Two vulnerabilities were discovered in LAVA, a continuous integrationsystem for deploying operating systems for running tests, which couldresult in information disclosure of files readable by the lavaserversystem user or the execution of arbitrary code via a XMLRPC call.
More info:
https://www.debian.org/security/2018/dsa-4234
https://wpvulndb.com/vulnerabilities/9098
More info:
https://wpvulndb.com/vulnerabilities/9098
https://wpvulndb.com/vulnerabilities/9095
More info:
https://wpvulndb.com/vulnerabilities/9095
https://wpvulndb.com/vulnerabilities/9096
More info:
https://wpvulndb.com/vulnerabilities/9096
It was discovered that the low-level interface to the RSA key pairgenerator of Bouncy Castle (a Java implementation of cryptographicalgorithms) could perform less Miller-Rabin primality tests thanexpected.
More info:
https://www.debian.org/security/2018/dsa-4233
https://blog.threatpress.com/seo-spam-can-hurt-wordpress-site/Almost half of all malware attacks against websites involve SEO spam. This type of attack is performed by Black Hat SEO’s and hackers who want to improve the SEO rank of their own sites. Unfortunately, SEO spammers often target WordPress websites. They do so because WordPress is the most popular content management system in the […]
More info:
https://blog.threatpress.com/seo-spam-can-hurt-wordpress-site/
https://wpvulndb.com/vulnerabilities/9097
More info:
https://wpvulndb.com/vulnerabilities/9097
It was discovered that the low-level interface to the RSA key pairgenerator of Bouncy Castle (a Java implementation of cryptographicalgorithms) could perform less Miller-Rabin primality tests thanexpected.
More info:
https://www.debian.org/security/2018/dsa-4233
More info:
https://wpvulndb.com/vulnerabilities/9096
This update provides mitigations for the lazy FPU vulnerabilityaffecting a range of Intel CPUs, which could result in leaking CPUregister states belonging to another vCPU previously scheduled on thesame CPU. For additional information please refer tohttps://xenbits.xen.org/xsa/advisory-267.html
More info:
https://www.debian.org/security/2018/dsa-4232