LWN.net's Journal
 
[Most Recent Entries] [Calendar View]

Wednesday, October 19th, 2016

    Time Event
    2:33p
    Live kernel patches for Ubuntu
    Canonical has announced the availability of a live kernel patch service for
    the 16.04 LTS release.
    "It’s the best way to ensure
    that machines are safe at the kernel level, while guaranteeing uptime,
    especially for container hosts where a single machine may be running
    thousands of different workloads.
    "

    Up to three systems can be patched for free; the
    service requires a fee thereafter. There is a long FAQ about the service
    in this
    blog post
    ; it appears to be based on the mainline live-patching
    functionality with some Canonical add-ons.
    4:52p
    Security advisories for Wednesday

    Debian has updated quagga (stack overrun) and tor (denial of service).

    Debian-LTS has updated dwarfutils (multiple vulnerabilities), guile-2.0 (two vulnerabilities), libass (two vulnerabilities), libgd2 (two vulnerabilities), libxv (insufficient validation), and tor (denial of service).

    Fedora has updated epiphany (F24: unspecified), ghostscript (F24; F23: multiple vulnerabilities), glibc-arm-linux-gnu (F24: denial of service), guile (F24: two vulnerabilities), libgit2 (F24: two vulnerabilities), openssh (F23: null pointer dereference), qemu (F24: multiple vulnerabilities), and webkitgtk4 (F24: unspecified).

    Mageia has updated asterisk (denial of service), flash-player-plugin (multiple vulnerabilities), kernel (multiple vulnerabilities), and mailman (password disclosure).

    Red Hat has updated java-1.8.0-openjdk (RHEL6, 7: multiple vulnerabilities), kernel (RHEL6.7: use-after-free), and mariadb-galera (RHOSP8: SQL injection/privilege escalation).

    << Previous Day 2016/10/19
    [Calendar]
    Next Day >>

LWN.net   About LJ.Rossia.org