ubuntu Updates
2564Warning Date
Severity Level
Warning Number
Target Sector
6 October, 2020
● Medium
2020-1878
All
Description:
ubuntu has released security updates to address several vulnerabilities in the following products:
- ruby-rack-cors - provides support for Cross-Origin Resource Sharing (CORS) for Rack compatible web applications
- Ubuntu 16.04 LTS
- tika - A content analysis toolkit
- Ubuntu 16.04 LTS
- yaws - High performance HTTP 1.1 webserver written in Erlang
- Ubuntu 18.04 LTS
- opendmarc - Open Source implementation of the DMARC specification
- Ubuntu 18.04 LTS
- python-urllib3 - HTTP library with thread-safe connection pooling
- Ubuntu 20.04 LTS
- Ubuntu 18.04 LTS
- Ubuntu 16.04 LTS
- cyrus-imapd - An IMAP server
- Ubuntu 18.04 LTS
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code
- Directory Traversal
Best practice and Recommendations:
The CERT team encourages users to review ubuntu security advisory and apply the necessary updates: