Systemd Services

Ubuntu 16.04 — freeipa — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — freeipa — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 17 June 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4792-1 Related CVEs: CVE-2016-5404 CVE-2016-7030 CVE-2016-9575 Upstream summary: It was discovered that FreeIPA incorrectly handled certificates. An attacker could possibly use this issue to cause a denial of service by […]

Read more
Ubuntu 16.04 — libevent — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — libevent — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 13 June 2016 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3228-1 Related CVEs: CVE-2016-10195 CVE-2016-10196 CVE-2016-10197 Upstream summary: Guido Vranken discovered that libevent incorrectly handled memory when processing certain data. A remote attacker could possibly use this issue with an […]

Read more
IBM AIX 7.2 — CVE-1999-0099 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0099 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 12 June 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0099, IBM PSIRT advisory page CVE: CVE-1999-0099 NVD summary: Buffer overflow in syslog utility allows local or remote attackers to gain root privileges. References: exchange.xforce.ibmcloud.com/vulnerabilities/CVE   exchange.xforce.ibmcloud.com/vulnerabilities/CVE Table of contents Symptom & […]

Read more
SLES 12 — squidGuard — multiple vulnerabilities (3 CVEs) — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — squidGuard — multiple vulnerabilities (3 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 12 June 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SR:2010:014 (see also SUSE bugzilla) Related CVEs: CVE-2009-3700 CVE-2009-3826 CVE-2015-8936 Upstream summary: Buffer overflow in sgLog.c in squidGuard 1.3 and 1.4 allows remote attackers to cause a denial of service (application hang […]

Read more
IBM AIX 7.2 — CVE-2007-4354 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2007-4354 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 12 June 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2007-4354, IBM Support Bulletin CVE: CVE-2007-4354 NVD summary: Buffer overflow in fileplace in bos.perf.tools in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors. References: ftp://aix.software.ibm.com/aix/efixes/security/R   […]

Read more
CHAT