USN-6549-5: Linux kernel vulnerabilities
It was discovered that the USB subsystem in the Linux kernel contained a race condition while handling device descriptors in certain situations, leading to a...
golang-github-facebook-time-0^20240110git1649917-1.fc38
FEDORA-2024-f99ecead66 Packages in this update: golang-github-facebook-time-0^20240110git1649917-1.fc38 Update description: Security fix for CVE-2023-39325 Read More
golang-github-facebook-time-0^20240110git1649917-1.fc39
FEDORA-2024-07c811c7a5 Packages in this update: golang-github-facebook-time-0^20240110git1649917-1.fc39 Update description: Security fix for CVE-2023-39325 Read More
Microsoft SharePoint Server Elevation of Privilege Vulnerability (CVE-2023-29357)
What is the vulnerability? A vulnerability in Microsoft SharePoint Server is actively being exploited and targeting servers from Government, Telco and Education industries. The vulnerability...
chromium-120.0.6099.216-1.fc39
FEDORA-2024-01607ac0ae Packages in this update: chromium-120.0.6099.216-1.fc39 Update description: update to 120.0.6099.216 High CVE-2024-0333: Insufficient data validation in Extensions Read More
chromium-120.0.6099.216-1.fc38
FEDORA-2024-237107cece Packages in this update: chromium-120.0.6099.216-1.fc38 Update description: update to 120.0.6099.216 High CVE-2024-0333: Insufficient data validation in Extensions Read More
USN-6548-5: Linux kernel (IoT) vulnerabilities
It was discovered that Spectre-BHB mitigations were missing for Ampere processors. A local attacker could potentially use this to expose sensitive information. (CVE-2023-3006) It was...
USN-6576-1: Linux kernel (OEM) vulnerability
Lonial Con discovered that the netfilter subsystem in the Linux kernel did not properly handle an expired catchall element in some situations, leading to a...
openssh-9.3p1-10.fc39
FEDORA-2024-7e301327c2 Packages in this update: openssh-9.3p1-10.fc39 Update description: Forbid shell metasymbols in username/hostname Resolve Terrapin attack Apply destination constraints to all PKCS#11 keys Read More
SEC’s Twitter account hacked to say Bitcoin ETFs approved. Politicians and lawyers demand investigation into security breach
The official Twitter account of the US Securities and Exchange Commission (SEC) was hacked yesterday, with scammers posting an unauthorised message to its 660,000+ followers....