RHSA-2015:1686-1: Moderate: python-django security update

Red Hat Enterprise Linux: Updated python-django packages that fix one security issue are now
available for Red Hat Enterprise Linux OpenStack Platform 5.

Red Hat Product Security has rated this update as having Moderate security
impact. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available from the CVE link in the
References section.
CVE-2015-5143

RHSA-2015:1685-1: Moderate: python-keystoneclient security update

Red Hat Enterprise Linux: Updated python-keystoneclient packages that fix one security issue are
now available for Red Hat Enterprise Linux OpenStack Platform 5.0.

Red Hat Product Security has rated this update as having Moderate security
impact. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available from the CVE link in the
References section.
CVE-2015-1852

RHSA-2015:1684-1: Moderate: openstack-swift security update

Red Hat Enterprise Linux: Updated openstack-swift packages that fix one security issue are now
available for Red Hat Enterprise Linux OpenStack Platform 5.0.

Red Hat Product Security has rated this update as having Moderate security
impact. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available from the CVE link in the
References section.
CVE-2015-1856

RHSA-2015:1683-1: Moderate: qemu-kvm-rhev security update

Red Hat Enterprise Linux: Updated qemu-kvm-rhev packages that fix one security issue are now
available for Red Hat Enterprise Linux OpenStack Platform 5.

Red Hat Product Security has rated this update as having Moderate security
impact. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available from the CVE link in the
References section.
CVE-2015-5165

RHSA-2015:1682-1: Important: thunderbird security update

Red Hat Enterprise Linux: An updated thunderbird package that fixes multiple security issues is now
available for Red Hat Enterprise Linux 5, 6, and 7.

Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
CVE-2015-4473, CVE-2015-4487, CVE-2015-4488, CVE-2015-4489, CVE-2015-4491

USN-2712-1: Thunderbird vulnerabilities

Ubuntu Security Notice USN-2712-1

25th August, 2015

thunderbird vulnerabilities

A security issue affects these releases of Ubuntu and its
derivatives:

  • Ubuntu 15.04
  • Ubuntu 14.04 LTS
  • Ubuntu 12.04 LTS

Summary

Several security issues were fixed in Thunderbird.

Software description

  • thunderbird
    – Mozilla Open Source mail and newsgroup client

Details

Gary Kwong, Christian Holler, and Byron Campen discovered multiple memory
safety issues in Thunderbird. If a user were tricked in to opening a
specially crafted message, an attacker could potentially exploit these to
cause a denial of service via application crash, or execute arbitrary code
with the privileges ofthe user invoking Thunderbird. (CVE-2015-4473)

Ronald Crane reported 3 security issues. If a user were tricked in to
opening a specially crafted message, an attacker could potentially
exploit these, in combination with another security vulnerability, to
cause a denial of service via application crash, or execute arbitrary
code with the privileges of the user invoking Thunderbird. (CVE-2015-4487,
CVE-2015-4488, CVE-2015-4489)

Gustavo Grieco discovered a heap overflow in gdk-pixbuf. If a user were
tricked in to opening a specially crafted message, an attacker could
potentially exploit this to cause a denial of service via application
crash or execute arbitrary code with the priviliges of the user invoking
Thunderbird. (CVE-2015-4491)

Update instructions

The problem can be corrected by updating your system to the following
package version:

Ubuntu 15.04:
thunderbird

1:38.2.0+build1-0ubuntu0.15.04.1
Ubuntu 14.04 LTS:
thunderbird

1:38.2.0+build1-0ubuntu0.14.04.1
Ubuntu 12.04 LTS:
thunderbird

1:38.2.0+build1-0ubuntu0.12.04.2

To update your system, please follow these instructions:
https://wiki.ubuntu.com/Security/Upgrades.

After a standard system update you need to restart Thunderbird to make
all the necessary changes.

References

CVE-2015-4473,

CVE-2015-4487,

CVE-2015-4488,

CVE-2015-4489,

CVE-2015-4491

CESA-2015:1665 Moderate CentOS 7 mariadb SecurityUpdate

CentOS Errata and Security Advisory 2015:1665 Moderate

Upstream details at : https://rhn.redhat.com/errata/RHSA-2015-1665.html

The following updated files have been uploaded and are currently 
syncing to the mirrors: ( sha256sum Filename ) 

x86_64:
29554047f0773b0494da521348084df861ed2d72a4e840c4176bfe6c12ea8df4  mariadb-5.5.44-1.el7_1.x86_64.rpm
3bbd3d18a4dcd102feb5fd94fa3468e01218507b99202aa658bbc23e04a8ae4d  mariadb-bench-5.5.44-1.el7_1.x86_64.rpm
5eefe9dbe3419bcf90bb02d2bfda07cf9dc3a80912a915f96ffc8d54e8ecf698  mariadb-devel-5.5.44-1.el7_1.i686.rpm
476704fc7950346209ba0b67a3ba9ac070e1cf7e9da93e5d216fb2f179ee40fe  mariadb-devel-5.5.44-1.el7_1.x86_64.rpm
b91481ca736c1325d5ef3badffceebd3947e68703d68088a4cd34a56b0b6a688  mariadb-embedded-5.5.44-1.el7_1.i686.rpm
853f6651aca96694b0869f11e95429e231ccc35958fee1b4575729c6964ca920  mariadb-embedded-5.5.44-1.el7_1.x86_64.rpm
ac1d94abc98915dab78283fb9b2d64e8963fba1d3567734a3545e53b119fbfb0  mariadb-embedded-devel-5.5.44-1.el7_1.i686.rpm
f213d56f35a7a0df1282be1e91d245addb84cf910b04b3554abb25b99b2fbce5  mariadb-embedded-devel-5.5.44-1.el7_1.x86_64.rpm
214d762de692806084bdf126995cd3131e71bb85859055cd0b39dda9cc04ffe0  mariadb-libs-5.5.44-1.el7_1.i686.rpm
71429a21bc29daed0f86c3c44b02cfdd5b94d151b6a6acc00c83242373e74ac4  mariadb-libs-5.5.44-1.el7_1.x86_64.rpm
6cd54e7aad5c299aca38f8548bf8fd62d0932aec02da09f7726da92ecdb5bd69  mariadb-server-5.5.44-1.el7_1.x86_64.rpm
cb0dce1d11f25dbc6e091f9ff3281377bd2964c308a99f5a9c9c5126e8d3ff9b  mariadb-test-5.5.44-1.el7_1.x86_64.rpm

Source:
822fc3a6ab31eae0917713ab6cf913e2ded3f3324bfbeb985522a648efe687f0  mariadb-5.5.44-1.el7_1.src.rpm