chris

Ubuntu 16.04 — libtorrent-rasterbar — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — libtorrent-rasterbar — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 30 August 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4790-1 Related CVEs: CVE-2016-5301 Upstream summary: It was discovered that libtorrent incorrectly handled chunked headers. A remote attacker could possibly use this to cause a crash resulting in a denial […]

Read more
Ubuntu 14.04 — file-roller — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — file-roller — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 26 August 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3074-1 Related CVEs: CVE-2016-7162 https://launchpad.net/bugs/1171236 Upstream summary: It was discovered that File Roller incorrectly handled symlinks. If a user were tricked into extracting a specially-crafted archive, an attacker could delete […]

Read more
Ubuntu 14.04 — texlive-base — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — texlive-base — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 25 August 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3401-1 Related CVEs: CVE-2016-10243 Upstream summary: It was discovered that TeX Live incorrectly handled certain system commands. If a user were tricked into processing a specially crafted TeX file, a […]

Read more
IBM AIX 7.2 — CVE-2001-1440 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2001-1440 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 19 August 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2001-1440, IBM Support Bulletin CVE: CVE-2001-1440 NVD summary: Unknown vulnerability in login for AIX 5.1L, when using loadable authentication modules, allows remote attackers to gain access to the system. References: securitytracker.com/id?1003038   […]

Read more
IBM AIX 7.2 — CVE-1999-1487 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-1487 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 18 August 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-1487, IBM Support Bulletin CVE: CVE-1999-1487 NVD summary: Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system. References: www-1.ibm.com/servlet/support/manager?rt=0&rs=0& […]

Read more
CHAT