Thursday, July 26, 2018
Google Chrome Updated
Google have released a version 68.0.3440.75 of their Chrome web browser. New version contains fixes to 42 security vulnerabilities. In addition to that Chrome will show "Not secure" warning on all HTTP pages. More information about changes in Google Chrome Releases blog.
Labels:
chrome,
google,
security,
security threat,
update,
vulnerability
VMware Updates Available
VMware has released security updates to patch multiple vulnerabilities in their virtualization applications.
Affected versions:
- VMware Horizon View Agent versions earlier than 7.5.1
- VMware vSphere Hypervisor (ESXi) 6.7 without ESXi670-201806401-BG patch
- VMware vSphere Hypervisor (ESXi) 6.5 without ESXi650-201806401-BG patch
- VMware vSphere Hypervisor (ESXi) 6.0 without ESXi600-201806401-BG patch
- VMware vSphere Hypervisor (ESXi) 5.5 without ESXi550-201806401-BG patch
- VMware Workstation Pro versions earlier than 14.1.2
- VMware Workstation Player versions earlier than 14.1.2
- VMware Fusion Pro / Fusion versions earlier than 10.1.2
Further information including updating instructions can be read from VMware's security advisory.
Affected versions:
- VMware Horizon View Agent versions earlier than 7.5.1
- VMware vSphere Hypervisor (ESXi) 6.7 without ESXi670-201806401-BG patch
- VMware vSphere Hypervisor (ESXi) 6.5 without ESXi650-201806401-BG patch
- VMware vSphere Hypervisor (ESXi) 6.0 without ESXi600-201806401-BG patch
- VMware vSphere Hypervisor (ESXi) 5.5 without ESXi550-201806401-BG patch
- VMware Workstation Pro versions earlier than 14.1.2
- VMware Workstation Player versions earlier than 14.1.2
- VMware Fusion Pro / Fusion versions earlier than 10.1.2
Further information including updating instructions can be read from VMware's security advisory.
Labels:
security,
security threat,
update,
VMWare,
vulnerability
Tuesday, July 24, 2018
Latest PHP Versions Available
PHP development team has released 7.2.8, 7.1.20, 7.0.31 and 5.6.37 versions of the PHP scripting language Among other changes several security bugs have been fixed too. All PHP users are recommended to upgrade their versions to the latest release of the correspondent branch.
Changelogs:
Version 7.2.8
Version 7.1.20
Version 7.0.31
Version 5.6.37
Changelogs:
Version 7.2.8
Version 7.1.20
Version 7.0.31
Version 5.6.37
Labels:
PHP,
security,
security threat,
update,
vulnerability
Saturday, July 21, 2018
New Version Of Foxit Reader And Foxit PhantomPDF Available
Foxit Software has released version 9.2 of their Foxit Reader and Foxit PhantomPDF software. The new versions contain fixes for security vulnerabilities that if exploited may allow an attacker to execute arbitrary code in target system.
Affected versions:
Foxit Reader 9.1.0.5096 and earlier (Windows)
Foxit PhantomPDF 9.1.0.5096 and earlier (Windows)
More information can be read here.
Affected versions:
Foxit Reader 9.1.0.5096 and earlier (Windows)
Foxit PhantomPDF 9.1.0.5096 and earlier (Windows)
More information can be read here.
Labels:
foxit,
foxit reader,
pdf reader,
phantompdf,
security,
security threat,
update,
vulnerability
Oracle Critical Patch Update For Q3 of 2018
Oracle have released updates for their products that fix 334 security issues (including eight Java fixes) in total. The updates are a part of Oracle's quarterly released critical patch update (CPU).
Detailed list of vulnerabilities with patching instructions can be read from Oracle CPU Advisory.
Next Oracle CPU is planned to be released in October 2018.
Detailed list of vulnerabilities with patching instructions can be read from Oracle CPU Advisory.
Next Oracle CPU is planned to be released in October 2018.
Labels:
Java,
Oracle,
security,
security threat,
update,
vulnerability
Sunday, July 15, 2018
Adobe Flash Player Updated
Adobe have released updated versions of their Flash Player. The new versions fix security vulnerabilities that could allow remote execution of arbitrary code in the context of the current user.
Affected versions:
- Users of Adobe Flash Player 30.0.0.113 and earlier versions for Windows should update to Adobe Flash Player 30.0.0.134
- Users of Adobe Flash Player 30.0.0.113 and earlier versions for Macintosh should update to Adobe Flash Player 30.0.0.134
- Users of Adobe Flash Player 30.0.0.113 and earlier versions for Linux should update to Adobe Flash Player 30.0.0.134
- Flash Player integrated with Google Chrome will be updated by Google via Chrome update
- Flash Player integrated with Internet Explorer 11 (on Windows 8.1 and Windows 10) and Microsoft Edge (Windows 10) will be updated via Windows Update
More information can be read from Adobe's security bulletin.
Affected versions:
- Users of Adobe Flash Player 30.0.0.113 and earlier versions for Windows should update to Adobe Flash Player 30.0.0.134
- Users of Adobe Flash Player 30.0.0.113 and earlier versions for Macintosh should update to Adobe Flash Player 30.0.0.134
- Users of Adobe Flash Player 30.0.0.113 and earlier versions for Linux should update to Adobe Flash Player 30.0.0.134
- Flash Player integrated with Google Chrome will be updated by Google via Chrome update
- Flash Player integrated with Internet Explorer 11 (on Windows 8.1 and Windows 10) and Microsoft Edge (Windows 10) will be updated via Windows Update
More information can be read from Adobe's security bulletin.
Labels:
adobe,
flash,
security,
security threat,
update,
vulnerability
Adobe Experience Manager Updated
Adobe has released updated versions of their Experience Manager. Updates fix three important categorized vulnerabilities: CVE-2018-5004, CVE-2018-5006 and CVE-2018-12809.
Affected are versions 6.0, 6.1, 6.2, 6.3 and 6.4
More information from the Adobe's security advisory.
Affected are versions 6.0, 6.1, 6.2, 6.3 and 6.4
More information from the Adobe's security advisory.
Labels:
adobe,
experience manager,
security,
security threat,
update,
vulnerability
Adobe Connect Update Available
Adobe have released updated versions of Adobe Connect. This update resolves three security vulnerabilities.
Affected versions:
- Adobe Connect earlier than 9.8.1
More information can be read from Adobe's security bulletin.
Affected versions:
- Adobe Connect earlier than 9.8.1
More information can be read from Adobe's security bulletin.
Labels:
adobe,
connect,
security,
security threat,
update,
vulnerability
Adobe Reader And Acrobat Security Updates
Adobe have released security updates to fix some vulnerabilities in their PDF products, Adobe Reader and Adobe Acrobat. The vulnerabilities could allow an attacker to execute arbitrary code in the context of the current user in the affected system.
Affected versions:
*Acrobat DC and Acrobat Reader DC, continuous track
version 2018.011.20040 and earlier
*Acrobat 2017 and Acrobat Reader 2017
version 2017.011.30080 and earlier
*Acrobat DC and Acrobat Reader DC, classic track
version 2015.006.30418 and earlier
Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help > Check for Updates.
Those who want to upgrade manually, can download the latest versions of the links below:
Adobe Reader
Adobe Acrobat
More information about fixed vulnerabilities can be read from Adobe's security bulletin.
Affected versions:
*Acrobat DC and Acrobat Reader DC, continuous track
version 2018.011.20040 and earlier
*Acrobat 2017 and Acrobat Reader 2017
version 2017.011.30080 and earlier
*Acrobat DC and Acrobat Reader DC, classic track
version 2015.006.30418 and earlier
Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help > Check for Updates.
Those who want to upgrade manually, can download the latest versions of the links below:
Adobe Reader
Adobe Acrobat
More information about fixed vulnerabilities can be read from Adobe's security bulletin.
Labels:
acrobat,
adobe,
pdf reader,
security,
security threat,
update,
vulnerability
New Version Of iCloud For Windows Released
Apple have released version 7.6 of their iCloud client for Windows. New version fixes security vulnerabilities.
More information about the security content of iCloud for Windows 7.6 can be read from related security advisory.
Users of old versions should update to the latest one available here.
More information about the security content of iCloud for Windows 7.6 can be read from related security advisory.
Users of old versions should update to the latest one available here.
Labels:
Apple,
iCloud,
security,
security threat,
update,
vulnerability,
Windows
ITunes 12.8 Released
Apple have released version 12.8 of their iTunes media player. New version fixes security vulnerabilities.
More information about the security content of iTunes 12.8 can be read from related security advisory.
Users of old versions should update to the latest one available.
More information about the security content of iTunes 12.8 can be read from related security advisory.
Users of old versions should update to the latest one available.
Labels:
Apple,
iTunes,
security,
security threat,
update,
vulnerability
Microsoft Security Updates For July 2018
Microsoft have released security updates for July 2018.
Summary of the updates (filter by inserting 7/9/2018 to the From field and 7/15/2018 to the To field) here.
Summary of the updates (filter by inserting 7/9/2018 to the From field and 7/15/2018 to the To field) here.
Labels:
Microsoft,
security,
security threat,
update,
vulnerability
Friday, July 6, 2018
WordPress 4.9.7 Released
There has been released a new version of WordPress (blogging tool and content management system) which contains updates to security vulnerabilities. It's also recommended to check if there are any updates available for WordPress extensions in use. Also, it's recommended to disable those extensions that are not needed.
Affected versions:
WordPress versions earlier than 4.9.7
More information can be read from the WordPress blog.
Affected versions:
WordPress versions earlier than 4.9.7
More information can be read from the WordPress blog.
Labels:
security,
security threat,
update,
vulnerability,
WordPress
Thursday, July 5, 2018
Mozilla Thunderbird Update Available
Mozilla have released an updated version of their Thunderbird email client containing fixes to security vulnerabilities. Some of the fixed vulnerabilities are categorized as critical.
Affected versions:
Mozilla Thunderbird versions earlier than 52.9
Fresh version can be obtained via inbuilt updater or by downloading from the product site.
Affected versions:
Mozilla Thunderbird versions earlier than 52.9
Fresh version can be obtained via inbuilt updater or by downloading from the product site.
Labels:
Mozilla,
security,
security threat,
thunderbird,
update,
vulnerability
Monday, July 2, 2018
VMware Updates Available
VMware has released security updates to patch multiple vulnerabilities in their virtualization applications.
Affected versions:
- VMware ESXi 6.7 without ESXi670-201806401-BG patch
- VMware Workstation Pro versions earlier than 14.1.2
- VMware Workstation Player versions earlier than 14.1.2
- VMware Fusion Pro / Fusion versions earlier than 10.1.2
Further information including updating instructions can be read from VMware's security advisory.
Affected versions:
- VMware ESXi 6.7 without ESXi670-201806401-BG patch
- VMware Workstation Pro versions earlier than 14.1.2
- VMware Workstation Player versions earlier than 14.1.2
- VMware Fusion Pro / Fusion versions earlier than 10.1.2
Further information including updating instructions can be read from VMware's security advisory.
Labels:
security,
security threat,
update,
VMWare,
vulnerability
Latest PHP Versions Available
PHP development team has released 7.2.7 and 7.1.19 versions of the PHP scripting language. All PHP users are recommended to upgrade their versions to the latest release of the correspondent branch.
Changelogs:
Version 7.2.7
Version 7.1.19
Changelogs:
Version 7.2.7
Version 7.1.19
Subscribe to:
Posts (Atom)