Fix Prevention

SLES 12 — pidgin-otr — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — pidgin-otr — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 15 May 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2012:0703-1 (see also SUSE bugzilla) Related CVEs: CVE-2012-2369 CVE-2015-8833 Upstream summary: Format string vulnerability in the log_message_cb function in otr-plugin.c in the Off-the-Record Messaging (OTR) pidgin-otr plugin before 3.2.1 for Pidgin might […]

Read more
Ubuntu 16.04 — r-base — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — r-base — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 13 May 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4799-1 Related CVEs: CVE-2016-8714 Upstream summary: It was discovered that a buffer overflow in R causes memory corruption. An attacker could possibly use this to cause a denial of service […]

Read more
Ubuntu 16.04 — ec2-hibinit-agent — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — ec2-hibinit-agent — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 9 May 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-6519-2 Related CVEs: https://launchpad.net/bugs/1941785 Upstream summary: USN-6519-1 added IMDSv2 support to EC2 hibagent. This update provides the corresponding update for Ubuntu 16.04 LTS. Original advisory details: The EC2 hibagent package […]

Read more
Ubuntu 14.04 — libcommons-collections3-java — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — libcommons-collections3-java — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 8 May 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-6936-1 Related CVEs: CVE-2015-4852 Upstream summary: It was discovered that Apache Commons Collections allowed serialization support for unsafe classes by default. A remote attacker could possibly use this issue to […]

Read more
IBM AIX 7.2 — CVE-2010-3187 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2010-3187 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 7 May 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2010-3187, IBM Support Bulletin CVE: CVE-2010-3187 NVD summary: Buffer overflow in ftpd in IBM AIX 5.3 and earlier allows remote attackers to execute arbitrary code via a long NLST command. References: aix.software.ibm.com/aix/efixes/security/ftpd_ad […]

Read more
IBM AIX 7.2 — CVE-1999-0112 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0112 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 6 May 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0112, IBM PSIRT advisory page CVE: CVE-1999-0112 NVD summary: Buffer overflow in AIX dtterm program for the CDE. References: exchange.xforce.ibmcloud.com/vulnerabilities/878   exchange.xforce.ibmcloud.com/vulnerabilities/878 Table of contents Symptom & Impact Environment & Reproduction Root […]

Read more
CHAT