No Image

WordPress 5.4.1

2020-04-30 KENNETH 0

WordPress 5.4.1 WordPress 5.4.1 is now available! This security and maintenance release features 17 bug fixes in addition to 7 security fixes. Because this is a security release, it is recommended that you update your sites immediately. All versions since WordPress 3.7 have also been updated. WordPress 5.4.1 is a short-cycle security and maintenance release. The next major release will be version 5.5. You can download WordPress 5.4.1 by downloading from WordPress.org, or visit your Dashboard → Updates and click Update Now. If you have sites that support automatic background updates, they’ve already started the update process. Security Updates Seven security issues affect WordPress versions 5.4 and earlier. If you haven’t yet updated to 5.4, all WordPress versions since 3.7 have also been updated to fix the following security issues: Props to Muaz Bin Abdus Sattar and Jannes who both [ more… ]

Announcing Windows 10 Insider Preview Build 19619

2020-04-30 KENNETH 0

Announcing Windows 10 Insider Preview Build 19619 Hello Windows Insiders, today we’re releasing Windows 10 Insider Preview Build 19619.1000 to Windows Insiders in the Fast ring. You can check out our Windows Insider Program documentation here, including a list of all the new features and updates released in builds so far. Not seeing any of the features in this build? Check your Windows Insider Settings to make sure you’re on the Fast ring. Submit feedback here to let us know if things weren’t working the way you expected. If you want a complete look at what build is in which Insider ring, head over to Flight Hub. Please note, there will be a slight delay between when a build is flighted and when Flight Hub is updated. Other updates for Insiders Easy access to COVID-19 info in your search box [ more… ]

No Image

USN-4341-2: Samba vulnerability

2020-04-30 KENNETH 0

USN-4341-2: Samba vulnerability samba vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 ESM Summary Samba could be made to consume resources if it received a specially crafted LDAP query. Software Description samba – SMB/CIFS file, print, and login server for Unix Details USN-4341-1 fixed a vulnerability in Samba. This update provides the corresponding update for Ubuntu 14.04 ESM. Original advisory details: It was discovered that Samba incorrectly handled certain LDAP queries. A remote attacker could possibly use this issue to cause Samba to consume resources, resulting in a denial of service. (CVE-2020-10704) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM samba – 2:4.3.11+dfsg-0ubuntu0.14.04.20+esm6 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary [ more… ]

No Image

The Safety Boat: Kubernetes and Rust

2020-04-30 KENNETH 0

The Safety Boat: Kubernetes and Rust Our team, DeisLabs, recently released a new piece of software called Krustlet, which is a tool for running WebAssembly modules on the popular, open-source container management tool called Kubernetes. Kubernetes is used quite extensively to run cloud software across many vendors and companies and is primarily written in the Go programming language. While there have … The Safety Boat: Kubernetes and Rust Read More » The post The Safety Boat: Kubernetes and Rust appeared first on Microsoft Security Response Center. Source: The Safety Boat: Kubernetes and Rust

No Image

USN-4348-1: Mailman vulnerabilities

2020-04-29 KENNETH 0

USN-4348-1: Mailman vulnerabilities mailman vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Several security issues were fixed in Mailman. Software Description mailman – Web-based mailing list manager (legacy branch) Details It was discovered that Mailman incorrectly handled certain inputs. An attacker could possibly use this to issue execute arbitrary scripts or HTML. (CVE-2018-0618) It was discovered that Mailman incorrectly handled certain inputs. An attacker could possibly use this issue to display arbitrary text on a web page. (CVE-2018-13796) It was discovered that Mailman incorrectly handled certain files. An attacker could possibly use this issue to execute arbitrary code. (CVE-2020-12137) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS mailman – 1:2.1.26-1ubuntu0.1 Ubuntu 16.04 LTS mailman – 1:2.1.20-1ubuntu0.4 To update [ more… ]