US Car Giant General Motors Hit by Cyber-Attack Exposing Car Owners’ Personal Info
The stuffing attack exposed customer information and allowed hackers to redeem rewards points Read More
7 machine identity management best practices
Machine identities are a large, and fast-growing part of the enterprise attack surface. The number of machines—servers, devices, and services—is growing rapidly and efforts to...
ICO Fines Clearview AI £7.5m for Collecting UK Citizens’ Data
Clearview AI has also ordered to delete existing data of UK residents from its systems Read More
DSA-5145 lrzip – security update
Multiple vulnerabilities have been discovered in the lrzip compression program which could result in denial of service or potentially the execution of arbitrary code. Read...
DSA-5146 puma – security update
Multiple security vulnerabilities were discovered in Puma, a HTTP server for Ruby/Rack applications, which could result in HTTP request smuggling or information disclosure. Read More
USN-5438-1: HTMLDOC vulnerability
It was discovered that HTMLDOC did not properly manage memory under certain circumstances. If a user were tricked into opening a specially crafted HTML file,...
python-jwt-2.4.0-1.fc36
FEDORA-2022-3cf456dc20 Packages in this update: python-jwt-2.4.0-1.fc36 Update description: Update to 2.4.0 to address CVE-2022-29217. https://github.com/jpadilla/pyjwt/security/advisories/GHSA-ffqj-6fqr-9h24 Read More
python-jwt-2.4.0-1.el9
FEDORA-EPEL-2022-91e9137f63 Packages in this update: python-jwt-2.4.0-1.el9 Update description: Update to 2.4.0 to address CVE-2022-29217. https://github.com/jpadilla/pyjwt/security/advisories/GHSA-ffqj-6fqr-9h24 Read More
python-jwt-2.4.0-1.fc35
FEDORA-2022-4ae9110f51 Packages in this update: python-jwt-2.4.0-1.fc35 Update description: Update to 2.4.0 to address CVE-2022-29217. https://github.com/jpadilla/pyjwt/security/advisories/GHSA-ffqj-6fqr-9h24 Read More
USN-5437-1: libXfixes vulnerability
Tobias Stoeckmann discovered that libXfixes incorrectly handled certain inputs. An attacker could possibly use this issue to cause a denial of service, or possibly execute...