No Image

USN-3593-1: Zsh vulnerabilities

2018-03-08 KENNETH 0

USN-3593-1: Zsh vulnerabilities zsh vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in Zsh. Software Description zsh – shell with lots of features Details It was discovered that Zsh incorrectly handled certain enviroment variables. An attacker could possibly use this issue to gain privileged access to the system. This issue only affected Ubuntu 14.04 LTS. (CVE-2014-10070) It was discovered that Zsh incorrectly handled certain inputs. An attacker could possibly use this to execute arbitrary code. This issue only affected Ubuntu 14.04 LTS. (CVE-2014-10071) It was discovered that Zsh incorrectly handled some symbolic links. An attacker could possibly use this to execute arbitrary code. This issue only affected Ubuntu 14.04 LTS. (CVE-2014-10072) It was discovered that Zsh incorrectly handled certain errors. An attacker [ more… ]

No Image

USN-3592-1: ClamAV vulnerabilities

2018-03-08 KENNETH 0

USN-3592-1: ClamAV vulnerabilities clamav vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in ClamAV. Software Description clamav – Anti-virus utility for Unix Details It was discovered that ClamAV incorrectly handled parsing certain PDF files. A remote attacker could use this issue to cause ClamAV to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2018-0202) Hanno Böck discovered that ClamAV incorrectly handled parsing certain XAR files. A remote attacker could use this issue to cause ClamAV to crash, resulting in a denial of service. (CVE-2018-1000085) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 17.10 clamav – 0.99.4+addedllvm-0ubuntu0.17.10.1 Ubuntu 16.04 LTS clamav – 0.99.4+addedllvm-0ubuntu0.16.04.1 Ubuntu 14.04 LTS clamav – 0.99.4+addedllvm-0ubuntu0.14.04.1 To [ more… ]

No Image

RHSA-2018:0470-1: Moderate: Red Hat Enterprise MRG Realtime 2.5 security and enhancement update

2018-03-08 KENNETH 0

RHSA-2018:0470-1: Moderate: Red Hat Enterprise MRG Realtime 2.5 security and enhancement update Red Hat Enterprise Linux: Updated Red Hat Enterprise Messaging, Realtime, and Grid (MRG) Realtime packages that fix multiple security issues and add one enhancement are now available for Red Hat Enterprise MRG 2.5. Red Hat Product Security has rated this update as having Moderate security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. CVE-2018-5332, CVE-2018-5333 Source: RHSA-2018:0470-1: Moderate: Red Hat Enterprise MRG Realtime 2.5 security and enhancement update

No Image

RHSA-2018:0469-1: Important: dhcp security update

2018-03-08 KENNETH 0

RHSA-2018:0469-1: Important: dhcp security update Red Hat Enterprise Linux: An update for dhcp is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2018-5732, CVE-2018-5733 Source: RHSA-2018:0469-1: Important: dhcp security update

No Image

RHBA-2018:0468-1: qemu-kvm-rhev bug fix update

2018-03-08 KENNETH 0

RHBA-2018:0468-1: qemu-kvm-rhev bug fix update Red Hat Enterprise Linux: Updated qemu-kvm-rhev packages that fix several bugs are now available for Red Hat Virtualization Host 7. Source: RHBA-2018:0468-1: qemu-kvm-rhev bug fix update