FEDORA-EPEL-2023-7fdb39245c
Packages in this update:
apptainer-1.2.1-1.el7
Update description:
Update to upstream 1.2.1. Fix for CVE-2023-38496.
Update to upstream 1.2.0
Update to upstream 1.2.0-rc.2
Update to upstream 1.2.0-rc.1
apptainer-1.2.1-1.el7
Update to upstream 1.2.1. Fix for CVE-2023-38496.
Update to upstream 1.2.0
Update to upstream 1.2.0-rc.2
Update to upstream 1.2.0-rc.1
apptainer-1.2.1-1.el9
Update to upstream 1.2.1. Fix for CVE-2023-38496.
Update to upstream 1.2.0
Update to upstream 1.2.0-rc.2
Update to upstream 1.2.0-rc.1
apptainer-1.2.1-1.el8
Update to upstream 1.2.1. Fix for CVE-2023-38496.
Update to upstream 1.2.0
Update to upstream 1.2.0-rc.2
Update to upstream 1.2.0-rc.1
Graham Cluley Security News is sponsored this week by the folks at PlexTrac. Thanks to the great team there for their support! Reports are the critical deliverables that make pentest results actionable, but do they have to be so painful to prepare? Not anymore. Check out our guide to writing a killer pentest report. And … Continue reading “How to write a killer pentest report”
Tavis Ormandy discovered that under specific microarchitectural
circumstances, a vector register in Zen 2 CPUs may not be written to 0
correctly. This flaw allows an attacker to leak register contents across
concurrent processes, hyper threads and virtualized guests.
Several vulnerabilities have been discovered in the OpenJDK Java runtime,
which may result in bypass of sandbox restrictions, information
disclosure, reduced cryptographic strength of the AES implementation,
directory traversal or denial of service.
xen-4.17.1-7.fc38
x86/AMD: Zenbleed [XSA-433]
omit OCaml 5 patch on fc38
A cross-site scripting (XSS) vulnerability in SeedDMS v6.0.15 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Some employees at Google will have internet access from their desktop PCs significantly restricted, with only internal web-based tools and Google-owned sites such as Google Drive, Google Maps, and Gmail accessible.
But will such an approach protect the tech giant from attacks?
Read more in my article on the Hot for Security blog.
flatpak-runtime-f38-3820230724154816.1
flatpak-sdk-f38-3820230724154816.1
Updated flatpak runtime and SDK, including latest Fedora 38 security and bug-fix errata.