GnuPG vulnerability CVE-2019-13050

GnuPG vulnerability CVE-2019-13050 Security Advisory Security Advisory Description Interaction between the sks-keyserver code through 1.2.0 of the SKS keyserver network, and GnuPG through 2.2.16, ... More info: https://support.f5.com/csp/article/K08654551

How to Audit & Cleanup WordPress Plugins & Themes

http://feedproxy.google.com/~r/sucuri/blog/~3/sPEMF0hbQ40/wordpress-plugin-audit.html In an interview with Smashing Magazine our CoFounder (now Head of Security Products at GoDaddy) Tony Perez was asked the following question. What Makes WordPress Vulnerable? “Here’s the simple answer. Old versions of WordPress, along with theme and plugin vulnerabilities, multiplied by the CMS’ popularity, with the end user thrown into the mix, make […] More info: http://feedproxy.google.com/~r/sucuri/blog/~3/sPEMF0hbQ40/wordpress-plugin-audit.html

Linux kernel vulnerability CVE-2019-12817

Linux kernel vulnerability CVE-2019-12817 Security Advisory Security Advisory Description arch/powerpc/mm/mmu_context_book3s64.c in the Linux kernel before 5.1.15 for powerpc has a bug where ... More info: https://support.f5.com/csp/article/K12876166

DSA-4518 ghostscript – security update

It was discovered that various procedures in Ghostscript, the GPLPostScript/PDF interpreter, do not properly restrict privileged calls,which could result in bypass of file system restrictions of the dSAFERsandbox. More info: https://www.debian.org/security/2019/dsa-4518

Linux kernel vulnerability CVE-2019-12454

Linux kernel vulnerability CVE-2019-12454 Security Advisory Security Advisory Description ** DISPUTED ** An issue was discovered in wcd9335_codec_enable_dec in sound/soc/codecs/wcd9335.c in the ... More info: https://support.f5.com/csp/article/K13523672

Security Bulletins Posted

Adobe has published security bulletins for Adobe Application Manager (APSB19-45) and Adobe Flash Player (APSB19-46). Adobe recommends users update their product installations to the latest versions using the instructions referenced in the bulletin. This posting is provided “AS IS” with no warranties and confers no rights. More info: http://blogs.adobe.com/psirt/?p=1785

Wireshark vulnerability CVE-2019-12295

Wireshark vulnerability CVE-2019-12295 Security Advisory Security Advisory Description In Wireshark 3.0.0 to 3.0.1, 2.6.0 to 2.6.8, and 2.4.0 to 2.4.14, the dissection engine could crash. This was ... More info: https://support.f5.com/csp/article/K06725231

DSA-4519 libreoffice – security update

It was discovered that the code fixes for LibreOffice to addressCVE-2019-9852 were not complete. Additional information can be found athttps://www.libreoffice.org/about-us/security/advisories/CVE-2019-9854/. More info: https://www.debian.org/security/2019/dsa-4519
Translate »