[security bulletin] HPESBHF03723 rev.1 - HPE Aruba ClearPass Policy Manager, using Apache Struts, Remote Code Execution

2017-03-29 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Note: the current version of the following document is available here: https://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbhf03723en_us SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: hpesbhf03723en_us Version: 1

[security bulletin] HPESBUX03725 rev.1 - HPE HP-UX Web Server Suite running Apache, Multiple Vulnerabilities

2017-03-29 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Note: the current version of the following document is available here: https://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbux03725en_us SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: hpesbux03725en_us Version: 1

ESA-2017-013: RSA Archer® GRC Security Operations Management Sensitive Information Disclosure Vulnerability

2017-03-29 Thread EMC Product Security Response Center
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 EMC Identifier: ESA-2017-013: RSA Archer® GRC Security Operations Management Sensitive Information Disclosure Vulnerability CVE Identifier: CVE-2017-4977 Severity Rating: CVSS v3 Base Score: 5.0 (AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N) Affected

ESA-2017-028: EMC Isilon OneFS Path Traversal Vulnerability

2017-03-29 Thread EMC Product Security Response Center
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 ESA-2017-028: EMC Isilon OneFS Path Traversal Vulnerability EMC Identifier: ESA-2017-028 CVE Identifier: CVE-2017-4980 Severity Rating: CVSS v3 Base Score: 4.9 (AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N) Affected products: • EMC Isilon

[SECURITY] [DSA 3824-1] firebird2.5 security update

2017-03-29 Thread Sebastien Delafond
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-3824-1 secur...@debian.org https://www.debian.org/security/ Sebastien Delafond March 29, 2017

[SECURITY] [DSA 3798-2] tnef regression update

2017-03-29 Thread Sebastien Delafond
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-3798-2 secur...@debian.org https://www.debian.org/security/ Sebastien Delafond March 29, 2017

[slackware-security] mariadb (SSA:2017-087-01)

2017-03-29 Thread Slackware Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [slackware-security] mariadb (SSA:2017-087-01) New mariadb packages are available for Slackware 14.2 and -current to fix security issues. Here are the details from the Slackware 14.2 ChangeLog: +--+