Happy Friday fellow Linux geeks! This week, important updates have been issued for Django, Chromium and Squid. Read on to learn about these vulnerabilities and how to secure your system against them. 

Have a question about or comment on one of the vulnerabilities highlighted in today's newsletter? Let's discuss!

Check out the new Remote Access Plus solution from ManageEngine to help admins secure their servers against vulnerabilities like these by automating security patches.

Yours in Open Source,

Brittany Signature 150

 

Django

The Discovery 

Multiple security issues were found in Django, a Python web development framework (CVE-2022-22818, CVE-2022-23833, CVE-2022-28346 and CVE-2022-28347).

Django

The Impact

These vulnerabilities could result in denial of service, SQL injection or cross-site scripting.

The Fix

A python-django security update that fixes these bugs has been released. We recommend that you upgrade your python-django packages now to protect against attacks and compromise and prevent disruptive downtime.

Your Related Advisories:

Register to Customize Your Advisories

Chromium

The Discovery 

Several vulnerabilities were discovered in Chromium (CVE-2022-3445, CVE-2022-3446, CVE-2022-3447, CVE-2022-3448, CVE-2022-3449 and CVE-2022-3450).


Chromium

The Impact

These flaws could result in the execution of arbitrary code, denial of service or information disclosure.

The Fix

A Chromium security update that mitigates these bugs has been released. We recommend that you upgrade your Chromium packages promptly to protect the security, integrity and availability of your systems and the privacy of your sensitive information.

Your Related Advisories:

Register to Customize Your Advisories

Squid

The Discovery

Two security bugs were identified in Squid: inconsistent handling of internal URIs (CVE-2022-41317) and an incorrect integer overflow protection (CVE-2022-41318). 

The Impact

These issues could result in the exposure of sensitive information about clients using the proxy and buffer overflow attacks.

Squid

The Fix

We recommend that you upgrade your Squid packages as soon as possible to protect against potential security incidents.

Your Related Advisories:

Register to Customize Your Advisories