March 2022 - Page 14 of 70

Uma introdução ao OAuth 2 — step-by-step Security tutorial on Progressive Robot

Uma introdução ao OAuth 2

O OAuth 2 é uma estrutura de autorização que permite que os aplicativos obtenham acesso limitado às contas de usuários em um serviço HTTP, tal como o Facebook, GitHub, e the cloud provider. Ele funciona delegando a autenticação de usuário ao serviço que hospeda a conta do usuário, e…

Read more
Ubuntu 18.04 — ring — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 18.04

Ubuntu 18.04 — ring — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 26 March 2022 Affected versions: Ubuntu 18.04 (bionic) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-6422-1 Related CVEs: CVE-2021-37706 CVE-2021-43299 CVE-2021-43300 CVE-2021-43301 CVE-2021-43302 CVE-2021-43303 CVE-2021-43804 CVE-2021-43845  +12 more Upstream summary: It was discovered that Ring incorrectly handled certain inputs. If a user or an automated […]

Read more
How To Partition and Format Storage Devices in Linux — step-by-step Linux tutorial on Progressive Robot

How To Partition and Format Storage Devices in Linux

Preparing a new disk for use on a Linux system can be quick and easy. There are many tools, filesystem formats, and partitioning schemes that may complicate the process if you have specialized needs, but if you want to get up and running quickly, it’s fairly…

Read more
FreeBSD 13 — qemu-devel — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on FreeBSD 13

FreeBSD 13 — qemu-devel — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 26 March 2022 Affected versions: FreeBSD 13 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: qemu — denial of service vulnerability Related CVEs: CVE-2007-1320 CVE-2007-1321 CVE-2007-1322 CVE-2007-1323 CVE-2007-1366 CVE-2007-6227 CVE-2008-0928 CVE-2008-2004  +12 more Upstream summary: Daniel P. Berrange reports: The VNC server websockets decoder will […]

Read more
Arch Linux — nss — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on Arch Linux

Arch Linux — nss — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 25 May 2026 Affected versions: Arch Linux (rolling release) 📖 ~4 min read  •  Source: Arch ASA ASA-201704-4 Related CVEs: CVE-2017-5461 CVE-2021-43527 Upstream summary: Type: arbitrary code execution. Status: Fixed. Affected: 3.30-1. Fixed in: 3.30.1-1. Group: AVG-247. Table of contents Symptom & Impact Environment & Reproduction Root […]

Read more
Debian 11 — ntp — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on Debian 11

Debian 11 — ntp — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 26 March 2022 Affected versions: Debian 11 (bullseye) 📖 ~4 min read  •  Source: Debian Security Tracker Related CVEs: CVE-2004-0657 CVE-2005-2496 CVE-2009-0021 CVE-2009-0159 CVE-2009-1252 CVE-2009-3563 CVE-2013-5211 CVE-2014-5209  +12 more Upstream summary: Integer overflow in the NTP daemon (NTPd) before 4.0 causes the NTP server to return the […]

Read more
How to Install Telegraf on CentOS Stream 9 — step-by-step CentOS Stream 9 tutorial on Progressive Robot

How to Install Telegraf on CentOS Stream 9

Introduction This tutorial demonstrates how to Install Telegraf on CentOS Stream 9 on CentOS Stream 9. It is written for administrators who want a repeatable, well-explained walkthrough that goes beyond a bare command list and explains each configuration choice. Every command is tested against a freshly registered CentOS Stream 9 system with the default AppStream […]

Read more
AlmaLinux 8 — lttng-ust — vulnerability — patch and remediation guide — diagnosis and fix on AlmaLinux 8

AlmaLinux 8 — lttng-ust — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 25 May 2026 Affected versions: AlmaLinux 8 📖 ~4 min read  •  Source: AlmaLinux ALSA ALBA-2019:3411 Upstream summary: This update fixes two issues in lttng-ust and subpackages. There was a bad shebang in the /usr/bin/lttng-gen-tp utility that prevented users from executing it. This issue has been fixed. […]

Read more
IBM AIX 7.1 — CVE-2022-43579 — xss — patch and remediation guide — diagnosis and fix on IBM AIX 7.1

IBM AIX 7.1 — CVE-2022-43579 — xss — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 25 March 2022 Affected versions: IBM AIX 7.1 📖 ~4 min read  •  Source: NVD CVE-2022-43579, IBM Support Bulletin CVE: CVE-2022-43579 NVD summary: IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.7 and 6.1.0.0 through 6.1.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed […]

Read more
Oracle Linux 8 — SELinux: "Class bpf not defined in policy" and "Class xdp_socket not defined in policy" errors occur during a boot — diagnosis and fix on Oracle Linux 8

Oracle Linux 8 — SELinux: “Class bpf not defined in policy” and “Class xdp_socket not defined in policy” errors occur during a boot

🟠 High   ⏱ 5–30 min  Last verified: 25 March 2022 Affected versions: Oracle Linux 8 📖 ~4 min read  •  Source: Oracle Bug 29502976 Table of contents Symptom & Impact Environment & Reproduction Root Cause Analysis Quick Triage Step-by-Step Diagnosis Solution – Primary Fix Solution – Alternative Approaches Verification & Acceptance Criteria Rollback Plan […]

Read more
CHAT