2021 - Page 107 of 759

Debian 11 — xapian-omega — vulnerability — patch and remediation guide — diagnosis and fix on Debian 11

Debian 11 — xapian-omega — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 12 November 2021 Affected versions: Debian 11 (bullseye) 📖 ~4 min read  •  Source: Debian Security Tracker Related CVEs: CVE-2009-2947 Upstream summary: Cross-site scripting (XSS) vulnerability in Xapian Omega before 1.0.16 allows remote attackers to inject arbitrary web script or HTML via unspecified CGI parameter values, which […]

Read more
Debian 11 — libcrypt-openssl-dsa-perl — vulnerability — patch and remediation guide — diagnosis and fix on Debian 11

Debian 11 — libcrypt-openssl-dsa-perl — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 12 November 2021 Affected versions: Debian 11 (bullseye) 📖 ~4 min read  •  Source: Debian Security Tracker Related CVEs: CVE-2009-0129 Upstream summary: libcrypt-openssl-dsa-perl does not properly check the return value from the OpenSSL DSA_verify and DSA_do_verify functions, which might allow remote attackers to bypass validation of the […]

Read more
Debian 11 — polygen — vulnerability — patch and remediation guide — diagnosis and fix on Debian 11

Debian 11 — polygen — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 12 November 2021 Affected versions: Debian 11 (bullseye) 📖 ~4 min read  •  Source: Debian Security Tracker Related CVEs: CVE-2005-2656 Upstream summary: Polygen before 1.0.6 generates precompiled grammar objects with world-writable permissions, which allows local users to cause a denial of service (disk consumption) and possibly perform […]

Read more
How to Set Up Pacemaker and Corosync for High Availability on RHEL 7 — step-by-step RHEL 7 tutorial on Progressive Robot

How to Set Up Pacemaker and Corosync for High Availability on RHEL 7

How to Set Up Pacemaker and Corosync for High Availability on RHEL 7 High availability (HA) clustering prevents individual server failures from causing service outages by automatically detecting node failures and restarting workloads on surviving nodes. On RHEL 7, the standard HA stack is built from three components: Corosync, which provides reliable cluster messaging and […]

Read more
Ubuntu 18.04 — nvidia-graphics-drivers-460 — multiple vulnerabilities (8 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 18.04

Ubuntu 18.04 — nvidia-graphics-drivers-460 — multiple vulnerabilities (8 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 12 November 2021 Affected versions: Ubuntu 18.04 (bionic) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-5019-1 Related CVEs: CVE-2021-1093 CVE-2021-1094 CVE-2021-1095 CVE-2021-1076 CVE-2021-1077 CVE-2021-1052 CVE-2021-1053 CVE-2021-1056 Upstream summary: It was discovered that an assert() could be triggered in the NVIDIA graphics drivers. A local attacker […]

Read more
AlmaLinux 8 — zsh — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on AlmaLinux 8

AlmaLinux 8 — zsh — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: AlmaLinux 8 📖 ~4 min read  •  Source: AlmaLinux ALSA ALSA-2020:0903 Related CVEs: CVE-2019-20044 CVE-2021-45444 Upstream summary: The zsh shell is a command interpreter usable as an interactive login shell and as a shell script command processor. Zsh resembles the ksh shell […]

Read more
Ubuntu 18.04 — adminer — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 18.04

Ubuntu 18.04 — adminer — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 12 November 2021 Affected versions: Ubuntu 18.04 (bionic) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-5271-1 Related CVEs: CVE-2020-35572 CVE-2021-21311 CVE-2021-29625 Upstream summary: It was discovered that Adminer did not escape data in the history parameter of the default URI. A remote attacker could possibly […]

Read more
Oracle Linux 8 — gnutls — vulnerability — patch and remediation guide — diagnosis and fix on Oracle Linux 8

Oracle Linux 8 — gnutls — vulnerability — patch and remediation guide (ELSA-2022-9221)

🟡 Medium   ⏱ 10–30 min  Last verified: 12 November 2021 Affected versions: Oracle Linux 8 📖 ~4 min read  •  Source: ELSA advisory ELSA-2022-9221 Related CVEs: CVE-2021-3580 CVE-2021-20232 CVE-2021-20231 Table of contents Symptom & Impact Environment & Reproduction Root Cause Analysis Quick Triage Step-by-Step Diagnosis Solution – Primary Fix Solution – Alternative Approaches Verification […]

Read more
FreeBSD 13 — postgresql94-server — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on FreeBSD 13

FreeBSD 13 — postgresql94-server — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 12 November 2021 Affected versions: FreeBSD 13 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: PostgresSQL — TYPE in pg_temp execute arbitrary SQL during `SECURITY DEFINER` execution Related CVEs: CVE-2014-8161 CVE-2015-0241 CVE-2015-0242 CVE-2015-0243 CVE-2015-0244 CVE-2015-3165 CVE-2015-3166 CVE-2015-3167  +12 more Upstream summary: The PostgreSQL project reports: […]

Read more
CHAT