An update that solves one vulnerability and has two fixes is now available.
security update
Upstream details at : https://access.redhat.com/errata/RHSA-2019:1481
Upstream details at : https://access.redhat.com/errata/RHSA-2019:1488
Upstream details at : https://access.redhat.com/errata/RHSA-2019:1492
Locked out and out of luck? The photo-sharing platform is trialing new methods to reunite you with your lost account The post Instagram tests new ways to recover hacked accounts appeared first on WeLiveSecurity
An update that fixes four vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that fixes four vulnerabilities is now available.
An update that solves 9 vulnerabilities and has 9 fixes is now available.
An update that solves 16 vulnerabilities and has two fixes is now available.
An update that fixes four vulnerabilities is now available.
An update that solves one vulnerability and has one errata is now available.
An update that solves 16 vulnerabilities and has two fixes is now available.
The package linux before version 5.1.11.arch1-1 is vulnerable to denial of service.
The package linux-lts before version 4.19.52-1 is vulnerable to denial of service.
The package linux-zen before version 5.1.11.zen1-1 is vulnerable to denial of service.
An update for gvfs is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update for kernel is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
ESET analysis uncovers a novel technique bypassing SMS-based two-factor authentication while circumventing Google’s recent SMS permissions restrictions The post Malware sidesteps Google permissions policy with new 2FA bypass technique appeared first on WeLiveSecurity
security update
Multiple security issues have been found in Thunderbird which may lead to the execution of arbitrary code if malformed email messages are read. For the stable distribution (stretch), these problems have been fixed in
It was discovered that there was a code injection issue in PyXDG, a library used to locate “FreeDesktop.org” configuration/cache/etc. directories.
security update
An update that fixes 13 vulnerabilities is now available.
An update that fixes 13 vulnerabilities is now available.
An update that fixes 13 vulnerabilities is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
Two vulnerabilities were discovered in the ZNC IRC bouncer which could result in remote code execution (CVE-2019-12816) or denial of service via invalid encoding (CVE-2019-9917).
do not install /usr/libexec/crio – conflicts with crio —- Resolves: #1715668 – CVE-2019-10152
Resolves: #1715758 – CVE-2019-9946
https://lists.wikimedia.org/pipermail/mediawiki-announce/2019-June/000230.html
security update
Reading Time: ~ 2 min. Radiohead Refuses Ransom, Releases Stolen Tracks The band Radiohead recently fell victim to a hack in which 18 hours of previously unreleased sessions were ransomed for $150,000. Rather than pay the ludicrous fee, the band instead opted to release the tracks through Bandcamp for a donation to charity. The unreleased […]
An update that fixes one vulnerability is now available.
An update that fixes four vulnerabilities is now available.
The package thunderbird before version 60.7.1-1 is vulnerable to multiple issues including arbitrary code execution and denial of service.
The package chromium before version 75.0.3770.90-1 is vulnerable to arbitrary code execution.
Joe Vennix discovered an authentication bypass vulnerability in dbus, an asynchronous inter-process communication system. The implementation of the DBUS_COOKIE_SHA1 authentication mechanism was susceptible to a symbolic link attack. A local attacker could take advantage of this flaw
Upstream announcement: Welcome to **phpMyAdmin 4.9.0.1**, a bugfix release that includes important security fixes. This release fixes two security vulnerabilities: * PMASA-2019-3 is an SQL injection flaw in the Designer feature * PMASA-2019-4 is a CSRF attack that’s possible through the ‘cookie’ login form Upgrading is highly recommended for all users. Using the ‘http’
Update to [3.3.8](https://github.com/vakata/jstree/compare/3.3.5…3.3.8).
New mozilla-thunderbird packages are available for Slackware 14.2 and -current to fix security issues.
Update to 1.1.33 and fix CVE-2019-11068
Security fix for CVE-2019-11459.
dovecot updated to 2.3.6, includes several security fixes
Upstream announcement: Welcome to **phpMyAdmin 4.9.0.1**, a bugfix release that includes important security fixes. This release fixes two security vulnerabilities: * PMASA-2019-3 is an SQL injection flaw in the Designer feature * PMASA-2019-4 is a CSRF attack that’s possible through the ‘cookie’ login form Upgrading is highly recommended for all users. Using the ‘http’
