No Image

RHBA-2017:0479-1: openstack-cinder bug fix advisory

2017-03-10 KENNETH 0

RHBA-2017:0479-1: openstack-cinder bug fix advisory Red Hat Enterprise Linux: Updated OpenStack Block Storage packages that resolve various issues are now available for Red Hat OpenStack Platform 8.0 (Liberty) for RHEL 7. Source: RHBA-2017:0479-1: openstack-cinder bug fix advisory

No Image

USN-3223-1: KDE-Libs vulnerability

2017-03-10 KENNETH 0

USN-3223-1: KDE-Libs vulnerability Ubuntu Security Notice USN-3223-1 9th March, 2017 kde4libs vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary KDE-Libs could be made to expose sensitive information over the network. Software description kde4libs – KDE 4 core applications and libraries Details Itzik Kotler, Yonatan Fridburg, and Amit Klein discovered that KDE-Libsincorrectly handled certain PAC files. A remote attacker could possibly usethis issue to obtain sensitive information. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 14.04 LTS: kdelibs5-plugins 4:4.13.3-0ubuntu0.4 Ubuntu 12.04 LTS: kdelibs5-plugins 4:4.8.5-0ubuntu0.6 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to reboot your computer to makeall the necessary changes. References CVE-2017-6410 Source: USN-3223-1: KDE-Libs vulnerability

No Image

USN-3224-1: LXC vulnerability

2017-03-10 KENNETH 0

USN-3224-1: LXC vulnerability Ubuntu Security Notice USN-3224-1 9th March, 2017 lxc vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary LXC could be made to create arbitrary virtual network interfaces as an administrator. Software description lxc – Linux Containers userspace tools Details Jann Horn discovered that LXC incorrectly verified permissions when creatingvirtual network interfaces. A local attacker could possibly use this issue tocreate virtual network interfaces in network namespaces that they do not own. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.10: lxc-common 2.0.7-0ubuntu1~16.10.2 Ubuntu 16.04 LTS: lxc-common 2.0.7-0ubuntu1~16.04.2 Ubuntu 14.04 LTS: lxc 1.0.9-0ubuntu3 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2017-5985 Source: [ more… ]

No Image

RHBA-2017:0477-1: Red Hat Certification bug fix and enhancement update

2017-03-10 KENNETH 0

RHBA-2017:0477-1: Red Hat Certification bug fix and enhancement update Red Hat Enterprise Linux: An updated redhat-certification package that fixes several bugs and adds various enhancements is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Source: RHBA-2017:0477-1: Red Hat Certification bug fix and enhancement update