Security updates available for Adobe Flash Player (APSB18-44)

Adobe has released security updates for Adobe Flash Player for Windows, macOS, Linux and Chrome OS. These updates address a critical vulnerability in Adobe Flash Player 31.0.0.148 and earlier versions. Successful exploitation could lead to arbitrary code execution in the context … Continue reading → More info: http://blogs.adobe.com/psirt/?p=1659

RHSA-2018:3533-2: Critical: java-1.8.0-ibm security update

Red Hat Enterprise Linux: An update for java-1.8.0-ibm is now available for Red Hat Enterprise Linux 6Supplementary.Red Hat Product Security has rated this update as having a security impact ofCritical. A Common Vulnerability Scoring System (CVSS) base score, which gives adetailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-13785, CVE-2018-3136, CVE-2018-3139, CVE-2018-3149, CVE-2018-3169, CVE-2018-3180, CVE-2018-3183, More info: http://rhn.redhat.com/errata/RHSA-2018-3533.html

RHSA-2018:3531-2: Important: thunderbird security update

Red Hat Enterprise Linux: An update for thunderbird is now available for Red Hat Enterprise Linux 6.Red Hat Product Security has rated this update as having a security impact ofImportant. A Common Vulnerability Scoring System (CVSS) base score, which givesa detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-12389, CVE-2018-12390, CVE-2018-12392, CVE-2018-12393 More info: http://rhn.redhat.com/errata/RHSA-2018-3531.html

RHSA-2018:3643-1: Important: kernel security update

Red Hat Enterprise Linux: An update for kernel is now available for Red Hat Enterprise Linux 6.4 AdvancedUpdate Support.Red Hat Product Security has rated this update as having a security impact ofImportant. A Common Vulnerability Scoring System (CVSS) base score, which givesa detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-14634 More info: http://rhn.redhat.com/errata/RHSA-2018-3643.html

RHSA-2018:3644-1: Critical: flash-plugin security update

Red Hat Enterprise Linux: An update for flash-plugin is now available for Red Hat Enterprise Linux 6Supplementary.Red Hat Product Security has rated this update as having a security impact ofCritical. A Common Vulnerability Scoring System (CVSS) base score, which gives adetailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-15981 More info: http://rhn.redhat.com/errata/RHSA-2018-3644.html

New VMware Security Advisory VMSA-2018-0029

On November 20th 2018 VMware released the following new security advisory: VMSA-2018-0029 – vSphere Data Protection (VDP) updates address multiple security issues. This documents several critical, important and moderate severity issues affecting VDP. VDP is based on Dell EMC Avamar Virtual Edition. Issue (a) is a critical severity remote code execution vulnerability (CVE-2018-11066). A remote […]The post New VMware Security Advisory VMSA-2018-0029 appeared first on VMware Security More info: https://blogs.vmware.com/security/2018/11/new-vmware-security-advisory-vmsa-2018-0029.html

DSA-4341 mariadb-10.1 – security update

Several issues have been discovered in the MariaDB database server. Thevulnerabilities are addressed by upgrading MariaDB to the new upstreamversion 10.1.37. Please see the MariaDB 10.1 Release Notes for furtherdetails: More info: https://www.debian.org/security/2018/dsa-4341

MSA-18-0020: Login CSRF vulnerability in login form

by Michael Hawkins. The login form is not protected by a token to prevent login cross-site request forgery.Severity/Risk:SeriousVersions affected:3.5 to 3.5.2, 3.4 to 3.4.5, 3.3 to 3.3.8, 3.1 to 3.1.14 and earlier unsupported versionsVersions fixed:3.6, 3.5.3, 3.4.6, 3.3.9 and 3.1.15Reported by:Daniel ThatcherCVE identifier:CVE-2018-16854Changes (master):http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-63183Tracker issue:MDL-63183 Login CSRF vulnerability in More info: https://moodle.org/mod/forum/discuss.php?d=378731&parent=1527068

Announcing The New Activity Log for MainWP Extension

http://feedproxy.google.com/~r/wpsecurityauditlog/~3/VQMVW3PQxv8/Today we are happy to announce the release of a new free extension – Activity Logs for MainWP. With this extension, MainWP users can keep an activity log of changes that happen on their MainWP dashboard, and also see the activity logs of all child sites from one central location – the MainWP dashboard. Before […] More info: http://feedproxy.google.com/~r/wpsecurityauditlog/~3/VQMVW3PQxv8/
Translate »