No Image

USN-5430-1: GNOME Settings vulnerability

2022-05-19 KENNETH 0

USN-5430-1: GNOME Settings vulnerability It was discovered that GNOME Settings incorrectly handled the remote desktop sharing configuration. When turning off desktop sharing, it may be turned on again after rebooting, contrary to expectations. Source: USN-5430-1: GNOME Settings vulnerability

No Image

USN-5429-1: Bind vulnerability

2022-05-18 KENNETH 0

USN-5429-1: Bind vulnerability Thomas Amgarten discovered that Bind incorrectly handled certain TLS connections being destroyed. A remote attacker could possibly use this issue to cause Bind to crash, resulting in a denial of service. Source: USN-5429-1: Bind vulnerability

No Image

USN-5428-1: libXrandr vulnerabilities

2022-05-18 KENNETH 0

USN-5428-1: libXrandr vulnerabilities Tobias Stoeckmann discovered that libXrandr incorrectly handled certain responses. An attacker could possibly use this issue to cause a denial of service, or possibly execute arbitrary code. (CVE-2016-7947, CVE-2016-7948) Source: USN-5428-1: libXrandr vulnerabilities

No Image

USN-5427-1: Apport vulnerabilities

2022-05-18 KENNETH 0

USN-5427-1: Apport vulnerabilities Muqing Liu and neoni discovered that Apport incorrectly handled detecting if an executable was replaced after a crash. A local attacker could possibly use this issue to execute arbitrary code as the root user. (CVE-2021-3899) Gerrit Venema discovered that Apport incorrectly handled connections to Apport sockets inside containers. A local attacker could possibly use this issue to connect to arbitrary sockets as the root user. (CVE-2022-1242) Gerrit Venema discovered that Apport incorrectly handled user settings files. A local attacker could possibly use this issue to cause Apport to consume resources, leading to a denial of service. (CVE-2022-28652) Gerrit Venema discovered that Apport did not limit the amount of logging from D-Bus connections. A local attacker could possibly use this issue to fill up the Apport log file, leading to denial of service. (CVE-2022-28654) Gerrit Venema discovered that [ more… ]

No Image

USN-5426-1: needrestart vulnerability

2022-05-18 KENNETH 0

USN-5426-1: needrestart vulnerability Jakub Wilk discovered that needrestart incorrectly used some regular expressions. A local attacker could possibly use this issue to execute arbitrary code. Source: USN-5426-1: needrestart vulnerability