This package allowed ../ directory traversal to access private resources because resource matching did not ensure that pathnames were in a canonical format.
An update that fixes one vulnerability is now available.
An update that fixes two vulnerabilities is now available.
An update that solves one vulnerability and has one errata is now available.
An update that fixes one vulnerability is now available.
Several security issues were fixed in Pillow.
An update that solves two vulnerabilities and has one errata is now available.
Several security issues were fixed in systemd.
What is it like to defeat cybercrime? A peek into how computer forensics professionals help bring cybercriminals to justice. The post How to catch a cybercriminal: Tales from the digital forensics lab appeared first on WeLiveSecurity
An update that fixes one vulnerability is now available.
OpenSMTPD could be made to run programs as root if it received specially crafted input over the network.
ipa: Denial of service in IPA server due to wrong use of ber_scanf() (CVE-2019-14867) * ipa: Batch API logging user passwords to /var/log/httpd/error_log (CVE-2019-10195) SL7 x86_64 ipa-client-4.6.5-11.el7_7.4.x86_64.rpm ipa-debuginfo-4.6.5-11.el7_7.4.x86_64.rpm ipa-server-4.6.5-11.el7_7.4.x86_64.rpm ipa-server-trust-ad-4.6.5-11.el7_7.4.x86_64.rpm noarch ipa-client-co [More…]
hw: TSX Transaction Asynchronous Abort (TAA) (CVE-2019-11135) * QEMU: slirp: heap buffer overflow during packet reassembly (CVE-2019-14378) SL7 x86_64 qemu-img-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-common-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-debuginfo-1.5.3-167.el7_7.4.x86_64.rpm qemu-kvm-tools-1.5.3-167.el7_7.4.x86_64.rpm – Scien [More…]
security update
A helmet may not be enough to keep you safe(r) while riding an e-scooter The post Electric scooters vulnerable to remote hacks appeared first on WeLiveSecurity
An update that fixes three vulnerabilities is now available.
An update that fixes three vulnerabilities is now available.
An update that fixes three vulnerabilities is now available.
Several security issues were fixed in SpamAssassin.
As Facebook turns 16, we look at how to keep your personal information safe from prying eyes The post Facebook privacy settings: Protect your data with these tips appeared first on WeLiveSecurity
An update that fixes 5 vulnerabilities is now available.
An update that fixes one vulnerability is now available.
security update
As the tide of phishing attacks rises, improving your scam-spotting skills is never a bad idea The post Would you get hooked by a phishing scam? Test yourself appeared first on WeLiveSecurity
An update that solves 10 vulnerabilities and has 11 fixes is now available.
Sudo could allow unintended access to the administrator account.
