Update to 134.0.6998.117 * Critical CVE-2025-2476: Use after free in Lens
Archive for March, 2025
Version 3.1.6 Released 2025-03-05 The |attr filter does not bypass the environment’s attribute lookup, allowing the sandbox to apply its checks.
Update to 134.0.6998.117 * Critical CVE-2025-2476: Use after free in Lens
Several security issues were fixed in elfutils.
zvbi could be made to crash or run programs if it received specially crafted input.
Here at Plesk, we aim to continuously improve the tools and features you use to manage your hosting environment. With Plesk Obsidian 18.0.68, we’ve introduced several exciting enhancements and new features designed to boost performance, streamline operations, and provide a more secure and user-friendly experience. Panel and Hosting Improvements CloudLinux 9 Support: Support for CloudLinux […]
The post Now Available: Plesk Obsidian 18.0.68 appeared first on Plesk.
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2024-44192
Ivan Fratric discovered two use-after-free vulnerabilities in libxslt, an XSLT processing runtime library, which may result in the execution of arbitrary code if a specially crafted files are processed.
This is the monthly update for .NET for March 2025. Release Notes: SDK https://github.com/dotnet/core/blob/main/release-notes/8.0/8.0.14/8.0.114.md Runtime: https://github.com/dotnet/core/blob/main/release- notes/8.0/8.0.14/8.0.14.md
Update to 4.3.6 (rhbz#2352545)
A cross-site scripting vulnerability was discovered in hgweb, the integrated stand-alone web interface of the Mercurial version control system.
Update to 0.40.0 https://sw.kovidgoyal.net/kitty/changelog/#detailed-list-of-changes
go-gh could be made to expose sensitive information over the network.
Update to 3.2.8 – Closes rhbz#2137000 rhbz#2340164 rhbz#2300673
Update to 3.2.8 – Closes rhbz#2137000 rhbz#2340164 rhbz#2300673
PHP version 8.3.19 (13 Mar 2025) BCMath: Fixed bug GH-17398 (bcmul memory leak). (SakiTakamachi) Core: Fixed bug GH-17623 (Broken stack overflow detection for variable compilation).
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
PAM-PKCS#11 could be used to bypass authentication.
Libxslt could be made to crash or run programs if it opened a specially crafted file.
Several security issues were fixed in Valkey.
fix CVE-2024-56737, CVE-2025-56737, CVE-2025-1864 Fix CVE-2025-1744 and CVE-2025-1864
fix CVE-2024-56737, CVE-2025-56737, CVE-2025-1864 Fix CVE-2025-1744 and CVE-2025-1864
Several security issues were fixed in Alpine.
Libxslt could be made to crash or run programs if it opened a specially crafted file.
Several security issues were fixed in PostgreSQL.
Several security issues were fixed in uriparser.
Tigervnc 1.15.0 update.
Several security issues were fixed in RestrictedPython.
Rebase to 2.7.0
djoser could be made to bypass authentication checks during login.