(Mar 6) Security fix for CVE-2017-16611
Archive for March 11th, 2018
Debian: DSA-4134-1: util-linux security update
(Mar 10) Bjorn Bosselmann discovered that the umount bash completion from util-linux does not properly handle embedded shell commands in a mountpoint name. An attacker with rights to mount filesystems can take advantage of this flaw for privilege escalation if a user (in particular
Debian: DSA-4129-1: freexl security update
(Mar 2) Multiple heap buffer over reads were discovered in freexl, a library to read Microsoft Excel spreadsheets, which could result in denial of service.
(Mar 6) libXcursor 1.1.15
(Mar 6) Twisted could be made to run programs if it received specially crafted network traffic.
(Mar 6) PostgreSQL could be made to execute arbitrary code.
RedHat: RHSA-2018-0418:01 Moderate: libreoffice security update
(Mar 6) An update for libreoffice is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
RedHat: RHSA-2018-0458:01 Important: java-1.7.1-ibm security update
(Mar 7) An update for java-1.7.1-ibm is now available for Red Hat Enterprise Linux 7 Supplementary. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,