No Image

RHSA-2016:0004-1: Important: kernel security update

2016-01-08 KENNETH 0

Red Hat Enterprise Linux: Updated kernel packages that fix two security issues are now available for Red Hat Enterprise Linux 6.4 Advanced Update Support. Red Hat Product Security has rated this update as having Important security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. CVE-2015-5307, CVE-2015-8104 Source: rhn-errata

No Image

USN-2862-1: Pygments vulnerability

2016-01-07 KENNETH 0

Ubuntu Security Notice USN-2862-1 7th January, 2016 pygments vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 15.10 Ubuntu 15.04 Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary Pygments could be made to crash or run programs if it processed a specially crafted font request. Software description pygments – syntax highlighting package written in Python Details It was discovered that Pygments incorrectly sanitized strings used tosearch system fonts. An attacker could possibly use this issue to executearbitrary code. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 15.10: python3-pygments 2.0.1+dfsg-1.1svn1.1 python-pygments 2.0.1+dfsg-1.1svn1.1 Ubuntu 15.04: python3-pygments 2.0.1+dfsg-1svn1.1 python-pygments 2.0.1+dfsg-1svn1.1 Ubuntu 14.04 LTS: python3-pygments 1.6+dfsg-1ubuntu1.1 python-pygments 1.6+dfsg-1ubuntu1.1 Ubuntu 12.04 LTS: python3-pygments 1.4+dfsg-2ubuntu0.1 python-pygments 1.4+dfsg-2ubuntu0.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make [ more… ]

WordPress 4.4.1 Security and Maintenance Release

2016-01-07 KENNETH 0

WordPress 4.4.1 is now available. This is a security release for all previous versions and we strongly encourage you to update your sites immediately. WordPress versions 4.4 and earlier are affected by a cross-site scripting vulnerability that could allow a site to be compromised. This was reported by Crtc4L. There were also several non-security bug fixes: Emoji support has been updated to include all of the latest emoji characters, including the new diverse emoji! Some sites with older versions of OpenSSL installed were unable to communicate with other services provided through some plugins. If a post URL was ever re-used, the site could redirect to the wrong post. WordPress 4.4.1 fixes 52 bugs from 4.4. For more information, see the release notes or consult the list of changes. Download WordPress 4.4.1 or venture over to Dashboard → Updates and simply click “Update Now.” Sites [ more… ]