(Jul 12) Knot Resolver 2.4.0 (2018-07-03) changes ——————– – minimal libknot version is now 2.6.7 to pull in latest fixes (#366) Security ——– – fix a rare case of zones incorrectly dowgraded to insecure status (!576) New features ———— – TLS session resumption (RFC 5077), both server and client (!585, #105) (disabled when
Archive for July, 2018
(Jul 12) Red Hat JBoss Core Services Pack Apache Server 2.4.29 packages are now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this release as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score,
(Jul 12) Red Hat JBoss Core Services Pack Apache Server 2.4.29 packages are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this release as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score,
(Jul 11) Several vulnerabilities were discovered in CUPS, the Common UNIX Printing System. These issues have been identified with the following CVE ids: CVE-2017-15400
Increase hosting revenue by offering complementary security services
The post Increase hosting revenue by offering complementary security services appeared first on Plesk.
(Jul 11) Cloud technology and Linux-based cloud services are becoming increasingly popular due to the various benefits they offer in regard to security, efficiency, flexibility and convenience. …
(Jul 11) The 4.17.4 stable kernel update contains a number of important updates across the tree.
(Jul 11) Several security issues were fixed in libpng.
(Jul 11) libpng could be made to crash if it received a specially crafted file.
(Jul 11) An update for gnupg2 is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
(Jul 11) An update for gnupg2 is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
(Jul 10) libjpeg-turbo could be made to crash or run programs as your login if it opened a specially crafted file.
(Jul 10) Xapian-core could be made to execute arbitrary code if it received a specially crafted file.
(Jul 10) An update for kernel is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
(Jul 11) Updates for rh-dotnet20-dotnet, rh-dotnet21-dotnet, rh-dotnetcore10-dotnetcore, and rh-dotnetcore11-dotnetcore are now available for .NET Core on Red Hat Enterprise Linux. Red Hat Product Security has rated this update as having a security impact
(Jul 5) – New upstream v1.4.23 (#1589802,#1589620,#1589624) – Remove patches included in upstream release – Note that this includes the fix for [CVE-2018-12020] —- – doc Remove documentation for future option faked sys – build Don’t use dev srandom on OpenBSD – Do not use C99 feature – g10 Fix regexp sanitization – g10 Push compress filter only if compressed – gpg Sanitize diagnostic with the
(Jul 9) Orange Tsai discovered a path traversal flaw in ruby-sprockets, a Rack-based asset packaging system. A remote attacker can take advantage of this flaw to read arbitrary files outside an application’s root directory via specially crafted requests, when the Sprockets server is
(Jul 5) Update to 0.26.4 (CVE-2018-11235)
(Jul 10) An update for rh-git29-git is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
(Jul 10) An update for ansible is now available for Ansible Engine 2.5. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
How to develop a local environment with Docker – and why you should
Docker’s solution uses containerization technology to save you time and errors when creating a local development environment. Here’s how you do it and why.
The post How to develop a local environment with Docker – and why you should appeared first on Plesk.
(Jul 5) This update backports an upstream fix for CVE-2018-12910.
(Jul 8) Fix CVE-2018-13054 cinnamon: privilege escalation in cinnamon-settings-users.py GUI
(Jul 7) New upstream version
(Jul 7) ## 3.3.17 (2018-05-25) * security #cve-2018-11407 [Ldap] cast to string when checking empty passwords * security #cve-2018-11408 [SecurityBundle] Fail if security.http_utils cannot be configured * security #cve-2018-11406 clear CSRF tokens when the user is logged out * security #cve-2018-11385 migrating session for UsernamePasswordJsonAuthenticationListener * security #cve-2018-11386
(Jul 6) Latest upstream release, omits some mounting code found to be insecure and not well tested.
(Jul 2) Several security issues were fixed in the Linux kernel.
(Jul 3) Several security issues were fixed in the kernel.
(Jul 6) Latest upstream release, omits some mounting code found to be insecure and not well tested.
Update on Gutenberg
Progress on the Gutenberg project, the new content creating experience coming to WordPress, has come a long way. Since the start of the project, there have been 30 releases and 12 of those happened after WordCamp US 2017. In total since then, there have been 1,764 issues opened and 1,115 closed as of WordCamp Europe. […]