No Image

USN-3101-1: Tracker vulnerability

2016-10-12 KENNETH 0

USN-3101-1: Tracker vulnerability Ubuntu Security Notice USN-3101-1 12th October, 2016 tracker vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary Tracker could be made to crash if it opened a specially crafted file. Software description tracker – metadata database, indexer and search tool Details It was discovered that Tracker incorrectly handled certain malformed GIFimages. If a user or automated system were tricked into downloading aspecially-crafted GIF image, Tracker could crash, resulting in a denial ofservice. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.04 LTS: tracker-extract 1.6.2-0ubuntu1.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to restart your session to makeall the necessary changes. References LP: 1178402 Source: USN-3101-1: Tracker vulnerability

No Image

USN-3100-1: KDE-PIM Libraries vulnerability

2016-10-12 KENNETH 0

USN-3100-1: KDE-PIM Libraries vulnerability Ubuntu Security Notice USN-3100-1 12th October, 2016 kdepimlibs vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary KMail could be made to run HTML if it opened a specially crafted email. Software description kdepimlibs – the KDE PIM libraries Details Roland Tapken discovered that the KDE-PIM Libraries incorrectly filteredURLs. A remote attacker could use this issue to perform an HTML injectionattack in the KMail plain text viewer. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 12.04 LTS: libkpimutils4 4:4.8.5-0ubuntu0.3 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to restart KMail to make all thenecessary changes. References CVE-2016-7966 Source: USN-3100-1: KDE-PIM Libraries vulnerability

No Image

October 2016 security update release

2016-10-12 KENNETH 0

October 2016 security update release Today we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to apply security updates as soon as they are released. More information about this month’s security updates and advisories can be found in the Security TechNet Library. MSRC team Source: October 2016 security update release

No Image

MS16-119 – Critical: Cumulative Security Update for Microsoft Edge (3192890) – Version: 1.0

2016-10-12 KENNETH 0

MS16-119 – Critical: Cumulative Security Update for Microsoft Edge (3192890) – Version: 1.0 Severity Rating: CriticalRevision Note: V1.0 (October 11, 2016): Bulletin published.Summary: This security update resolves vulnerabilities in Microsoft Edge. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Microsoft Edge. An attacker who successfully exploited the vulnerabilities could gain the same user rights as the current user. Customers whose accounts are configured to have fewer user rights on the system could be less impacted than users with administrative user rights. Source: MS16-119 – Critical: Cumulative Security Update for Microsoft Edge (3192890) – Version: 1.0

No Image

MS16-126 – Moderate: Security Update for Microsoft Internet Messaging API (3196067) – Version: 1.0

2016-10-12 KENNETH 0

MS16-126 – Moderate: Security Update for Microsoft Internet Messaging API (3196067) – Version: 1.0 Severity Rating: ModerateRevision Note: V1.0 (October 11, 2016): Bulletin published.Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker successfully convinces a user of an affected system to visit a malicious or compromised website. Note that you must install two updates to be protected from the vulnerability discussed in this bulletin: The update in this bulletin, MS16-126, and the update in MS16-118. Source: MS16-126 – Moderate: Security Update for Microsoft Internet Messaging API (3196067) – Version: 1.0