Package Management

Ubuntu 20.04 — netqmail — multiple vulnerabilities (5 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 20.04

Ubuntu 20.04 — netqmail — multiple vulnerabilities (5 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 9 August 2020 Affected versions: Ubuntu 20.04 (focal) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4556-1 Related CVEs: CVE-2005-1513 CVE-2005-1514 CVE-2005-1515 CVE-2020-3811 CVE-2020-3812 Upstream summary: It was discovered that netqmail did not properly handle certain input. Both remote and local attackers could use this vulnerability […]

Read more
SLES 12 — python-rsa — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — python-rsa — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 9 August 2020 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-CU-2023:496-1 (see also SUSE bugzilla) Related CVEs: CVE-2020-25658 CVE-2016-1494 Upstream summary: It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA decryption […]

Read more
How to Set Up IBM HTTP Server on IBM AIX 7.1 — step-by-step IBM AIX 7.1 tutorial on Progressive Robot

How to Set Up IBM HTTP Server on IBM AIX 7.1

Introduction IBM AIX 7.1 is the latest release of IBM’s enterprise-grade UNIX operating system, running on IBM Power Systems hardware. Known for its reliability, security, and performance in mission-critical environments, AIX 7.1 introduces enhanced virtualization, security hardening, and cloud integration features. This guide covers how to set up ibm http server on ibm aix 7.1 […]

Read more
How to Install Containerd as a Container Runtime on Debian 10 — step-by-step Debian 10 tutorial on Progressive Robot

How to Install Containerd as a Container Runtime on Debian 10

Introduction Deploying install containerd as a container runtime on debian 10 on a Debian 10 Buster machine is straightforward thanks to Debian’s policy-compliant packaging. Unlike rpm-based distributions, Debian stores configuration helpers in /etc/default/, uses update-rc.d for older init scripts, and provides dpkg-reconfigure for interactive package configuration. This tutorial stays on the systemd path throughout. Prerequisites […]

Read more
Oracle Linux 8 — sane-backends — vulnerability — patch and remediation guide — diagnosis and fix on Oracle Linux 8

Oracle Linux 8 — sane-backends — vulnerability — patch and remediation guide (ELSA-2020-2902)

🟠 High   ⏱ 15–60 min  Last verified: 9 August 2020 Affected versions: Oracle Linux 8 📖 ~4 min read  •  Source: ELSA advisory ELSA-2020-2902 Related CVEs: CVE-2020-12861 CVE-2020-12865 Table of contents Symptom & Impact Environment & Reproduction Root Cause Analysis Quick Triage Step-by-Step Diagnosis Solution – Primary Fix Solution – Alternative Approaches Verification & […]

Read more
SLES 12 — php5 — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — php5 — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🔴 Critical   ⏱ 15–90 min  Last verified: 9 August 2020 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2016:1504-1 (see also SUSE bugzilla) Related CVEs: CVE-2016-4542 CVE-2016-4543 CVE-2016-4544 CVE-2020-7060 CVE-2015-2787 CVE-2015-3329 CVE-2015-6831 CVE-2015-8879  +12 more Upstream summary: The exif_process_IFD_TAG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and […]

Read more
Common Problems 121191

Debian 10 – Certbot Renewal Fails in Automation – Reliable ACME Recovery

🟠 High   ⏱ 5–30 min  Last verified: 8 August 2020 Affected versions: Debian 10 📖 ~1 min read Table of contents Symptom & Impact Environment & Reproduction Root Cause Analysis Quick Triage Step-by-Step Diagnosis Solution – Primary Fix Solution – Alternative Approaches Verification & Acceptance Criteria Rollback Plan Prevention & Hardening Related Errors & […]

Read more
How to Configure RAID with mdadm on Debian 10 — step-by-step Debian 10 tutorial on Progressive Robot

How to Configure RAID with mdadm on Debian 10

Introduction This guide explains how to Configure RAID with mdadm on Debian 10 on Debian 10 Buster. Debian Buster uses systemd for service management, nftables as the underlying packet filter (with ufw or iptables front-ends still available), and AppArmor for mandatory access control. Every command is designed for a minimal Debian 10 install with the […]

Read more
IBM AIX 7.1 — CVE-2020-4675 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.1

IBM AIX 7.1 — CVE-2020-4675 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 8 August 2020 Affected versions: IBM AIX 7.1 📖 ~4 min read  •  Source: NVD CVE-2020-4675, IBM Support Bulletin CVE: CVE-2020-4675 NVD summary: IBM InfoSphere Master Data Management Server 11.6 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions […]

Read more
FreeBSD 12 — mariadb105-server — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on FreeBSD 12

FreeBSD 12 — mariadb105-server — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 8 August 2020 Affected versions: FreeBSD 12 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: MariaDB — DoS vulnerability in InnoDB Related CVEs: CVE-2018-25032 CVE-2019-17543 CVE-2020-14672 CVE-2020-14760 CVE-2020-14765 CVE-2020-14769 CVE-2020-14771 CVE-2020-14773  +12 more Upstream summary: MariaDB reports: Easily exploitable vulnerability allows high privileged attacker with […]

Read more
CHAT