No Image

USN-3463-1: Werkzeug vulnerability

2017-10-26 KENNETH 0

USN-3463-1: Werkzeug vulnerability Ubuntu Security Notice USN-3463-1 25th October, 2017 python-werkzeug vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Werkzeug could be made to run arbitrary code if it opened a specially crafted file. Software description python-werkzeug – collection of utilities for WSGI applications Details It was discovered that Werkzeug did not properly handle certainweb scripts. A remote attacker could use this to inject arbitrarycode via a field that contains an exception message. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.04 LTS: python3-werkzeug 0.10.4+dfsg1-1ubuntu1.1 python-werkzeug 0.10.4+dfsg1-1ubuntu1.1 Ubuntu 14.04 LTS: python3-werkzeug 0.9.4+dfsg-1.1ubuntu2.1 python-werkzeug 0.9.4+dfsg-1.1ubuntu2.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2016-10516 Source: USN-3463-1: Werkzeug [ more… ]

WURFL Device Detection for NGINX Plus

2017-10-26 KENNETH 0

WURFL Device Detection for NGINX Plus This post is adapted from a presentation at nginx.conf 2017 by Luca Passani, Chief Technology Officer of ScientiaMobile. You can view the complete presentation on YouTube. My name is Luca Passani. I’m the CTO of ScientiaMobile. A few years ago, we launched a module for NGINX open source, and this year that module has been certified by NGINX for use with NGINX Plus. We are very proud of that. I’m here to tell you guys about what the module is, and why it’s relevant for a lot of companies. I’ll start by giving an overview of what device intelligence or device detection is in general. Let’s say that device detection helps with a lot of issues when connected to the mobile web  – accessing the web through mobile devices such as smartphones, tablets, and [ more… ]

No Image

RHBA-2017:3070-1: openstack-neutron bug fix advisory

2017-10-26 KENNETH 0

RHBA-2017:3070-1: openstack-neutron bug fix advisory Red Hat Enterprise Linux: Updated OpenStack Networking packages that resolve various issues are now available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7. Source: RHBA-2017:3070-1: openstack-neutron bug fix advisory

No Image

RHBA-2017:3068-1: openstack-nova bug fix advisory

2017-10-26 KENNETH 0

RHBA-2017:3068-1: openstack-nova bug fix advisory Red Hat Enterprise Linux: Updated OpenStack Compute packages that resolve various issues are now available for Red Hat OpenStack Platform 8.0 (Liberty) for RHEL 7. Source: RHBA-2017:3068-1: openstack-nova bug fix advisory