[security bulletin] HPSBGN03694 rev.1 – HPE SiteScope, Remote Disclosure of Information
Monthly Archives: January 2017
Slackware Security Advisory – gnutls Updates
Slackware Security Advisory – New gnutls packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix security issues.
Slackware Security Advisory – bind Updates
Slackware Security Advisory – New bind packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue.
Ubuntu Security Notice USN-3172-1
Ubuntu Security Notice 3172-1 – It was discovered that Bind incorrectly handled certain malformed responses to an ANY query. A remote attacker could possibly use this issue to cause Bind to crash, resulting in a denial of service. It was discovered that Bind incorrectly handled certain malformed responses to an ANY query. A remote attacker could possibly use this issue to cause Bind to crash, resulting in a denial of service. It was discovered that Bind incorrectly handled certain malformed DS record responses. A remote attacker could possibly use this issue to cause Bind to crash, resulting in a denial of service. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu 16.10. Various other issues were also addressed.
Gentoo Linux Security Advisory 201701-35
Gentoo Linux Security Advisory 201701-35 – Multiple vulnerabilities have been found in Mozilla SeaMonkey, the worst of which could lead to the remote execution of arbitrary code. Versions less than 2.46-r1 are affected.
Debian Security Advisory 3760-1
Debian Linux Security Advisory 3760-1 – Multiple vulnerabilities have been found in the Ikiwiki wiki compiler.
Gentoo Linux Security Advisory 201701-33
Gentoo Linux Security Advisory 201701-33 – Multiple vulnerabilities have been found in PostgreSQL, the worst of which could result in execution of arbitrary code or privilege escalation. Versions less than 9.5.4 are affected.
Gentoo Linux Security Advisory 201701-34
Gentoo Linux Security Advisory 201701-34 – A vulnerability in runC could lead to privilege escalation. Versions less than 1.0.0_rc2-r2 are affected.
Debian Security Advisory 3758-1
Debian Linux Security Advisory 3758-1 – Several denial-of-service vulnerabilities (assertion failures) were discovered in BIND, a DNS server implementation.
HP Security Bulletin HPSBGN03694 1
HP Security Bulletin HPSBGN03694 1 – A security vulnerability in DES/3DES block ciphers used in the TLS protocol, could potentially impact HPE SiteScope resulting in remote disclosure of information, also known as the SWEET32 attack. Revision 1 of this advisory.