ubuntu

Ubuntu 14.04 — libmspack — multiple vulnerabilities (12 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — libmspack — multiple vulnerabilities (12 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 24 May 2018 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-7788-1 Related CVEs: CVE-2018-14682 CVE-2017-11423 CVE-2015-4468 CVE-2018-14680 CVE-2015-4467 CVE-2018-14679 CVE-2015-4472 CVE-2015-4469  +4 more Upstream summary: Jakub Wilk discovered that libmspack did not correctly handle certain integer operations and bounds checking. […]

Read more
Ubuntu 16.04 — asterisk — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — asterisk — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 21 May 2018 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4814-1 Related CVEs: CVE-2017-16671 CVE-2017-7617 Upstream summary: Richard Mudgett discovered that Asterisk did not properly check the length of input string when setting the user field for PartyB on a […]

Read more
Ubuntu 18.04 — afflib — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 18.04

Ubuntu 18.04 — afflib — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 18 May 2018 Affected versions: Ubuntu 18.04 (bionic) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-6518-1 Related CVEs: CVE-2018-8050 Upstream summary: Luis Rocha discovered that AFFLIB incorrectly handled certain input files. If a user or automated system were tricked into processing a specially crafted AFF […]

Read more
Ubuntu 16.04 — cinnamon — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — cinnamon — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 16 May 2018 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4844-1 Related CVEs: CVE-2018-13054 Upstream summary: Matthias Gerstner discovered that the cinnamon-settings-users utility in Cinnamon did not safely handle symlinks. An unprivileged attacker could potentially use this vulnerability to overwrite […]

Read more
Ubuntu 16.04 — nvidia-graphics-drivers-340 — multiple vulnerabilities (4 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — nvidia-graphics-drivers-340 — multiple vulnerabilities (4 CVEs) — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 13 May 2018 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3240-1 Related CVEs: CVE-2017-0318 CVE-2016-8826 CVE-2016-7382 CVE-2016-7389 Upstream summary: It was discovered that the NVIDIA graphics drivers contained a flaw in the kernel mode layer. A local attacker could use […]

Read more
Ubuntu 18.04 — jbigkit — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 18.04

Ubuntu 18.04 — jbigkit — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 13 May 2018 Affected versions: Ubuntu 18.04 (bionic) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-5742-1 Related CVEs: CVE-2017-9937 Upstream summary: It was discovered that JBIG-KIT incorrectly handled decoding certain large image files. If a user or automated system using JBIG-KIT were tricked into opening […]

Read more
Ubuntu 14.04 — sharutils — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — sharutils — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 12 May 2018 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-3605-1 Related CVEs: CVE-2018-1000097 Upstream summary: It was discovered that Sharutils incorrectly handled certain files. An attacker could possibly use this to execute arbitrary code. Table of contents Symptom & […]

Read more
Ubuntu 16.04 — x265 — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — x265 — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 10 May 2018 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4809-1 Related CVEs: CVE-2017-13135 Upstream summary: It was discovered that VideoLAN x265 mishandled certain memory-allocation inputs. An attacker could use this vulnerability to cause a denial of service (crash) Table […]

Read more
Ubuntu 16.04 — libcgroup — vulnerability — patch and remediation guide — diagnosis and fix on Ubuntu 16.04

Ubuntu 16.04 — libcgroup — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 10 May 2018 Affected versions: Ubuntu 16.04 (xenial) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4845-1 Related CVEs: CVE-2018-14348 Upstream summary: It was discovered that libcgroup incorrectly handled log file permissions. An attacker could possibly use this issue to obtain sensitive information. Table of contents […]

Read more
Ubuntu 14.04 — phpmyadmin — multiple vulnerabilities (20 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — phpmyadmin — multiple vulnerabilities (20 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 8 May 2018 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-4843-1 Related CVEs: CVE-2014-9218 CVE-2016-6609 CVE-2016-6619 CVE-2016-6630 CVE-2016-9849 CVE-2016-9866 CVE-2017-18264 CVE-2017-1000014  +12 more Upstream summary: Javier Nieto and Andres Rojas discovered that phpMyAdmin incorrectly managed input in the form of […]

Read more
CHAT