Security
Headlines
HeadlinesLatestCVEs

Headline

Ubuntu Security Notice USN-5593-1

Ubuntu Security Notice 5593-1 - It was discovered that Zstandard incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code.

Packet Storm
#vulnerability#ubuntu#ssl
=========================================================================Ubuntu Security Notice USN-5593-1September 01, 2022libzstd vulnerability=========================================================================A security issue affects these releases of Ubuntu and its derivatives:- Ubuntu 16.04 ESMSummary:Zstandard could be made to execute arbitrary code if it received speciallycrafted input.Software Description:- libzstd: fast lossless compression algorithmDetails:It was discovered that Zstandard incorrectly handled certain inputs.An attacker could possibly use this issue to execute arbitrary code.Update instructions:The problem can be corrected by updating your system to the followingpackage versions:Ubuntu 16.04 ESM:  libzstd1                        1.3.1+dfsg-1~ubuntu0.16.04.1+esm2  zstd                            1.3.1+dfsg-1~ubuntu0.16.04.1+esm2In general, a standard system update will make all the necessary changes.References:  https://ubuntu.com/security/notices/USN-5593-1  CVE-2019-11922

Related news

CVE-2020-14829: Oracle Critical Patch Update Advisory - October 2020

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

Packet Storm: Latest News

Falco 0.39.1