In WAGO I/O-Check Service in multiple products an unauthenticated remote attacker can send a specially crafted packet containing OS commands to crash the iocheck process and write memory resulting in loss of integrity and DoS.
Daily Archives: November 9, 2022
python3.10-3.10.8-2.fc37
FEDORA-2022-a7cad6bd22
Packages in this update:
python3.10-3.10.8-2.fc37
Update description:
Security fix for CVE-2022-42919
Medibank Confirms Data Stolen in Breach is Now Available Online
The leaked data includes personal data like names, addresses and phone numbers, among others
python3.10-3.10.8-2.fc38
FEDORA-2022-bd02afca8c
Packages in this update:
python3.10-3.10.8-2.fc38
Update description:
Automatic update for python3.10-3.10.8-2.fc38.
Changelog
* Wed Nov 9 2022 Lumír Balhar <lbalhar@redhat.com> – 3.10.8-2
– Fix CVE-2022-42919
Resolves: rhbz#2138709
python3.9-3.9.15-2.fc38
FEDORA-2022-6728f16289
Packages in this update:
python3.9-3.9.15-2.fc38
Update description:
Automatic update for python3.9-3.9.15-2.fc38.
Changelog
* Wed Nov 9 2022 Lumír Balhar <lbalhar@redhat.com> – 3.9.15-2
– Fix for CVE-2022-42919
Resolves: rhbz#2138711
6 New Policy Templates to Help You Enact CIS Controls IG1
The Center for Internet Security has released six new policy templates to help enterprises enact the Safeguards of Implementation Group 1 (IG1).
sysstat-12.6.0-4.fc37
FEDORA-2022-9f3af921a5
Packages in this update:
sysstat-12.6.0-4.fc37
Update description:
Security fix for CVE-2022-39377 – arithmetic overflow in allocate_structures() on 32 bit systems
sysstat-12.5.6-2.fc36
FEDORA-2022-dbe48a4bc7
Packages in this update:
sysstat-12.5.6-2.fc36
Update description:
Security fix for CVE-2022-39377 – arithmetic overflow in allocate_structures() on 32 bit systems
Defeating Phishing-Resistant Multifactor Authentication
CISA is now pushing phishing-resistant multifactor authentication.
Roger Grimes has an excellent post reminding everyone that “phishing-resistant” is not “phishing proof,” and that everyone needs to stop pretending otherwise. His list of different attacks is particularly useful.
sysstat-12.5.6-2.fc35
FEDORA-2022-5adda2d05f
Packages in this update:
sysstat-12.5.6-2.fc35
Update description:
Security fix for CVE-2022-39377 – arithmetic overflow in allocate_structures() on 32 bit systems