No Image

USN-6298-1: ZZIPlib vulnerabilities

2023-08-17 KENNETH 0

USN-6298-1: ZZIPlib vulnerabilities Liu Zhu discovered that ZZIPlib incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. (CVE-2018-7727) YiMing Liu discovered that ZZIPlib incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. (CVE-2020-18442) Source: USN-6298-1: ZZIPlib vulnerabilities

No Image

USN-6297-1: Ghostscript vulnerability

2023-08-17 KENNETH 0

USN-6297-1: Ghostscript vulnerability It was discovered that Ghostscript incorrectly handled outputting certain PDF files. A local attacker could potentially use this issue to cause a crash, resulting in a denial of service. Source: USN-6297-1: Ghostscript vulnerability

No Image

USN-6296-1: PostgreSQL vulnerabilities

2023-08-17 KENNETH 0

USN-6296-1: PostgreSQL vulnerabilities It was discovered that PostgreSQL incorrectly handled certain extension script substitutions. An attacker having database-level CREATE privileges can use this issue to execute arbitrary code as the bootstrap superuser. (CVE-2023-39417) It was discovered that PostgreSQL incorrectly handled the MERGE command. A remote attacker could possibly use this issue to bypass certain UPDATE and SELECT policies. This issue only affected Ubuntu 23.04. (CVE-2023-39418) Source: USN-6296-1: PostgreSQL vulnerabilities

No Image

Announcing Windows 11 Insider Preview Build 25931 (Canary Channel)

2023-08-17 KENNETH 0

Announcing Windows 11 Insider Preview Build 25931 (Canary Channel) Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 25931 to the Canary Channel. We are releasing ISOs for this build – they can be downloaded here. REMINDER: As builds released to the Canary Channel are “hot off the presses,” we will offer limited documentation for builds flighted to the Canary Channel including documenting only the most significant and highly impactful known issues. Please note that we will not publish a blog post for every flight – only when new features are available in a build. What’s new in Build 25931 New features from the Dev Channel This build includes new features from the Dev Channel such as Unicode Emoji 15 support, voice access is available to use on more areas in Windows such as the Lock screen, and more. [ more… ]

No Image

USN-6295-1: Podman vulnerability

2023-08-17 KENNETH 0

USN-6295-1: Podman vulnerability It was discovered that Podman incorrectly handled certain supplementary groups. An attacker could possibly use this issue to expose sensitive information or execute binary code. Source: USN-6295-1: Podman vulnerability