No Image

USN-6230-1: PostgreSQL vulnerability

2023-07-14 KENNETH 0

USN-6230-1: PostgreSQL vulnerability Alexander Lakhin discovered that PostgreSQL incorrectly handled certain CREATE privileges. An authenticated user could possibly use this issue to execute arbitrary code as the bootstrap supervisor. Source: USN-6230-1: PostgreSQL vulnerability

No Image

Releasing Windows 11 Build 22621.2066 to the Release Preview Channel

2023-07-14 KENNETH 0

Releasing Windows 11 Build 22621.2066 to the Release Preview Channel Hello Windows Insiders, today we’re releasing Windows 11 Build 22621.2066 (KB5028254) to Insiders in the Release Preview Channel on Windows 11, version 22H2.   This update includes the following features and improvements: New! This update affects the Handwriting Software Input Panel (SIP), the Handwriting Engine, and the Handwriting Embedded Inking Control. They now support GB18030-2022 conformance level 2. Because of this, they meet the level 3 requirements. This update addresses an issue in the Windows Notification Platform. The issue affects how much power your device uses. This update affects the Windows Push Notification Services (WNS). It makes the connection between the client and the WNS server more reliable. This update addresses an issue that affects hybrid joined devices. You cannot sign in to them if they are not connected to [ more… ]

No Image

Releasing Windows 11 Build 22000.2243 to the Release Preview Channel

2023-07-14 KENNETH 0

Releasing Windows 11 Build 22000.2243 to the Release Preview Channel Hello Windows Insiders, today we’re releasing Windows 11 Build 22000.2243 (KB5028245) to Insiders in the Release Preview Channel on Windows 11 (original release).   This update includes the following improvements: New! This update affects the Handwriting Software Input Panel (SIP), the Handwriting Engine, and the Handwriting Embedded Inking Control. They now support GB18030-2022 conformance level 2. Because of this, they meet the level 3 requirements. [ADDED] This update addresses an issue that might affect Win32 and Universal Windows Platform (UWP) apps. They might close when devices enter Modern Standby. Modern Standby is an expansion of the Connected Standby power model. This issue occurs if certain Bluetooth Phone Link features are turned on. This update affects the Windows Push Notification Services (WNS). It makes the connection between the client and the [ more… ]

No Image

Releasing Windows 10 Build 19045.3269 to Release Preview Channel

2023-07-14 KENNETH 0

Releasing Windows 10 Build 19045.3269 to Release Preview Channel Hello Windows Insiders, today we are releasing Windows 10 22H2 Build 19045.3269 (KB5028244) to the Release Preview Channel for those Insiders who are on Windows 10, version 22H2. This update includes the following improvements: This update addresses an issue that affects the Windows Notification Platform. It fails to send notifications from applications to you. This update addresses an issue that affects hybrid joined devices. You cannot sign in to them if they are not connected to the internet. This occurs when you use a Windows Hello for Business PIN or biometric credentials. This issue applies to a cloud trust deployment. This update affects Windows Autopilot profiles. The process to download the Windows Autopilot policy is more resilient. This helps when a network connection might not be fully initialized. This update increases [ more… ]

No Image

USN-6229-1: LibTIFF vulnerabilities

2023-07-14 KENNETH 0

USN-6229-1: LibTIFF vulnerabilities It was discovered that LibTIFF was not properly handling variables used to perform memory management operations when processing an image through tiffcrop, which could lead to a heap buffer overflow. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2023-25433, CVE-2023-26965) It was discovered that LibTIFF was not properly processing numerical values when dealing with little-endian input data, which could lead to the execution of an invalid operation. An attacker could possibly use this issue to cause a denial of service (CVE-2023-26966) It was discovered that LibTIFF was not properly performing bounds checks when closing a previously opened TIFF file, which could lead to a NULL pointer dereference. An attacker could possibly use this issue to cause a denial of service. (CVE-2023-3316) Source: USN-6229-1: LibTIFF vulnerabilities