An update for samba is now available for Red Hat Gluster Storage 3.5 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Archive for July, 2020
Upgrade to upstream 3.6.0. Remove patch #4679 for el8.
– Update to 2.16.7 Security advisory: https://tls.mbed.org/tech- updates/security-advisories/mbedtls-security-advisory-2020-07
– Update to 1.2.13 Release notes: https://www.cacti.net/release_notes.php?version=1.2.13
– Update to 1.2.13 Release notes: https://www.cacti.net/release_notes.php?version=1.2.13
Solving a hostname security warning: The first time a user tries to log in to WHM on a newly-installed server, they see a security warning. It can be scary, especially for users on a trial license running cPanel & WHM for the first time. This happens because most modern browsers display a warning whenever a user tries to visit a site or domain with an invalid or self-signed certificate. cPanel & WHM attempts to secure …
Several security issues were fixed in FFmpeg.
Several security issues were fixed in Python.
Pillow could be made to crash if it opened a specially crafted file.
Evolution Data Server could be made to expose sensitive information over the network.
An update for java-11-openjdk is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update for java-11-openjdk is now available for Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
**kronolith 4.2.29** * [mjr] Fix regresssion in event modification notifications (Bug #15022). —- **kronolith 4.2.28** * [mjr] **SECURITY**: Don’t leak private details when sending notifications for private events (Bug #15011). * [mjr] Fix regression in display of clickable event URL property (Bug #14941).
Backport fix for CVE-2020-15503.
WordPress 5.5 Beta 3
WordPress 5.5 Beta 3 is now available! This software is still in development,so it’s not recommended to run this version on a production site. Consider setting up a test site to play with the new version. You can test WordPress 5.5 Beta 3 in two ways: Try the WordPress Beta Tester plugin (choose the “bleeding […]
An update for rh-nodejs10-nodejs is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Two security issues were discovered in the Squid proxy caching server, which could result in cache poisoning, request smuggling and incomplete validation of hostnames in cachemgr.cgi.
An update for kpatch-patch is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Joomla, one of the world’s most popular Content Management Systems (CMS), announced today its partnership with Elastic Email, a professional mail service provider for Transactional and Marketing related mails.
An update for Debezium PostgreSQL connector is now available for Red Hat Integration. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
An update is now available for Red Hat Ceph Storage 4.1. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
5 Essential Practices to Unlock Your Staging Environment’s Full Potential
The post 5 Essential Practices to Unlock Your Staging Environment’s Full Potential appeared first on Plesk.
An integer overflow flaw leading to a stack-based buffer overflow was discovered in redis, a persistent key-value database. A remote attacker can use this flaw to cause a denial of service (application crash).
Michal Bentkowski discovered that ruby-sanitize, a whitelist-based HTML sanitizer, is prone to a HTML sanitization bypass vulnerability when using the “relaxed” or a custom config allowing certain elements. Content in a
Multiple security issues were discovered in QEMU, a fast processor emulator, which could result in denial of service. For the stable distribution (buster), these problems have been fixed in
Two security issues were found in libopenmpt, a cross-platform C++ and C library to decode tracked music files, which could result in denial of service and potentially the execution of arbitrary if malformed music files are processed.
Updates the nspr and nss package to upstream NSPR 4.26 and NSS 3.54. For details about new functionality and a list of bugs fixed in this release please see the upstream release notes: – https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.54_release_notes
Updates the nspr and nss package to upstream NSPR 4.26 and NSS 3.54. For details about new functionality and a list of bugs fixed in this release please see the upstream release notes: – https://developer.mozilla.org/en- US/docs/Mozilla/Projects/NSS/NSS_3.54_release_notes