http-parser has been updated to fix a security issue. HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed (VE-2019-15605). . MGASA-2020-0131 - Updated http-parser packages fix security vulnerability Publication date: 08 Mar 2020 URL: https://advisories.mageia.org/MGASA-2020-0131.html Type: security Affected Mageia releases: 7 CVE: CVE-2019-15605 http-parser has been updated to fix a security issue. HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed (VE-2019-15605). References: - https://bugs.mageia.org/show_bug.cgi?id=26293 - https://access.redhat.com/errata/RHSA-2020:0703 - https://www.cve.org/CVERecord?id=CVE-2019-15605 SRPMS: - 7/core/http-parser-2.9.3-1.mga7 . Mageia enhances its HTTP-parser to tackle transfer-encoding smuggling vulnerabilities affecting various Node.js releases.. HTTP Request Smuggling, Mageia Security Update, Node.js Vulnerability. . LinuxSecurity.com Team
McAfee VirusScan for Linux is distributed with an insecure DT_RPATH, potentially allowing a remote attacker to execute arbitrary code.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200612-15 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: High Title: McAfee VirusScan: Insecure DT_RPATH Date: December 14, 2006 Bugs: #156989 ID: 200612-15 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= McAfee VirusScan for Linux is distributed with an insecure DT_RPATH, potentially allowing a remote attacker to execute arbitrary code. Background ========= McAfee VirusScan for Linux is a commercial antivirus solution for Linux. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-antivirus/vlnx
Get the latest Linux and open source security news straight to your inbox.