[SECURITY] [DSA 4120-2] linux regression update

2018-03-05 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4120-2 secur...@debian.org https://www.debian.org/security/ Salvatore Bonaccorso March 03, 2018

[SECURITY] [DSA 4132-1] libvpx security update

2018-03-05 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4132-1 secur...@debian.org https://www.debian.org/security/ Moritz Muehlenhoff March 04, 2018

[SECURITY] [DSA 4127-1] simplesamlphp security update

2018-03-05 Thread Thijs Kinkhorst
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian Security Advisory DSA-4127-1 secur...@debian.org https://www.debian.org/security/ Thijs Kinkhorst March 02, 2018

[SECURITY] [DSA 4128-1] trafficserver security update

2018-03-05 Thread Sebastien Delafond
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4128-1 secur...@debian.org https://www.debian.org/security/ Sebastien Delafond March 02, 2018

KL-001-2018-007 : Sophos UTM 9 loginuser Privilege Escalation via confd Service

2018-03-05 Thread KoreLogic Disclosures
KL-001-2018-007 : Sophos UTM 9 loginuser Privilege Escalation via confd Service Title: Sophos UTM 9 loginuser Privilege Escalation via confd Service Advisory ID: KL-001-2018-007 Publication Date: 2018.03.02 Publication URL: https://www.korelogic.com/Resources/Advisories/KL-001-2018-007.txt 1.

[SECURITY] [DSA 4131-1] xen security update

2018-03-05 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4131-1 secur...@debian.org https://www.debian.org/security/ Moritz Muehlenhoff March 04, 2018

[SECURITY] [DSA 4129-1] freexl security update

2018-03-05 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4129-1 secur...@debian.org https://www.debian.org/security/ Moritz Muehlenhoff March 02, 2018

[SECURITY] [DSA 4130-1] dovecot security update

2018-03-05 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-4130-1 secur...@debian.org https://www.debian.org/security/ Salvatore Bonaccorso March 02, 2018

CVE-2017-12544 XSS on HPE System Management Homepage v7.6.0.11 and minor

2018-03-05 Thread spinfoo
Product: HPE System Management Homepage Versions: 7.6.0.11 and minor versions Vulnerability: JavaScript Injection in file gsearch.php, parameter prod OWASP TOP 10: A1 Injection Type: Javascript Injection Impact: Allows an attacker to perform an XSS (Cross-Site Scripting) attack, execute arbitrary