Baresip v3.10.1 (2024-03-12) Security Release (possible Denial of Service): A wrong or manipulated incoming RTP Timestamp can cause the baresip process to hang forever, for details see: #2954 aureceiver: fix mtx_unlock on discard
Archive for March, 2024
Debian: DSA-5640-1: openvswitch security update
Two vulnerabilities were discovered in Open vSwitch, a software-based Ethernet virtual switch, which could result in a bypass of OpenFlow rules or denial of service.
Expat could be made to crash if it received specially crafted input.
Several security issues were fixed in TeX Live.
Ubuntu 6673-2: python-cryptography vulnerability
python-cryptography could be made to expose sensitive information over the network.
Fedora 38: python-multipart 2024-09c7f715c9
python-multipart 0.0.7 (2024-02-03) Refactor header option parser to use the standard library instead of a custom RegEx #75. Fixes a denial of service vulnerability, GHSA-qf9m-vfgh-m389, initially reported in FastAPI but applicable to other libraries and applications.
Update to 115.8.1 https://www.mozilla.org/en-US/security/advisories/mfsa2024-11/ read that if you have mails with encrypted email subjects https://www.thunderbird.net/en-US/thunderbird/115.8.1/releasenotes/
Ubuntu 6587-5: X.Org X Server vulnerabilities
Several security issues were fixed in X.Org X Server.
Debian: DSA-5639-1: chromium security update
Security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure.
Elevating Website Reliability with cPanel’s Site Quality Monitoring
Site Quality Monitoring (SQM) for cPanel is now available with cPanel’s v118, v116, and v110 LTS releases. Let’s explore the myriad of benefits and value propositions SQM brings to the table, making it a must-have tool for all website owners going forward. Unmatched Website Integrity The foundation of cPanel’s Site Quality Monitoring is rooted in […]
The post Elevating Website Reliability with cPanel’s Site Quality Monitoring first appeared on cPanel Blog.
Ubuntu 6681-3: Linux kernel vulnerabilities
Several security issues were fixed in the Linux kernel.
Add implicit rejection in PKCS#1 v1.5 in OpenSSL.
The 6.7.9 stable kernel update contains a number of important fixes across the tree.
Update to git f1da555, fixes CVE-2024-27507.
.NET could be made to crash if it processed specially crafted requests.
Gson could be made to crash if it opened a specially crafted file.
WordPress 6.5 RC2 is ready for download and testing. Reaching this phase of the release cycle is an important milestone. Check out what’s coming in this release and how to get involved.
How To Transfer Files Between Servers Using SSH
Looking to migrate a website from one server to another? You’ve got options. One popular method involves downloading the entire site to your computer and then uploading it to the new server. Or you could use third-party FTP tools to access both servers and move files between them. But there’s a more efficient and secure approach you might not have considered: transferring files over Secure Shell (SSH). Let’s explore how this method works and why it might be the ideal solution for your migration needs. What is SSH? SSH is a secure network protocol that allows you to utilize network…
The post How To Transfer Files Between Servers Using SSH appeared first on Plesk.
The votes for the 2022 favorite Plesk features are in! Check out the results of the 2022 Plesk Obsidian survey!
The post Plesk Obsidian 2023 Survey Results appeared first on Plesk.
OVN could be made to disrupt traffic.
PostgreSQL could be made to run arbitrary SQL.
Rack could be made do denial of service if it received a specially crafted header.
Ubuntu 6690-1: Open vSwitch vulnerabilities
Several security issues were fixed in Open vSwitch.
Boost Your Site Performance: Guide to Enabling WordPress GZIP Compression
As Google becomes more and more focused on improving the user’s experience of websites, web developers are paying attention. They know that user experience is boosted by fast loading times and good page speeds. These factors became significant search ranking factors several years ago. If you didn’t know that, then chances are you’ll be getting poor SERPs results, so time to get up to speed with it! With this in mind, we’re going to look at one of the quickest and simplest methods of improving the performance of your site – GZIP compression. This post walks you through the importance…
The post Boost Your Site Performance: Guide to Enabling WordPress GZIP Compression appeared first on Plesk.
Ubuntu 6688-1: Linux kernel (OEM) vulnerabilities
Several security issues were fixed in the Linux kernel.
Ubuntu 6681-2: Linux kernel vulnerabilities
Several security issues were fixed in the Linux kernel.
Security fix for CVE-2024-1048
Debian: DSA-5638-1: libuv1 security update
It was discovered that the uv_getaddrinfo() function in libuv, an asynchronous event notification library, incorrectly truncated certain hostnames, which may result in bypass of security measures on internal APIs or SSRF attacks.
2267205 – CVE-2024-24246 qpdf – Heap Buffer Overflow vulnerability in qpdf [fedora-all]
Fedora 38: wpa_supplicant 2024-36d2be00d0
backport fix for PEAP client (CVE-2023-52160)