oslo.utils could be made to expose sensitive information if it received a specially crafted input.
Archive for April, 2022
Ubuntu 5368-1: Linux kernel vulnerabilities
Several security issues were fixed in the Linux kernel.
This release contains security fixes.
Backport patch for CVE-2021-45943.
We built the cPanel ELevate tool to manage the unique complexities of upgrading a cPanel & WHM server from start to finish. In order to do this, we upgraded multiple servers in various configurations, with different software loaded (both 3rd-party and our own). Along the way, we learned a few things that we’d like to share with those sysadmins who are about to upgrade their cPanel & WHM servers. Lessons Learned Here are a few …
The post Pro Tips For ELevate first appeared on cPanel Blog.
Debian: DSA-5113-1: firefox-esr security update
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, information disclosure or spoofing.
RedHat: RHSA-2022-1254:01 Important: Red Hat OpenStack Platform 16.1
An update for python-waitress is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2022-1253:01 Important: Red Hat OpenStack Platform 16.2
An update for python-waitress is now available for Red Hat OpenStack Platform 16.2 (Train). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
WordPress 5.9.3 is now available! This maintenance release features 9 bug fixes in Core and 9 bug fixes in the block editor.
RedHat: RHSA-2022-1198:01 Important: kernel security, bug fix,
An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
RedHat: RHSA-2022-1199:01 Important: kernel-rt security and bug fix update
An update for kernel-rt is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Several security issues were fixed in H2.
We hope that you and your beloved ones are staying safe during these difficult times. If you’re looking for a way to support the humanitarian crisis in Ukraine, you can refer to this episode of WP Briefing. There you will find a list of Non-Governmental Organizations (NGOs) that can help. In parallel to the work […]
Fedora 35: python-pillow 2022-64332f2a7c
Backport fix for CVE-2022-24303.
Fedora 35: mingw-openexr 2022-f2e0d16c90
Fix CVE-2021-45942.
Most Reliable Hosting Company Sites in March 2022
Rank | Performance Graph | OS | Outage hh:mm:ss |
Failed Req% |
DNS | Connect | First byte |
Total |
---|---|---|---|---|---|---|---|---|
1 | Aruba | Linux | 0:00:00 | 0.000 | 0.356 | 0.007 | 0.029 | 0.031 |
2 | Rackspace | Linux | 0:00:00 | 0.000 | 0.513 | 0.009 | 0.019 | 0.019 |
3 | Hyve Managed Hosting | Linux | 0:00:00 | 0.000 | 0.140 | 0.069 | 0.138 | 0.138 |
4 | Bigstep | Linux | 0:00:00 | 0.000 | 0.188 | 0.080 | 0.159 | 0.159 |
5 | ServerStack | Linux | 0:00:00 | 0.000 | 0.224 | 0.108 | 0.216 | 0.216 |
6 | Pair Networks | Linux | 0:00:00 | 0.000 | 0.371 | 0.119 | 0.237 | 0.237 |
7 | Multacom | Linux | 0:00:00 | 0.000 | 0.297 | 0.143 | 0.288 | 0.288 |
8 | New York Internet (NYI) | FreeBSD | 0:00:00 | 0.008 | 0.575 | 0.085 | 0.170 | 0.170 |
9 | www.flexential.com | Linux | 0:00:00 | 0.008 | 0.266 | 0.109 | 0.216 | 0.216 |
10 | Swishmail | unknown | 0:08:51 | 0.034 | 0.215 | 0.105 | 0.209 | 0.209 |
The most reliable hosting company site in March 2022 was Aruba, which has now topped the table for four months in a row. Aruba provides hosting, cloud and digital signature services, fibre optic internet, digital preservation, and more. The company has data centres across Europe, in the UK, Germany, Czechia, Poland, Italy and France.
Rackspace appeared in second place once more, also appearing in this position for the fourth consecutive month. Rackspace provides a wide variety of cloud services from its global network of over 50 locations across five continents. Hyve Managed Hosting came in third place and has also appeared in the top 10 every month so far in 2022. Hyve offers cloud hosting, dedicated servers and managed services from data centres in 34 locations around the world.
Bigstep, ServerStack, Pair Networks and Multacom also responded to all of Netcraft’s requests in March and appeared in fourth place to seventh place.
Whilst Linux continued to dominate the top 10, being used by eight of the top 10, FreeBSD made an appearance in eighth place with New York Internet (NYI). Flexential was the remaining site in the top 10 that used Linux, appearing in ninth place. Swishmail used an unidentified OS.
waitress could be made to expose sensitive information if it received a specially crafted request.
Security fix for CVE-2022-0778
fix build of xen*.efi file and package it in /usr/lib*/efi —- Multiple speculative security issues [XSA-398]
RedHat: RHSA-2022-1174:01 Moderate: Red Hat Ceph Storage 5.1 Security,
Red Hat Ceph Storage 5.1 is now available. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
WP Briefing: Episode 28: Coming to a WordCamp Near You: A Return to In-Person WP Events
Curious about returning to WordPress events safely? Tune in as WordPress Executive Director Josepha Haden Chomphosy discusses guidelines for returning to in-person events.
RedHat: RHSA-2022-1173:01 Important: httpd security update
An update for httpd is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Updated to version 10.1.0 with XSS fix. Changelog: https://github.com/kiwix/libkiwix/releases/tag/10.1.0
Fedora 35: phoronix-test-suite 2022-cce05f0e5e
Security fix for CVE-2022-0571
Debian: DSA-5112-1: chromium security update
Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure.
Security fix for [PUT CVEs HERE]
RedHat: RHSA-2022-1137:01 Important: httpd security update
An update for httpd is now available for Red Hat Enterprise Linux 7.7 Advanced Update Support, Red Hat Enterprise Linux 7.7 Telco Extended Update Support, and Red Hat Enterprise Linux 7.7 Update Services for SAP Solutions.
RedHat: RHSA-2022-1139:01 Important: httpd security update
An update for httpd is now available for Red Hat Enterprise Linux 7.3 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2022-1138:01 Important: httpd security update
An update for httpd is now available for Red Hat Enterprise Linux 7.4 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2022-1136:01 Important: httpd security update
An update for httpd is now available for Red Hat Enterprise Linux 7.6 Advanced Update Support, Red Hat Enterprise Linux 7.6 Telco Extended Update Support, and Red Hat Enterprise Linux 7.6 Update Services for SAP Solutions.