Red Hat Enterprise Linux: An update for kernel is now available for Red Hat Enterprise Linux 6.6 AdvancedUpdate Support and Red Hat Enterprise Linux 6.6 Telco Extended Update Support.Red Hat Product Security has rated this update as having a security impact ofImportant. A Common Vulnerability Scoring System (CVSS) base score, which givesa detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-3639
More info:
http://rhn.redhat.com/errata/RHSA-2018-1639.html
glibc vulnerability CVE-2017-12132. Security Advisory. Security Advisory Description. The DNS stub resolver in the GNU ...
More info:
https://support.f5.com/csp/article/K87355575
Red Hat Enterprise Linux: An update for kernel is now available for Red Hat Enterprise Linux 6.5 AdvancedUpdate Support.Red Hat Product Security has rated this update as having a security impact ofImportant. A Common Vulnerability Scoring System (CVSS) base score, which givesa detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-3639
More info:
http://rhn.redhat.com/errata/RHSA-2018-1640.html
Spring data XML vulnerability CVE-2018-1259. Security Advisory. Security Advisory Description. Spring Data Commons, versions ...
More info:
https://support.f5.com/csp/article/K27053426
Red Hat Enterprise Linux: An update for kernel is now available for Red Hat Enterprise Linux 6.4 AdvancedUpdate Support.Red Hat Product Security has rated this update as having a security impact ofImportant. A Common Vulnerability Scoring System (CVSS) base score, which givesa detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-3639
More info:
http://rhn.redhat.com/errata/RHSA-2018-1641.html
Today VMware has released the following new security advisory: “VMSA-2018-0014 – VMware Horizon Client update addresses a privilege escalation vulnerability” This documents the remediation of an important severity local privilege escalation vulnerability (CVE-2018-6964) in VMware Horizon Client for Linux. Successful exploitation of this issue may allow unprivileged users to escalate their privileges to root on […]The post New VMware Security Advisory VMSA-2018-0014
More info:
https://blogs.vmware.com/security/2018/05/new-vmware-security-advisory-vmsa-2018-0014.html
Red Hat Enterprise Linux: An update for kernel is now available for Red Hat Enterprise Linux 6.7 ExtendedUpdate Support.Red Hat Product Security has rated this update as having a security impact ofImportant. A Common Vulnerability Scoring System (CVSS) base score, which givesa detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-3639
More info:
http://rhn.redhat.com/errata/RHSA-2018-1638.html
Red Hat Enterprise Linux: An update for kernel is now available for Red Hat Enterprise Linux 6.7 ExtendedUpdate Support.Red Hat Product Security has rated this update as having a security impact ofImportant. A Common Vulnerability Scoring System (CVSS) base score, which givesa detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section. CVE-2018-3639
More info:
http://rhn.redhat.com/errata/RHSA-2018-1638.html
Europol y el Foro Económico Mundial (FEM) han firmado un Memorando de Entendimiento (MoU) para establecer un marco de cooperación mutua para fomentar un entorno cibernético más seguro para los ciudadanos, las organizaciones y las empresas.
El objetivo de esta colaboración es el desarrollo de un enfoque más robusto y resistente seguridad cibernética mundial mediante la promoción de asociaciones público-privadas. El WEF ha puesto en marcha recientemente un Centro Global de seguridad cibernética junto con Europol, donde van a participar en los esfuerzos conjuntos para mejorar la lucha contra el delito cibernético mediante el intercambio de conocimientos, la experiencia y la información sobre las amenazas informáticas.
Europol y el FEM intercambiarán conocimientos, tales como, pero no limitado a, las mejores prácticas, datos estadísticos, información técnica o tendencias del cibercrimen entre las dos partes y cooperar en la aplicación de proyectos en áreas de interés común.
Más información:
Europol
Gabriel Corona discovered that xdg-utils, a set of tools for desktopenvironment integration, is vulnerable to argument injection attacks. Ifthe environment variable BROWSER in the victim host has a "%s" and thevictim opens a link crafted by an attacker with xdg-open, the maliciousparty could manipulate the parameters used by the browser when opened.This manipulation could set, for example, a proxy to which the networktraffic could be intercepted for that particular execution.
More info:
https://www.debian.org/security/2018/dsa-4211