security update
The skimmer, injected into the store’s payment page, harvested credit-card details from the store’s online customers for more than a month The post Attackers crack Newegg’s defenses, slurp customers’ credit card data appeared first on WeLiveSecurity
LinuxSecurity.com: 3.6.9
Reading Time: ~2 min.Newegg Breach Lasts Nearly a Month Newegg finally addressed a recent breach after unknowingly hosting malicious code within a payment page for the last month. While the company is still unclear about how many customers were affected, the injected code does appear to have targeted both desktop and mobile visitors to the […]
LinuxSecurity.com: This is a security update for `CVE-2018-16802`. It also fixes a printing problem discovered in one of the previous CVE fixes. NOTE: *Please, be advised that there’s a separate issue related to printing problems, which is connected to CUPS itself, meaning this update might not completely resolve your printing issues.* —- This is a […]
LinuxSecurity.com: 3.6.9
LinuxSecurity.com: Security fix for CVE-2018-1000801
LinuxSecurity.com: Fixes CVE-2018-16515
LinuxSecurity.com: 8u181 update
LinuxSecurity.com: – New upstream Firefox version (62.0) – More info at https://www.mozilla.org/en- US/firefox/62.0/releasenotes/
LinuxSecurity.com: Updates the nss family of packages to upstream NSPR 4.20 and NSS 3.39. For details about new functionality and a list of bugs fixed in this release please see the upstream release notes https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.39_release_notes
LinuxSecurity.com: Updates the nss family of packages to upstream NSPR 4.20 and NSS 3.39. For details about new functionality and a list of bugs fixed in this release please see the upstream release notes https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.39_release_notes
LinuxSecurity.com: Updates the nss family of packages to upstream NSPR 4.20 and NSS 3.39. For details about new functionality and a list of bugs fixed in this release please see the upstream release notes https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.39_release_notes
LinuxSecurity.com: Updates the nss family of packages to upstream NSPR 4.20 and NSS 3.39. For details about new functionality and a list of bugs fixed in this release please see the upstream release notes https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.39_release_notes
LinuxSecurity.com: Update to devscripts-2.18.4, see http://metadata.ftp- master.debian.org/changelogs//main/d/devscripts/devscripts_2.18.4_changelog for details.
Risk Level: Very Low.
Risk Level: Very Low. Type: Trojan.
Instead, the three men will cooperate with law enforcement and the broader research community – an area in which, it turns out, they already have quite some experience The post Mirai’s architects avoid prison thanks to work for FBI appeared first on WeLiveSecurity
LinuxSecurity.com: Several security issues were fixed in Little CMS.
LinuxSecurity.com: Multiple security vulnerabilities were discovered in GlusterFS, a clustered file system. Buffer overflows and path traversal issues may lead to information disclosure, denial-of-service or the execution of arbitrary code.
LinuxSecurity.com: An update that fixes three vulnerabilities is now available.
LinuxSecurity.com: An update is now available for Red Hat OpenStack Platform 12.0 (Pike). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
LinuxSecurity.com: Bind could be made to crash if it received specially crafted network traffic.
LinuxSecurity.com: Several security issues were fixed in Little CMS.
LinuxSecurity.com: A vulnerability has been discovered in php5, a server-side, HTML-embedded scripting language. The Apache2 component allows XSS via the body of a “Transfer-Encoding: chunked” request because of a defect
LinuxSecurity.com: An update that contains security fixes can now be installed.
LinuxSecurity.com: An update that contains security fixes can now be installed.
LinuxSecurity.com: CVE-2016-10728 If an ICMPv4 error packet is received as the first packet on a flow in the to_client direction, it can lead to missed TCP/UDP detection
Type: Vulnerability. Microsoft Windows is prone to an information-disclosure vulnerability; fixes are available.
Cybercrooks use bogus apps to phish six online banks and cryptocurrency exchange The post Fake finance apps on Google Play target users from around the world appeared first on WeLiveSecurity
LinuxSecurity.com: Several security issues were fixed in PHP.
LinuxSecurity.com: Several security issues were fixed in Ghostscript.
LinuxSecurity.com: Several security issues were fixed in GLib.
LinuxSecurity.com: Several security issues were fixed in GLib.
LinuxSecurity.com: Two vulnerabilities have been discovered in the chromium web browser. Kevin Cheung discovered an error in the WebAssembly implementation and evil1m0 discovered a URL spoofing issue.
security update
