Security Bulletin: Multiple vulnerabilities have been identified in IBM WebSphere Application Server Liberty shipped with IBM Tivoli Netcool Impact (CVE-2022-24839, CVE-2022-37734, CVE-2022-34165)
## Summary
IBM WebSphere Application Server Liberty is shipped with IBM Tivoli Netcool Impact as part of its server infrastructure. IBM Tivoli Netcool Impact has addressed the applicable CVEs.
## Vuln ...
Continue Reading
December 12, 2022
Security Bulletin: Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data and Db2 Warehouse® on Cloud Pak for Data
## Summary
IBM has released the below fix for IBM Db2® on Cloud Pak for Data and Db2 Warehouse® on Cloud Pak for Data in response to multiple vulnerabilities found in multiple components.
## Vul ...
Continue Reading
November 30, 2022
Security Bulletin: IBM API Connect is impacted by a vulnerability in Apache Xalan Java XSLT library (CVE-2022-34169)
## Summary
IBM API Connect is impacted by a vulnerability in Apache Xalan Java XSLT library. IBM API Connect has addressed the vulnerability in CVE-2022-34169.
## Vulnerability Details
** CVEID: **[CV ...
Continue Reading
November 30, 2022
[SECURITY] Fedora 36 Update: galera-26.4.13-1.fc36
Galera is a fast synchronous multimaster wsrep provider (replication engine) for transactional databases and similar applications. For more information about wsrep API see https://github.com/codership ...
Continue Reading
November 30, 2022
[SECURITY] Fedora 37 Update: galera-26.4.13-1.fc37
Galera is a fast synchronous multimaster wsrep provider (replication engine) for transactional databases and similar applications. For more information about wsrep API see https://github.com/codership ...
Continue Reading
November 30, 2022
[SECURITY] Fedora 35 Update: galera-26.4.13-1.fc35
Galera is a fast synchronous multimaster wsrep provider (replication engine) for transactional databases and similar applications. For more information about wsrep API see https://github.com/codership ...
Continue Reading
November 30, 2022
CVE-2022-41675
A remote attacker with general user privilege can inject malicious code in the form content of Raiden MAILD Mail Server website. Other users export form content as CSV file can trigger arbitrary code ...
Continue Reading
November 28, 2022
CVE-2022-40977
A path traversal vulnerability was discovered in Pilz PASvisu Server before 1.12.0. An unauthenticated remote attacker could use a zipped, malicious configuration file to trigger arbitrary file writes ...
Continue Reading
November 24, 2022
Image Builder security, bug fix, and enhancement update
cockpit-composer
[41-1.0.1]
- Make per page documentation links point to Oracle Linux [Orabug: 32013095], [Orabug:34398922]
[41-1]
- New upstream release
[40-1]
- New upstream release
[39-1]
- New ups ...
Continue Reading
November 22, 2022