(Dec 10) lxml could allow cross-site scripting (XSS) attacks.
Archive for Other
RedHat: RHSA-2018-3816:01 Important: CloudForms 4.6.6 security,
(Dec 13) An update is now available for CloudForms Management Engine 5.9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
RedHat: RHSA-2018-3803:01 Important: chromium-browser security update
(Dec 10) An update for chromium-browser is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
Debian: DSA-4354-1: firefox-esr security update
(Dec 12) Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code or bypass of the same-origin policy.
Ubuntu 3845-1: FreeRDP vulnerabilities
(Dec 12)
(Dec 11) pixman could be made to crash or run programs if it processed specially crafted instructions.
RedHat: RHSA-2018-3822:01 Important: kernel security and bug fix update
(Dec 12) An update for kernel is now available for Red Hat Enterprise Linux 5 Extended Lifecycle Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-3823:01 Moderate: kernel security and bug fix update
(Dec 12) An update for kernel is now available for Red Hat Enterprise Linux 5.9 Long Life. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Ubuntu 3844-1: Firefox vulnerabilities
(Dec 11) Firefox could be made to crash or run programs as your login if it opened a malicious website.
(Dec 11) pixman could be made to crash or run programs if it processed specially crafted instructions.
RedHat: RHSA-2018-3817:01 Important: Red Hat JBoss Fuse/A-MQ 6.3 R10
(Dec 11) An update is now available for Red Hat JBoss Fuse 6.3 and Red Hat JBoss A-MQ 6.3. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
RedHat: RHSA-2018-3805:01 Low: Red Hat Enterprise Linux 6.7 Extended Update
(Dec 10) This is the one-Month notification for the retirement of Red Hat Enterprise Linux 6.7 Extended Update Support (EUS). This notification applies only to those customers subscribed to the Extended Update Support (EUS) channel for Red Hat Enterprise Linux 6.7.
Debian: DSA-4353-1: php7.0 security update
(Dec 10) Multiple security issues were found in PHP, a widely-used open source general purpose scripting language: The EXIF module was susceptible to denial of service/information disclosure when parsing malformed images, the Apache module allowed cross-site-scripting via the body of a
(Dec 10) CUPS could be made to expose sensitive information.
(Dec 10) lxml could allow cross-site scripting (XSS) attacks.
RedHat: RHSA-2018-3806:01 Low: Red Hat Enterprise Linux 6.6 Telco Update
(Dec 10) This is the one-Month notification for the retirement of Red Hat Enterprise Linux 6.6 Telco Update Service (TUS). This notification applies only to those customers subscribed to the Telco Update Service (TUS) channel for Red Hat Enterprise Linux 6.6.
RedHat: RHSA-2018-3804:01 Low: Red Hat Enterprise Linux 7.3 Extended Update
(Dec 10) This is the final notification for the retirement of Red Hat Enterprise Linux 7.3 Extended Update Support (EUS). This notification applies only to those customers subscribed to the Extended Update Support (EUS) channel for Red Hat Enterprise Linux 7.3.
Debian: DSA-4351-1: libphp-phpmailer security update
(Dec 7) It was discovered that PHPMailer, a library to send email from PHP applications, is prone to a PHP object injection vulnerability, potentially allowing a remote attacker to execute arbitrary code.
Ubuntu 3839-1: WavPack vulnerabilities
(Dec 6) Several security issues were fixed in WavPack.
(Dec 3) Several security issues were fixed in Perl.
Debian: DSA-4352-1: chromium-browser security update
(Dec 8) Several vulnerabilities have been discovered in the chromium web browser. CVE-2018-17480
RedHat: RHSA-2018-3771:01 Moderate: ansible security and bug fix update
(Dec 4) An update for ansible is now available for Ansible Engine 2.6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
RedHat: RHSA-2018-3768:01 Important: Red Hat Fuse 7.2 security update
(Dec 4) An update is now available for Red Hat Fuse. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
Debian: DSA-4350-1: policykit-1 security update
(Dec 6) It was discovered that incorrect processing of very high UIDs in Policykit, a framework for managing administrative policies and privileges, could result in authentication bypass.
RedHat: RHSA-2018-3795:01 Critical: flash-plugin security update
(Dec 6) An update for flash-plugin is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which
RedHat: RHSA-2018-3772:01 Moderate: ansible security and bug fix update
(Dec 4) An update for ansible is now available for Ansible Engine 2. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from
Ubuntu 3840-1: OpenSSL vulnerabilities
(Dec 6) Several security issues were fixed in OpenSSL.
(Dec 6) USN-3831-1 introduced a regression in Ghostscript.
(Dec 6)
Ubuntu 3811-3: SpamAssassin vulnerabilities
(Dec 5) Several security issues were fixed in SpamAssassin.