chris

Ubuntu 18.04 — bzip2 — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 18.04

Ubuntu 18.04 — bzip2 — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 15 October 2019 Affected versions: Ubuntu 18.04 (bionic) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4038-3 Related CVEs: https://launchpad.net/bugs/1834494 CVE-2016-3189 CVE-2019-12900 Upstream summary: USN-4038-1 fixed a vulnerability in bzip2. The update introduced a regression causing bzip2 to incorrect raises CRC errors for some files. We […]

Read more
Ubuntu 16.04 — php-imagick — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — php-imagick — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 15 October 2019 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4586-2 Related CVEs: CVE-2019-11037 Upstream summary: USN-4586-1 fixed vulnerabilities in PHP ImageMagick. This update provides the corresponding update for Ubuntu 16.04 ESM. Original advisory details: It was discovered that PHP […]

Read more
SLES 15 — libpotrace0 — multiple vulnerabilities (4 CVEs) — patch and remediation guide — diagnosis and fix on SLES 15

SLES 15 — libpotrace0 — multiple vulnerabilities (4 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 15 October 2019 Affected versions: SLES 15 📖 ~4 min read  •  Source: SUSE security advisory (see also SUSE bugzilla) Related CVEs: CVE-2016-8685 CVE-2016-8686 CVE-2013-7437 CVE-2017-12067 Upstream summary: The findnext function in decompose.c in potrace 1.13 allows remote attackers to cause a denial of service (invalid memory […]

Read more
How to Configure MPLS on Windows Server 2016 — step-by-step Windows Server 2016 tutorial on Progressive Robot

How to Configure MPLS on Windows Server 2016

How to Configure Windows Server 2016 Multiprotocol Label Switching Multiprotocol Label Switching (MPLS) is a high-performance routing technique that directs data from one node to the next based on short path labels rather than long network addresses. It has traditionally been the domain of service provider networks, but with the evolution of software-defined networking (SDN), […]

Read more
How To Protect your Server Against the POODLE SSLv3 Vulnerability — step-by-step Linux tutorial on Progressive Robot

How To Protect your Server Against the POODLE SSLv3 Vulnerability

The POODLE SSLv3 vulnerability is a security issue that affects all implementations of SSLv3. This vulnerability allows an attacker to decrypt messages sent using this protocol version by exploiting a weakness the way the padding of a message are checked. In this guide, we’ll explain how the vulnerability work, and tell you how to disable SSLv3 on some common services.

Read more
OpenBSD 7.4 — sndiod — errata 018_sndiod — reliability fix — syspatch and remediation — diagnosis and fix on OpenBSD 7.4

OpenBSD 7.4 — sndiod — errata 018_sndiod — reliability fix — syspatch and remediation

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: OpenBSD 7.4 📖 ~4 min read  •  Source: OpenBSD 7.4 errata 018_sndiod Errata topic: Security: sndiod (All architectures) Issued: August 2, 2024 Upstream summary: sndiod(8) main process could crash due to buffer overread. Table of contents Symptom & Impact Environment & Reproduction […]

Read more
Oracle Linux 8 — wavpack — vulnerability — patch and remediation guide — diagnosis and fix on Oracle Linux 8

Oracle Linux 8 — wavpack — vulnerability — patch and remediation guide (ELSA-2020-1581)

🟢 Low   ⏱ 5–15 min  Last verified: 15 October 2019 Affected versions: Oracle Linux 8 📖 ~4 min read  •  Source: ELSA advisory ELSA-2020-1581 Related CVEs: CVE-2018-19840 CVE-2019-1010315 CVE-2019-1010319 CVE-2018-19841 CVE-2019-11498 CVE-2019-1010317 Table of contents Symptom & Impact Environment & Reproduction Root Cause Analysis Quick Triage Step-by-Step Diagnosis Solution – Primary Fix Solution – […]

Read more
CHAT