86_64.rpm dhcp-common-4.2.5-58.el7_4.3.x86_64.rpm dhcp-debuginfo-4.2.5-58.el7_4.3.i686.rpm dhcp-debuginfo-4.2.5-58.el7_4.3.x86_64.rpm dhcp [More…]
LinuxSecurity.com: An update for bind is now available for Red Hat Enterprise Linux 7.2 Advanced Update Support, Red Hat Enterprise Linux 7.2 Telco Extended Update Support, Red Hat Enterprise Linux 7.2 Update Services for SAP Solutions, and Red Hat Enterprise Linux 7.3 Extended Update Support.
LinuxSecurity.com: Update to latest version. Security-Fixes TROVE-2018-001, TROVE-2018-002,
LinuxSecurity.com: An update for dhcp is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Risk Level: Very Low. Type: Trojan.
LinuxSecurity.com: Updated Red Hat Enterprise Messaging, Realtime, and Grid (MRG) Realtime packages that fix multiple security issues and add one enhancement are now available for Red Hat Enterprise MRG 2.5. Red Hat Product Security has rated this update as having Moderate security
LinuxSecurity.com: An update that solves 8 vulnerabilities and has 14 fixes is now available.
security update
LinuxSecurity.com: **PHP version 7.1.15** (01 Mar 2018) **Apache2Handler:** * Fixed bug php#75882 (a simple way for segfaults in threadsafe php just with configuration). (Anatol) **Date:** * Fixed bug php#75857 (Timezone gets truncated when formatted). (carusogabriel) * Fixed bug php#75928 (Argument 2 for `DateTimeZone::listIdentifiers()` should accept `null`). (Pedro Lacerda) * Fixed
LinuxSecurity.com: Bjorn Bosselmann discovered that the umount bash completion from util-linux does not properly handle embedded shell commands in a mountpoint name. An attacker with rights to mount filesystems can take advantage of this flaw for privilege escalation if a user (in particular
LinuxSecurity.com: It was discovered that there were multiple vulnerabilities in the “zsh” shell: * CVE-2014-10070: Fix a privilege-elevation issue if the
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0378
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0377
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0414
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0418
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0406
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0395
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:0469
LinuxSecurity.com: Several security issues were fixed in ClamAV.
LinuxSecurity.com: Several security issues were fixed in Zsh.
Since being founded in 2003, the Italian spyware vendor Hacking Team gained notoriety for selling surveillance tools to governments and their agencies across the world. The capabilities of its flagship product, the Remote Control System (RCS), include extracting files from a targeted device, intercepting emails and instant messaging, as well as remotely activating a device’s […]
