A command injection vulnerability exists in the Xiaomi Router AX3600. The vulnerability is caused by a lack of inspection for incoming data detection. Attackers can exploit this vulnerability to execute code.
Qakbot Debuts New Technique
Old botnet performs new trick by inserting itself into the middle of email threads
Alleged Kaseya Attacker Extradited to US
Defendant indicted over deployment of REvil ransomware arrives in America
AI Accountability Framework Created to Guide Use of AI in Security
The framework aims to mitigate ethical issues surrounding use of AI in security
Ragnar Locker ransomware – what you need to know
The FBI has warned that the Ragnar Locker gang has infected at least 52 critical infrastructure organisations across America with its ransomware.
Read more in my article on the Tripwire State of Security blog.
No, women in Ukraine aren’t up for a sexy webcam chat right now
No – there aren’t women in Ukraine are keen to have a sexy webcam chat with you right now.
Smashing Security podcast #265: The Nigerian supercop and Alexa vs. Alexa
The most famous policeman in Nigeria is in hot water over his links to Hushpuppi, has your Amazon Echo been talking to itself, and can an AI girlfriend save your marriage?
All this and much more is discussed in the latest edition of the award-winning “Smashing Security” podcast by computer security veterans Graham Cluley and Carole Theriault.
Plus don’t miss our featured interview with Jason Meller of Kolide.
annobin-10.57-3.fc36 firefox-98.0-2.fc36 gcc-12.0.1-0.12.fc36
FEDORA-2022-42ea499a7d
Packages in this update:
annobin-10.57-3.fc36
firefox-98.0-2.fc36
gcc-12.0.1-0.12.fc36
Update description:
This update provides the latest release of Firefox, with many bug fixes including critical security issues. It also includes updates to gcc and annobin which were necessary to build Firefox, with the following fixes:
fix up promoted SUBREG handling (#2045160, PR rtl-optimization/104839)
fix up check for asm goto (PR rtl-optimization/104777)
Upstream bugs (http://gcc.gnu.org/PRNNNNN) fixed: 70077, 79493, 80270, 84519, 87496, 88134, 90148, 91384, 96526, 99297, 99555, 99585, 100400, 100407, 100541, 100757, 101325, 101636, 101983, 102276, 102429, 103037, 103302, 103443, 103521, 103836, 103845, 103856, 103984, 104061, 104121, 104131, 104132, 104133, 104154, 104208, 104381, 104430, 104434, 104489, 104529, 104533, 104540, 104550, 104552, 104558, 104573, 104589, 104601, 104602, 104618, 104619, 104627, 104633, 104637, 104644, 104648, 104656, 104659, 104664, 104667, 104674, 104675, 104676, 104677, 104679, 104681, 104682, 104686, 104687, 104698, 104700, 104704, 104715, 104716, 104721, 104724, 104725, 104726, 104727, 104728, 104730, 104732, 104736, 104748, 104757, 104758, 104761, 104775, 104779, 104781, 104782, 104784, 104791, 104794, 104797, 104807, 104825, 104838
openexr-3.1.4-1.fc36
FEDORA-2022-18e14f460c
Packages in this update:
openexr-3.1.4-1.fc36
Update description:
New upstream release 3.1.4
openexr-3.1.4-1.fc35
FEDORA-2022-5cdfa7faa5
Packages in this update:
openexr-3.1.4-1.fc35
Update description:
New upstream release 3.1.4