The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default (CVE-2019-10086) SL7 noarch apache-commons-beanutils-1.8.3-15.…
An update for apache-commons-beanutils is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security imp…
Updated apache-commons-beanutils packages fix security vulnerability: In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allo…
An update for rh-maven35-apache-commons-beanutils is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a…
A security vulnerability was found in libapache2-mod-auth-openidc, the OpenID Connect authentication module for the Apache HTTP server. Insufficient validation…
Apache SpamAssassin celebrates its 18th birthday this year, a huge accomplishment for everyone who has contributed to the open-source project for nearly the pa…
It was reported that the apache2 update released as DSA 4509-1 incorrectly fixed CVE-2019-10092. Updated apache2 packages are now available to correct this iss…
Red Hat JBoss Core Services Pack Apache Server 2.4.29 Service Pack 3 packages for RHEL 6, RHEL 7, Microsoft Windows and Oracle Solaris are now available. Red H…
The update of apache2 released as DLA-1900-1 contained an incomplete fix for CVE-2019-10092, a limited cross-site scripting issue affecting the mod_proxy error…
There is a great debate on the bugtraq mailing list regarding the apache utf7 xss issue.
Even with Apache's focus on producing a secure product, the Web server can still be vulnerable to any number of attacks if you fail to take some security preca…
No doubt you're already aware of the standard logfiles that Apache httpd creates for you.
Update: For millions of websites that were vulnerable care of ISS , Apache is not too happy. ISS (Internet Security Systems) released an insufficient patch alo…
An update that solves 8 vulnerabilities can now be installed.
An update that solves 13 vulnerabilities and has 13 bug fixes can now be installed.
An update that solves 13 vulnerabilities can now be installed.
An update that solves 66 vulnerabilities and contains one feature can now be installed.
An update that solves 66 vulnerabilities and contains one feature can now be installed.
An update that solves 11 vulnerabilities and has 11 bug fixes can now be installed.
An update that solves 10 vulnerabilities, contains one feature and has five security fixes can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves two vulnerabilities can now be installed.
Important: tomcat security update