APPLE-SA-2016-06-20-2 OS X: Flash Player plug-in blocked
Due to security issues in older versions, Apple has
updated the web plug-in blocking mechanism to disable all
versions prior to Flash Player 22.0.0.192 and 18.0.0.360.
Information on blocked web plug-ins will be posted to:
http://support. [...]
Red Hat Enterprise Linux: An update for chromium-browser is now available for Red Hat Enterprise Linux 6
Supplementary.
Red Hat Product Security has rated this update as having a security impact of
Important. A Common Vulnerability Scoring System (CVSS) base score, which gives
a detailed severity rating, is available for each vulnerability from the CVE
link(s) in the References section.
CVE-2016-1704
Red Hat Enterprise Linux: Updated Installation utility packages that resolve various issues are now
available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for
RHEL 7.
A security issue affects these releases of Ubuntu and its
derivatives:
Ubuntu 16.04 LTS
Ubuntu 15.10
Summary
Dnsmasq could be made to crash if it received specially crafted network
traffic.
Software description
dnsmasq
– Small caching DNS proxy and DHCP/TFTP server
Details
Edwin Török discovered that Dnsmasq incorrectly handled certain CNAME responses. A remote attacker could use this issue to cause Dnsmasq to crash, resulting in a denial of service.
Update instructions
The problem can be corrected by updating your system to the following
package version:
A security issue affects these releases of Ubuntu and its
derivatives:
Ubuntu 16.04 LTS
Summary
HAProxy could be made to crash if it received specially crafted network
traffic.
Software description
haproxy
– fast and reliable load balancing reverse proxy
Details
Falco Schmutz discovered that HAProxy incorrectly handled the reqdeny filter. A remote attacker could use this issue to cause HAProxy to crash, resulting in a denial of service.
Update instructions
The problem can be corrected by updating your system to the following
package version:
A security issue affects these releases of Ubuntu and its
derivatives:
Ubuntu 16.04 LTS
Ubuntu 15.10
Ubuntu 14.04 LTS
Ubuntu 12.04 LTS
Summary
Wget could be made to overwrite files.
Software description
wget
– retrieves files from the web
Details
Dawid Golunski discovered that Wget incorrectly handled filenames when being redirected from an HTTP to an FTP URL. A malicious server could possibly use this issue to overwrite local files.
Update instructions
The problem can be corrected by updating your system to the following
package version: