libvirt-domain.c in libvirt supports virDomainGetTime API calls by guest agents with an RO connection, even though an RW connection was supposed to be required. This could lead to could lead to potentially disclosing unintended
An update that fixes two vulnerabilities is now available.
An update for openstack-neutron is now available for Red Hat OpenStack Platform 14.0 (Rocky). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Dovecot could be made to crash if it received specially crafted network traffic.
An update for openstack-neutron is now available for Red Hat OpenStack Platform 13.0 (Queens). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update for openstack-ceilometer is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which
An update for openstack-neutron, openstack-neutron-lbaas, and python-networking-bigswitch is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact
An update for openstack-cinder is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
An update is now available for Red Hat Ceph Storage 3.2. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
A minor version update (from 7.2 to 7.3) is now available for Red Hat Fuse. The purpose of this text-only errata is to inform you about the security issues fixed in this release. Red Hat Product Security has rated this update as having a security impact
An update that solves three vulnerabilities and has four fixes is now available.
WavPack could be made to crash if it received a speciallycrafted file.
Criminal activities against accountants on the rise – Buhtrap and RTM still active The post Buhtrap backdoor and ransomware distributed via major advertising platform appeared first on WeLiveSecurity
security update
An update that fixes two vulnerabilities is now available.
An update that solves one vulnerability and has four fixes is now available.
An update that solves two vulnerabilities and has three fixes is now available.
An update that fixes two vulnerabilities is now available.
An update that solves 11 vulnerabilities and has one errata is now available.
An update for rh-python35-python is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Evince could be made to expose sensitive information if it receiveda specially crafted file.
Several security issues were fixed in MySQL.
GStreamer Base Plugins could be made to crash or run programs if it received specially crafted network traffic.
An update that solves one vulnerability and has one errata is now available.
An update that fixes one vulnerability is now available.
An update that solves one vulnerability and has one errata is now available.
An update that fixes 16 vulnerabilities is now available.
An update that fixes 7 vulnerabilities is now available.
An update that fixes four vulnerabilities is now available.
An update that solves 8 vulnerabilities and has one errata is now available.
An update that fixes 8 vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
An update that fixes 6 vulnerabilities is now available.
An update that fixes two vulnerabilities is now available.
An update that solves 5 vulnerabilities and has three fixes is now available.
An update that fixes one vulnerability is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that solves one vulnerability and has three fixes is now available.
An update that solves one vulnerability and has two fixes is now available.
An update that solves one vulnerability and has one errata is now available.
An update that solves one vulnerability and has one errata is now available.
An update that solves one vulnerability and has one errata is now available.
A use-after-free vulnerability was discovered in the png_image_free() function in the libpng PNG library, which could lead to denial of service or potentially the execution of arbitrary code if a malformed image is processed.
security update
An update that solves 13 vulnerabilities and has one errata is now available.
An update that fixes two vulnerabilities is now available.
An update that solves two vulnerabilities and has one errata is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
Reading Time: ~4 min. Today we chat with Web Analyst Manager Serena Peruzzi. Serena constantly filters through the web to analyze content. Sometimes her position requires looking through difficult material, but other times you can find her traveling, organizing company events, and even gardening! See how Serena helps build Webroot’s company culture in this Employee […]
Zack Flack found several issues in monit, a utility for monitoring and managing daemons or similar programs.
Hanno Bck discovered that GNOME Evolution is prone to OpenPGP signatures being spoofed for arbitrary messages using a specially crafted HTML email. This issue was mitigated by moving the security
Reading Time: ~2 min. Hackers Breach Private Keys to Steal Cryptocurrency A possible coding error allowed hackers to compromise at least 732 unique, improperly secured private keys used in the Ethereum blockchain. By exploiting a vulnerability, hackers have successfully stolen 38,000 Ethereum coins so far, translating to over $54 million in stolen funds, though the […]
An update that fixes two vulnerabilities is now available.
An update that solves three vulnerabilities and has four fixes is now available.
In the recently uploaded systemd security update (215-17+deb8u12 via DLA-1762-1), a regression was discovered in the fix for CVE-2017-18078.
An update that solves two vulnerabilities and has three fixes is now available.
An update that fixes one vulnerability is now available.
