– fix unpreserved file permissions (CVE-2022-32207) – fix Set-Cookie denial of service (CVE-2022-32205) – fix HTTP compression denial of service (CVE-2022-32206) – fix FTP-KRB bad message verification (CVE-2022-32208)
Archive for July 14th, 2022
The 5.18.11 stable kernel update contains a number of important fixes across the tree. In addition to the 5.18.11 stable patches, this build contains the retbleed patches scheduled for 5.18.12 kernels.
Fedora 36: xorg-x11-server-Xwayland 2022-856bb475b7
Security fix for CVE-2022-2319/ZDI-CAN-16062, CVE-2022-2320/ZDI-CAN-16070
Debian: DSA-5182-1: webkit2gtk security update
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-22677
Debian: DSA-5183-1: wpewebkit security update
The following vulnerabilities have been discovered in the WPE WebKit web engine: CVE-2022-22677
Python could be made to run arbitrary code if it received a specially crafted input.
Ubuntu 5520-1: HTTP-Daemon vulnerability
HTTP-Daemon could allow HTTP Request Smuggling attacks.