No Image

USN-5026-1: QPDF vulnerabilities

2021-07-30 KENNETH 0

USN-5026-1: QPDF vulnerabilities It was discovered that QPDF incorrectly handled certain malformed PDF files. A remote attacker could use this issue to cause QPDF to consume resources, resulting in a denial of service. This issue only affected Ubuntu 18.04 LTS. (CVE-2018-18020) It was discovered that QPDF incorrectly handled certain malformed PDF files. A remote attacker could use this issue to cause QPDF to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2021-36978) Source: USN-5026-1: QPDF vulnerabilities

No Image

USN-5025-2: libsndfile vulnerability

2021-07-29 KENNETH 0

USN-5025-2: libsndfile vulnerability USN-5025-1 fixed a vulnerability in libsndfile. This update provides the corresponding update for Ubuntu 14.04 ESM and Ubuntu 16.04 ESM. Original advisory details: It was discovered that libsndfile incorrectly handled certain malformed files. A remote attacker could use this issue to cause libsndfile to crash, resulting in a denial of service, or possibly execute arbitrary code. Source: USN-5025-2: libsndfile vulnerability

No Image

USN-5025-1: libsndfile vulnerability

2021-07-29 KENNETH 0

USN-5025-1: libsndfile vulnerability It was discovered that libsndfile incorrectly handled certain malformed files. A remote attacker could use this issue to cause libsndfile to crash, resulting in a denial of service, or possibly execute arbitrary code. Source: USN-5025-1: libsndfile vulnerability

No Image

USN-4944-2: MariaDB regression

2021-07-29 KENNETH 0

USN-4944-2: MariaDB regression USN-4944-1 fixed vulnerabilities in MariaDB. It caused a regression. This update fixes the problem. Original advisory details: Ubuntu 20.04 has been updated to MariaDB 10.3.30. Source: USN-4944-2: MariaDB regression

No Image

USN-5024-1: WebKitGTK vulnerabilities

2021-07-29 KENNETH 0

USN-5024-1: WebKitGTK vulnerabilities A large number of security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution. Source: USN-5024-1: WebKitGTK vulnerabilities