Menu

Latest articles

Type: Vulnerability. Oracle Java SE and Java SE Embedded are prone to a remote vulnerability; fixes are available.

Type: Vulnerability. Oracle Java SE and Java SE Embedded are prone to a remote vulnerability; fixes are available.

Type: Vulnerability. Oracle VM VirtualBox is prone to multiple local security vulnerabilities; fixes are available.

Type: Vulnerability. Oracle Java SE and Java SE Embedded are prone to a remote vulnerability; fixes are available.

Type: Vulnerability. Oracle Java SE and Java SE Embedded are prone to a remote vulnerability; fixes are available.

Type: Vulnerability. Oracle Java SE and Java SE Embedded are prone to a remote vulnerability; fixes are available.

Silent Librarian Retools Phishing Emails to Hook Student Credentials
.WAVs Hide Malware in Their Depths in Innovative Campaign

The package sudo before version 1.8.28-1 is vulnerable to privilege escalation.

Docker Containers Riddled with Graboid Crypto-Worm

An update for openshift-enterprise-builder-container is now available for Red Hat OpenShift Container Platform 4.1. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

JSS: OCSP policy “Leaf and Chain” implicitly trusts the root certificate (CVE-2019-14823) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. SL7 x86_64 jss-4.4.6-3.el7_7.x86_64.rpm jss-debuginfo-4.4.6-3.el7_7.x86_64.rpm jss-javadoc-4.4.6-3.el [More…]

An update is now available for Red Hat OpenShift Container Platform 4.1. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

An update for openshift is now available for Red Hat OpenShift Container Platform 4.1. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Several security issues were fixed in SDL.

Food writer Jack Monroe loses at least £5,000 in SIM-swap fraud

An update for java-11-openjdk is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Pitney Bowes and Groupe M6 join ransomware’s victim list

An update for java-1.8.0-openjdk is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Microsoft lets Xbox users censor what messages they see
#FacebookLockout: Users who report fake/scam accounts locked out

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

Ransomware attack hits Pitney Bowes, impacting company mail rooms around the world

An update for kernel-rt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

security update

Type: Vulnerability. SQLite is prone to a remote heap-based buffer-overflow vulnerability; fixes are available.

Fake iOS Checkra1n jailbreak site installs slot machine game, generates click-fraud revenue

security update

Watch out for this latest LinkedIn phish that’s ‘sent’ by a friend

Type: Vulnerability. IBM Maximo Asset Management is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Juniper Junos is prone to a denial-of-service vulnerability; fixes are available.

Type: Vulnerability. JSS CryptoManager is prone to a security-bypass vulnerability.

Type: Vulnerability. Google Android is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Juniper Junos is prone to a remote denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Juniper Junos is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Multiple SAP Products are prone to an unspecified denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Juniper Junos is prone to a security weakness; fixes are available.

Type: Vulnerability. Google Android is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. WordPress is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Juniper Junos is prone to a session-fixation vulnerability; fixes are available.

Type: Vulnerability. Sudo is prone to a security-bypass vulnerability; fixes are available.

Type: Vulnerability. Siemens SINEMA Remote Connect Server is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Redhat Wildfly is prone to a privilege-escalation; fixes are available.

Type: Vulnerability. Juniper Junos is prone to an HTML-injection vulnerability; fixes are available.

Sure is quiet from Adobe. No security fixes this month? Great job. Oh no, wait, what’s that stampede sound…

Risk Level: Very Low. Type: Trojan.

Streaming devices track viewing habits, study finds

Do you know what kind of data your streaming device may be collecting while you binge watch? The post Streaming devices track viewing habits, study finds appeared first on WeLiveSecurity

Ye olde Blue Screen of Death is back – this time, a bad Symantec update is to blame

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has three fixes is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

An update for jss is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

An update for kpatch-patch is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

A security update is now available for Red Hat JBoss Enterprise Application Platform from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

A security update is now available for Red Hat JBoss Enterprise Application Platform from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

Update now! Windows users targeted by iTunes Software Updater zero-day
Pitney Bowes Hit with Ransomware Attack
A Deepfake Deep Dive into the Murky World of Digital Imitation
Facebook’s Libra cryptocurrency loses all but one payment company

Aspell could be made to expose sensitive information if it received a specially crafted input.

An update that fixes 83 vulnerabilities is now available.

Apple says Tencent isn’t snooping on your browsing habits
350+ hackers hunt down missing people in first such hackathon

An update that fixes one vulnerability is now available.

Type: Vulnerability. Adobe Acrobat and Reader are prone to multiple information-disclosure vulnerabilities; fixes are available.

Type: Vulnerability. Adobe Experience Manager is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. Adobe Experience Manager Forms is prone to a cross-site scripting vulnerability; fixes are available.

Sudo? More like Su-doh: There’s a fun bug that gives restricted sudoers root access (if your config is non-standard)
Apple insists it’s totally not doing that thing it wasn’t accused of: We’re not handing over Safari URLs to Tencent – just people’s IP addresses

Type: Vulnerability. Juniper Junos is prone to a local authorization-bypass vulnerability; fixes are available.

Type: Vulnerability. Google Chrome is prone to multiple security vulnerabilities; fixes are available.

Type: Vulnerability. WebKit is prone to multiple cross-site scripting and memory-corruption vulnerabilities; fixes are available.

Type: Vulnerability. Apple Swift is prone to an information-disclosure vulnerability; fixes are available.

Type: Vulnerability. Apple macOS/iCloud for Windows/iTunes are prone to a buffer overflow vulnerability; fixes are available.

Type: Vulnerability. WebKit is prone to an information-disclosure and a security vulnerability; fixes are available.

Type: Vulnerability. WebKit is prone to a memory-corruption vulnerability; fixes are available.

Type: Vulnerability. Juniper Junos is prone to a local privilege-escalation vulnerability; fixes are available.

Type: Vulnerability. Juniper Junos is prone to a denial-of-service vulnerability; fixes are available.

Type: Vulnerability. Apple macOS is prone to multiple security vulnerabilities; fixes are available.

Pitney Bowes: Can we be frank? Ransomware has borked our dead-tree post systems
Tearoff of Nottingham: University to lose chunk of IT dept to outsourcing
Alleged “Psycho” hacker in court over EtherDelta cryptocurrency robbery
Apple Shares Some Browsing History with Chinese Company
Stalker found pop star by searching eyes’ reflections on Google Maps
Soldering spy chips inside firewalls is now a cheap hack, shows researcher
Computing enthusiast cracks ancient Unix code
Hacker wants $300 for 250,000 records stolen from sex worker site
Connecting the dots: Exposing the arsenal and methods of the Winnti Group

New ESET white paper released describing updates to the malware arsenal and campaigns of this group known for its supply-chain attacks The post Connecting the dots: Exposing the arsenal and methods of the Winnti Group appeared first on WeLiveSecurity

Imperva cloud firewall pwned, D-Link bug uncovered – plus more

An update that fixes 5 vulnerabilities is now available.

An update that fixes 5 vulnerabilities is now available.

This update provides the final 1.3.2 release (previously the package was 1.3.2 beta). It also includes the previously-omitted database schema directory (resolving [#1415753](https://bugzilla.redhat.com/show_bug.cgi?id=1415753)) and rddmarc tools, and backports proposed fixes for a [crasher bug](https://bugzilla.redhat.com/show_bug.cgi?id=1673293) and [security issue

Backport security fixes from [PR#145](https://github.com/libming/libming/pull/145) Fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132

Patch CVE-2019-12412.

– Rebase radare2 to 3.9.0 – Rebase cutter-re to 1.9.0 – fix CVE-2019-14745 in radare2 on F30

– Rebase radare2 to 3.9.0 – Rebase cutter-re to 1.9.0 – fix CVE-2019-14745 in radare2 on F30