The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
* bsc#1227268 * bsc#1227269 * bsc#1227270 * bsc#1227271
* bsc#1227268 * bsc#1227269 * bsc#1227272 Cross-References:
* bsc#1227268 * bsc#1227269 Cross-References: * CVE-2024-38475
* bsc#1227269 Cross-References: * CVE-2024-38476
* bsc#1219911 * bsc#1227261 Cross-References: * CVE-2024-24814
* bsc#1221401 * bsc#1222330 * bsc#1222332 Cross-References:
* bsc#1221401 * bsc#1222330 * bsc#1222332 Cross-References:
* bsc#1221401 * bsc#1222330 * bsc#1222332 Cross-References:
* bsc#1221793 * bsc#1221797 Cross-References: * CVE-2024-29131
* bsc#1221793 * bsc#1221797 Cross-References: * CVE-2024-29131
* bsc#1167896 * bsc#1206261 * bsc#1215301 Cross-References:
A SQL injection bypass (aka PL1 bypass) exists in OWASP ModSecurity Core Rule Set (owasp-modsecurity-crs) through v3.1.0-rc3 via {`a`b} where a is a special fu…
* bsc#1219911 Cross-References: * CVE-2024-24814
* bsc#1219911 Cross-References: * CVE-2024-24814
* bsc#1205463 * bsc#1218189 Cross-References: * CVE-2022-45047
An update is now available for Red Hat JBoss Core Services. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vu…
**Changelog** ``` * Sun Jun 25 2023 Didik Supriadi - 2.5.1-3 - Build with ivy instead of maven ```
It was discovered that missing input sanitising in the implementation of the OIDCStripCookie option in mod_auth_openidc could result in denial of service.
Denial of service with a malicious upload or series of uploads. (CVE-2023-24998) References: - https://bugs.mageia.org/show_bug.cgi?id=31580
An update that fixes one vulnerability is now available.
An update is now available for Red Hat JBoss Core Services. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vu…
An update is now available for Red Hat JBoss Core Services. Red Hat Product Security has rated this update as having a security impact of Important. A Common V…
An update that fixes one vulnerability is now available.
An update is now available for Red Hat JBoss Core Services. Red Hat Product Security has rated this update as having a security impact of Important. A Common V…