No Image

USN-6272-1: OpenJDK 20 vulnerabilities

2023-08-03 KENNETH 0

USN-6272-1: OpenJDK 20 vulnerabilities Motoyasu Saburi discovered that OpenJDK 20 incorrectly handled special characters in file name parameters. An attacker could possibly use this issue to insert, edit or obtain sensitive information. (CVE-2023-22006) Eirik Bjørsnøs discovered that OpenJDK 20 incorrectly handled certain ZIP archives. An attacker could possibly use this issue to cause a denial of service. (CVE-2023-22036) David Stancu discovered that OpenJDK 20 had a flaw in the AES cipher implementation. An attacker could possibly use this issue to obtain sensitive information. (CVE-2023-22041) Zhiqiang Zang discovered that OpenJDK 20 incorrectly handled array accesses when using the binary ‘%’ operator. An attacker could possibly use this issue to obtain sensitive information. (CVE-2023-22044) Zhiqiang Zang discovered that OpenJDK 20 incorrectly handled array accesses. An attacker could possibly use this issue to obtain sensitive information. (CVE-2023-22045) It was discovered that OpenJDK 20 [ more… ]

No Image

USN-6271-1: MaraDNS vulnerabilities

2023-08-03 KENNETH 0

USN-6271-1: MaraDNS vulnerabilities Xiang Li discovered that MaraDNS incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to obtain sensitive information. (CVE-2022-30256) Huascar Tejeda discovered that MaraDNS incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. (CVE-2023-31137) Source: USN-6271-1: MaraDNS vulnerabilities

No Image

USN-6270-1: Vim vulnerabilities

2023-08-03 KENNETH 0

USN-6270-1: Vim vulnerabilities It was discovered that Vim incorrectly handled memory when opening certain files. If an attacker could trick a user into opening a specially crafted file, it could cause Vim to crash, or possibly execute arbitrary code. This issue only affected Ubuntu 22.04 LTS. (CVE-2022-2182) It was discovered that Vim incorrectly handled memory when deleting buffers in diff mode. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-2208) It was discovered that Vim incorrectly handled memory access. An attacker could possibly use this issue to cause the corruption of sensitive information, a crash, or arbitrary code execution. This issue only affected Ubuntu 14.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-2210) It was discovered that Vim incorrectly handled [ more… ]

No Image

Announcing Windows 11 Insider Preview Build 22621.2129 and 22631.2129

2023-08-03 KENNETH 0

Announcing Windows 11 Insider Preview Build 22621.2129 and 22631.2129 Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 22621.2129 and Build 22631.2129 (KB5029359) to the Beta Channel. Build 22631.2129 = New features rolling out. Build 22621.2129 = New features off by default. IMPORTANT NOTE: If you are a NEW Windows Insider joining the Beta Channel today, you will not be offered this update to prevent the possibility of your device getting into a bad state. A very small subset of EXISTING Windows Insiders may also not receive this update for the same reason. This issue will be fixed in a newer Beta Channel update soon. Thank you for your patience! REMINDER: Insiders who were previously on Build 22624 will automatically get moved to Build 22631 via an enablement package. The enablement package artificially increments the build number for [ more… ]

No Image

Announcing Windows 11 Insider Preview Build 23516

2023-08-03 KENNETH 0

Announcing Windows 11 Insider Preview Build 23516 Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 23516 to the Dev Channel. August 2023 Bug Bash: Starting today August 2nd, the bug bash begins and will run through Monday August 7th at 11:59pm PDT. The bug bash will span the latest features available in the currently available preview builds across the Canary, Dev, and Beta Channels. Check Feedback Hub for quests! What’s new in Build 23516 Improving the screen casting experience Casting from your Windows PC allows you to wirelessly extend your display to another nearby PC, TV or other external displays. We are making some improvements that focus on educating people about the Cast feature, improving its discoverability, and simplifying the overall experience in Windows 11. Those improvements include: When doing multitasking activities on your PC such as [ more… ]