* bsc#1222548 Cross-References: * CVE-2024-2511
* bsc#1222548 Cross-References: * CVE-2024-2511
* bsc#1223690 Cross-References: * CVE-2024-29040
* bsc#1223687 * bsc#1223689 Cross-References: * CVE-2024-29038
Fraudulent security certificates could allow access controls to be bypassed.
This release fixes various issues in shim bootloader and updates it to a supported version. Older versions of the shim may eventually be blocked by Secure Boot, so it is strongly advised for Secure Boot enabled systems to upgrade to this newer version to keep the system bootable.
* bsc#1094832 * bsc#1200551 Cross-References: * CVE-2018-11490
* bsc#1218862 * bsc#1218865 Cross-References: * CVE-2024-0553
* bsc#1218571 * bsc#1219238 Cross-References: * CVE-2023-7207
An update that fixes four vulnerabilities is now available.
An update that fixes 35 vulnerabilities is now available.
It was discovered that missing input sanitising in the Atril document viewer could result in writing arbitrary files in the users home directory if a malformed epub document is opened.
Multiple vulnerabilities have been discovered in PoDoFo, the worst of which could lead to code execution.
Multiple vulnerabilities have been discovered in Mozilla Thunderbird, the worst of which could lead to remote code execution.
A vulnerability has been discovered in Kubelet, which can lead to privilege escalation.
A vulnerability has been discovered in Rebar3, which can lead to command injection.
update to 124.0.6367.201 * High CVE-2024-4671: Use after free in Visuals
https://security-tracker.debian.org/tracker/DSA-5688-1
More than 40,000 security experts descended on San Francisco this week. Let’s now look back on some of the event’s highlights – including the CISA-led ‘Secure by Design’ pledge also signed by ESET.
Can AI effortlessly thwart all sorts of cyberattacks? Let’s cut through the hyperbole surrounding the tech and look at its actual strengths and limitations.
update to 124.0.6367.155 High CVE-2024-4558: Use after free in ANGLE High CVE-2024-4559: Heap buffer overflow in WebAudio
Security fix for CVE-2023-45681 / CVE-2023-47212
Security fix for CVE-2023-45681 / CVE-2023-47212
update to 124.0.6367.155 High CVE-2024-4558: Use after free in ANGLE High CVE-2024-4559: Heap buffer overflow in WebAudio
https://www.mediawiki.org/wiki/Release_notes/1.41
Fix for CVE-2024-2397
* bsc#1222849 Cross-References: * CVE-2024-32487
* bsc#1216644 * bsc#1219079 * bsc#1219435 * bsc#1220828
* bsc#1218424 * bsc#1224017 * bsc#1224018 Cross-References:
* bsc#1212475 * bsc#1224017 Cross-References: * CVE-2024-24787
* bsc#1223852 Cross-References: * CVE-2023-52722
* bsc#1223979 Cross-References: * CVE-2024-34069
https://security-tracker.debian.org/tracker/DSA-5687-1
https://security-tracker.debian.org/tracker/DSA-5685-1
Congratulations, graduates! As you gear up for life after high school or college, you’re stepping into a world of exciting firsts—new jobs, new homes, and new adventures. There’s one first you might not have considered: your first identity protection plan. Why is identity protection important? Let’s dive in. Why protecting your identity matters Imagine this: […]
* bsc#1223100 Cross-References: * CVE-2023-3758
* bsc#1223852 Cross-References: * CVE-2023-52722
* bsc#1216853 Cross-References: * CVE-2023-38472
* bsc#1222492 Cross-References: * CVE-2024-21506
* bsc#1223979 Cross-References: * CVE-2024-34069
* bsc#1218424 * bsc#1224017 * bsc#1224018 Cross-References:
https://security-tracker.debian.org/tracker/DSA-5686-1
https://security-tracker.debian.org/tracker/DSA-5682-2
https://security-tracker.debian.org/tracker/DSA-5684-1
https://security-tracker.debian.org/tracker/DSA-5682-1
As Starmus Earth draws near, we caught up with Dr. Garik Israelian to celebrate the fusion of science and creativity and venture where imagination flourishes and groundbreaking ideas take flight
* bsc#1189495 * bsc#1211301 * bsc#1219559 * bsc#1219666 * bsc#1221260
* bsc#1189495 * bsc#1191175 * bsc#1218686 Cross-References:
Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in root privilege escalation.
A vulnerability has been discovered in Epiphany, which can lead to a buffer overflow.
Multiple vulnerabilities have been discovered in qtsvg, the worst of which could lead to a denial of service.
Multiple vulnerabilities have been discovered in MariaDB, the worst fo which can lead to arbitrary execution of code.
https://security-tracker.debian.org/tracker/DSA-5683-1
