VMware Security Advisory VMSA-2019-0001

Today VMware has released the following new and updated security advisories: VMSA-2019-0001 – https://www.vmware.com/security/advisories/VMSA-2019-0001.html Please sign up to the Security-Announce mailing list to receive new and updated VMware Security Advisories. Customers should review the security advisories and direct any questions to VMware Support.The post VMware Security Advisory VMSA-2019-0001 appeared first on VMware Security & Compliance Blog. More info: https://blogs.vmware.com/security/2019/02/vmsa-2019-0001.html

Vulnerabilities Patched in WP Cost Estimation Plugin

https://www.wordfence.com/blog/2019/02/vulnerabilities-patched-in-wp-cost-estimation-plugin/ At the end of January, Wordfence security analysts identified attackers exploiting vulnerabilities in outdated versions of the commercial plugin WP Cost Estimation & Payment Forms Builder, or WP Cost Estimation for short. These flaws were found and patched by the developer a few months ago, but no official public disclosure was made at the time. […] More info: https://www.wordfence.com/blog/2019/02/vulnerabilities-patched-in-wp-cost-estimation-plugin/

Linux kernel vulnerability CVE-2018-15594

Linux kernel vulnerability CVE-2018-15594 Security Advisory Security Advisory Description arch/x86/kernel/paravirt.c in the Linux kernel before 4.18.1 mishandles certain indirect calls, which ... More info: https://support.f5.com/csp/article/K26301924

Linux kernel vulnerability CVE-2018-15594

Linux kernel vulnerability CVE-2018-15594 Security Advisory Security Advisory Description arch/x86/kernel/paravirt.c in the Linux kernel before 4.18.1 mishandles certain indirect calls, which ... More info: https://support.f5.com/csp/article/K26301924

Container Security Issue (CVE-2019-5736)

February 11, 2019 11:00 PM PST CVE Identifier: CVE-2019-5736 AWS is aware of the recently disclosed security issue which affects several open-source container management systems (CVE-2019-5736). With the exception of the AWS services listed below, no customer action is required to address this issue. Amazon Linux An updated version of Docker (docker-18.06.1ce-7.amzn2) is available for Amazon Linux 2 extras repositories and Amazon Linux AMI 2018.03 repositories (ALAS-2019-1156). AWS recommends More info: https://aws.amazon.com/security/security-bulletins/AWS-2019-002/

DSA-4390 flatpak – security update

It was discovered that Flatpak, an application deployment framework fordesktop apps, insufficiently restricted the execution of apply_extrascripts which could potentially result in privilege escalation. More info: https://www.debian.org/security/2019/dsa-4390
Translate »