No Image

USN-6111-1: Flask vulnerability

2023-05-29 KENNETH 0

USN-6111-1: Flask vulnerability It was discovered that Flask incorrectly handled certain data responses. An attacker could possibly use this issue to expose sensitive information. Source: USN-6111-1: Flask vulnerability

No Image

USN-6005-2: Sudo vulnerabilities

2023-05-29 KENNETH 0

USN-6005-2: Sudo vulnerabilities USN-6005-1 fixed vulnerabilities in Sudo. This update provides the corresponding updates for Ubuntu 16.04 LTS. Original advisory details: Matthieu Barjole and Victor Cutillas discovered that Sudo incorrectly escaped control characters in log messages and sudoreplay output. An attacker could possibly use these issues to inject terminal control characters that alter output when being viewed. Source: USN-6005-2: Sudo vulnerabilities

No Image

USN-6110-1: Jhead vulnerabilities

2023-05-29 KENNETH 0

USN-6110-1: Jhead vulnerabilities It was discovered that Jhead did not properly handle certain crafted Canon images when processing them. An attacker could possibly use this issue to crash Jhead, resulting in a denial of service. (CVE-2021-3496) It was discovered that Jhead did not properly handle certain crafted images when printing Canon-specific information. An attacker could possibly use this issue to crash Jhead, resulting in a denial of service. (CVE-2021-28275) It was discovered that Jhead did not properly handle certain crafted images when removing unknown sections. An attacker could possibly use this issue to crash Jhead, resulting in a denial of service. (CVE-2021-28275) Kyle Brown discovered that Jhead did not properly handle certain crafted images when editing their comments. An attacker could possibly use this to crash Jhead, resulting in a denial of service. (LP: #2020068) Source: USN-6110-1: Jhead vulnerabilities

No Image

USN-6097-1: Linux PTP vulnerability

2023-05-29 KENNETH 0

USN-6097-1: Linux PTP vulnerability It was discovered that Linux PTP did not properly perform a length check when forwarding a PTP message between ports. A remote attacker could possibly use this issue to access sensitive information, execute arbitrary code, or cause a denial of service. Source: USN-6097-1: Linux PTP vulnerability

No Image

Celebrating 20 Years of WordPress

2023-05-27 KENNETH 0

Celebrating 20 Years of WordPress You did it and I think congratulations are in order! You, dear WordPress enthusiast, have helped WordPress thrive for the past 20 years. It’s an incredible accomplishment, and I couldn’t be more thankful. Did you know: WordPress is seven years older than TikTok (2016), came four years before Tumblr (2007) and the first iPhone (2007), beat Facebook to market by about a year (2004), and is about five weeks older than Tesla (July 2003). May 27, 2023, marks exactly 20 years since Matt Mullenweg and Mike Little forked b2/cafelog to create WordPress Version 0.70. Quite a bit has taken place in the past 20 years, and imagine how much more we can accomplish together in the next 20! You can read about the first 20 years of WordPress in two parts:Milestones: The Story of WordPress [ more… ]