[Bug 2054090] Re: Implicit rejection of PKCS#1 v1.5 RSA

2024-05-23 Thread David Fernandez Gonzalez
** Changed in: openssl (Ubuntu) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2054090 Title: Implicit rejection of PKCS#1 v1.5 RSA To manage notifications about

[USN-6663-3] OpenSSL update

2024-05-23 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-6663-3 May 23, 2024 openssl update == A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu

[Bug 2055434] Re: [MIR] pemmican

2024-03-19 Thread David Fernandez Gonzalez
I reviewed pemmican 1.0.3-0ubuntu1 as checked into noble. This shouldn't be considered a full audit but rather a quick gauge of maintainability. pemmican is a small utility which warns users of power supply issues on the Raspberry Pi 5 platform. - CVE History - No CVEs. This project is a

[Bug 2054090] Re: Implicit rejection of PKCS#1 v1.5 RSA

2024-03-13 Thread David Fernandez Gonzalez
Trusty would require a significant backport, marking it as won't fix to prevent possible regressions. ** Changed in: openssl (Ubuntu Trusty) Assignee: David Fernandez Gonzalez (litios) => (unassigned) -- You received this bug notification because you are a member of Ubuntu Bugs, wh

[Bug 2054090] Re: Implicit rejection of PKCS#1 v1.5 RSA

2024-03-13 Thread David Fernandez Gonzalez
Fixed released for Xenial ESM: 1.0.2g-1ubuntu4.20+esm12 https://ubuntu.com/security/notices/USN-6663-2 ** Changed in: openssl (Ubuntu Xenial) Status: New => Fix Released ** Changed in: openssl (Ubuntu Trusty) Status: New => Won't Fix -- You received this bug notification because

[USN-6663-2] OpenSSL update

2024-03-13 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-6663-2 March 13, 2024 openssl update == A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu

[Bug 2054090] Re: Implicit rejection of PKCS#1 v1.5 RSA

2024-02-27 Thread David Fernandez Gonzalez
https://ubuntu.com/security/notices/USN-6663-1 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2054090 Title: Implicit rejection of PKCS#1 v1.5 RSA To manage notifications about this bug go to:

[USN-6663-1] OpenSSL update

2024-02-27 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-6663-1 February 27, 2024 openssl update == A security issue affects these releases of Ubuntu and its derivatives: -

[Bug 2054090] Re: Implicit rejection of PKCS#1 v1.5 RSA

2024-02-27 Thread David Fernandez Gonzalez
Bionic released in ESM Infra, version 1.1.1-1ubuntu2.1~18.04.23+esm5 ** Changed in: openssl (Ubuntu Bionic) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2054090

[USN-6643-1] NPM IP vulnerability

2024-02-19 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-6643-1 February 19, 2024 node-ip vulnerability == A security issue affects these releases of Ubuntu and its derivatives:

[USN-6038-2] Go vulnerabilities

2024-01-09 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-6038-2 January 09, 2024 golang-1.13, golang-1.16 vulnerabilities == A security issue affects these releases of Ubuntu and

[USN-5482-2] SPIP vulnerabilities

2023-03-02 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5482-2 March 02, 2023 spip vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5887-1] ClamAV vulnerabilities

2023-02-27 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5887-1 February 27, 2023 clamav vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[Bug 2007456] Re: CVE-2023-20032: Fixed a possible remote code execution vulnerability in the HFS+ file parser.

2023-02-27 Thread David Fernandez Gonzalez
Updated versions have been published: Ubuntu 22.10 * clamav - 0.103.8+dfsg-0ubuntu0.22.10.1 Ubuntu 22.04 * clamav - 0.103.8+dfsg-0ubuntu0.22.04.1 Ubuntu 20.04 * clamav - 0.103.8+dfsg-0ubuntu0.20.04.1 Ubuntu 18.04 * clamav - 0.103.8+dfsg-0ubuntu0.18.04.1 More information in:

[Bug 2007456] Re: CVE-2023-20032: Fixed a possible remote code execution vulnerability in the HFS+ file parser.

2023-02-21 Thread David Fernandez Gonzalez
Updated 0.103.8 versions have been pushed to the security-proposed PPA (https://launchpad.net/~ubuntu-security- proposed/+archive/ubuntu/ppa/+packages?field.name_filter=clamav_filter=published_filter=) Feel free to test them and communicate any possible issues. Thanks for the help! -- You

[USN-5842-1] EditorConfig Core C vulnerability

2023-02-06 Thread David Fernandez Gonzalez
Details: Mark Esler and David Fernandez Gonzalez discovered that EditorConfig Core C incorrectly handled memory when handling certain inputs. An attacker could possibly use this issue to cause applications using EditorConfig Core C to crash, resulting in a denial of service, or possibly execute

[USN-4781-2] Slurm vulnerabilities

2023-02-01 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-4781-2 February 01, 2023 slurm-llnl vulnerabilities == A security issue affects these releases of Ubuntu and its

[USN-5833-1] python-future vulnerability

2023-01-31 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5833-1 January 31, 2023 python-future vulnerability == A security issue affects these releases of Ubuntu and its

[USN-5821-1] wheel vulnerability

2023-01-24 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5821-1 January 24, 2023 wheel vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5817-1] Setuptools vulnerability

2023-01-23 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5817-1 January 23, 2023 python-setuptools, setuptools vulnerability == A security issue affects these releases of Ubuntu

[USN-5784-1] usbredir vulnerability

2023-01-03 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5784-1 January 03, 2023 usbredir vulnerability == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5776-1] containerd vulnerabilities

2022-12-13 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5776-1 December 13, 2022 containerd vulnerabilities == A security issue affects these releases of Ubuntu and its

[USN-5743-2] LibTIFF vulnerability

2022-12-01 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5743-2 December 01, 2022 tiff vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5638-3] Expat vulnerability

2022-11-23 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5638-3 November 23, 2022 expat vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5627-1] PCRE vulnerabilities

2022-09-22 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5627-1 September 22, 2022 pcre2 vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5610-1] rust-regex vulnerability

2022-09-14 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5610-1 September 14, 2022 rust-regex vulnerability == A security issue affects these releases of Ubuntu and its

[USN-5523-2] LibTIFF vulnerabilities

2022-09-12 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5523-2 September 12, 2022 tiff vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5256-1] uriparser vulnerabilities

2022-07-13 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5256-1 July 13, 2022 uriparser vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5431-1] GnuPG vulnerability

2022-05-30 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5431-1 May 30, 2022 gnupg2 vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5425-1] PCRE vulnerabilities

2022-05-17 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5425-1 May 17, 2022 pcre3 vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives: -

[Bug 1971001] Re: Multiple vulnerabilities in Trusty, Xenial, Bionic, Focal, Impish and Jammy

2022-05-16 Thread David Fernandez Gonzalez
Packages patched for CVE-2020-35522, CVE-2022-0561, CVE-2022-0562, CVE-2022-0865 and CVE-2022-0891 are now released and available. (https://ubuntu.com/security/notices/USN-5421-1). Jammy is currently at version 4.3.0-6 which includes the patch for CVE-2022-0865 as it was introduced in 4.3.0-5.

[USN-5421-1] LibTIFF vulnerabilities

2022-05-16 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5421-1 May 16, 2022 tiff vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5410-1] NSS vulnerability

2022-05-11 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5410-1 May 11, 2022 nss vulnerability == A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu

[USN-5244-2] DBus vulnerability

2022-05-09 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5244-2 May 09, 2022 dbus vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5259-2] Cron vulnerabilities

2022-05-06 Thread David Fernandez Gonzalez
Ubuntu Security Notice USN-5259-2 May 06, 2022 cron vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: Several security issues were fixed in Cron.

[USN-5403-1] SQLite vulnerability

2022-05-05 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5403-1 May 05, 2022 sqlite3 vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5371-2] nginx vulnerability

2022-04-28 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5371-2 April 28, 2022 nginx vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5391-1] libsepol vulnerabilities

2022-04-27 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5391-1 April 27, 2022 libsepol vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5380-1] Bash vulnerability

2022-04-20 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5380-1 April 20, 2022 bash vulnerability == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5379-1] klibc vulnerabilities

2022-04-18 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5379-1 April 18, 2022 klibc vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5371-1] nginx vulnerabilities

2022-04-13 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5371-1 April 13, 2022 nginx vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives: -

[USN-5331-2] tcpdump vulnerabilities

2022-04-11 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5331-2 April 11, 2022 tcpdump vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5365-1] H2 vulnerabilities

2022-04-05 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5365-1 April 05, 2022 h2database vulnerabilities == A security issue affects these releases of Ubuntu and its

[USN-5356-1] DOSBox vulnerabilities

2022-03-31 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5356-1 March 30, 2022 dosbox vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5348-1] Smarty vulnerabilities

2022-03-28 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5348-1 March 28, 2022 smarty3 vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5340-1] CKEditor vulnerabilities

2022-03-22 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5340-1 March 22, 2022 ckeditor vulnerabilities == A security issue affects these releases of Ubuntu and its derivatives:

[USN-5327-1] rsh vulnerability

2022-03-15 Thread David Fernandez Gonzalez
== Ubuntu Security Notice USN-5327-1 March 15, 2022 netkit-rsh vulnerability == A security issue affects these releases of Ubuntu and its derivatives: