The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
An out-of-bounds read and write flaw was discovered in the PHP-FPM code, which could result in escalation of privileges from local unprivileged user to the roo…
The security update of smarty3, the compiling PHP template engine, issued as DLA 2618-1 introduced a regression in the smarty_security class when secure direct…
Multiple security issues were found in PHP, a widely-used open source general purpose scripting language which could result an SSRF bypass of the FILTER_VALIDA…
- Update to 1.2.17 Release notes: https://www.cacti.net/release_notes.php?version=1.2.17
- Update to 1.2.17 Release notes: https://www.cacti.net/release_notes.php?version=1.2.17
- Update to 1.2.17 Release notes: https://www.cacti.net/release_notes.php?version=1.2.17
- Update to 1.2.17 Release notes: https://www.cacti.net/release_notes.php?version=1.2.17
Several vulnerabilities were discovered in smarty3, a template engine for PHP. CVE-2018-13982
Update to 3.17.7 -- https://www.claws-mail.org/news.php
Over the next couple of weeks and months, LinuxSecurity editors and contributors will be writing a series on Linux Web Server Security. This week, we're summar…
It was discovered that there was a use-after-free vulnerability when parsing PHAR files, a method of putting entire PHP applications into a single file.
A security researcher earlier today publicly revealed details and proof-of-concept exploit code for an unpatched, critical zero-day remote code execution vulne…
It was discovered that there was an escaping issue in libphp-phpmailer, an email generation utility class for the PHP programming language.
- Update to 1.2.13 Release notes: https://www.cacti.net/release_notes.php?version=1.2.13
Updated mediawiki packages fix security vulnerability: In MediaWiki before 1.31.8, private wikis behind a caching server using the img_auth.php image authoriza…
Multiple security issues were found in PHP, a widely-used open source general purpose scripting language which could result in information disclosure, denial o…
Multiple security issues were found in PHP, a widely-used open source general purpose scripting language which could result in information disclosure, denial o…
It was discovered that there was an escaping issue in libphp-phpmailer, an email generation utility class for the PHP programming language.
- Update to 1.2.12 Release notes: https://www.cacti.net/release_notes.php?version=1.2.12
- Update to 1.2.12 Release notes: https://www.cacti.net/release_notes.php?version=1.2.12
Last Upstream release, including (among others): - (security) Prevent execution of SQL injection while assigning a technician, - (security) Permit to change ke…
If you are running an online discussion forum based on vBulletin software, make sure it has been updated to install a newly issued security patch that fixes a …
- Update to 1.2.11 Release notes: https://www.cacti.net/release_notes.php?version=1.2.11
A vulnerability in Imagick PHP extension might allow an attacker to execute arbitrary code.