Udidi: iindaba ze-intanethi

I-PinTheft yimeko yesithandathu ye-Copy Fail class vulnerability enika amalungelo eengcambu ku Linux

Ulwazi malunga nobuthathaka besithandathu (1, 2-3, 4, 5) luveziwe. Olu buthathaka luvumela umsebenzisi wasekuhlaleni ongenamalungelo ukuba afumane amalungelo eengcambu ngokubhala ngaphezulu idatha kwi-cache yephepha. Ubuthathaka bubizwa ngokuba yiPinTheft. I-prototype exploit iyafumaneka. Isazisi se-CVE asikanikwa. Ukulungiswa okwangoku kufumaneka kuphela njenge-patch, eyapapashwa ngoMeyi 5 yaza yamkelwa kwisebe le-netdev ngoMeyi 11, kodwa ayifakwanga kwi […]

I-IncidentRelay yinkqubo evulekileyo yokulungiselela umsebenzi kunye nezilumkiso zokuhambisa.

Iprojekthi ye-IncidentRelay ipapashiwe. Iphuhlisa inkqubo evulelekileyo yolawulo lwe-on-call, ukuhanjiswa kwesilumkiso, kunye nokuphendula kweziganeko, isebenza kwiseva ezizisebenzelayo. Le projekthi ijoliswe kwi-SREs, i-DevOps, kunye namaqela eziseko zophuhliso afuna enye indlela enokusetyenziswa endaweni yeenkonzo ze-SaaS zolawulo lwe-on-call, imigaqo-nkqubo yokunyusa, kunye nokuphendula kweziganeko. Ikhowudi yeprojekthi ibhalwe ngePython kwaye isasazwa phantsi kwelayisenisi ye-MIT. […]

В Linux Ubusesichengeni se-ssh-keysign-pwn, esivumela abasebenzisi basekuhlaleni ukuba bafunde iifayile zeengcambu, sivaliwe.

Eyona nto iphambili Linux Umngcipheko, obizwa ngokuba yi-ssh-keysign-pwn ngokungekho mthethweni, ulungisiwe. Le ngxaki ivumela umsebenzisi wasekuhlaleni, ongenamalungelo okufunda iifayile ekufuneka zifikeleleke kwi-root kuphela, kuquka izitshixo ze-SSH zabucala kunye, kwiimeko ezithile, /etc/shadow. Ngexesha lokupapashwa, i-CVE ethile yayingekanikwa le ngxaki. Nangona igama layo libizwa, le ayisiyongxaki kwi-OpenSSH njengeseva yenethiwekhi […]

Ukukhutshwa kweForgeZero 1.9.0, isixhobo sokwakha i-C kunye ne-assembler

I-ForgeZero 1.9.0 (fz), isixhobo sokwakha umgca womyalelo weeprojekthi ezibhalwe nge-C, C++, kunye neelwimi zokuhlanganisa (NASM, GAS, FASM), ikhutshiwe. Esi sixhobo asifuni i-Makefile okanye ezinye iifayile zoqwalaselo ukuze zisetyenziswe ngokusisiseko. Ikhowudi yeprojekthi ibhalwe kwi-Go kwaye inelayisenisi phantsi kwelayisenisi ye-MIT. I-ForgeZero ibona uhlobo lwefayile kwaye ikhethe ngokuzenzekelayo i-backend efanelekileyo. Ifayile nganye yekhowudi […]

I-Exim 4.99.3 ilungisa ubuthathaka obunokuvumela ukusetyenziswa kwekhowudi ekude xa usebenzisa i-GnuTLS.

Abaphuhlisi beseva yemeyile ye-Exim bakhuphe ukukhululwa kwe-Exim 4.99.3, elungisa ubuthathaka kwiindlela ezithile zokumisela iiarhente zemeyile. Le ngxaki inesihlonzi sangaphakathi i-EXIM-Security-2026-05-01.1; kwisaziso esisemthethweni, ikwadweliswe njenge-CVE-TBD. Ubuthathaka bukwiklasi ye-Remote Use-After-Free kwaye buyenzeka xa kuhlalutywa umzimba womyalezo we-BDAT xa usebenzisa i-TLS ngaphezulu kwe-GnuTLS. I-BDAT isetyenziswa kulwandiso lwe-CHUNKING SMTP ukuhambisa umzimba […]

I-DirtyDecrypt yenye i-Copy Fail class vulnerability enika amalungelo eengcambu kwi- Linux

Eyona nto iphambili Linux Kuchongiwe ubuthathaka obufana neCopy Fail, Dirty Frag, kunye neFragnesia, okuvumela umsebenzisi ongenamalungelo ukuba afumane amalungelo eengcambu ngokubhala ngaphezulu idatha kwi-cache yephepha. Ubuthathaka bunikwe igama lekhowudi elithi DirtyDecrypt (le ngxaki ikwabizwa ngokuba yiDirtyCBC). Kukho iprototype exploit. Inqaku le-exploit alikhankanyi isihlonzi se-CVE, lisithi kuphela ukuba abaphandi bafumene le ngxaki ngoMeyi 9, […]

Ukukhutshwa kweMyCompany 6.2, iqonga elivulekileyo leshishini elincinci lokuzenzela

I-MyCompany 6.2, inkqubo ye-ERP yasimahla yamashishini amancinci naphakathi eyakhelwe kwiqonga le-lsFusion, ikhutshiwe. Isisombululo siquka i-inventory kunye ne-financial accounting, ulawulo lokuthengwa kunye nokuthengiswa, imveliso, ukuthengisa kunye neenkonzo, nokunye. Isisombululo esisemgangathweni se-MyCompany sisasazwa phantsi kwelayisenisi ye-Apache 2.0 kwaye siphuhliswa njengeprojekthi yomthombo ovulekileyo kwi-GitHub. Iqonga lokubonisa kunye […]

Isivumelwano seGitHub seGrafana Labs siphumela ekuvuthweni kwekhowudi yobunini

IGrafana Labs, umphuhlisi weqonga lokujonga idatha elivulelekileyo kunye neqonga lokubona elibizwa ngegama elifanayo, utyhile ukuba ithokheni yokufikelela kwindawo yayo yeGitHub iwele ezandleni zabahlaseli. Abahlaseli basebenzise ithokheni ukukhuphela ikhowudi yeemveliso zenkampani kwiindawo zokugcina zabucala kwaye bazama ukuxhaphaza imali ngokusongela ngokutyhila isiseko sekhowudi esifunyenweyo. Abameli beGrafana Labs bala ukuhlawula. Ngokutsho kwenkampani, abahlaseli abazange bafumane ukufikelela […]

I-GenCAD yimodeli ye-CAD evelisa imifanekiso kunye nemizobo.

Abaphandi kwiMassachusetts Institute of Technology baphuhlisa iprojekthi yeGenCAD, esebenzisa imodeli yokufunda komatshini ukuvelisa iimodeli ze-3D ezisekelwe kumfanekiso we-2D okanye umzobo wenxalenye. IGenCAD ayivelisi nje imodeli ye-3D, kodwa inkqubo epheleleyo ye-CAD ye-parametric enembali yemiyalelo yokwakha imodeli, efanelekileyo ukungeniswa kwiinkqubo ze-CAD ze-parametric. Umntu onomdla ujoyine ingxoxo yale projekthi, esithi ukudala iimodeli ze […]

В Linux Kuye kwavezwa ukuba ubuthathaka obutsha beFragnesia LPE buvumela umsebenzisi wasekuhlaleni ukuba afumane ukufikelela kwiingcambu.

Eyona nto iphambili Linux Olunye ubuthathaka bokwanda kwamalungelo engingqi, olubizwa ngokuba yiFragnesia noluchongwe njengeCVE-2026-46300, luveziwe. Le ngxaki iwela kudidi olufanayo lokuhlaselwa kwe-page cache njengeCopy Fail kunye neDirty Frag ezixoxwe kutshanje, kodwa ayikokupapashwa kwakhona kwebug endala: sisiphene esahlukileyo kwikhowudi ye-XFRM ESP-in-TCP. Ubuthathaka bufunyenwe ngumphandi uWilliam Bowling […]

Ukukhutshwa kwePhosh 0.55.0, indawo ye-GNOME yee-smartphones

I-Phosh 0.55, indawo ephathwayo yedesktop esekelwe kubuchwepheshe be-GNOME kunye nelayibrari ye-GTK, ikhutshiwe. Le ndawo yaphuhliswa okokuqala yiPurism njengendlela ye-GNOME Shell yefowuni yeLibrem 5, kodwa ukususela ngoko ibe yiprojekthi ye-GNOME engekho mthethweni kwaye isetyenziswa kwi-postmarketOS, iMobian, i-ALT Mobile, iDroidian, i-firmware ethile yezixhobo zePine64, kunye nohlelo lweFedora […]

I-codebase ye-KDE ifikelele kwimigca yekhowudi ezizigidi ezisi-8.

UCornelius Schumacher, uMongameli we-KDE e.V., uhlalutye izibalo ngobukhulu be-codebase ye-KDE. Ubungakanani obupheleleyo bangoku beelayibrari ze-KDE Frameworks, indawo yedesktop ye-KDE Plasma, kunye ne-KDE Gear core application suite yimigca eyi-8,173,148. Oku kuphindaphinde kabini ubukhulu be-codebase ka-2009 (imigca eyi-4,273,291). Inani lilonke lemigca yekhowudi eyongeziweyo kwindawo yokugcina, […]

Thenga ukusingathwa okuthembekileyo kwiindawo ezinokhuseleko lweDDoS, iiseva zeVPS VDS 🔥 Thenga ukusingathwa kwewebhusayithi okuthembekileyo ngokhuseleko lwe-DDoS, iiseva zeVPS VDS | ProHoster