CRLite: Speeding Up Secure Browsing

CRLite pushes bulk certificate revocation information to Firefox users, reducing the need to actively query such information one by one. Additionally this new technology eliminates the privacy leak that individual queries can bring, and does so for the whole Web, … Continue readingThe post CRLite: Speeding Up Secure Browsing appeared first on Mozilla Security Blog. More info: https://blog.mozilla.org/security/2020/01/21/crlite-part-3-speeding-up-secure-browsing/

DSA-4604 cacti – security update

Multiple issues have been found in cacti, a server monitoring system,potentially resulting in SQL code execution or information disclosure byauthenticated users. More info: https://www.debian.org/security/2020/dsa-4604

DSA-4605 openjdk-11 – security update

Several vulnerabilities have been discovered in the OpenJDK Javaruntime, resulting in denial of service, incorrect implementation ofKerberos GSSAPI and TGS requests or incorrect TLS handshakes. More info: https://www.debian.org/security/2020/dsa-4605

DSA-4607 openconnect – security update

Lukas Kupczyk reported a vulnerability in the handling of chunked HTTPin openconnect, an open client for Cisco AnyConnect, Pulse andGlobalProtect VPN. A malicious HTTP server (after having accepted itsidentity certificate), can provide bogus chunk lengths for chunked HTTPencoding and cause a heap-based buffer overflow. More info: https://www.debian.org/security/2020/dsa-4607
Translate »