(Aug 17) Fariskhi Vidyan and Thomas Jarosch discovered several vulnerabilities in php-horde-image, the image processing library for the Horde groupware suite. They would allow an attacker to cause a denial-of-service or execute arbitrary code.
Archive for Other
(Aug 16) An update for docker is now available for Red Hat Enterprise Linux 7 Extras. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
(Aug 16) Several security issues were fixed in procps-ng.
(Aug 14) Several security issues were fixed in the Linux kernel.
(Aug 16) Red Hat JBoss Core Services Pack Apache Server 2.4.29 packages for Microsoft Windows and Oracle Solaris are now available. Red Hat Product Security has rated this release as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
(Aug 16) gdm 3.28.3 release, fixing CVE-2018-14424. – CVE-2018-14424 – double free fix – lifecycle fixes to libgdm/GdmClient – follow up fixes dealing with login screen reaping form last release – allow pam modules to use SIGUSR1 – set PWD for user session – tell cirrus not to use wayland – Translation updates
(Aug 16) fix for CVE-2018-14526
(Aug 16) An update for rhvm-appliance is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
(Aug 15) An update for flash-plugin is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
(Aug 15) GnuPG could be made to expose sensitive information.
(Aug 14) Several security issues were fixed in the Linux kernel.
(Aug 14) CVE-2018-5391 (FragmentSmack) Juha-Matti Tilli discovered a flaw in the way the Linux kernel handled reassembly of fragmented IPv4 and IPv6 packets. A remote
(Aug 14) Fix directory traversal vulnerability References: https://lists.zx2c4.com/pipermail/cgit/2018-August/004176.html https://git.zx2c4.com/cgit/commit/?id=53efaf30b
(Aug 14) Update to 1.11.15 security release (CVE-2018-14574) This fixes an open redirect possibility in CommonMiddleware. Release notes: https://docs.djangoproject.com/en/2.0/releases/1.11.15/
(Aug 14) Several security issues were fixed in the Linux kernel.
(Aug 14) Several security issues were fixed in the Linux kernel.
(Aug 15) An update is now available for Red Hat JBoss Enterprise Application Platform 7.1 for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
(Aug 15) An update is now available for Red Hat JBoss Enterprise Application Platform 7.1 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
(Aug 13) Chris Coulson discovered a use-after-free flaw in the GNOME Display Manager, triggerable by an unprivileged user via a specially crafted sequence of D-Bus method calls, leading to denial of service or potentially the execution of arbitrary code.
(Aug 13) Several security issues were fixed in libarchive.
(Aug 14) Several vulnerabilities have been discovered in Samba, a SMB/CIFS file, print, and login server for Unix. The Common Vulnerabilities and Exposures project identifies the following issues:
(Aug 11) New upstream version 0.7alpha. Fixes CVE-2018-14679 libmspack: off-by-one error in the CHM PMGI/PMGL chunk number validity checks
(Aug 11) – update to 2.56.x
(Aug 11) rebase to 8.37.0 ———————- – few fixes and enhancements handling journal input – now requires librelp at least 1.2.16, adding support for setting address to bind – various other rsyslog core bugfixes and stability fixes
(Aug 11) – update to 2.56.x
(Aug 10) Two vulnerabilities have been found in the PostgreSQL database system: CVE-2018-10915
(Aug 10) Several security issues were fixed in the kernel.
(Aug 9) An update is now available for Red Hat OpenShift Application Runtimes. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
(Aug 10) It was discovered that the PatternSyntaxException class in the Concurrency component of OpenJDK, an implementation of the Oracle Java platform could result in denial of service via excessive memory consumption.
(Aug 9) The 4.17.12 stable kernel update contains a number of important fixes across the tree.