No Image

LSN-0066-1: Kernel Live Patch Security Notice

2020-05-01 KENNETH 0

LSN-0066-1: Kernel Live Patch Security Notice Linux kernel vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 18.04 LTS Ubuntu 16.04 LTS Ubuntu 14.04 ESM Summary Several security issues were fixed in the Linux kernel. Software Description linux – Linux kernel linux-aws – Linux kernel for Amazon Web Services (AWS) systems linux-azure – Linux kernel for Microsoft Azure Cloud systems linux-oem – Linux kernel for OEM processors Details It was discovered that the virtual terminal implementation in the Linux kernel did not properly handle resize events. A local attacker could use this to expose sensitive information. (CVE-2020-8647) It was discovered that the virtual terminal implementation in the Linux kernel contained a race condition. A local attacker could possibly use this to cause a denial of service (system crash) or expose sensitive information. (CVE-2020-8648) It was discovered [ more… ]

No Image

USN-4349-1: EDK II vulnerabilities

2020-05-01 KENNETH 0

USN-4349-1: EDK II vulnerabilities edk2 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Several security issues were fixed in edk2. Software Description edk2 – UEFI firmware for 64-bit x86 virtual machines Details A buffer overflow was discovered in the network stack. An unprivileged user could potentially enable escalation of privilege and/or denial of service. This issue was already fixed in a previous release for 18.04 LTS and 19.10. (CVE-2018-12178) A buffer overflow was discovered in BlockIo service. An unauthenticated user could potentially enable escalation of privilege, information disclosure and/or denial of service. This issue was already fixed in a previous release for 18.04 LTS and 19.10. (CVE-2018-12180) A stack overflow was discovered in bmp. An unprivileged user could potentially enable denial of service or elevation of privilege [ more… ]

Getting the May 2020 Update Ready for Release – UPDATED

2020-05-01 KENNETH 0

Getting the May 2020 Update Ready for Release – UPDATED Hello Windows Insiders! We are continuing to work on getting the Windows 10 May 2020 Update (20H1) ready for release. Today we are releasing Build 19041.208 to Windows Insiders in the Release Preview ring. While we originally thought that Build 19041.207 would be the final build, we made the decision to take in one more fix we felt was important to have before making the May 2020 Update generally available. We believe that Build 19041.208 is the new final build and still plan on continuing to improve the overall experience of the May 2020 Update on customers’ PCs as part of our normal servicing cadence. Build 19041.208 (KB4558244) includes all of the 20H1 features and is cumulative and includes all the fixes released to Windows Insiders in the Slow ring [ more… ]

Getting Started with NGINX Ingress Operator on Red Hat OpenShift

2020-05-01 KENNETH 0

Getting Started with NGINX Ingress Operator on Red Hat OpenShift In our partnership with Red Hat, we continue to focus on supporting enterprise users who require a high‑performance, scalable, long‑term solution for DevOps‑compatible service delivery in OpenShift. The NGINX Ingress Operator for OpenShift is a supported and certified mechanism for deploying the NGINX Plus Ingress Controller for Kubernetes alongside the default router in an OpenShift environment, with point-and-click installation and automatic upgrades. You can leverage the Operator Lifecycle Manager (OLM) to perform installation, upgrade, and configuration of the NGINX Ingress Operator. Wondering why you would want to use the NGINX Plus Ingress Controller in addition to the default router? Learn how our partnership enables secure, scalable, and supported application delivery in our The Value of Red Hat + NGINX blog. This step-by-step guide provides everything you need to get started with the NGINX [ more… ]

Announcing NGINX Ingress Controller for Kubernetes Release 1.7.0

2020-05-01 KENNETH 0

Announcing NGINX Ingress Controller for Kubernetes Release 1.7.0 We are happy to announce release 1.7.0 of the NGINX Ingress Controller for Kubernetes. This release builds upon the development of our supported solution for Ingress load balancing on Kubernetes platforms, including Amazon Elastic Container Service for Kubernetes (EKS), the Azure Kubernetes Service (AKS), Google Kubernetes Engine (GKE), Red Hat OpenShift, IBM Cloud Private, Diamanti, and others. With release 1.7.0, we continue our commitment to providing a flexible, powerful and easy-to-use Ingress Controller, which you can configure with both Kubernetes Ingress resources and NGINX Ingress resources: Kubernetes Ingress resources provide maximum compatibility across Ingress controller implementations, and can be extended using annotations and custom templates to generate sophisticated configuration. NGINX Ingress resources provide an NGINX‑specific configuration schema, which is richer and safer than customizing the generic Kubernetes Ingress resources. Release 1.7.0 introduces the following major improvements: [ more… ]