LinuxSecurity.com: An update that solves one vulnerability and has 27 fixes is An update that solves one vulnerability and has 27 fixes is An update that solves one vulnerability and has 27 fixes is now available. now available.
LinuxSecurity.com: An update that fixes three vulnerabilities is now available. An update that fixes three vulnerabilities is now available. An update that fixes three vulnerabilities is now available.
LinuxSecurity.com: An update that fixes 50 vulnerabilities is now available. An update that fixes 50 vulnerabilities is now available. An update that fixes 50 vulnerabilities is now available.
Risk Level: Very Low. Type: Trojan.
security update
security update
security update
security update
security update
LinuxSecurity.com: Several vulnerabilities have been found in the Apache HTTPD server. CVE-2017-3167
LinuxSecurity.com: Multiple vulnerabilities have been found in Vim and gVim, the worst of which might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: An out-of-bounds write in Graphite might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in jbig2dec, the worst of which might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Several security issues were fixed in OpenVPN.
LinuxSecurity.com: Multiple vulnerabilities have been found in Urban Terror, the worst of which allows for the remote execution of arbitrary code.
LinuxSecurity.com: It was discovered that Flatpak, an application deployment framework for desktop apps insufficiently restricted file permissinons in third-party repositories, which could result in privilege escalation.
LinuxSecurity.com: Multiple vulnerabilities have been found in libksba which might allow remote attackers to obtain sensitive information or crash an libksba-based application. [More…]
LinuxSecurity.com: Multiple vulnerabilities have been found in the Graphite font rendering engine which might result in denial of service or the execution of arbitrary code if a malformed font file is processed.
As baby boomers retire and the employment gap in cybersecurity is plugged by generation x, we look at how millennials are set to shape the industry. The post Millennials: Meet the next generation of cybersecurity appeared first on WeLiveSecurity
The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any more questions? Just ask. WannaCry Shuts Down Honda Production Plant Over the last few days, Honda officials have discovered a […]
LinuxSecurity.com: An update that fixes 12 vulnerabilities is now available. An update that fixes 12 vulnerabilities is now available. An update that fixes 12 vulnerabilities is now available.
Risk Level: Very Low. Type: Trojan.
LinuxSecurity.com: This update addresses CVE-2017-1000366, a vulnerability in the dynamic linker allowing local privilege escalation.
LinuxSecurity.com: For changes see https://www.mozilla.org/en-US/thunderbird/52.2.0/releasenotes/
security update
LinuxSecurity.com: New openvpn packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix security issues.
LinuxSecurity.com: Emeric Boit of ANSSI reported that SPIP, a website engine for publishing, insufficiently sanitises the value from the X-Forwarded-Host HTTP header field. An unauthenticated attacker can take advantage of this flaw to cause remote code execution.
LinuxSecurity.com: The system could be made to run programs as an administrator.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
The strange behavior of a simple Windows application caught our attention and sparked the analysis by ESET of a previously undocumented malware. The post Birthday Reminder looks benign but the devil’s in the details: Hooks DNS, serves dodgy ads appeared first on WeLiveSecurity
LinuxSecurity.com: Disable executable stack for aarch64 builds.
LinuxSecurity.com: CVE-2017-1000381: c-ares NAPTR parser out of bounds access
LinuxSecurity.com: This update addresses CVE-2017-1000366, a vulnerability in the dynamic linker allowing local privilege escalation.
LinuxSecurity.com: Update to .104. Fix mp3 playback. Security fix for CVE-2017-5087, CVE-2017-5088, CVE-2017-5089
LinuxSecurity.com: Rebuild for new luajit
LinuxSecurity.com: Alvaro Munoz and Christian Schneider discovered that jython, an implementation of the Python language seamlessly integrated with Java, is prone to arbitrary code execution triggered when sending a serialized function to the deserializer.
LinuxSecurity.com: Aniket Nandkishor Kulkarni discovered that in tomcat7, a servlet and JSP engine, static error pages used the original request’s HTTP method to serve content, instead of systematically using the GET method. This could under certain conditions result in undesirable results,
LinuxSecurity.com: Aniket Nandkishor Kulkarni discovered that in tomcat8, a servlet and JSP engine, static error pages used the original request’s HTTP method to serve content, instead of systematically using the GET method. This could under certain conditions result in undesirable results,
LinuxSecurity.com: Several security issues were fixed in the kernel.
security update
