-
[Security-announce] Moderate Severity – VMSA-2022-0015 – VMware Tools for Windows update addresses an XML External Entity (XXE) vulnerability (CVE-2022-22977)
—–BEGIN PGP SIGNED MESSAGE—– Hash: SHA256 – VMware Tools for Windows update addresses an XML External Entity (XXE) vulnerability (CVE-2022-22977) Please see the advisory here: Impacted Products: VMware Tools for Windows You are receiving this alert because you are subscribed to the VMware Security Announcements mailing list. To modify your subscription or unsubscribe please visit […]
-
[USN-5440-1] PostgreSQL vulnerability
========================================================================== Ubuntu Security Notice USN-5440-1 May 24, 2022 postgresql-10, postgresql-12, postgresql-13, postgresql-14 vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 22.04 LTS – Ubuntu 21.10 – Ubuntu 20.04 LTS – Ubuntu 18.04 LTS Summary: PostgreSQL could be made to execute commands as the superuser. Software Description: – postgresql-14: […]
-
[USN-5439-1] AccountsService vulnerability
========================================================================== Ubuntu Security Notice USN-5439-1 May 24, 2022 accountsservice vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 22.04 LTS Summary: AccountsService could be made to crash or stop responding. Software Description: – accountsservice: query and manipulate user account information Details: Gunnar Hjalmarsson discovered that AccountsService incorrectly dropped privileges. […]
-
ANNOUNCE: xfce4-taskmanager 1.5.3 released
xfce4-taskmanager 1.5.3 is now available for download from archive.xfce.org/src/apps/xfce4-taskmanager/1.5/xfce4-taskmanager-1.5.3.tar.bz2 archive.xfce.org/src/apps/xfce4-taskmanager/1.5/xfce4-taskmanager-1.5.3.tar.bz2?sha1 archive.xfce.org/src/apps/xfce4-taskmanager/1.5/xfce4-taskmanager-1.5.3.tar.bz2?sha256 What is xfce4-taskmanager? ========================== Easy to use task manager. Website: docs.xfce.org/apps/xfce4-taskmanager/start Release notes for 1.5.3 ======================= – Fix rendering bug (Fixes #44) – Fix rendering bug for swap graph (relates to #44) – Fix bindings related to the “show-legend” setting – Allow to copy […]
-
[Checkmk Announce] New Checkmk stable release 2.1.0
Dear friends of Checkmk, the new stable release 2.1.0 of Checkmk is ready for download. We are proud to bring you the new Checkmk 2.1.0 release, with major improvements to future-proof your IT monitoring. Take a look at our latest version page to learn more about Checkmk 2.1: checkmk.com/product/latest-version Additionally, we wanted to let you […]
-
[USN-5438-1] HTMLDOC vulnerability
========================================================================== Ubuntu Security Notice USN-5438-1 May 23, 2022 htmldoc vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 20.04 LTS – Ubuntu 18.04 LTS Summary: HTMLDOC could be made to crash or run programs if it received specially crafted HTML files. Software Description: – htmldoc: HTML processor that generates […]
-
[USN-5437-1] libXfixes vulnerability
========================================================================== Ubuntu Security Notice USN-5437-1 May 23, 2022 libxfixes vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 ESM Summary: libXfixes could be made to crash or run programs if it received specially crafted input. Software Description: – libxfixes: X11 miscellaneous fixes extension library Details: Tobias Stoeckmann discovered […]
-
[USN-5436-1] libXrender vulnerabilities
========================================================================== Ubuntu Security Notice USN-5436-1 May 23, 2022 libxrender vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 ESM Summary: Several security issues were fixed in libXrender. Software Description: – libxrender: X11 Rendering Extension client library Details: Tobias Stoeckmann discovered that libXrender incorrectly handled certain responses. An attacker […]
-
[USN-5435-1] Thunderbird vulnerabilities
========================================================================== Ubuntu Security Notice USN-5435-1 May 23, 2022 thunderbird vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 22.04 LTS – Ubuntu 21.10 – Ubuntu 20.04 LTS – Ubuntu 18.04 LTS Summary: Several security issues were fixed in Thunderbird. Software Description: – thunderbird: Mozilla Open Source mail and newsgroup […]
-
[USN-5434-1] Firefox vulnerabilities
========================================================================== Ubuntu Security Notice USN-5434-1 May 23, 2022 firefox vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 21.10 – Ubuntu 20.04 LTS – Ubuntu 18.04 LTS Summary: Firefox could be made to execute JavaScript in a privileged context if it opened a malicious website. Software Description: – firefox: […]
-
[USN-5432-1] libpng vulnerabilities
========================================================================== Ubuntu Security Notice USN-5432-1 May 23, 2022 libpng vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 ESM Summary: Several security issues were fixed in libpng. Software Description: – libpng: PNG (Portable Network Graphics) file library Details: It was discovered that libpng incorrectly handled memory when parsing […]
-
[USN-5433-1] Vim vulnerabilities
========================================================================== Ubuntu Security Notice USN-5433-1 May 23, 2022 vim vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 ESM Summary: Several security issues were fixed in Vim. Software Description: – vim: Vi IMproved – enhanced vi editor Details: It was discovered that Vim incorrectly handled parsing of filenames […]
-
ANNOUNCE: xfce4-panel 4.17.1 released
xfce4-panel 4.17.1 is now available for download from archive.xfce.org/src/xfce/xfce4-panel/4.17/xfce4-panel-4.17.1.tar.bz2 archive.xfce.org/src/xfce/xfce4-panel/4.17/xfce4-panel-4.17.1.tar.bz2?sha1 archive.xfce.org/src/xfce/xfce4-panel/4.17/xfce4-panel-4.17.1.tar.bz2?sha256 What is xfce4-panel? ==================== Xfce’s panel. Website: www.xfce.org/ Release notes for 4.17.1 ======================== [Please note that this is a development release.] – Dependency Changes: – Garcon >= 4.17.0 – New Features: – tasklist: Middle click minimize window groups (!76) – tasklist: Middle click close […]
-
[MariaDB Announce] MariaDB 10.9.1, 10.8.3, 10.7.4, 10.6.8, 10.5.16, 10.4.25, 10.3.35 and 10.2.44 now available
The MariaDB Foundation is pleased to announce the availability of MariaDB 10.9.1, a release candidate in the MariaDB 10.9 series, MariaDB 10.8.3, and MariaDB 10.7.4, Generally Available releases in the MariaDB 10.8 and 10.7 series respectively (supported for 1 year), as well as MariaDB 10.6.8, MariaDB 10.5.16, MariaDB 10.4.35, MariaDB 10.3.35 and MariaDB 10.2.44, the […]
-
[USN-5424-2] OpenLDAP vulnerability
========================================================================== Ubuntu Security Notice USN-5424-2 May 19, 2022 openldap vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: – Ubuntu 16.04 ESM – Ubuntu 14.04 ESM Summary: OpenLDAP could be made to perform arbitrary modifications to the database. Software Description: – openldap: Lightweight Directory Access Protocol Details: USN-5424-1 fixed a vulnerability […]
-
[CentOS-announce] CEBA-2022:4638 CentOS 7 at BugFix Update
CentOS Errata and Bugfix Advisory 2022:4638 Upstream details at : access.redhat.com/errata/RHBA-2022:4638 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) x86_64: f9a5378694573063ecf61c516d27731ba3a515cc1b91bfced9a7057634a8d54c at-3.1.13-25.el7_9.x86_64.rpm 73839ad166f5daa6f4e5a2a9b08686fda05962283302afa1963df3b66c4b53e0 at-sysvinit-3.1.13-25.el7_9.x86_64.rpm Source: ddb7f32bfe8a656c8baa88391a7ef38be221e364367fc037f492966ecc64e992 at-3.1.13-25.el7_9.src.rpm
-
[CentOS-announce] CEBA-2022:4645 CentOS 7 subscription-manager BugFix Update
CentOS Errata and Bugfix Advisory 2022:4645 Upstream details at : access.redhat.com/errata/RHBA-2022:4645 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) x86_64: 9acf4764f875271e9b8edf93cb0f5241361a82fe81d1381df235edd88ffa4981 python-syspurpose-1.24.51-1.el7.centos.x86_64.rpm e8d290b951820742ddb84f040482ef781da092f44db1523ea7d4b25d3674bd2b rhsm-gtk-1.24.51-1.el7.centos.x86_64.rpm efe92dccaf584ac534e20c985a62a2b2030dbbc1cac6586eb9de81ac5dcc7acd subscription-manager-1.24.51-1.el7.centos.x86_64.rpm fa313558117870b2ad9b85826be67b6ecce53baa6ddcbf99024428840d38fba7 subscription-manager-cockpit-1.24.51-1.el7.centos.noarch.rpm 3a214c9b7993ff445157cc339c9a34103eea57c31ad42b15dba0db83b51bcda9 subscription-manager-gui-1.24.51-1.el7.centos.x86_64.rpm 758b00bfddac1117f7a640983316c5c512053334e60eb19cc2b8b9bd616cc341 subscription-manager-initial-setup-addon-1.24.51-1.el7.centos.x86_64.rpm 81962e4767ff3bdd232b266847805d5a9914ba7ee1f405ee6212d3e9a2ea45d0 subscription-manager-plugin-container-1.24.51-1.el7.centos.x86_64.rpm 7213e6e2bfdc556860c8f1e0dbd57dcd1201fe9556912fc6ed9c972b00af8306 subscription-manager-plugin-ostree-1.24.51-1.el7.centos.x86_64.rpm 0d2891caee1b493f9b544af0495b535e91b27d243df3f653a39ffeafe3e16dbe subscription-manager-rhsm-1.24.51-1.el7.centos.x86_64.rpm f97d96977b7b2e8e4ab1dfcae63bf6275503575c3a994ebfdf713ecee262b899 subscription-manager-rhsm-certificates-1.24.51-1.el7.centos.x86_64.rpm Source: 4216f0bfda1f688e39cbb262792ad95e1792da611616cb32b5dd599eaadac90b subscription-manager-1.24.51-1.el7.centos.src.rpm
-
[CentOS-announce] CEBA-2022:4648 CentOS 7 evolutionserver BugFix Update
CentOS Errata and Bugfix Advisory 2022:4648 Upstream details at : access.redhat.com/errata/RHBA-2022:4648 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) x86_64: cdc630a6947d25b54a576be1d51170f8ca7a920b446adaa54aece61b239e798d evolution-data-server-3.28.5-5.el7_9.1.i686.rpm e9ee7e077912afbee46d9de1440f905a3150a783ca98d2999145e7f0d4946b00 evolution-data-server-3.28.5-5.el7_9.1.x86_64.rpm 7174a32cc247b70e650aa36730fa976b5d7e498a9fc59fde5c06de3be20d8da3 evolution-data-server-devel-3.28.5-5.el7_9.1.i686.rpm d057cb97f19e0b7a6e8769b9407b59d09edac0f8548ba4137a65575461013ea6 evolution-data-server-devel-3.28.5-5.el7_9.1.x86_64.rpm 98fa7e7c32572003a415282278a680123f7896108aa35e2ddad608cf9a8bf1b6 evolution-data-server-doc-3.28.5-5.el7_9.1.noarch.rpm 1d2c5ccf5a54793d996b971ad4448b1d95a72bf1270703b1cdd944b0b4a82932 evolution-data-server-langpacks-3.28.5-5.el7_9.1.noarch.rpm 006866668980a661dabcff054750dcfabee9be838cbdbe8f6554a12c8d2437e4 evolution-data-server-perl-3.28.5-5.el7_9.1.x86_64.rpm a56dd9d75f85b76dd72f232aef6262710e4f66d7291c55f0e3467fa4c70855ee evolution-data-server-tests-3.28.5-5.el7_9.1.i686.rpm 284e903527e4376ba342697bff7afdcf76804823b3344908e0ad3589efb08d0e evolution-data-server-tests-3.28.5-5.el7_9.1.x86_64.rpm Source: cac18912d67be0be717caa1a64367389b6719f8342d15c0ae7950f32f78b449b evolution-data-server-3.28.5-5.el7_9.1.src.rpm
-
[CentOS-announce] CEBA-2022:4647 CentOS 7 scapguide BugFix Update
CentOS Errata and Bugfix Advisory 2022:4647 Upstream details at : access.redhat.com/errata/RHBA-2022:4647 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) x86_64: 020558539740256bcdb84e7c5606c92c374e8b5d5af9021d52cb794b0f6131e1 scap-security-guide-0.1.57-8.el7.centos.noarch.rpm d40393b60950d71a26774d9b1e266fd5bb089196ab92a7c1d63bc4e09f86640c scap-security-guide-doc-0.1.57-8.el7.centos.noarch.rpm Source: 9571e357e4b892e16aa6323451d95ec4a5d8b7c9456f7752d3192b0b10a1be25 scap-security-guide-0.1.57-8.el7.centos.src.rpm
-
[CentOS-announce] CEBA-2022:4641 CentOS 7 glibc BugFix Update
CentOS Errata and Bugfix Advisory 2022:4641 Upstream details at : access.redhat.com/errata/RHBA-2022:4641 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) x86_64: 7b92de985a23ef4b67bd11135a92917ca99025920b1e4db59517205a2278c3f1 glibc-2.17-326.el7_9.i686.rpm 58dd6ecca9f9c38c402d46c56efacaf2a8739de21c64f22dfb3f9887f2de6c94 glibc-2.17-326.el7_9.x86_64.rpm aba75d84977de2cd5e9da00e763912c5e72ba28b55b17e081014e97ca13ce809 glibc-common-2.17-326.el7_9.x86_64.rpm 178ac00cbf99e924ca4b26e5bede47496404e34c1fe48906789d80dd955c9793 glibc-devel-2.17-326.el7_9.i686.rpm 68765f29d06d31652e80d398846d899e7437a836c1fffeb61248afa76e51b90f glibc-devel-2.17-326.el7_9.x86_64.rpm cffd614b0edc8b160d92daa7f3c4c4dffd5e33a66532c35ee32132d1b56e63b7 glibc-headers-2.17-326.el7_9.x86_64.rpm 2fda5e0025c27a97a92116265279bc7592a072372d95f68ec7c2e289e884155b glibc-static-2.17-326.el7_9.i686.rpm 670e8233e94a81c11ff801e9565903257b0694462a07b7f8724d3008d060ad94 glibc-static-2.17-326.el7_9.x86_64.rpm b8969d6cee16b77e095cb73262e74f3bea7aeaacc386fb96ed8274c2732c2893 glibc-utils-2.17-326.el7_9.x86_64.rpm 8d43d74f369183dc4073b21eb34b054828ea394433bb870f7b75b636e1135b24 nscd-2.17-326.el7_9.x86_64.rpm Source: 770b16256296a3242ed2e53ac43560e9bb0f1e4951b8d507faf424bd5ce95cf0 glibc-2.17-326.el7_9.src.rpm