(Aug 30) Several security issues were fixed in libx11.
Archive for August, 2018
(Aug 30) Several security issues were fixed in libx11.
RedHat: RHSA-2018-2575:01 Important: java-1.8.0-ibm security update
(Aug 28) An update for java-1.8.0-ibm is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-2598:01 Moderate: opendaylight security and bug fix update
(Aug 29) An update for OpenDaylight is now available for Red Hat OpenStack Platform 13.0 (Queens). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
RedHat: RHSA-2018-2602:01 Important: kernel security update
(Aug 29) An update for kernel is now available for Red Hat Enterprise Linux 5 Extended Lifecycle Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-2603:01 Important: kernel security update
(Aug 29) An update for kernel is now available for Red Hat Enterprise Linux 5.9 Long Life. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Debian: DSA-4281-1: tomcat8 security update
(Aug 29) Several issues were discovered in the Tomcat servlet and JSP engine. They could lead to unauthorized access to protected resources, denial-of-service, or information leak.
Ubuntu 3752-3: Linux kernel (Azure, GCP, OEM) vulnerabilities
(Aug 28) Several security issues were fixed in the Linux kernel.
(Aug 29) poppler could be made to crash if it received specially crafted PDF file.
RedHat: RHSA-2018-2576:01 Important: java-1.7.1-ibm security update
(Aug 28) An update for java-1.7.1-ibm is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-2585:01 Moderate: ansible security update
(Aug 29) An update for ansible is now available for Red Hat OpenStack Platform 13.0 (Queens). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Web Hosting News: The latest stories for August
We’re taking a look at the most important updates and developments in the hosting industry for August 2018. Read our monthly web hosting news roundup here.
The post Web Hosting News: The latest stories for August appeared first on Plesk.
Ubuntu 3756-1: Intel Microcode vulnerabilities
(Aug 27) The system could be made to expose sensitive information.
RedHat: RHSA-2018-2569:01 Important: java-1.7.1-ibm security update
(Aug 27) An update for java-1.7.1-ibm is now available for Red Hat Enterprise Linux 7 Supplementary. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-2572:01 Low: Red Hat Enterprise Linux 6.4 Advanced
(Aug 28) This is the Six-Month notification for the retirement of Red Hat Enterprise Linux 6.4 Advanced Mission Critical (AMC). This notification applies only to those customers subscribed to the Advanced Mission Critical (AMC) channel for Red Hat Enterprise Linux 6.4.
Joomla 3.8.12 is now available. This is a security release for the 3.x series of Joomla which addresses 3 security vulnerabilities and contains over 20 bug fixes and improvements.
How a WebOps platform fixes five common site and web app issues
Learn about the most common issues that websites and web applications crash into and the best ways that a hosting platform can solve and help overcome them.
The post How a WebOps platform fixes five common site and web app issues appeared first on Plesk.
(Aug 27) Several security issues were fixed in GD.
RedHat: RHSA-2018-2571:01 Important: bind security update
(Aug 27) An update for bind is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
RedHat: RHSA-2018-2570:01 Important: bind security update
(Aug 27) An update for bind is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Ubuntu 3752-2: Linux kernel (HWE) vulnerabilities
(Aug 24) Several security issues were fixed in the Linux kernel.
Ubuntu 3753-1: Linux kernel vulnerabilities
(Aug 24) Several security issues were fixed in the Linux kernel.
[20180803] – Core – ACL Violation in custom fields
- Project: Joomla!
- SubProject: CMS
- Impact: Low
- Severity: Low
- Versions: 3.7.0 through 3.8.11
- Exploit type: ACL Violation
- Reported Date: 2018-July-10
- Fixed Date: 2018-August-28
- CVE Number: CVE-2018-15881
Description
Inadequate checks regarding disabled fields can lead to an ACL violation.
Affected Installs
Joomla! CMS versions 3.7.0 through 3.8.11
Solution
Upgrade to version 3.8.12
Contact
The JSST at the Joomla! Security Centre.
[20180802] – Core – Stored XSS vulnerability in the frontend profile
- Project: Joomla!
- SubProject: CMS
- Impact: Low
- Severity: Low
- Versions: 1.5.0 through 3.8.11
- Exploit type: XSS
- Reported Date: 2018-July-10
- Fixed Date: 2018-August-28
- CVE Number: CVE-2018-15880
Description
Inadequate output filtering on the user profile page could lead to a stored XSS attack.
Affected Installs
Joomla! CMS versions 1.5.0 through 3.8.11
Solution
Upgrade to version 3.8.12
Contact
The JSST at the Joomla! Security Centre.
[20180801] – Core – Hardening the InputFilter for PHAR stubs
- Project: Joomla!
- SubProject: CMS
- Impact: High
- Severity: Low
- Versions: 1.5.0 through 3.8.11
- Exploit type: Malicious file upload
- Reported Date: 2018-August-23
- Fixed Date: 2018-August-28
- CVE Number: CVE-2018-15882
Description
Inadequate checks in the InputFilter class could allow specifically prepared PHAR files to pass the upload filter.
Affected Installs
Joomla! CMS versions 1.5.0 through 3.8.11
Solution
Upgrade to version 3.8.12
Contact
The JSST at the Joomla! Security Centre.
Ubuntu 3752-1: Linux kernel vulnerabilities
(Aug 24) Several security issues were fixed in the Linux kernel.
Ubuntu 3754-1: Linux kernel vulnerabilities
(Aug 24) Several security issues were fixed in the Linux kernel.
Ubuntu 3753-2: Linux kernel (Xenial HWE) vulnerabilities
(Aug 24) Several security issues were fixed in the Linux kernel.
(Aug 22) Spice could be made to crash if it received specially crafted network traffic.
RedHat: RHSA-2018-2543:01 Important: openstack-keystone security update
(Aug 22) An update for openstack-keystone is now available for Red Hat OpenStack Platform 10.0 (Newton). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,