Defense in depth — the Microsoft way (part 80): 25 (in words: TWENTY-FIVE) year old TRIVIAL bug crashes CMD.exe
Posted by Stefan Kanthak on May 10 Hi @ll, the subject says it all: a 25 year old TRIVIAL signed integer arithmetic bug (which may...
USN-5409-1: libsndfile vulnerability
It was discovered that libsndfile was incorrectly performing memory management operations and incorrectly using buffers when executing its FLAC codec. If a user or automated...
USN-5408-1: Dnsmasq vulnerability
Petr Menšík and Richard Johnson discovered that Dnsmasq incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code or expose...
pidgin-2.14.1-4.fc34
FEDORA-2022-52777fea3c Packages in this update: pidgin-2.14.1-4.fc34 Update description: Security fix for CVE-2022-26491. Read More
pidgin-2.14.6-3.fc35
FEDORA-2022-4759ca6476 Packages in this update: pidgin-2.14.6-3.fc35 Update description: Security fix for CVE-2022-26491. Read More
pidgin-2.14.8-3.fc36
FEDORA-2022-4490dce823 Packages in this update: pidgin-2.14.8-3.fc36 Update description: Security fix for CVE-2022-26491. Read More
USN-5407-1: Cairo vulnerabilities
Gustavo Grieco, Alberto Garcia, Francisco Oca, Suleman Ali, and others discovered that Cairo incorrectly handled certain files. An attacker could possibly use this issue to...
Critical Patches Issued for Microsoft Products, May 10, 2022
Multiple vulnerabilities have been discovered in Microsoft products, the most severe of which could allow for remote code execution in the context of the logged...
USN-5179-2: BusyBox vulnerability
USN-5179-1 fixed vulnerabilities in BusyBox. This update provides the corresponding updates for Ubuntu 16.04 ESM. Original advisory details: It was discovered that BusyBox incorrectly handled...
rubygem-nokogiri-1.11.7-3.fc34
FEDORA-2022-0e5d64ce65 Packages in this update: rubygem-nokogiri-1.11.7-3.fc34 Update description: This rpm backports the patch for the issue for improper handling of unexpected data types, related to...