Some online resources that will help you find the most suitable IT forensic tools for each case The post IT forensic tools: How to find the right one for each incident appeared first on WeLiveSecurity
LinuxSecurity.com: New mozilla-firefox packages are available for Slackware 14.2 and -current to fix a security issue.
LinuxSecurity.com: Multiple vulnerabilities have been found in Mozilla Firefox, the worst of which may allow execution of arbitrary code.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
security update
LinuxSecurity.com: Security fix for CVE-2018-17294
LinuxSecurity.com: This is an update to Mozilla’s CA certificates list version 2.26, which has been published as part of Mozilla NSS 3.39. For additional details, please refer to the NSS 3.39 release notes: https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.39_release_notes
LinuxSecurity.com: – Update to bind-9.11.4-P2 – Add /dev/urandom to chroot (#1631515) – Fix multilib conflicts of devel package – Add support for OpenSSL provided random data
LinuxSecurity.com: Add few patches from Kurt Roeckx
LinuxSecurity.com: 4.1.5 GA —- 4.1.4 GA Security Fix for CVE-2018-10904 Security Fix for CVE-2018-10907 Security Fix for CVE-2018-10911 Security Fix for CVE-2018-10913 Security Fix for CVE-2018-10914 Security Fix for CVE-2018-10923 Security Fix for CVE-2018-10926 Security Fix for CVE-2018-10927 Security Fix for CVE-2018-10928 Security Fix for CVE-2018-10929 Security Fix for CVE-2018-10930 —- missing
LinuxSecurity.com: Update to 1.8.14, which includes fix for CVE-2018-14645.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Risk Level: Very Low. Type: Trojan, Worm.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low.
WeLiveSecurity is happy to support the European Cyber Security Month (ECSM) with its own “two cents”, split into four articles over the course of October that will be dedicated to promoting the campaign’s goals The post Why keeping your cyber-wits about you matters appeared first on WeLiveSecurity
LinuxSecurity.com: An update that solves 5 vulnerabilities and has four fixes is now available.
LinuxSecurity.com: The package lib32-libxml2 before version 2.9.8-4 is vulnerable to denial of service.
LinuxSecurity.com: The package libxml2 before version 2.9.8-5 is vulnerable to denial of service.
LinuxSecurity.com: The package libxml2 before version 2.9.8-5 is vulnerable to denial of service.
LinuxSecurity.com: The package ntp before version 4.2.8.p12-1 is vulnerable to arbitrary code execution.
LinuxSecurity.com: An update is now available for Red Hat JBoss Fuse 6.3 and Red Hat JBoss A-MQ 6.3. Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
LinuxSecurity.com: Several security issues were fixed in the Linux kernel.
It has yet to be determined whether the accounts were misused or what information was accessed. In the meantime, you can improve your account security with a few easy steps The post 50 million Facebook users affected in breach appeared first on WeLiveSecurity
LinuxSecurity.com: Several security issues were fixed in Ghostscript.
LinuxSecurity.com: An update that fixes four vulnerabilities is now available.
LinuxSecurity.com: Firefox 60 is now the only supported version of the ESR series and it brings a completely new browser engine, designed to take full advantage of the processing power in modern devices. Firefox also now exclusively supports extensions built using the WebExtension API.
The final few months of 2018 will likely be a busy time of year for people and cybercriminals will be no different as they continue to look for weak spots in networks The post Top tips for protecting your Smart TV appeared first on WeLiveSecurity
security update
LinuxSecurity.com: Security fix for CVE-2018-17336
LinuxSecurity.com: This is an update to Mozilla’s CA certificates list version 2.26, which has been published as part of Mozilla NSS 3.39. For additional details, please refer to the NSS 3.39 release notes: https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.39_release_notes
LinuxSecurity.com: libxkbcommon 0.8.2, CVE-2018-15853 through to 15864. These fix a number of memory handling issues with xkbcommon. Together with the keymap FD handling in various Wayland compositors (keymaps could be mapped rw and clients could thus replace the content) libxkbcommon’s memory issues could serve as attack vector to gain access to another client. The update […]
LinuxSecurity.com: Security fix for CVE-2018-17336
LinuxSecurity.com: Fixed some small bugs in the previous package: Initial rules now have the correct version, sought channel config is dropped (since it doesn’t exist anymore) and build / runtime deps adjusted. —- Update to 3.4.2. Fixes CVE-2017-15705, CVE-2018-11780 and CVE-2018-11781 along with many other bugfixes and improvements. See https://www.mail-
LinuxSecurity.com: **libbson 1.13.0** **Features:** * New functions to save and restore progress of a bson_iter_t: bson_iter_key_len, bson_iter_offset, and son_iter_init_from_data_at_offset Additional functions bson_iter_overwrite_date_time, bson_iter_overwrite_oid, and bson_iter_overwrite_timestamp. All fixed-length BSON values can now be
security update
LinuxSecurity.com: It was discovered that the emergency logging system in 389-ds-base (the 389 Directory Server) is affected by a race condition caused by the invalidation of the concurrently used log file file descriptor without proper locking. This issue might be triggered by remote attackers to
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:2731
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:2731
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:2766
LinuxSecurity.com: Upstream details at : https://access.redhat.com/errata/RHSA-2018:2757
LinuxSecurity.com: CVE-2017-7653 As invalid UTF-8 strings are not correctly checked, an attacker could
