Author: ProHoster

Apache OpenMeetings 6.0 web conferencing server release

The Apache Software Foundation has announced the release of Apache OpenMeetings 6.0, a web conferencing server that enables audio and video conferencing via the Web, as well as collaboration and messaging between participants. Both webinars with one speaker and conferences with an arbitrary number of participants simultaneously interacting with each other are supported. The project code is written in Java and distributed under […]

Blender website down due to hacking attempt

The developers of the free 3D modeling package Blender have warned that blender.org will be temporarily shut down due to a hacking attempt being detected. It is not yet known how successful the attack was; it is only said that the site will be returned to operation after the verification is completed. The checksums have already been verified and no malicious modifications have been detected in the download files. Much of the infrastructure, including Wiki, the developer portal, […]

Sixteenth Ubuntu Touch Firmware Update

The UBports project, which took over the development of the Ubuntu Touch mobile platform after Canonical pulled out of it, has published an OTA-16 (over-the-air) firmware update. The project is also developing an experimental port of the Unity 8 desktop, which has been renamed Lomiri. The Ubuntu Touch OTA-16 update is available for OnePlus One, Fairphone 2, Nexus 4, Nexus 5, Nexus 7 […]

From Firefox intend to remove the compact mode of displaying panels

As part of the design modernization carried out as part of the Proton project, developers from Mozilla plan to remove the compact panel display mode from the interface settings (the “hamburger” menu in the panel -> Customize -> Density -> Compact), leaving only the normal mode and the mode for touch screens. Compact mode uses smaller buttons and removes excess space around panel elements […]

Release of GNU Mes 0.23, a self-contained distribution toolkit

After a year of development, the GNU Mes 0.23 toolkit was released, providing a bootstrap process for GCC and allowing for a closed cycle of rebuilding from source code. The toolkit solves the problem of verified initial compiler assembly in distributions, breaking the chain of cyclical rebuilding (building a compiler requires executable files of an already built compiler, and binary compiler assemblies are a potential source of hidden bookmarks, […]

Release of LeoCAD 21.03, the Lego-style model design environment

The release of the computer-aided design environment LeoCAD 21.03 has been published, designed for creating virtual models assembled from parts in the style of Lego constructors. The program code is written in C++ using the Qt framework and is distributed under the GPLv2 license. Ready-made assemblies are generated for Linux (AppImage), macOS and Windows The program combines a simple interface that allows beginners to quickly get used to the process of creating models, with […]

Release of Chrome OS 89, dedicated to the 10th anniversary of the Chromebook project

The Chrome OS 89 operating system was released, based on the Linux kernel, the upstart system manager, the ebuild / portage assembly toolkit, open components and the Chrome 89 web browser. The Chrome OS user environment is limited to a web browser, and web applications are used instead of standard programs, however, Chrome OS includes a full multi-window interface, desktop and taskbar. Build Chrome OS 89 […]

Canonical Extends Support for Ubuntu 16.04 to Paid Subscribers

Canonical has warned that the five-year update period for the Ubuntu 16.04 LTS distribution will soon expire. Starting April 30, 2021, official public support for Ubuntu 16.04 will no longer be available. For users who do not have time to transfer their systems to Ubuntu 18.04 or 20.04, as with previous LTS releases, the ESM (Extended Security Maintenance) program is offered, which extends the publication […]

Flatpak 1.10.2 update fixes sandbox isolation vulnerability

A corrective update to the toolkit for creating self-contained packages Flatpak 1.10.2 is available, which eliminates a vulnerability (CVE-2021-21381) that allows the author of a package with an application to bypass the sandbox isolation mode and gain access to files on the main system. The problem has been appearing since release 0.9.4. The vulnerability is caused by an error in the implementation of the file forwarding function, which allows […]

Vulnerability in the iSCSI subsystem of the Linux kernel that allows you to escalate your privileges

A vulnerability (CVE-2021-27365) has been identified in the iSCSI subsystem code of the Linux kernel, which allows an unprivileged local user to execute code at the kernel level and gain root privileges in the system. A working prototype of the exploit is available for testing. The vulnerability was addressed in Linux kernel updates 5.11.4, 5.10.21, 5.4.103, 4.19.179, 4.14.224, 4.9.260, and 4.4.260. Kernel package updates are available in Debian, Ubuntu, SUSE/openSUSE, […]

Google demonstrates exploitation of Specter vulnerabilities by executing JavaScript in the browser

Google has published several exploit prototypes showing the possibility of exploiting Specter class vulnerabilities when executing JavaScript code in the browser, bypassing previously added protection methods. Exploits can be used to gain access to the memory of the process processing web content in the current tab. To test the operation of the exploit, the website leaky.page was launched, and the code describing the logic of the work was posted on GitHub. Proposed […]

Chrome update 89.0.4389.90 fixing 0-day vulnerability

Google has created an update to Chrome 89.0.4389.90, which fixes five vulnerabilities, including the CVE-2021-21193 problem, already used by attackers in exploits (0-day). Details have not yet been disclosed; it is only known that the vulnerability is caused by accessing an already freed memory area in the Blink JavaScript engine. The problem has been assigned a high, but not critical, level of danger, i.e. It is indicated that the vulnerability does not allow [...]