No Image

RHBA-2017:2861-1: openstack-cinder bug fix advisory

2017-10-05 KENNETH 0

RHBA-2017:2861-1: openstack-cinder bug fix advisory Red Hat Enterprise Linux: Updated OpenStack Block Storage packages that resolve various issues are now available for Red Hat OpenStack Platform 9.0 (Mitaka) for RHEL 7. Source: RHBA-2017:2861-1: openstack-cinder bug fix advisory

No Image

USN-3438-1: Git vulnerability

2017-10-05 KENNETH 0

USN-3438-1: Git vulnerability Ubuntu Security Notice USN-3438-1 5th October, 2017 git vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.04 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Git be made to run programs if it processed a specially crafted file. Software description git – fast, scalable, distributed revision control system Details It was discovered that Git incorrectly handled certain subcommands such ascvsserver. A remote attacker could possibly use this issue via shellmetacharacters in modules names to execute arbitrary code. This update also removes the cvsserver subcommand from git-shell bydefault. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.04: git 1:2.11.0-2ubuntu0.3 Ubuntu 16.04 LTS: git 1:2.7.4-0ubuntu1.3 Ubuntu 14.04 LTS: git 1:1.9.1-1ubuntu0.7 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will [ more… ]

No Image

RHSA-2017:2860-1: Moderate: postgresql security update

2017-10-05 KENNETH 0

RHSA-2017:2860-1: Moderate: postgresql security update Red Hat Enterprise Linux: An update for postgresql is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. CVE-2017-7546 Source: RHSA-2017:2860-1: Moderate: postgresql security update

No Image

USN-3435-2: Firefox regression

2017-10-05 KENNETH 0

USN-3435-2: Firefox regression Ubuntu Security Notice USN-3435-2 4th October, 2017 firefox regression A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.04 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary USN-3435-1 caused a regression in Firefox. Software description firefox – Mozilla Open Source web browser Details USN-3435-1 fixed vulnerabilities in Firefox. The update caused the Flashplugin to crash in some circumstances. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Multiple security issues were discovered in Firefox. If a user were tricked in to opening a specially crafted website, an attacker could potentially exploit these to read uninitialized memory, obtain sensitive information, bypass phishing and malware protection, spoof the origin in modal dialogs, conduct cross-site scripting (XSS) attacks, cause a denial of service via application crash, or execute arbitrary code. (CVE-2017-7793, CVE-2017-7810, CVE-2017-7811, CVE-2017-7812, [ more… ]