No Image

USN-4073-1: libEBML vulnerability

2019-07-25 KENNETH 0

USN-4073-1: libEBML vulnerability libebml vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary libEBML could be made to crash if it opened a specially crafted file. Software Description libebml – library for the EBML format Details It was discovered that libEBML incorrectly handled certain media files. If a user were tricked into opening a specially crafted media file, libEBML could possibly be made to crash, resulting in a denial of service. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS libebml4v5 – 1.3.5-2ubuntu0.1 Ubuntu 16.04 LTS libebml4v5 – 1.3.3-1ubuntu0.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2019-13615 Source: USN-4073-1: libEBML vulnerability

No Image

USN-4072-1: Ansible vulnerabilities

2019-07-25 KENNETH 0

USN-4072-1: Ansible vulnerabilities ansible vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.04 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Several security issues were fixed in Ansible. Software Description ansible – Configuration management, deployment, and task execution system Details It was discovered that Ansible failed to properly handle sensitive information. A local attacker could use those vulnerabilities to extract them. (CVE-2017-7481) (CVE-2018-10855) (CVE-2018-16837) (CVE-2018-16876) (CVE-2019-10156) It was discovered that Ansible could load configuration files from the current working directory containing crafted commands. An attacker could run arbitrary code as result. (CVE-2018-10874) (CVE-2018-10875) It was discovered that Ansible fetch module had a path traversal vulnerability. A local attacker could copy and overwrite files outside of the specified destination. (CVE-2019-3828) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu [ more… ]

No Image

USN-4071-2: Patch vulnerabilities

2019-07-25 KENNETH 0

USN-4071-2: Patch vulnerabilities patch vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 ESM Summary Several security issues were fixed in Patch. Software Description patch – Apply a diff file to an original Details USN-4071-1 fixed several vulnerabilities in Patch. This update provides the corresponding update for Ubuntu 14.04 ESM. Original advisory details: It was discovered that Patch incorrectly handled certain files. An attacker could possibly use this issue to access sensitive information. (CVE-2019-13636) It was discovered that Patch incorrectly handled certain files. An attacker could possibly use this issue to execute arbitrary code. (CVE-2019-13638) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM patch – 2.7.1-4ubuntu2.4+esm1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all [ more… ]

No Image

USN-4071-1: Patch vulnerabilities

2019-07-24 KENNETH 0

USN-4071-1: Patch vulnerabilities patch vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.04 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Several security issues were fixed in Patch. Software Description patch – Apply a diff file to an original Details It was discovered that Patch incorrectly handled certain files. An attacker could possibly use this issue to access sensitive information. (CVE-2019-13636) It was discovered that Patch incorrectly handled certain files. An attacker could possibly use this issue to execute arbitrary code. (CVE-2019-13638) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.04 patch – 2.7.6-3ubuntu0.1 Ubuntu 18.04 LTS patch – 2.7.6-2ubuntu1.1 Ubuntu 16.04 LTS patch – 2.7.5-1ubuntu0.16.04.2 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. [ more… ]

No Image

USN-4070-1: MySQL vulnerabilities

2019-07-24 KENNETH 0

USN-4070-1: MySQL vulnerabilities mysql-5.7 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.04 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Several security issues were fixed in MySQL. Software Description mysql-5.7 – MySQL database Details Multiple security issues were discovered in MySQL and this update includes a new upstream MySQL version to fix these issues. Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 19.04 have been updated to MySQL 5.7.27. In addition to security fixes, the updated packages contain bug fixes, new features, and possibly incompatible changes. Please see the following for more information: http://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-27.html https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.04 mysql-server-5.7 – 5.7.27-0ubuntu0.19.04.1 Ubuntu 18.04 LTS mysql-server-5.7 – 5.7.27-0ubuntu0.18.04.1 Ubuntu 16.04 LTS mysql-server-5.7 – 5.7.27-0ubuntu0.16.04.1 To update your system, please follow these [ more… ]