ubuntu Updates
3134Warning Date
Severity Level
Warning Number
Target Sector
16 September, 2020
● Medium
2020-1781
All
Description:
ubuntu has released security updates to address several vulnerabilities in the following products:
- GUPnP
- Ubuntu 20.04 LTS
- Apache Log4j
- Ubuntu 18.04 LTS
- Apache XML-RPC
- Ubuntu 18.04 LTS
- Ubuntu 16.04 LTS
- OpenJPEG
- Ubuntu 16.04 LTS
- MilkyTracker
- Ubuntu 16.04 LTS
- Loofah
- Ubuntu 16.04 LTS
- bsdiff
- Ubuntu 16.04 LTS
- LuaJIT
- Ubuntu 16.04 LTS
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS)
- Execute arbitrary code
- Cross-site scripting (XSS)
Best practice and Recommendations:
The CERT team encourages users to review ubuntu security advisory and apply the necessary updates:
- https://ubuntu.com/security/notices/USN-4494-1
- https://ubuntu.com/security/notices/USN-4495-1
- https://ubuntu.com/security/notices/USN-4496-1
- https://ubuntu.com/security/notices/USN-4497-1
- https://ubuntu.com/security/notices/USN-4499-1
- https://ubuntu.com/security/notices/USN-4498-1
- https://ubuntu.com/security/notices/USN-4500-1
- https://ubuntu.com/security/notices/USN-4501-1