FEDORA-2022-a2be4bd5d8
Packages in this update:
python3.6-3.6.15-11.fc36
Update description:
Fix for CVE-2021-28861
python3.6-3.6.15-11.fc36
Fix for CVE-2021-28861
python3.6-3.6.15-12.fc37
Fix for CVE-2021-28861
The SCCM plugin for GLPI is a plugin to synchronize computers from SCCM (version 1802) to GLPI. In versions prior to 2.3.0, the Configuration page is publicly accessible in read-only mode. This issue is patched in version 2.3.0. No known workarounds exist.
Home addresses, driver’s licenses and passport numbers were potentially accessed by the attacker
bind-9.16.33-1.fc36
bind-dyndb-ldap-11.9-20.fc36
Upstream release notes
The improper data disposal reportedly started in 2016 and exposed 15 million customers’ data
Can negotiating your firm’s ransomware payment actually be fun? Well, if it’s a game rather than the real thing then yes! The inventive bods at the Financial Times have created an imaginative ransomware negotiation simulator which lets you imagine you’re in the hot seat at a hacked company, trying to stop cybercriminals from releasing sensitive … Continue reading “How to have fun negotiating with a ransomware gang”
Malicious actors can use a “SATAn” attack involving the SATA interface to target air-gapped computers with data theft and extortion.
Researchers reveal how your eyeglasses could be leaking secrets when you’re on video conferencing calls, we take a look at the recent data breaches involving Uber and Grand Theft Auto 6, and we cast an eye at what threats may be around the corner…
All this and much much more is discussed in the latest edition of the “Smashing Security” podcast by computer security veterans Graham Cluley and Carole Theriault, joined this week by The Register’s Iain Thomson.
Plus – don’t miss our featured interview with Sal Aurigemma, the faculty director of the Master of Science in Cyber Security program at the University of Tulsa.