Fedora 41: chromium 2025-d83e49a948 Security Advisory Updates

16.02.2025 08:32 Update to 133.0.6943.98 CVE-2025-0995: Use after free in V8 CVE-2025-0996: Inappropriate implementation in Browser UI CVE-2025-0997: Use after free in Navigation CVE-2025-0998: Out of bounds memory access in V8

Debian LTS: DLA-4055-1: trafficserver Security Advisory Updates

16.02.2025 08:32 Multiple vulnerabilities were fixed in trafficserver, a caching proxy server. CVE-2024-38479

Debian LTS: DLA-4054-1: tryton-client Security Advisory Updates

16.02.2025 08:32 C'©dric Krier has found that trytond, the Tryton application server, accepts compressed content from unauthenticated requests which makes it vulnerable to zip bomb attacks .

Debian LTS: DLA-4053-1: freerdp2 Security Advisory Updates

16.02.2025 02:50 Multiple vulnerabilties have been found in freelrdp2, a free implementation of the Remote Desktop Protocol . The vulnerabilties potentially allows authentication bypasses on configuration errors, buffer overreads, DoS vectors, buffer overflows or accessing files

openSUSE: 2025:14811-1 moderate: ruby3.4-rubygem-rack-2.2-2.2.11-1.1 Advisory Security Update

16.02.2025 02:50 

openSUSE: 2025:14810-1 moderate: libecpg6-17.3-1.1 Advisory Security Update

16.02.2025 02:50 

Fedora 41: webkitgtk 2025-3e8ed13bf0 Security Advisory Updates

15.02.2025 10:12 Update to WebKitGTK 2.46.6: Fix a crash when enabling Skia CPU rendering. Fix several crashes and rendering issues. Fix CVE-2024-54543, CVE-2025-24143, CVE-2025-24150, CVE-2025-24158, CVE-2025-24162

Fedora 41: libheif 2025-8fdb7be3cb Security Advisory Updates

15.02.2025 10:12 Latest upstream release. It adds support for tiles and fixes reading images generated by iOS 18+. See https://github.com/strukturag/libheif/releases for more details about the changes since 1.17.6. NOTE: heif-convert tool was renamed to heif-dec. How to test:

Fedora 41: nginx-mod-vts 2025-66ebd291f8 Security Advisory Updates

15.02.2025 10:12 Changes with nginx 1.26.3 05 Feb 2025 *) Security: insufficient check in virtual servers handling with TLSv1.3 SNI allowed to reuse SSL sessions in a different virtual server, to bypass client SSL certificates verification . *) Bugfix: in the ngx_http_mp4_module.

Fedora 41: nginx-mod-naxsi 2025-66ebd291f8 Security Advisory Updates

15.02.2025 10:12 Changes with nginx 1.26.3 05 Feb 2025 *) Security: insufficient check in virtual servers handling with TLSv1.3 SNI allowed to reuse SSL sessions in a different virtual server, to bypass client SSL certificates verification . *) Bugfix: in the ngx_http_mp4_module.

Fedora 41: nginx-mod-modsecurity 2025-66ebd291f8 Security Advisory Updates

15.02.2025 10:12 Changes with nginx 1.26.3 05 Feb 2025 *) Security: insufficient check in virtual servers handling with TLSv1.3 SNI allowed to reuse SSL sessions in a different virtual server, to bypass client SSL certificates verification . *) Bugfix: in the ngx_http_mp4_module.

Fedora 41: nginx-mod-fancyindex 2025-66ebd291f8 Security Advisory Updates

15.02.2025 10:12 Changes with nginx 1.26.3 05 Feb 2025 *) Security: insufficient check in virtual servers handling with TLSv1.3 SNI allowed to reuse SSL sessions in a different virtual server, to bypass client SSL certificates verification . *) Bugfix: in the ngx_http_mp4_module.

Mageia 2025-0067: ffmpeg Security Advisory Updates

15.02.2025 05:10 A buffer overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the ff_bwdif_filter_intra_c function in the libavfilter/bwdifdsp.c:125:5 component. FFmpeg version n6.1.1 was discovered to contain a heap use-after-free via the av_hwframe_ctx_init function.

Mageia 2025-0065: golang Security Advisory Updates

15.02.2025 05:10 Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec. References: - https://bugs.mageia.org/show_bug.cgi?id=34009

Mageia 2025-0064: postgresql15 postgresql13 Security Advisory Updates

15.02.2025 05:10 PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validation. References: - https://bugs.mageia.org/show_bug.cgi?id=34018

Reklama

Srdcetvor.cz - handmade

srdcetvor-handmade.png Nákupní galerie rukodělných výrobků, služeb a materiálů. Můžete si zde otevřít svůj obchod a začít prodávat nebo jen nakupovat.

Lavivasex.cz - erotické pomůcky

lavivasex.png Přehled erotických pomůcek od elegantních vibrátorů, hraček pro páry až po stimulační oleje, afrodiziaka a BDSM pomůcky.

Hledej-hosting.cz - webhosting, VPS hosting

hledej-hosting.png Přehled webhostingových, multihosting a VPS hosting programů s možností jejich pokročilého vyhledávání a porovnávání. Najděte si jednoduše vhodný hosting.