Author: Yuri Gagarin

A vulnerability in the Linux kernel's VFS allows privilege escalation

A vulnerability (CVE-2022-0185) has been discovered in the Filesystem Context API provided by the Linux kernel, allowing a local user to gain root privileges on the system. The researcher who identified the issue has published a demonstration of the exploit that allows code to be executed with root rights in the default configuration of Ubuntu 20.04. The exploit code is planned to be released on GitHub within a week after distributions issue updates with […]

Release of ArchLabs Distribution 2022.01.18

The Linux distribution ArchLabs 2021.01.18 has been released, based on the Arch Linux package base and supplied with a lightweight desktop environment based on the Openbox window manager (optional environments include i3, Bspwm, Awesome, JWM, dk, Fluxbox, Xfce, Deepin, GNOME, Cinnamon, Sway). For setting up a stationary installation, the ABIF installer is offered. The base system includes applications such as Thunar, Termite, Geany, Firefox, Audacious, MPV […]

New version of the Monitorix monitoring system 3.14.0

The release of the Monitorix 3.14.0 monitoring system has been introduced, designed for visually tracking the performance of various services, such as monitoring CPU temperature, system load, network activity, and responsiveness of network services. Management of the system is conducted through a web interface, with data presented in the form of graphs. The system is written in Perl, and RRDTool is used for graph generation and data storage. The code is distributed under the GPLv2 license. […]

Release of the GNU Ocrad 0.28 Optical Character Recognition System

After three years since the last release, the text recognition system Ocrad 0.28 (Optical Character Recognition) has been formed, developed under the auspices of the GNU project. Ocrad can be used both as a library for integrating OCR functions into other applications and as a standalone utility, which produces text in UTF-8 or 8-bit from the provided input image. […]

Firefox 96.0.2 Update

A corrective release of Firefox 96.0.2 is available, which addresses several bugs: Fixed a crash when resizing the browser window where the Facebook web application is open. Resolved an issue that caused the tab button to misalign in Linux builds when playing audio on the page. Corrected a bug that resulted in the LastPass extension displaying an empty menu in incognito mode. Source: opennet.ru

Vulnerability in the standard library of the Rust language

A vulnerability (CVE-2022-21658) has been identified in the standard library of the Rust language, related to a race condition in the std::fs::remove_dir_all() function. When using this function to delete temporary files in a privileged application, an attacker could delete arbitrary system files and directories, which they normally wouldn't have access to. The vulnerability is caused by improper handling of symbolic link checks before recursion.

SUSE is developing its own replacement for CentOS 8, compatible with RHEL 8.5

Additional details have emerged about the SUSE Liberty Linux project, announced by SUSE this morning without technical specifics. It turns out that the project has prepared a new edition of the Red Hat Enterprise Linux 8.5 distribution, built using the Open Build Service platform, suitable as a replacement for the classic CentOS 8, whose support was discontinued at the end of 2021.

The Qt Company has introduced a platform for embedding advertising in Qt applications

The Qt Company has released the first version of the Qt Digital Advertising platform to simplify the monetization of applications developed with the Qt library. The platform provides a cross-platform Qt module with a QML API for embedding advertisements into application interfaces and managing their delivery, similar to inserting ad blocks in mobile applications. The interface for simplified ad block insertion is designed as...

SUSE Liberty Linux initiative for unifying support for SUSE, openSUSE, RHEL, and CentOS

SUSE has introduced the SUSE Liberty Linux project, aimed at providing a unified service for supporting and managing mixed infrastructures, which include not only SUSE Linux and openSUSE but also Red Hat Enterprise Linux and CentOS distributions. The initiative includes: Providing unified technical support, which allows users to avoid contacting the manufacturer of each distribution individually and resolve all issues through a single service.

Search for Fedora repositories has been added to Sourcegraph

The Sourcegraph search engine, aimed at indexing publicly available source texts, has been enhanced with the ability to search and navigate through the source texts of all packages distributed via the Fedora Linux repository, in addition to the previously available search for GitHub and GitLab projects. Over 34,500 packages with source texts from Fedora have been indexed. Flexible means for sampling are provided with […]

Release of the Lighttpd 1.4.64 HTTP server

The release of the lightweight HTTP server lighttpd 1.4.64 has taken place. The new version features 95 changes, including previously planned changes to default values and a cleanup of outdated functionality: The default timeout for graceful restart/shutdown operations has been reduced from infinity to 8 seconds. This timeout can be configured using the "server.graceful-shutdown-timeout" option. The transition to using a build with the […]

Chrome 97.0.4692.99 Update Addresses Critical Vulnerabilities

Google has rolled out updates for Chrome 97.0.4692.99 and 96.0.4664.174 (Extended Stable), which fix 26 vulnerabilities, including a critical vulnerability (CVE-2022-0289) that allows bypassing all security levels of the browser and executing code on the system outside of the sandbox environment. Details are not yet disclosed, but it is known that the critical vulnerability is related to a use-after-free issue in the implementation of […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster