No Image

USN-6274-1: XMLTooling vulnerability

2023-08-03 KENNETH 0

USN-6274-1: XMLTooling vulnerability Jurien de Jong discovered that XMLTooling did not properly handle certain KeyInfo element content within an XML signature. An attacker could possibly use this issue to achieve server-side request forgery. Source: USN-6274-1: XMLTooling vulnerability

No Image

USN-6275-1: Cargo vulnerability

2023-08-03 KENNETH 0

USN-6275-1: Cargo vulnerability Addison Crump discovered that Cargo incorrectly set file permissions on UNIX-like systems when extracting crate archives. If the crate would contain files writable by any user, a local attacker could possibly use this issue to execute code as another user. Source: USN-6275-1: Cargo vulnerability

Alienware reveals redesigned Aurora gaming desktop PC with Windows 11

2023-08-03 KENNETH 0

Alienware reveals redesigned Aurora gaming desktop PC with Windows 11 Desktop gamers in search of a new rig can now check out Alienware’s redesigned Aurora R16, which comes with Windows 11. It improves upon the Aurora R15 with a quieter system, lower CPU and GPU temperatures and a new space-saving form factor – all while delivering the elite gaming performance expected from Alienware. The Aurora R16 is the company’s first desktop to include the Alienware Command Center – a centralized dashboard to quickly get to game-specific profiles and themes, lighting, macros, audio and more. Like its predecessor, the Aurora R16 is designed for gamers who want a hassle-free plug-and-play elite gaming experience that performs out of the box and offers full warranty and support. It’s available now starting at $1749.99 (US), $2299.99 (CA) from Dell.com with a 13th Gen Intel [ more… ]

No Image

USN-6273-1: poppler vulnerabilities

2023-08-03 KENNETH 0

USN-6273-1: poppler vulnerabilities Jieyong Ma discovered that poppler incorrectly handled certain malformed PDF files. A remote attacker could possibly use this issue to cause poppler to crash, resulting in a denial of service. This issue only affected Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-27337) It was discovered that poppler incorrectly handled certain malformed PDF files. A remote attacker could possibly use this issue to cause poppler to crash, resulting in a denial of service. This issue only affected Ubuntu 22.04 LTS and Ubuntu 23.04. (CVE-2023-34872) Source: USN-6273-1: poppler vulnerabilities

No Image

USN-5064-3: GNU cpio vulnerability

2023-08-03 KENNETH 0

USN-5064-3: GNU cpio vulnerability USN-5064-1 fixed a vulnerability in GNU. This update provides the corresponding update for Ubuntu 14.04 LTS. Original advisory details: Maverick Chung and Qiaoyi Fang discovered that cpio incorrectly handled certain pattern files. A remote attacker could use this issue to cause cpio to crash, resulting in a denial of service, or possibly execute arbitrary code. Source: USN-5064-3: GNU cpio vulnerability