(Jun 28) Weekly release
Archive for June, 2018
(Jun 28) New version of dcraw is available 9.28.0 Security fix for CVE-2018-5801
RedHat: RHSA-2018-2092:01 Important: patch security update
(Jun 27) An update for patch is now available for Red Hat Enterprise Linux 7.3 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-2112:01 Critical: firefox security update
(Jun 28) An update for firefox is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
(Jun 28) Several security issues were fixed in file.
(Jun 29) Speculative register leakage from lazy FPU context switching [XSA-267, CVE-2018-3665] fix for change in iasl output
(Jun 29) This update addresses the following vulnerabilities: * [CVE-2018-4190](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-4190), [CVE-2018-4199](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-4199), [CVE-2018-4218](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-4218), [CVE-2018-4222](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-4222),
RedHat: RHSA-2018-2113:01 Critical: firefox security update
(Jun 28) An update for firefox is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
RedHat: RHSA-2018-2114:01 Low: Red Hat Enterprise Linux 6.6 TUS Six-Month
(Jun 28) This is the Six-Month notification for the retirement of Red Hat Enterprise Linux 6.6 Telecommunications Update Service (TUS). This notification applies only to those customers subscribed to the Telecommunications Update Service (TUS) channel for Red Hat Enterprise Linux 6.6.
Web Hosting News Roundup: What happened in June?
Summer starts with burning web hosting news. Because we’re hearing about acquisitions, expansions, next-gen solutions and new creations.
The post Web Hosting News Roundup: What happened in June? appeared first on Plesk.
The post The Plesk Docker Quiz | 5 Minutes appeared first on Plesk.
(Jun 26) New version with a few bug fixes —- Latest build with fixes.
Debian: DSA-4235-1: firefox-esr security update
(Jun 27) Several security issues have been found in the Mozilla Firefox web browser: Multiple memory safety errors and other implementation errors may lead to the execution of arbitrary code, denial of service, cross-site request forgery or information disclosure.
(Jun 25) Backport security fixes for: CVE-2017-7380, CVE-2017-7381, CVE-2017-7382, CVE-2017-7383, CVE-2017-5852, CVE-2017-5853, CVE-2017-6844, CVE-2017-5854, CVE-2017-5855, CVE-2017-5886, CVE-2018-8000, CVE-2017-6840, CVE-2017-6842, CVE-2017-6843, CVE-2017-6845, CVE-2017-6847, CVE-2017-6848, CVE-2017-7378, CVE-2017-7379, CVE-2017-7994, CVE-2017-8054, CVE-2017-8378, CVE-2017-8787,
(Jun 27) Multiple vulnerabilities have been discovered in the Xen hypervisor: CVE-2018-12891
RedHat: RHSA-2018-2091:01 Important: patch security update
(Jun 27) An update for patch is now available for Red Hat Enterprise Linux 7.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-2102:01 Moderate: Red Hat OpenStack Platform 10 Security,
(Jun 28) An update is now available for Red Hat OpenStack Platform 10.0 (Newton) for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Git Version Control: Soon with Automatic Deployment!
This is the sixth and final blog post in a series around Git and a new feature in version 72, Git Version Control. See the full list of entries in this series at the end of this post! This post talks about something that we’re adding in Version 74, which we expect will be entering EDGE sometime during the first week of July, and will be headed to CURRENT sometime in July! If you have been …
(Jun 26) Fix integer overflow
(Jun 26) New version with a few bug fixes —- Latest build with fixes.
RedHat: RHSA-2018-2038:01 Moderate: dpdk security,
(Jun 26) An update for DPDK is now available for Extras for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
RedHat: RHSA-2018-2060:01 Important: qemu-kvm-rhev security and bug fix
(Jun 27) An update for qemu-kvm-rhev is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
A new well-designed phishing email has been aimed at cPanel users recently, and we want to help all of our users stay safe. What is Phishing? Phishing, by definition, is the act of attempting to acquire information such as usernames, passwords, and credit card details (and sometimes, indirectly, money) by masquerading as a trustworthy entity in an electronic communication. Phishing emails can be sent to any email address. The most effective phishing emails make use …
Joomla 3.8.10 is now available. This is a bug fix release addressing one bug introduced into 3.8.9 which affects Windows servers.
Joomla 3.8.9 is now available. This is a security release which addresses 2 security vulnerabilities and contains over 50 bug fixes and improvements.
[20180602] – Core – XSS vulnerability in language switcher module
- Project: Joomla!
- SubProject: CMS
- Impact: Low
- Severity: Low
- Versions: 1.6.0 through 3.8.8
- Exploit type: XSS
- Reported Date: 2018-May-07
- Fixed Date: 2018-June-26
- CVE Number: CVE-2018-12711
Description
In some cases the link of the current language might contain unescaped HTML special characters. This may lead to reflective XSS via injection of arbitrary parameters and/or values on the current page url.
Affected Installs
Joomla! CMS versions 1.6.0 through 3.8.8
Solution
Upgrade to version 3.8.9
Contact
The JSST at the Joomla! Security Centre.
[20180601] – Core – Local File Inclusion with PHP 5.3
- Project: Joomla!
- SubProject: CMS
- Impact: Low
- Severity: Low
- Versions: 2.5.0 through 3.8.8
- Exploit type: LFI
- Reported Date: 2018-April-23
- Fixed Date: 2018-June-26
- CVE Number: CVE-2018-12712
Description
Our autoload code checks classnames to be valid, using the “class_exists” function in PHP. In PHP 5.3 this function validates invalid names as valid, which can result in a Local File Inclusion.
Affected Installs
Joomla! CMS versions 2.5.0 through 3.8.8
Solution
Upgrade to version 3.8.9
Contact
The JSST at the Joomla! Security Centre.
The post Why coding standards matter appeared first on Plesk.
(Jun 25) This update fixes multiple security vulnerabilities: CVE-2017-7380, CVE-2017-7381, CVE-2017-7382, CVE-2017-7383, CVE-2017-5852, CVE-2017-5853, CVE-2017-6844, CVE-2017-5854, CVE-2017-5855, CVE-2017-5886, CVE-2018-8000, CVE-2017-6840, CVE-2017-6842, CVE-2017-6843, CVE-2017-6845, CVE-2017-6847, CVE-2017-6848, CVE-2017-7378, CVE-2017-7379, CVE-2017-7994, CVE-2017-8054,
RedHat: RHSA-2018-1974:01 Moderate: java-1.7.1-ibm security update
(Jun 25) An update for java-1.7.1-ibm is now available for Red Hat Satellite 5.6 and Red Hat Satellite 5.7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which