No Image

RHBA-2017:3282-1: openstack-glance bug fix advisory

2017-11-30 KENNETH 0

RHBA-2017:3282-1: openstack-glance bug fix advisory Red Hat Enterprise Linux: Updated OpenStack Image Service packages that resolve various issues are now available for Red Hat OpenStack Platform 8.0 (Liberty) for RHEL 7. Source: RHBA-2017:3282-1: openstack-glance bug fix advisory

No Image

RHBA-2017:3281-1: openstack-neutron bug fix advisory

2017-11-30 KENNETH 0

RHBA-2017:3281-1: openstack-neutron bug fix advisory Red Hat Enterprise Linux: Updated OpenStack Networking packages that resolve various issues are now available for Red Hat OpenStack Platform 8.0 (Liberty) for RHEL 7. Source: RHBA-2017:3281-1: openstack-neutron bug fix advisory

No Image

USN-3498-1: curl vulnerabilities

2017-11-29 KENNETH 0

USN-3498-1: curl vulnerabilities Ubuntu Security Notice USN-3498-1 29th November, 2017 curl vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 17.04 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in curl. Software description curl – HTTP, HTTPS, and FTP client and client libraries Details Alex Nichols discovered that curl incorrectly handled NTLM authenticationcredentials. A remote attacker could use this issue to cause curl to crash,resulting in a denial of service, or possibly execute arbitrary code. Thisissue only affected Ubuntu 16.04 LTS, Ubuntu 17.04 and Ubuntu 17.10.(CVE-2017-8816) It was discovered that curl incorrectly handled FTP wildcard matching. Aremote attacker could use this issue to cause curl to crash, resulting in adenial of service, or possibly obtain sensitive information.(CVE-2017-8817) Update instructions The problem can be corrected by updating your system to the [ more… ]

No Image

USN-3497-1: OpenJDK 7 vulnerabilities

2017-11-29 KENNETH 0

USN-3497-1: OpenJDK 7 vulnerabilities Ubuntu Security Notice USN-3497-1 29th November, 2017 openjdk-7 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Several security issues were fixed in OpenJDK 7. Software description openjdk-7 – Open Source Java implementation Details It was discovered that the Smart Card IO subsystem in OpenJDK did notproperly maintain state. An attacker could use this to specially constructan untrusted Java application or applet to gain access to a smart card,bypassing sandbox restrictions. (CVE-2017-10274) Gaston Traberg discovered that the Serialization component of OpenJDK didnot properly limit the amount of memory allocated when performingdeserializations. An attacker could use this to cause a denial of service(memory exhaustion). (CVE-2017-10281) It was discovered that the Remote Method Invocation (RMI) component inOpenJDK did not properly handle unreferenced objects. An attacker could usethis to specially construct an [ more… ]

No Image

RHSA-2017:3278-1: Important: samba4 security update

2017-11-29 KENNETH 0

RHSA-2017:3278-1: Important: samba4 security update Red Hat Enterprise Linux: An update for samba4 is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2017-14746, CVE-2017-15275 Source: RHSA-2017:3278-1: Important: samba4 security update