(Jul 24) An update for thunderbird is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability
(Jul 24) Danny Grander reported that the unzip and untar tasks in ant, a Java based build tool like make, allow the extraction of files outside a target directory. An attacker can take advantage of this flaw by submitting a specially crafted Zip or Tar archive to an ant build to
Which SSL is Right For Me?
Early this year Google announced that it would start warning users when a site they visited was not using an SSL, and we helped you understand the reasons behind SSLs. Today, let’s talk about picking the right one! No matter what sort of website you may host, protecting and encrypting the data transmitted over the internet has never been more important. From consumer apprehension due to browser warnings to identity theft due to …
(Jul 23) Add fix for CVE-2018-0618 (#1596459) —- Add fix for CVE-2018-0618 (#1596460)
(Jul 23) Update to 1.2.6 to fix a local authenticated privilege escalation bug (CVE-2018-10900). The issue has been discovered and responsibly disclosed by Denis Andzakovic: https://pulsesecurity.co.nz/advisories/NM-VPNC-Privesc