As the results of CloudFlare’s challenge have demonstrated, a server’s private key can be extracted using the Heartbleed vulnerability. Consequently, the 500,000+ certificates used on web servers supporting TLS heartbeat should be urgently replaced and revoked. Whilst the replacement and revocation process has begun — 80,000 certificates have been revoked since the announcement — it […]
Archive for April 15th, 2014
Oracle Critical Patch Update Advisory – April 2014
The second release candidate for WordPress 3.9 is now available for testing. If you haven’t tested 3.9 yet, you’re running out of time! We made about five dozen changes since the first release candidate, and those changes are all helpfully summarized in our weekly post on the development blog. Probably the biggest fixes are to live […]
(Apr 14) Security Report Summary
(Apr 13) Security Report Summary
Ubuntu: 2166-1: Net-SNMP vulnerabilities
(Apr 14) Net-SNMP could be made to crash if it received specially crafted networktraffic.
Red Hat: 2014:0382-01: python-keystoneclient: Important Advisory
(Apr 9) Updated python-keystoneclient packages that fix one security issue are now available for Red Hat Enterprise Linux OpenStack Platform 4.0. The Red Hat Security Response Team has rated this update as having [More…]
Red Hat: 2014:0383-01: samba4: Moderate Advisory
(Apr 9) Updated samba4 packages that fix three security issues are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having Moderate [More…]