Menu

Quote

Several security issues were fixed in Wget.

Several security issues were fixed in Wget.

An update for openssh is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

Several memory leaks were discovered in proftpd-dfsg, a versatile, virtual-hosting FTP daemon, when mod_facl or mod_sftp is used which could lead to memory exhaustion and a denial-of-service.

security update

Several security issues were fixed in ClamAV.

An update that fixes two vulnerabilities is now available.

An update that solves one vulnerability and has three fixes is now available.

An update that fixes 11 vulnerabilities is now available.

An update that fixes three vulnerabilities is now available.

An update that solves one vulnerability and has four fixes is now available.

An update that solves two vulnerabilities and has one errata is now available.

Multiple vulnerabilities have been found in ClamAV, the worst of which could result in a Denial of Service condition.

A vulnerability in emerge-delta-webrsync and Portage could result in a man-in-the-middle attack.

Multiple vulnerabilities have been found in Mailman, the worst of which could result in the arbitrary execution of code.

An update that solves 8 vulnerabilities and has 102 fixes is now available.

An update that fixes three vulnerabilities is now available.

security update

New httpd packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue.

Cedric Krier discovered that missing access validation in Tryton could result in information disclosure . For the stable distribution (stretch), this problem has been fixed in

Security fix for CVE-2019-8936

Security fix for CVE-2019-8936

security update

Security fix for CVE-2019-8936

**PHP version 7.3.4** (04 April 2019) **Core:** * Fixed bug php#77738 (Nullptr deref in zend_compile_expr). (Laruence) * Fixed bug php#77660 (Segmentation fault on break 2147483648). (Laruence) * Fixed bug php#77652 (Anonymous classes can lose their interface information). (Nikita) * Fixed bug php#77345 (Stack Overflow caused by circular reference in garbage collection). (Alexandru

New openjpeg packages are available for Slackware 14.2 and -current to fix security issues.

New wget packages are available for Slackware 14.2 and -current to fix a security issue.

An update that fixes one vulnerability is now available.

An update that fixes 16 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that solves two vulnerabilities and has 16 fixes is now available.

Kusano Kazuhiko discovered a buffer overflow vulnerability in the handling of Internationalized Resource Identifiers (IRI) in wget, a network utility to retrieve files from the web, which could result in the execution of arbitrary code or denial of service when recursively

An update that fixes 11 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes four vulnerabilities is now available.

security update

security update

security update

security update

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has one errata is now available.

An update that fixes one vulnerability is now available.

An update that fixes three vulnerabilities is now available.

An update that fixes three vulnerabilities is now available.

An update that solves two vulnerabilities and has one errata is now available.

An update that solves two vulnerabilities and has one errata is now available.

Multiple vulnerabilities were found in the PuTTY SSH client, which could result in denial of service and potentially the execution of arbitrary code. In addition, in some situations random numbers could potentially be re-used.

Several vulnerabilities have been found in the Apache HTTP server. CVE-2019-0217

An update that fixes 16 vulnerabilities is now available.

An update that fixes 15 vulnerabilities is now available.

Adam Dobrawy, Frederico Silva and Gregory Brzeski from HyperOne.com discovered that pdns, an authoritative DNS server, did not properly validate user-supplied data when building a HTTP request from a DNS query in the HTTP Connector of the Remote backend. This would allow a

AdvanceCOMP could be made to run arbitrary code if it opened a specially crafted file.

Several security issues were fixed in the Apache HTTP Server.

Multiple vulnerabilities have been found in Xen, the worst of which could result in privilege escalation.

An update that fixes three vulnerabilities is now available.

An update that solves three vulnerabilities and has 17 fixes is now available.

An update that solves three vulnerabilities and has 17 fixes is now available.

Security fix for CVE-2018-20662, CVE-2019-9631, CVE-2019-9200 and CVE-2019-9903.

An update that solves one vulnerability and has one errata is now available.

An update that fixes three vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes three vulnerabilities is now available.

An update that solves two vulnerabilities and has three fixes is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes four vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has one errata is now available.

An update that fixes one vulnerability is now available.

An update that solves one vulnerability and has one errata is now available.

An update that fixes one vulnerability is now available.

An update that fixes 6 vulnerabilities is now available.

It was discovered that missing input sanitising in the file module of Drupal, a fully-featured content management framework, could result in cross-site scripting.

An update that fixes two vulnerabilities is now available.

An update that solves 14 vulnerabilities and has 5 fixes is now available.

An update that solves 15 vulnerabilities and has 10 fixes is now available.

An update that solves two vulnerabilities and has 10 fixes is now available.

An update that solves 6 vulnerabilities and has 21 fixes is now available.

Dovecot could be made to crash or run programs as an administrator if it opened a specially crafted file.

This update includes the changes in tzdata 2019a for the Perl bindings. For the list of changes, see DLA-1744-1. For Debian 8 “Jessie”, this problem has been fixed in version

security update

Several vulnerabilities have been found in php5, a server-side, HTML-embedded scripting language.

security update

Update to 3.0. License has changed to ASL 2.0 + exception. See https://github.com/michaelrsweet/mxml/releases/tag/v3.0 for more info.

Security fix for CVE-2018-19872

A security vulnerability was discovered in gpsd, the Global Positioning System daemon. A stack-based buffer overflow may allow remote attackers to execute arbitrary code via traffic on port 2947/TCP or crafted JSON inputs.

Multiple security issues have been found in the Thunderbird mail client, which could lead to the execution of arbitrary code or denial of service. For the stable distribution (stretch), these problems have been fixed in

An update that contains security fixes can now be installed.

An update that fixes three vulnerabilities is now available.

An update that solves two vulnerabilities and has 53 fixes is now available.

security update

An update that solves four vulnerabilities and has 7 fixes is now available.

An update that fixes 11 vulnerabilities is now available.

An update that solves 9 vulnerabilities and has one errata is now available.

An update that fixes one vulnerability is now available.

An update that fixes three vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.