The US White House Office of the National Cyber Director proposes improving internet security by protecting the Border Gateway Protocol
Monthly Archives: September 2024
USN-6989-1: OpenStack vulnerability
Dan Smith, Julia Kreger and Jay Faulkner discovered that in
image processing for Ironic, a specially crafted image
could be used by an authenticated user to exploit undesired behaviors
in qemu-img, including possible unauthorized access to potentially
sensitive data.
North Korea Targeting Crypto Industry, Says FBI
US law enforcement is tracking aggressive social engineering attacks against cryptocurrency operations
aardvark-dns-1.12.2-1.fc39
FEDORA-2024-0ce77b8571
Packages in this update:
aardvark-dns-1.12.2-1.fc39
Update description:
Security fix for CVE-2024-8418
aardvark-dns-1.12.2-1.fc40
FEDORA-2024-141d029304
Packages in this update:
aardvark-dns-1.12.2-1.fc40
Update description:
Security fix for CVE-2024-8418
aardvark-dns-1.12.2-1.fc41
FEDORA-2024-30ed35ba86
Packages in this update:
aardvark-dns-1.12.2-1.fc41
Update description:
Security fix for CVE-2024-8418
Red Teaming Tool Abused for Malware Deployment
Cisco Talos has assessed that red teaming tool MacroPack is being abused by various threat actors in different geographies to deploy malware
USN-6985-1: ImageMagick vulnerabilities
It was discovered that ImageMagick incorrectly handled certain malformed
image files. If a user or automated system using ImageMagick were tricked
into opening a specially crafted image, an attacker could exploit this to
cause a denial of service or execute code with the privileges of the user
invoking the program.
ruby-3.3.5-14.fc42
FEDORA-2024-8a931e76d2
Packages in this update:
ruby-3.3.5-14.fc42
Update description:
Update to Ruby 3.3.5
Clearview AI Fined €30.5m by Dutch Watchdog Over Illegal Data Collection
The US-based facial recognition data company may even have to pay up to €5.1m in penalties for non-compliance