Category: Internet News

Vulnerability in Glibc exploited via PHP scripts

A vulnerability (CVE-2024-2961) has been discovered in the standard C library Glibc, leading to a buffer overflow when converting specially formatted strings in ISO-2022-CN-EXT encoding using the iconv() function. The researcher who uncovered the issue plans to present at the OffensiveCon conference on May 10, where the announcement mentions the possibility of exploiting the vulnerability through PHP applications. It is stated that the issue affects the entire PHP ecosystem and some applications. […]

New BIOS for Asus Z790 boards enhances stability of Intel chips but reduces their performance

Asus has released a new version of the BIOS for motherboards based on the Intel Z790 chipset, which includes a basic profile of Intel settings. It resets all parameters for the motherboard to Intel's recommended settings, increasing the stability of 13th and 14th generation Core processors, which had previously reported issues. However, the flagship Core i9 chips show lowered performance after applying this profile […]

Mozilla has begun creating nightly builds of Firefox for Linux systems on ARM64 architecture

Mozilla developers have announced the release of official binary deb packages and installation tar archives that allow users to install nightly builds of Firefox on Linux distributions for ARM64 (AArch64) architecture. The packages are available both through the traditional download page and from a specialized APT repository created for Debian, Ubuntu, Linux Mint, and other Debian-based distributions. After completing the implementation of automated testing for ARM64 builds […]

Thunderbird will add Microsoft Exchange protocol implementation in Rust

The developers of the Thunderbird email client have announced the start of integration of components written in Rust into the codebase. The next significant release of Thunderbird, scheduled for July this year, will include code implementing the Microsoft Exchange Web Services (EWS) mail protocol, developed in Rust. Support for access to Microsoft Exchange's calendar and address book will be added later. […]

Release of Wine 9.7

An experimental release of the open implementation of the Win32 API — Wine 9.7 has been made. Since the release of 9.6, 18 bug reports have been closed and 123 changes have been made. The most important changes include: adding support for generating executable files in the ARM64X format, containing code for both the Arm64EC and ARM64 ABIs. The winebuild has been updated with the option '-marm64x' for generating hybrid libraries. […]

5 GW already in place, with an additional 2.5 GW on the way: Microsoft is rapidly increasing its data center capacity and acquiring AI accelerators.

Microsoft is planning major initiatives for the data center market. According to confidential documents obtained by Business Insider, the company links its increased activity to the boom in AI technologies and intends to significantly enhance the capacity of its new data centers before the end of the current calendar year. Since July 2023 (the start of the current fiscal year), Microsoft has commissioned new data centers with a capacity of 500 MW. Judging by […]

For Xen, an IOMMU paravirtualization mechanism is being developed.

The developers of the XCP-NG project, which is developing an open platform for deploying and managing cloud infrastructure, have introduced the PV-IOMMU project. This allows guest systems to access limited functionality of IOMMU implemented using Xen's paravirtualization infrastructure. In practice, PV-IOMMU can be used to implement DMA protection in Dom0 or to support the Linux kernel VFIO subsystem. Previously, the Xen hypervisor used IOMMU for […]

The Dnsmasq project has won the first BlueHats award

The first laureate of the BlueHats award, established by the French Interministerial Digital Directorate (DINUM) and given to those supporting critical free and open projects, has been announced. The inaugural award has been presented to Simon Kelley, the creator, lead developer, and maintainer of the Dnsmasq project. The prize jury, which included representatives from the Ministry of Education, the Cybersecurity Agency (ANSSI), and DINUM, […]

GitHub aims to ban the hosting of projects for creating deepfakes

GitHub has published changes to the rules defining the policy regarding the hosting of projects that can be used to create fake multimedia content for the purpose of pornography and misinformation. The changes are currently in draft status, available for discussion for 30 days (until May 20). A paragraph has been added to the terms of service forbidding the hosting of projects that allow the synthesis and manipulation of multimedia content […]

ugrep-indexer 1.0.0

The release of version 1.0.0 of the console utility ugrep-indexer, written in C++, has occurred. This utility is designed to speed up recursive searches using ugrep (when the -index key is used). Change list: loading the configuration file .ugrep-indexer from the working or home directory with user-specified default parameters; outputting current indexing settings (which can be turned off with the --no-messages key); improved output of indexing statistics; updated documentation; refactoring […]

Autodafe has been released, a toolkit for replacing Autotools with a regular Makefile.

Eric Raymond, one of the founders of the OSI (Open Source Initiative) organization and a pioneer of the open source movement, has published the Autodafe toolkit, which allows the conversion of assembly instructions and scripts used by Autotools utilities into a single standard Makefile that can be easily read and modified by developers. The project code is written in Python and is distributed under the BSD license. It includes […]

Vulnerability in flatpak allows bypassing sandbox isolation

A vulnerability (CVE-2024-32462) has been identified in the Flatpak toolkit, which is intended for creating self-sufficient packages that are not tied to specific Linux distributions and are isolated from the rest of the system. The vulnerability allows a malicious or compromised application supplied in a flatpak package to bypass the established sandbox isolation mode and gain access to files in the main system. The problem only manifests in packages that use Freedesktop portals (xdg-desktop-portal) applied for […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster