Fix Prevention

Ubuntu 14.04 — linux-lts-vivid — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — linux-lts-vivid — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 4 September 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3053-1 Related CVEs: CVE-2016-1237 CVE-2016-4470 CVE-2016-4794 CVE-2016-5243 CVE-2016-3070 CVE-2016-4482 CVE-2016-4569 CVE-2016-4578  +12 more Upstream summary: A missing permission check when settings ACLs was discovered in nfsd. A local user could […]

Read more
IBM AIX 7.2 — CVE-2010-4622 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2010-4622 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 3 September 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2010-4622, IBM Support Bulletin CVE: CVE-2010-4622 NVD summary: Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 6.1.1 before 6.1.1-TIV-AWS-FP0001 on AIX allows remote attackers to read arbitrary files […]

Read more
Ubuntu 16.04 — libtorrent-rasterbar — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — libtorrent-rasterbar — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 30 August 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4790-1 Related CVEs: CVE-2016-5301 Upstream summary: It was discovered that libtorrent incorrectly handled chunked headers. A remote attacker could possibly use this to cause a crash resulting in a denial […]

Read more
Ubuntu 14.04 — file-roller — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — file-roller — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 26 August 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3074-1 Related CVEs: CVE-2016-7162 https://launchpad.net/bugs/1171236 Upstream summary: It was discovered that File Roller incorrectly handled symlinks. If a user were tricked into extracting a specially-crafted archive, an attacker could delete […]

Read more
CHAT