Security Advisory: Subversion & Linux Kernel Updates on April 22, 2022
Happy Friday fellow Linux geeks! This week, important updates have been issued for Subversion, Thunderbird and the Linux kernel. Read on to learn about these vulnerabilities and how to secure your system against them.
Now you can personalize your LinuxSecurity.com User Profile to include the latest advisories for the distros you select, making it easier than ever to keep your system up-to-date and secure.
Have a question about or comment on one of the vulnerabilities highlighted in today's newsletter? Let's discuss!
Yours in Open Source,

SubversionThe DiscoverySeveral important security vulnerabilities have been found in the Subversion version control system. It was discovered that Subversion servers reveal 'copyfrom' paths that should be hidden according to configured path-based authorization (authz) rules (CVE-2021-28544), and that Subversion's mod_dav_svn is prone to a use-after-free vulnerability when looking up path-based authorization rules (CVE-2022-24070). |
ThunderbirdThe DiscoveryNine important security issues have been discovered in Mozilla Thunderbird. The ImpactThese vulnerabilities could result in denial of service (DoS) or the execution of arbitrary code. The FixA Thunderbird security update mitigates these flaws. Update promptly to protect your systems against potential attacks and compromise. Your Related Advisories:[distro_list_2] |
Linux KernelThe DiscoveryTwo important security bugs have been discovered in the Linux kernel. A buffer overflow vulnerability was found in IPsec ESP transformation code (CVE-2022-27666) and stale file descriptors on failed usercopy were also discovered (CVE-2022-22942).
The Impact
|



