Author: Yuri Gagarin

0-day Vulnerability in Linux IPv6 Stack Allows Remote Kernel Crash

Details have been disclosed about an unpatched (0-day) vulnerability (CVE-2023-2156) in the Linux kernel that allows a system to crash by sending specially crafted IPv6 packets (packet-of-death). This issue only manifests when RPL (Routing Protocol for Low-Power and Lossy Networks) protocol support is enabled, which is disabled by default in distributions, primarily used on embedded devices operating in wireless networks with high […]

Release of Tor Browser 12.0.6 and Tails Distribution 5.13

A release of the specialized distribution Tails 5.13 (The Amnesic Incognito Live System), based on the Debian package base and intended for anonymous internet access, has been created. Anonymous access in Tails is ensured by the Tor system. All connections, except for traffic through the Tor network, are blocked by the packet filter by default. For storing user data in persistence mode between sessions, encryption is used. […]

The release of the Rocky Linux 9.2 distribution, developed by the founder of CentOS

The release of the Rocky Linux 9.2 distribution, aimed at creating a free version of RHEL capable of replacing classic CentOS, has been announced. The distribution is fully binary compatible with Red Hat Enterprise Linux and can be used as a substitute for RHEL 9.2 and CentOS 9 Stream. Support for the Rocky Linux 9 branch will continue until May 31, 2032. Installation ISO images of Rocky Linux have been prepared […]

The PMFault attack, which can disable CPUs on certain server systems

Researchers from the University of Birmingham, previously known for developing the Plundervolt and VoltPillager attacks, have identified a vulnerability (CVE-2022-43309) in certain server motherboards that allows physical disabling of the CPU without the possibility of subsequent recovery. The vulnerability, codenamed PMFault, can be exploited to damage servers to which the attacker does not have physical access but does have privileged access to the operating […]

Preliminary release of the PXP project, which develops an extended dialect of the PHP language

The first test release of the implementation of the PXP programming language, which extends PHP with support for new syntax constructs and enhanced capabilities of the runtime library, has been published. Code written in PXP is translated into standard PHP scripts executed using the standard PHP interpreter. Since PXP only complements PHP, it is compatible with all existing PHP code. Notably, PXP expands PHP's type system for better representation […]

The Sourceware hosting of free projects has come under the umbrella of the SFC organization

The Sourceware free projects hosting has joined the Software Freedom Conservancy (SFC), which provides legal protection for free projects, advocates for compliance with the GPL license, and collects sponsorship funds. SFC allows participants to focus on the development process by taking on donation collection tasks. SFC also becomes the owner of project assets, relieving developers of personal liability in the case of legal disputes. […]

Arch Linux migrates to Git and restructures repositories

The developers of the Arch Linux distribution have warned users about infrastructure migration work scheduled from May 19 to 21 to transition package development from Subversion to Git and GitLab. During the migration days, the publication of package updates in the repositories will be suspended and access to primary mirrors will be limited via rsync and HTTP. After the migration is complete, access to SVN repositories will be closed, […]

LTESniffer toolkit released for intercepting traffic in 4G LTE networks

Researchers from the Korean Advanced Institute of Technology have released the LTESniffer toolkit, which allows passive traffic interception (without sending signals) between the base station and the mobile phone in 4G LTE networks. The toolkit provides utilities for organizing traffic interception and implements an API for using LTESniffer functionality in third-party applications. LTESniffer ensures decoding of the physical channel […]

Vulnerability in Apache OpenMeetings allows access to any records and discussions

A vulnerability (CVE-2023-28936) has been fixed in the Apache OpenMeetings web conference server, which allows access to arbitrary records and chat rooms. The issue has been assigned a critical severity level. The vulnerability is caused by improper hash verification used for connecting new participants. The error appears starting from release 2.0.0 and has been resolved in the recently released Apache OpenMeetings 7.1.0 update. Additionally, […]

Release of Wine 8.8

An experimental release of the open implementation of WinAPI — Wine 8.8 has occurred. Since the release of version 8.7, 18 bug reports have been closed, and 253 changes have been made. The most significant changes include: Initial support for loading ARM64EC modules (ARM64 Emulation Compatible), which is applied to simplify the porting of applications originally written for the x86_64 architecture to ARM64 systems by providing the capability to run in an environment […]

Release of DXVK 2.2, the implementation of Direct3D 9/10/11 over the Vulkan API

The release of the DXVK 2.2 layer, providing the implementation of DXGI (DirectX Graphics Infrastructure) and Direct3D 9, 10, and 11, is now available, operating through the translation of calls to the Vulkan API. To use DXVK, drivers supporting Vulkan API 1.3 are required, such as Mesa RADV 22.0, NVIDIA 510.47.03, Intel ANV 22.0, and AMDVLK. DXVK can be used to run 3D applications and games in […]

First stable release of D8VK, the implementation of Direct3D 8 over Vulkan

The release of the D8VK 1.0 project, which offers an implementation of the Direct3D 8 graphics API that works through the translation of calls to the Vulkan API, allowing 3D applications and games developed for Windows that rely on the Direct3D 8 API to run on Linux using Wine or Proton, has been unveiled. The project's code is written in C++ and is distributed under the Zlib license. The basis for […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster