USN-6900-1: Linux kernel vulnerabilities
It was discovered that the ATA over Ethernet (AoE) driver in the Linux kernel contained a race condition, leading to a use-after-free vulnerability. An attacker...
thunderbird-115.13.0-1.fc39
FEDORA-2024-0639ad0299 Packages in this update: thunderbird-115.13.0-1.fc39 Update description: Update to 115.13.0 https://www.mozilla.org/en-US/security/advisories/mfsa2024-31/ https://www.thunderbird.net/en-US/thunderbird/115.13.0/releasenotes/ Read More
thunderbird-115.13.0-1.fc40
FEDORA-2024-a26a9c2150 Packages in this update: thunderbird-115.13.0-1.fc40 Update description: Update to 115.13.0 https://www.mozilla.org/en-US/security/advisories/mfsa2024-31/ https://www.thunderbird.net/en-US/thunderbird/115.13.0/releasenotes/ Read More
kubernetes-1.29.7-1.fc40
FEDORA-2024-30f39c25ae Packages in this update: kubernetes-1.29.7-1.fc40 Update description: Update to v1.29.7 for FC40. Resolves CVE-2024-5321: Incorrect permissions on Windows containers logs. Additional bug and regression...
USN-6898-2: Linux kernel vulnerabilities
Ziming Zhang discovered that the DRM driver for VMware Virtual GPU did not properly handle certain error conditions, leading to a NULL pointer dereference. A...
Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe...
ghostscript-10.02.1-7.fc39
FEDORA-2024-52192927d8 Packages in this update: ghostscript-10.02.1-7.fc39 Update description: Security fix for CVE-2024-33869 Security fixes for CVE-2024-29509, CVE-2024-29508, CVE-2024-29507, CVE-2024-29506 Read More
ghostscript-10.02.1-12.fc40
FEDORA-2024-053b8330a1 Packages in this update: ghostscript-10.02.1-12.fc40 Update description: Security fix for CVE-2024-33869 Security fixes for CVE-2024-29509, CVE-2024-29508, CVE-2024-29507, CVE-2024-29506 Read More
tinyproxy-1.10.0-14.fc39
FEDORA-2024-661a8bb3b0 Packages in this update: tinyproxy-1.10.0-14.fc39 Update description: Backport upstream patch for CVE-2023-49606. Read More
Windows MSHTML Platform Spoofing Vulnerability (CVE-2024-38112)
What is the Vulnerability?CVE-2024-38112 is a spoofing vulnerability in Windows MSHTML Platform. The attacker can abuse internet shortcuts and Microsoft protocol handlers to execute malicious...