The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
* bsc#1227268 * bsc#1227269 * bsc#1227270 * bsc#1227271
* bsc#1227268 * bsc#1227269 * bsc#1227272 Cross-References:
* bsc#1227268 * bsc#1227269 Cross-References: * CVE-2024-38475
* bsc#1227269 Cross-References: * CVE-2024-38476
* bsc#1219911 * bsc#1227261 Cross-References: * CVE-2024-24814
* bsc#1221401 * bsc#1222330 * bsc#1222332 Cross-References:
* bsc#1221401 * bsc#1222330 * bsc#1222332 Cross-References:
* bsc#1221401 * bsc#1222330 * bsc#1222332 Cross-References:
* bsc#1221793 * bsc#1221797 Cross-References: * CVE-2024-29131
* bsc#1221793 * bsc#1221797 Cross-References: * CVE-2024-29131
Microsoft is warning of continuing attempts by nation-state adversaries and commodity attackers to take advantage ofsecurity vulnerabilitiesuncovered in the Lo…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, cit…
This release contains a fix for a security issue: CVE-2024-46901 See https://subversion.apache.org/security/CVE-2024-46901-advisory.txt for more information. C…
Two vulnerabilities were found in Apache ActiveMQ, a Java-based message broker. CVE-2022-41678
Lax permissions set by the Apache Portable Runtime library on Unix platforms would allow local users read access to named shared memory segments, potentially r…
This update to the apr package fixes a security issue in the handling of shared memory permissions. SECURITY: CVE-2023-49582: Apache Portable Runtime (APR): Un…
Several vulnerabilities were discovered in Apache Traffic Server, a reverse and forward proxy server, which could result in denial of service or request smuggl…
Improper Handling of Exceptional Conditions, Uncontrolled Resource Consumption vulnerability in Apache Tomcat. When processing an HTTP/2 stream, Tomcat did not…
This update includes a rebase from 9.0.83 to 9.0.89. #2269611 CVE-2024-24549 tomcat: CVE-2024-24549: Apache Tomcat: HTTP/2 header handling DoS #2269612 CVE-202…
This update includes a rebase from 9.0.83 to 9.0.89. #2269611 CVE-2024-24549 tomcat: CVE-2024-24549: Apache Tomcat: HTTP/2 header handling DoS #2269612 CVE-202…
Fossil was broken by fixes of CVE-2024-24795 for apache2 package, and needed an update. As part of the security fix, the Apache webserver
This update includes httpd version 2.4.59, fixing various security issues and bugs. See https://downloads.apache.org/httpd/CHANGES_2.4.59 for complete details …
Potential DoS attacks have been fixed by rate limiting HTTP/2 CONTINUATION frames in Apache Traffic Server, an HTTP/1.1 and HTTP/2 compliant caching proxy serv…
This update includes httpd version 2.4.59, fixing various security issues and bugs. See https://downloads.apache.org/httpd/CHANGES_2.4.59 for complete details …