(Jul 5) devscripts could be made to run arbitrary code if it received a specially crafted YAML file.
Archive for July, 2018
(Jul 5) The system could be made to expose sensitive information.
Debian: DSA-4240-1: php7.0 security update
(Jul 5) Several vulnerabilities were found in PHP, a widely-used open source general purpose scripting language: CVE-2018-7584
Debian: DSA-4241-1: libsoup2.4 security update
(Jul 5) It was discovered that the Soup HTTP library performed insuffient validation of cookie requests which could result in an out-of-bounds memory read.
(Jul 5) Update to 0.26.4 (CVE-2018-11235)
(Jul 5) Backport fix for arbitrary file write vulnerability
RedHat: RHSA-2018-2143:01 Important: Red Hat Decision Manager 7.0.1 bug fix
(Jul 5) An update is now available for Red Hat Decision Manager. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
WordPress 4.9.7 Security and Maintenance Release
WordPress 4.9.7 is now available. This is a security and maintenance release for all versions since WordPress 3.7. We strongly encourage you to update your sites immediately. WordPress versions 4.9.6 and earlier are affected by a media issue that could potentially allow a user with certain capabilities to attempt to delete files outside the uploads […]
(Jul 4) Archive Zip module could be made to expose sensitive information if it received a specially crafted input.
(Jul 4) Archive Zip module could be made to expose sensitive information if it received a specially crafted input.
(Jul 3) Backport fix for arbitrary file write vulnerability
(Jul 3) 4.1.1 GA, security fix for CVE-2018-10841 —- 4.1.0 GA
(Jul 3) Several security issues were fixed in Exiv2.
(Jul 3) libsoup could be made to crash if it received a specially crafted input.
(Jul 3) This update backports an upstream fix for CVE-2018-12910.
Debian: DSA-4238-1: exiv2 security update
(Jul 3) Several vulnerabilites have been discovered in Exiv2, a C++ library and a command line utility to manage image metadata which could result in denial of service or the execution of arbitrary code if a malformed file is parsed.
Fedora 28: standard-test-roles Security Update
(Jul 3) Update to 2.14 This updates ensures that the VNC server used for debugging is bound to the local interfaces. Previously the VNC server might have been available globally depending on the system’s firewall settings.
(Jul 3) Fabian Henneke discovered a cross-site scripting vulnerability in the password change form of GOsa, a web-based LDAP administration program. For the stable distribution (stretch), this problem has been fixed in
RedHat: RHSA-2018-2123:01 Moderate: python security update
(Jul 3) An update for python is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
Most Reliable Hosting Company Sites in June 2018
Rank Performance Graph OS Outagehh:mm:ss FailedReq% DNS Connect Firstbyte Total 1 www.choopa.com Linux 0:00:00 0.000 0.312 0.009 0.237 0.238 2 Bigstep Linux 0:00:00 0.004 0.251 0.074 0.150 0.150 3 Hyve Managed Hosting Linux 0:00:00 0.004 0.185 0.077 0.155 0.155 4 CWCS Linux 0:00:00 0.004 0.300 0.085 0.163 0.163 5 www.dinahosting.com Linux 0:00:00 0.004 0.309 0.090 […]
How to save 4 hours per week on server management
Summer starts with burning web hosting news. Because we’re hearing about acquisitions, expansions, next-gen solutions and new creations.
The post How to save 4 hours per week on server management appeared first on Plesk.
Ubuntu 3697-2: Linux kernel (OEM) vulnerabilities
(Jul 2) Several security issues were fixed in the Linux kernel.
Ubuntu 3697-1: Linux kernel vulnerabilities
(Jul 2) Several security issues were fixed in the Linux kernel.
Top Hacking Groups impacting Cybersecurity today
Summer starts with burning web hosting news. Because we’re hearing about acquisitions, expansions, next-gen solutions and new creations.
The post Top Hacking Groups impacting Cybersecurity today appeared first on Plesk.
(Jul 1) Update for security fixes
(Jul 1) Upstream announcement: The phpMyAdmin team is pleased to announce the release of **phpMyAdmin version 4.8.2**. Among other bug fixes, this contains an important security update and it is highly recommended that all users upgrade immediately. The urgent vulnerability allows an authenticated attacker to exploit a phpMyAdmin feature to show and potentially execute files on the
RedHat: RHSA-2018-2094:01 Important: patch security update
(Jun 27) An update for patch is now available for Red Hat Enterprise Linux 6.7 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-2093:01 Important: patch security update
(Jun 27) An update for patch is now available for Red Hat Enterprise Linux 7.2 Advanced Update Support, Red Hat Enterprise Linux 7.2 Telco Extended Update Support, and Red Hat Enterprise Linux 7.2 Update Services for SAP Solutions.
With one of the two flagship WordCamp events taking place this month, as well as some important WordPress project announcements, there’s no shortage of news. Learn more about what happened in the WordPress community in June. Another Successful WordCamp Europe On June 14th, WordCamp Europe kicked off three days of learning and contributions in Belgrade. […]
(Jun 28) CVE-2018-10289 (rh bz #1573050) (gs bz #699271)