Day: October 22, 2013

Apache Shindig 2.5.0 XXE Injection

Apache Shindig PHP version 2.5.0 suffers from an XXE injection vulnerability…….


Red Hat Security Advisory 2013-1452-01

Red Hat Security Advisory 2013-1452-01 – Vino is a Virtual Network Computing server for GNOME. It allows remote users to connect to a running GNOME session using VNC. A denial of service flaw was found in the way Vino handled certain authenticated requests from clients that were in the deferred state. A remote attacker could…


Debian Security Advisory 2784-1

Debian Linux Security Advisory 2784-1 – Pedro Ribeiro discovered a use-after-free in the handling of ImageText requests in the Xorg Xserver, which could result in denial of service or privilege escalation…….


Red Hat Security Advisory 2013-1450-01

Red Hat Security Advisory 2013-1450-01 – The kernel packages contain the Linux kernel, the core of any Linux operating system. It was found that the fix for CVE-2012-3552 released via RHSA-2012:1540 introduced an invalid free flaw in the Linux kernel’s TCP/IP protocol suite implementation. A local, unprivileged user could use this flaw to corrupt kernel…


Red Hat Security Advisory 2013-1449-01

Red Hat Security Advisory 2013-1449-01 – The kernel packages contain the Linux kernel, the core of any Linux operating system. A flaw was found in the way the Linux kernel handled the creation of temporary IPv6 addresses. If the IPv6 privacy extension was enabled, an attacker on the local network could disable IPv6 temporary address…


Red Hat Security Advisory 2013-1451-01

Red Hat Security Advisory 2013-1451-01 – The java-1.7.0-openjdk packages provide the OpenJDK 7 Java Runtime Environment and the OpenJDK 7 Java Software Development Kit. Multiple input checking flaws were found in the 2D component native image parsing code. A specially crafted image file could trigger a Java Virtual Machine memory corruption and, possibly, lead to…


iPad Mini Retina arrives — with supply issues, says analyst

Apple says the iPad Mini with Retina Display is “coming later in November.” But ample supply may not come till next year…….


Which Apple announcement excited you most? (poll)

Apple introduced plenty of new goodies on Tuesday, and we want to know which, if any, most sparked your iDesire…….


OS X 10.9 Mavericks Review

An anonymous reader writes “John Siracusa at Ars Technica has put together a comprehensive review of Apple’s OS X 10.9 Mavericks. This is the first time a major OS X update has been free, and it works on any device that supports Mountain Lion. This suggests Apple is trying to boost adoption rates as high…


Twitter secures $1 billion credit line ahead of its IPO

Line of credit will help the social network cover unforeseen expenses should its trading debut be delayed…….