No Image

RHSA-2019:0458-1: Moderate: vdsm security and bug fix update

2019-03-05 KENNETH 0

RHSA-2019:0458-1: Moderate: vdsm security and bug fix update Red Hat Enterprise Linux: An update for vdsm is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2019-3831 Source: RHSA-2019:0458-1: Moderate: vdsm security and bug fix update

No Image

RHSA-2019:0457-1: Important: redhat-virtualization-host security update

2019-03-05 KENNETH 0

RHSA-2019:0457-1: Important: redhat-virtualization-host security update Red Hat Enterprise Linux: An update for redhat-virtualization-host is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2019-3813, CVE-2019-3831, CVE-2019-6454 Source: RHSA-2019:0457-1: Important: redhat-virtualization-host security update

No Image

USN-3885-2: OpenSSH vulnerability

2019-03-05 KENNETH 0

USN-3885-2: OpenSSH vulnerability openssh vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 18.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary One of the fixes in USN-3885-1 was incomplete. Software Description openssh – secure shell (SSH) for secure access to remote machines Details USN-3885-1 fixed vulnerabilities in OpenSSH. It was discovered that the fix for CVE-2019-6111 turned out to be incomplete. This update fixes the problem. Original advisory details: Harry Sintonen discovered multiple issues in the OpenSSH scp utility. If a user or automated system were tricked into connecting to an untrusted server, a remote attacker could possibly use these issues to write to arbitrary files, change directory permissions, and spoof client output. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 18.10 openssh-client – [ more… ]