tar could be made to crash or expose sensitive information if it received a specially crafted file.
Archive for May, 2023
WP Briefing: Episode 56: What to Know About WordPress Playground
Join guest host Rich Tabor and WordPress Playground innovator Adam Zielinski as they discuss the capabilities and promise of WP Playground in episode 56 of the WordPress Briefing. Stay tuned for your small list of big things coming up in the next two weeks.
RedHat: RHSA-2023-3247:01 Important: git security update
An update for git is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2023-3246:01 Important: git security update
An update for git is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
RedHat: RHSA-2023-3245:01 Important: git security update
An update for git is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
RedHat: RHSA-2023-3248:01 Important: git security update
An update for git is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
update to 113.0.5672.126. Fixes the many security issues
update to 113.0.5672.126. Fixes the many security issues
Debian: DSA-5408-1: libwebp security update
Irvan Kurniawan discovered a double free in the libwebp image compression library which may result in denial of service. For the stable distribution (bullseye), this problem has been fixed in
Debian: DSA-5407-1: cups-filters security update
It was discovered that missing input sanitising in cups-filters, when using the Backend Error Handler (beh) backend to create an accessible network printer, may result in the execution of arbitrary commands.
Debian: DSA-5406-1: texlive-bin security update
Max Chernoff discovered that improperly secured shell-escape in LuaTeX may result in arbitrary shell command execution, even with shell escape disabled, if specially crafted tex files are processed.
WordPress 6.2.2 is now available!
The newest upstream commit Security fix for CVE-2023-2426
– Update yubibomb to version 0.2.12. – Update ybaas to version 0.0.16.
fix clone-in-kitty + security fix rhbz#2196803
Upgrade to 1.2.11
2207970 – CVE-2023-24805 cups-filters: remote code execution in cups-filters, beh CUPS backend
Backport fix for CVE-2023-1729.
– Update yubibomb to version 0.2.12. – Update ybaas to version 0.0.16.
RedHat: RHSA-2023-3167:01 Moderate: Red Hat build of Cryostat 2.3.0: new
New Red Hat build of Cryostat 2.3.0 on RHEL 8 container images are now available 2. Description: New Red Hat build of Cryostat 2.3.0 on RHEL 8 container images have been
RedHat: RHSA-2023-3229:01 Important: openshift-gitops-kam security update
An update for openshift-gitops-kam is now available for Red Hat OpenShift GitOps 1.8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2023-0584:01 Moderate: Secondary Scheduler Operator for Red Hat
Secondary Scheduler Operator for Red Hat OpenShift 1.1.1 Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
RedHat: RHSA-2023-3195:01 Important: jenkins and jenkins-2-plugins security
An update for jenkins and jenkins-2-plugins is now available for OpenShift Developer Tools and Services for OCP 4.12. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Ubuntu 6092-1: Linux kernel (Azure) vulnerabilities
Several security issues were fixed in the Linux kernel.
Ubuntu 6091-1: Linux kernel vulnerabilities
Several security issues were fixed in the Linux kernel.
Ubuntu 6090-1: Linux kernel vulnerabilities
Several security issues were fixed in the Linux kernel.
Ubuntu 6089-1: Linux kernel (OEM) vulnerability
The system could be made to crash or run programs as an administrator.
Debian: DSA-5405-1: libapache2-mod-auth-openidc security update
It was discovered that missing input sanitising in the implementation of the OIDCStripCookie option in mod_auth_openidc could result in denial of service.
RedHat: RHSA-2023-3221:01 Important: thunderbird security update
An update for thunderbird is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
RedHat: RHSA-2023-3223:01 Important: Red Hat AMQ Streams 2.4.0 release and
Red Hat AMQ Streams 2.4.0 is now available from the Red Hat Customer Portal. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,