No Image

USN-5716-2: SQLite vulnerability

2022-11-22 KENNETH 0

USN-5716-2: SQLite vulnerability USN-5716-1 fixed a vulnerability in SQLite. This update provides the corresponding update for Ubuntu 14.04 ESM. Original advisory details: It was discovered that SQLite incorrectly handled certain long string arguments. An attacker could use this issue to cause SQLite to crash, resulting in a denial of service, or possibly execute arbitrary code. Source: USN-5716-2: SQLite vulnerability

No Image

State of the Word 2022

2022-11-22 KENNETH 0

State of the Word 2022 Hello, WordPress!  Mark your calendars; it’s almost time for State of the Word 2022! State of the Word is the annual keynote address delivered by the WordPress project’s co-founder, Matt Mullenweg. Every year, the event shares reflections on the project’s progress and the future of open source. Expect this and more in this year’s edition. This year’s event will take place in person in New York City and live-streamed via various WordPress.org social media platforms.  Join Matt as he provides a retrospective of 2022, the latest WordPress releases, Site Editor advancements, and a return to in-person events around the globe, among other topics. What: State of the Word 2022 When: December 15, 2022, 1–2:30 P.M. EST (18–19:30 UTC) How: If you’re watching from the comfort of your home or local watch party, the live stream [ more… ]

No Image

USN-5658-3: DHCP vulnerabilities

2022-11-22 KENNETH 0

USN-5658-3: DHCP vulnerabilities USN-5658-1 fixed several vulnerabilities in DHCP. This update provides the corresponding update for Ubuntu 14.04 ESM. Original advisory details: It was discovered that DHCP incorrectly handled option reference counting. A remote attacker could possibly use this issue to cause DHCP servers to crash, resulting in a denial of service. (CVE-2022-2928) It was discovered that DHCP incorrectly handled certain memory operations. A remote attacker could possibly use this issue to cause DHCP clients and servers to consume resources, leading to a denial of service. (CVE-2022-2929) Source: USN-5658-3: DHCP vulnerabilities

No Image

USN-5733-1: FLAC vulnerabilities

2022-11-21 KENNETH 0

USN-5733-1: FLAC vulnerabilities It was discovered that FLAC was not properly performing memory management operations, which could result in a memory leak. An attacker could possibly use this issue to cause FLAC to consume resources, leading to a denial of service. (CVE-2017-6888) It was discovered that FLAC was not properly performing bounds checking operations when encoding or decoding data. If a user or automated system were tricked into processing a specially crafted file, an attacker could possibly use this issue to expose sensitive information or to cause FLAC to crash, leading to a denial of service. (CVE-2020-0499, CVE-2021-0561) Source: USN-5733-1: FLAC vulnerabilities

No Image

USN-5686-3: Git vulnerabilities

2022-11-21 KENNETH 0

USN-5686-3: Git vulnerabilities USN-5686-1 fixed vulnerabilities in Git. This update provides the corresponding updates for Ubuntu 22.10. Original advisory details: Cory Snider discovered that Git incorrectly handled certain symbolic links. An attacker could possibly use this issue to cause an unexpected behaviour. (CVE-2022-39253) Kevin Backhouse discovered that Git incorrectly handled certain command strings. An attacker could possibly use this issue to arbitrary code execution. (CVE-2022-39260) Source: USN-5686-3: Git vulnerabilities