Debian: 3665-1: openjpeg2: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3665-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff September 11, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : openjpeg2 CVE ID : CVE-2015-6581 CVE-2015-8871 CVE-2016-1924 CVE-2016-7163 Multiple vulnerabilities in OpenJPEG, a JPEG 2000 image compression / decompression library, may result in denial of […]
Slackware: 2016-254-01: gnutls: Security Update Posted by Anthony Pell New gnutls packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue. [More Info…] [slackware-security] gnutls (SSA:2016-254-01) New gnutls packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue. Here are the details from the […]
Debian: 3664-1: pdns: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3664-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso September 10, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : pdns CVE ID : CVE-2016-5426 CVE-2016-5427 CVE-2016-6172 Debian Bug : 830808 Multiple vulnerabilities have been discovered in pdns, an authoritative DNS server. The Common Vulnerabilities […]
Debian: 3663-1: xen: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3663-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso September 09, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : xen CVE ID : CVE-2016-7092 CVE-2016-7094 CVE-2016-7154 Multiple vulnerabilities have been discovered in the Xen hypervisor. The Common Vulnerabilities and Exposures project identifies the following […]
Ubuntu: 3075-1: Imlib2 vulnerabilities Posted by Anthony Pell Several security issues were fixed in Imlib2. ========================================================================== Ubuntu Security Notice USN-3075-1 September 09, 2016 imlib2 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 LTS – Ubuntu 14.04 LTS – Ubuntu 12.04 LTS Summary: Several security issues were […]
Slackware: 2016-252-01: php: Security Update Posted by Anthony Pell New php packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues. [More Info…] [slackware-security] php (SSA:2016-252-01) New php packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues. Here are the details from the Slackware 14.2 […]
After sitting down with Hal Lonas to get a deeper look at the inner workings of Webroot, there was no questioning why he’s uniquely qualified to serve as the company’s CTO. And with machine learning getting thrown around as the hot new buzzword, it was refreshing to hear Hal’s down-to-earth perspective on motivations, ideas, solutions […]
Multiple vulnerabilities have been discovered in pdns, an authoritative DNS server. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2016-5426 / CVE-2016-5427 Florian Heinz and Martin Kluge reported that the PowerDNS Authoritative Server accepts queries with a qname’s length larger than 255 bytes and does not properly handle dot inside labels. A remote, […]
It was discovered that incorrect SASL authentication in the Inspircd IRC server may lead to users impersonating other users. For the stable distribution (jessie), this problem has been fixed in version 2.0.17-1+deb8u2. For the unstable distribution (sid), this problem has been fixed in version 2.0.23-1. We recommend that you upgrade your inspircd packages.
Debian: 3662-1: inspircd: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3662-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff September 08, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : inspircd CVE ID : CVE-2016-7142 It was discovered that incorrect SASL authentication in the Inspircd IRC server may lead to users impersonating other users. For […]
There’s a lot that happens in the cybersecurity world, with many stories getting lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. No Site is Immune to User Information Exposure In yet another example of poor cybersecurity, Brazzers […]
Google is looking to deliver even greater transparency when it comes to online security by identifying publicly – or “marking”, as it puts it – websites that are not as secure as they should be. In a blog, Emily Schechter, a product manager within the tech giant’s Chrome security team, revealed that as of 2017, its browser […]
So, the story goes something like this. In 1947, in Virginia, US, an error was spotted on the Harvard Mark II, one of the first programmable computers in the world. A team went to investigate, discovering that a moth had been caught between a relay in a machine. It was subsequently removed and taped to […]
Multiple vulnerabilities have been discovered in the Xen hypervisor. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2016-7092 (XSA-185) Jeremie Boutoille of Quarkslab and Shangcong Luan of Alibaba discovered a flaw in the handling of L3 pagetable entries, allowing a malicious 32-bit PV guest administrator can escalate their privilege to that of the […]
Discovered: September 9, 2016 Updated: September 9, 2016 3:40:08 PM Type: Trojan Systems Affected: Linux Linux.Luabot is a Trojan horse for Linux computers that may perform malicious activities. Symantec Security Response is currently investigating this threat and will post more information as it becomes available. Antivirus Protection Dates Initial Rapid Release version September 9, 2016 […]
Red Hat: 2016:1820-01: postgresql92-postgresql: Moderate Advisory Posted by Anthony Pell An update for postgresql92-postgresql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: postgresql92-postgresql security update Advisory ID: RHSA-2016:1820-01 Product: Red Hat Software Collections […]
Red Hat: 2016:1821-01: rh-postgresql95-postgresql: Moderate Advisory Posted by Anthony Pell An update for rh-postgresql95-postgresql is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Moderate: rh-postgresql95-postgresql security update Advisory ID: RHSA-2016:1821-01 Product: Red Hat Software Collections […]
Debian: 3661-1: charybdis: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3661-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff September 06, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : charybdis CVE ID : CVE-2016-7143 It was discovered that incorrect SASL authentication in the Charybdis IRC server may lead to users impersonating other users. For […]
We previously explained how to construct an analysis environment enabling the certificate pinning process to be bypassed in Android applications, in order to be able to examine network traffic and to easily determine what data is being transmitted over secure communications protocols. In particular, we looked at the steps to take to install Cydia Substrate and Android SSL […]
��}�r�F���vU�a�g�1�~ˤW��Ļv쳔��},��@@Q���}��������7�’���_�(�v�;{76����t����L?y�����?ޞ���^��~s��(;�1�aG�����쫎� �(��]�6�>T�ν’#nX�{�D�=�Ƞ�*�eb_v�cύ��g3�+��:Jį”F8X�Y��0X�����c3V�[�c�L,�]F��-���T�� �[��b �w�(�0e}9�֍�t����iXcZv��UK�}&j��DkQ/@D^�x�z5����Ϟ=��� CIŖ�6�,0�?l�H%,:�O+������ذ�� �a�f��FV2��qd>U�Q��?��UZ_���h5�{B�^�7D�l�Xx�i}�Ӈ�K��d’*�x��V�Q;L������R���u��� M��x�O�-����#�nc�g�?�l���Y���翋�^Q[���(�/�}o7v�U뽻�ћ��4W���n�/s� :`[9�½/�6�y5ߪ�e��z)�g��/] /����l���+^�HW[�:*� (�ت��N��&������G�� �r�ccÝ~�u!ҏAC�����]��k�Y�a��D�������r��3�}�;3�k��7�ȡ$ E�}���G�9�/�ƩH�m�]r3��1vol�� ��8�Qb�A�)ǚ� q#B#�k���#4��H�1#��Qx bh�n��0N�@_��屗�|�O���^0�x�A�l��ڎ�PQN|h[ ��’�,�V�DM6�St���&r����$��v��zSs �}o�” ����(18���!3�q8͑��I��@!h�;��(�Xq����#e�IPϗ@�q�҆�xC�#���y{���.�A]����� �nG���Ca=!��5*�G�1���D������9c��P�n�M,�[�R� e0i`�1�qx��!�I���”n��t�pb ���AS��)~�Z4��CT’N�zs�!�!�L��4A�t+�(4�ۡ�N۱���#;D*�70.ɩ�+��-
Risk Level: Very Low. Type: Trojan.
