No Image

USN-4546-2: Firefox regressions

2020-10-16 KENNETH 0

USN-4546-2: Firefox regressions USN-4546-1 fixed vulnerabilities in Firefox. The update introduced various minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Multiple security issues were discovered in Firefox. If a user were tricked in to opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, conduct cross-site scripting (XSS) attacks, spoof the site displayed in the download dialog, or execute arbitrary code. Source: USN-4546-2: Firefox regressions

No Image

USN-4584-1: HtmlUnit vulnerability

2020-10-16 KENNETH 0

USN-4584-1: HtmlUnit vulnerability It was discovered that HtmlUnit incorrectly initialized Rhino engine. An Attacker could possibly use this issue to execute arbitrary Java code. Source: USN-4584-1: HtmlUnit vulnerability

No Image

USN-4589-2: Docker vulnerability

2020-10-16 KENNETH 0

USN-4589-2: Docker vulnerability USN-4589-1 fixed a vulnerability in containerd. This update provides the corresponding update for docker.io. Original advisory details: It was discovered that containerd could be made to expose sensitive information when processing URLs in container image manifests. A remote attacker could use this to trick the user and obtain the user’s registry credentials. Source: USN-4589-2: Docker vulnerability

No Image

USN-4589-1: containerd vulnerability

2020-10-16 KENNETH 0

USN-4589-1: containerd vulnerability It was discovered that containerd could be made to expose sensitive information when processing URLs in container image manifests. A remote attacker could use this to trick the user and obtain the user’s registry credentials. Source: USN-4589-1: containerd vulnerability

No Image

ICYMI – Recapping Microsoft Edge at Ignite 2020

2020-10-16 KENNETH 0

ICYMI – Recapping Microsoft Edge at Ignite 2020 October is National Cybersecurity Awareness month (NCSAM) and it couldn’t be more timely. Vulnerability to online threats is literally top of mind for everybody. In a recent study, 90% of respondents (yes, you read that right) indicated that phishing attacks have impacted their organizations! It’s no wonder then that they are now planning to have data & information security and anti-phishing tools as part of their top 5 cybersecurity investments. With employees logging in on home networks, public networks, and every network in between, the browser—the gateway to the Internet—needs to be part of an organization’s cybersecurity approach. So, is there a browser that can address those cybersecurity needs? A few weeks ago at Ignite, we gave a definitive answer – Microsoft Edge. It’s simple: Microsoft Edge is more secure than Google [ more… ]