No Image

USN-3548-2: Linux kernel (HWE) vulnerability

2018-01-26 KENNETH 0

USN-3548-2: Linux kernel (HWE) vulnerability Ubuntu Security Notice USN-3548-2 26th January, 2018 linux-hwe, linux-azure, linux-gcp, linux-oem vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary The system could be made to crash or run programs as an administrator. Software description linux-azure – Linux kernel for Microsoft Azure Cloud systems linux-gcp – Linux kernel for Google Cloud Platform (GCP) systems linux-hwe – Linux hardware enablement (HWE) kernel linux-oem – Linux kernel for OEM processors Details USN-3548-1 fixed vulnerabilities in the Linux kernel for Ubuntu 17.10.This update provides the corresponding updates for the LinuxHardware Enablement (HWE) kernel from Ubuntu 17.10 for Ubuntu16.04 LTS. Jay Vosburgh discovered a logic error in the x86-64 syscall entryimplementation in the Linux kernel, introduced as part of themitigations for the Spectre vulnerability. A local attacker could usethis to cause a [ more… ]

No Image

USN-3547-1: Libtasn1 vulnerabilities

2018-01-26 KENNETH 0

USN-3547-1: Libtasn1 vulnerabilities Ubuntu Security Notice USN-3547-1 25th January, 2018 libtasn1-6 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in Libtasn1. Software description libtasn1-6 – Library to manage ASN.1 structures Details It was discovered that Libtasn1 incorrectly handled certain files.If a user were tricked into opening a crafted file, an attacker could possiblyuse this to cause a denial of service. This issue only affected Ubuntu 14.04LTS and Ubuntu 16.04 LTS. (CVE-2017-10790) It was discovered that Libtasn1 incorrectly handled certain inputs.An attacker could possibly use this to cause Libtasn1 to hang, resultingin a denial of service. This issue only affected Ubuntu 16.04 LTS andUbuntu 17.10. (CVE-2018-6003) Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu [ more… ]

No Image

USN-3537-2: MySQL vulnerabilities

2018-01-25 KENNETH 0

USN-3537-2: MySQL vulnerabilities Ubuntu Security Notice USN-3537-2 25th January, 2018 mysql-5.5 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary Several security issues were fixed in MySQL. Software description mysql-5.5 – MySQL database Details USN-3537-1 fixed vulnerabilities in MySQL. This updateprovides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQL has been updated to 5.5.59 in Ubuntu 12.04 ESM LTS. In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes. Please see the following for more information: http://dev.mysql.com/doc/relnotes/mysql/5.5/en/news-5-5-59.html http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 12.04 LTS: mysql-server-5.5 5.5.59-0ubuntu0.12.04.1 To update your system, please [ more… ]

No Image

RHBA-2018:0147-1: nfs-utils bug fix update

2018-01-25 KENNETH 0

RHBA-2018:0147-1: nfs-utils bug fix update Red Hat Enterprise Linux: Updated nfs-utils packages that fix one bug are now available for Red Hat Enterprise Linux 7. Source: RHBA-2018:0147-1: nfs-utils bug fix update

No Image

RHBA-2018:0148-1: qemu-kvm bug fix update

2018-01-25 KENNETH 0

RHBA-2018:0148-1: qemu-kvm bug fix update Red Hat Enterprise Linux: Updated qemu-kvm packages that fix one bug are now available for Red Hat Enterprise Linux 7. Source: RHBA-2018:0148-1: qemu-kvm bug fix update