CVE-2021-38241

Read Time:7 Second

Deserialization issue discovered in Ruoyi before 4.6.1 allows remote attackers to run arbitrary code via weak cipher in Shiro framework.

Read More

BrandPost: One-Policy Framework, Zero Trust, and Ops teams

Read Time:48 Second

In today’s digital era, customers expect information, resources, and services to be readily available from anywhere in the world. To deliver on customers’ expectations and leverage the best of on-premises and public cloud offerings, many enterprises use a mix of on-premises and cloud-based architectures.

The freedom to choose from many architectures and deployment strategies results in hybrid networks, which are challenging to secure due to disparate security management consoles that lack consistent security policies across these environments.

So then how do Ops teams protect their hybrid environments? The most effective approach is to create a single unified policy, which can then be applied to any environment through a centralized console, to avoid unnecessary operational headaches. A single unified policy is easily achievable via one-policy framework. Organizations with homogeneous environments can benefit equally from a one-policy framework and can adapt to future architecturalchanges with ease.

To read this article in full, please click here

Read More

rxvt-unicode-9.30-2.el7

Read Time:15 Second

FEDORA-EPEL-2022-c57a51c195

Packages in this update:

rxvt-unicode-9.30-2.el7

Update description:

Update to 9.30
Strip package back to just be the -terminfo file.
This is due to CVE-2022-4170: unaffected versions of rxvt-unicode (that is, libptytty) don’t build on epel7.

Read More

rxvt-unicode-9.30-1.el7

Read Time:15 Second

FEDORA-EPEL-2022-e187f1231f

Packages in this update:

rxvt-unicode-9.30-1.el7

Update description:

Update to 9.30
Strip package back to just be the -terminfo file.
This is due to CVE-2022-4170: unaffected versions of rxvt-unicode (that is, libptytty) don’t build on epel7.

Read More