postgresql-jdbc: XML external entity (XXE) vulnerability in PgSQLXML (CVE-2020-13692) SL7 noarch postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm - Scientific Linux Development Team. Synopsis: Important: postgresql-jdbc security update Advisory ID: SLSA-2020:3285-1 Issue Date: 2020-08-03 CVE Numbers: None -- Security Fix(es): * postgresql-jdbc: XML external entity (XXE) vulnerability in PgSQLXML (CVE-2020-13692) -- SL7 noarch postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm - Scientific Linux Development Team . Critical announcement regarding postgresql-jdbc addressing XML external entity security risk on Scientific Linux 7.x.. Postgresql Jdbc Update, XXE Issue, Scientific Linux 7, Security Fix, JDBC Vulnerability. . Severity: Important. LinuxSecurity.com Team
python-paramiko: Authentication bypass in auth_handler.py (CVE-2018-1000805) SL6 noarch python-paramiko-1.7.5-5.el6_10.noarch.rpm python-paramiko-1.7.5-4.el6_7.1.noarch.rpm python-paramiko-1.7.5-4.el6_6.1.noarch.rpm - Scientific Linux Development Team. Synopsis: Critical: python-paramiko security update Advisory ID: SLSA-2018:3406-1 Issue Date: 2018-10-31 CVE Numbers: CVE-2018-1000805 -- Security Fix(es): * python-paramiko: Authentication bypass in auth_handler.py (CVE-2018-1000805) -- SL6 noarch python-paramiko-1.7.5-5.el6_10.noarch.rpm python-paramiko-1.7.5-4.el6_7.1.noarch.rpm python-paramiko-1.7.5-4.el6_6.1.noarch.rpm - Scientific Linux Development Team . Urgent python-paramiko patch released to address authentication bypass vulnerability. Advisory ID: SLSA-2018:3406-1 outlines the corrective measures taken.. python-paramiko, authentication bypass, scientific linux, security update, noarch. . Severity: Critical. LinuxSecurity.com Team
xmlrpc: Deserialization of untrusted Java object through tag (CVE-2016-5003) SL6 noarch xmlrpc3-client-3.0-4.17.el6_9.noarch.rpm xmlrpc3-common-3.0-4.17.el6_9.noarch.rpm xmlrpc3-client-devel-3.0-4.17.el6_9.noarch.rpm xmlrpc3-common-devel-3.0-4.17.el6_9.noarch.rpm xmlrpc3-javadoc-3.0-4.17.el6_9.noarch.rpm xmlrpc3-server-3.0-4.17.el6_9.noarch.rpm [More...]. Synopsis: Important: xmlrpc3 security update Advisory ID: SLSA-2018:1779-1 Issue Date: 2018-05-31 CVE Numbers: CVE-2016-5003 -- Security Fix(es): * xmlrpc: Deserialization of untrusted Java object through tag (CVE-2016-5003) -- SL6 noarch xmlrpc3-client-3.0-4.17.el6_9.noarch.rpm xmlrpc3-common-3.0-4.17.el6_9.noarch.rpm xmlrpc3-client-devel-3.0-4.17.el6_9.noarch.rpm xmlrpc3-common-devel-3.0-4.17.el6_9.noarch.rpm xmlrpc3-javadoc-3.0-4.17.el6_9.noarch.rpm xmlrpc3-server-3.0-4.17.el6_9.noarch.rpm xmlrpc3-server-devel-3.0-4.17.el6_9.noarch.rpm - Scientific Linux Development Team . Crucial patch for xmlrpc3 on Scientific Linux resolves vulnerabilities related to deserialization. Advisory ID: SLSA-2021:2453-2.. xmlrpc, security advisory, deserialization, Scientific Linux, xmlrpc3. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.