No Image

RHSA-2019:0229-1: Important: ghostscript security and bug fix update

2019-02-01 KENNETH 0

RHSA-2019:0229-1: Important: ghostscript security and bug fix update Red Hat Enterprise Linux: An update for ghostscript is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2018-16540, CVE-2018-19475, CVE-2018-19476, CVE-2018-19477, CVE-2019-6116 Source: RHSA-2019:0229-1: Important: ghostscript security and bug fix update

No Image

RHBA-2019:0225-1: Red Hat Satellite Server 5 – End Of Life Notice

2019-02-01 KENNETH 0

RHBA-2019:0225-1: Red Hat Satellite Server 5 – End Of Life Notice RHN Satellite and Proxy: This is the notification of the End Of Life (EOL) for the following versions of Red Hat Satellite 5: * Red Hat Satellite 5.6 * Red Hat Satellite 5.7 Source: RHBA-2019:0225-1: Red Hat Satellite Server 5 – End Of Life Notice

No Image

USN-3876-2: Avahi vulnerabilities

2019-01-31 KENNETH 0

USN-3876-2: Avahi vulnerabilities avahi vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 ESM Summary Several security issues were fixed in Avahi. Software Description avahi – Avahi IPv4LL network address configuration daemon Details USN-3876-1 fixed a vulnerability in Avahi. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: Chad Seaman discovered that Avahi incorrectly handled certain messages. An attacker could possibly use this issue to cause a denial of service. (CVE-2017-6519, CVE-2018-1000845) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 12.04 ESM avahi-daemon – 0.6.30-5ubuntu2.3 libavahi-core7 – 0.6.30-5ubuntu2.3 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References USN-3876-1 CVE-2017-6519 CVE-2018-1000845 Source: USN-3876-2: Avahi vulnerabilities

No Image

USN-3876-1: Avahi vulnerabilities

2019-01-31 KENNETH 0

USN-3876-1: Avahi vulnerabilities avahi vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 18.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in Avahi. Software Description avahi – Avahi IPv4LL network address configuration daemon Details Chad Seaman discovered that Avahi incorrectly handled certain messages. An attacker could possibly use this issue to cause a denial of service. (CVE-2017-6519, CVE-2018-1000845) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 18.10 avahi-daemon – 0.7-4ubuntu2.1 libavahi-core7 – 0.7-4ubuntu2.1 Ubuntu 18.04 LTS avahi-daemon – 0.7-3.1ubuntu1.2 libavahi-core7 – 0.7-3.1ubuntu1.2 Ubuntu 16.04 LTS avahi-daemon – 0.6.32~rc+dfsg-1ubuntu2.3 libavahi-core7 – 0.6.32~rc+dfsg-1ubuntu2.3 Ubuntu 14.04 LTS avahi-daemon – 0.6.31-4ubuntu1.3 libavahi-core7 – 0.6.31-4ubuntu1.3 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the [ more… ]

No Image

USN-3875-1: OpenJDK vulnerability

2019-01-31 KENNETH 0

USN-3875-1: OpenJDK vulnerability openjdk-8, openjdk-lts vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 18.10 Ubuntu 16.04 LTS Summary Java applets or applications could be made to expose sensitive information. Software Description openjdk-lts – Open Source Java implementation openjdk-8 – Open Source Java implementation Details It was discovered that a memory disclosure issue existed in the OpenJDK Library subsystem. An attacker could use this to expose sensitive information and possibly bypass Java sandbox restrictions. (CVE-2019-2422) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 18.10 openjdk-11-jdk – 11.0.1+13-3ubuntu3.18.10.1 openjdk-11-jre – 11.0.1+13-3ubuntu3.18.10.1 openjdk-11-jre-headless – 11.0.1+13-3ubuntu3.18.10.1 Ubuntu 16.04 LTS openjdk-8-jdk – 8u191-b12-2ubuntu0.16.04.1 openjdk-8-jre – 8u191-b12-2ubuntu0.16.04.1 openjdk-8-jre-headless – 8u191-b12-2ubuntu0.16.04.1 openjdk-8-jre-jamvm – 8u191-b12-2ubuntu0.16.04.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. This update uses a new upstream release, which includes additional [ more… ]