No Image

USN-5994-1: HAProxy vulnerability

2023-04-03 KENNETH 0

USN-5994-1: HAProxy vulnerability It was discovered that HAProxy incorrectly initialized certain connection buffers. A remote attacker could possibly use this issue to obtain sensitive information. Source: USN-5994-1: HAProxy vulnerability

No Image

USN-5993-1: Samba vulnerabilities

2023-04-03 KENNETH 0

USN-5993-1: Samba vulnerabilities Demi Marie Obenour discovered that the Samba LDAP server incorrectly handled certain confidential attribute values. A remote authenticated attacker could possibly use this issue to obtain certain sensitive information. (CVE-2023-0614) Andrew Bartlett discovered that the Samba AD DC admin tool incorrectly sent passwords in cleartext. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2023-0922) Source: USN-5993-1: Samba vulnerabilities

No Image

USN-5992-1: ldb vulnerability

2023-04-03 KENNETH 0

USN-5992-1: ldb vulnerability Demi Marie Obenour discovered that ldb, when used with Samba, incorrectly handled certain confidential attribute values. A remote authenticated attacker could possibly use this issue to obtain certain sensitive information. Source: USN-5992-1: ldb vulnerability

No Image

The Month in WordPress – March 2023

2023-04-03 KENNETH 0

The Month in WordPress – March 2023 March saw the arrival of the first major release of 2023, WordPress 6.2 “Dolphy.” Planning for the project’s 20th anniversary continues with new celebratory updates and commemorative swag. Read on for the latest happenings in the WordPress space. Meet WordPress 6.2 “Dolphy” WordPress 6.2 “Dolphy” was released on March 29, 2023. Named after the acclaimed jazz multi-instrumentalist and composer Eric Allan Dolphy Jr., the latest version of WordPress further enhances the site editing experience with significant updates. Highlights include a reimagined Site Editor interface, a more intuitive way to manage menus, and a distraction-free writing mode. A new Block Inserter design adds integration with Openverse, allowing you to easily browse and insert free, openly-licensed images and audio files into your content. Whether you’re a content creator, designer, or developer, WordPress 6.2 has something [ more… ]

No Image

USN-5966-3: amanda regression

2023-04-03 KENNETH 0

USN-5966-3: amanda regression USN-5966-1 fixed vulnerabilities in amanda. Unfortunately that update caused a regression and was reverted in USN-5966-2. This update provides security fixes for Ubuntu 22.10, Ubuntu 22.04 LTS, Ubuntu 20.04 LTS and Ubuntu 18.04 LTS. We apologize for the inconvenience. Original advisory details: Maher Azzouzi discovered an information disclosure vulnerability in the calcsize binary within amanda. calcsize is a suid binary owned by root that could possibly be used by a malicious local attacker to expose sensitive file system information. (CVE-2022-37703) Maher Azzouzi discovered a privilege escalation vulnerability in the rundump binary within amanda. rundump is a suid binary owned by root that did not perform adequate sanitization of environment variables or commandline options and could possibly be used by a malicious local attacker to escalate privileges. (CVE-2022-37704) Maher Azzouzi discovered a privilege escalation vulnerability in the runtar [ more… ]