news
Members-
Content count
80899 -
Joined
-
Last visited
Never -
Days Won
18
Everything posted by news
-
[gentoo-announce] [ GLSA 201612-06 ] nghttp2: Heap-use-after-free
news posted a topic in Upcoming News
<http://www.eteknix.com> TerraStation F2-220 2-Bay SMB Cloud Storage NAS Review Today is a special day as it is the first time that I get to take a TerraMaster NAS for a spin in my testing area. TerraMaster might not be the most known NAS vendor, but they have a quite nice line-up of both NAS and DAS devices and today I'll be taking a closer look at the TerraMaster F2-220 <http://www.terra-master.com/html/en/article_read_1190.html>  small business and home cloud storage NAS server. TerraMaster is the NAS and DAS division of Noontec. URL - http://www.eteknix.com/terrastation-f2-220-2-bay-smb-cloud-storage-nas-review/ -- -
[gentoo-announce] [ GLSA 201612-07 ] dpkg: Arbitrary code execution
news posted a topic in Upcoming News
<http://www.eteknix.com> TerraStation F2-220 2-Bay SMB Cloud Storage NAS Review Today is a special day as it is the first time that I get to take a TerraMaster NAS for a spin in my testing area. TerraMaster might not be the most known NAS vendor, but they have a quite nice line-up of both NAS and DAS devices and today I'll be taking a closer look at the TerraMaster F2-220 <http://www.terra-master.com/html/en/article_read_1190.html>  small business and home cloud storage NAS server. TerraMaster is the NAS and DAS division of Noontec. URL - http://www.eteknix.com/terrastation-f2-220-2-bay-smb-cloud-storage-nas-review/ -- -
[gentoo-announce] [ GLSA 201612-08 ] LinuxCIFS utils: Buffer overflow
news posted a topic in Upcoming News
<http://www.eteknix.com> TerraStation F2-220 2-Bay SMB Cloud Storage NAS Review Today is a special day as it is the first time that I get to take a TerraMaster NAS for a spin in my testing area. TerraMaster might not be the most known NAS vendor, but they have a quite nice line-up of both NAS and DAS devices and today I'll be taking a closer look at the TerraMaster F2-220 <http://www.terra-master.com/html/en/article_read_1190.html>  small business and home cloud storage NAS server. TerraMaster is the NAS and DAS division of Noontec. URL - http://www.eteknix.com/terrastation-f2-220-2-bay-smb-cloud-storage-nas-review/ -- -
[gentoo-announce] [ GLSA 201612-09 ] GD: Multiple vulnerabilities
news posted a topic in Upcoming News
<http://www.eteknix.com> TerraStation F2-220 2-Bay SMB Cloud Storage NAS Review Today is a special day as it is the first time that I get to take a TerraMaster NAS for a spin in my testing area. TerraMaster might not be the most known NAS vendor, but they have a quite nice line-up of both NAS and DAS devices and today I'll be taking a closer look at the TerraMaster F2-220 <http://www.terra-master.com/html/en/article_read_1190.html>  small business and home cloud storage NAS server. TerraMaster is the NAS and DAS division of Noontec. URL - http://www.eteknix.com/terrastation-f2-220-2-bay-smb-cloud-storage-nas-review/ -- -
<http://www.eteknix.com> TerraStation F2-220 2-Bay SMB Cloud Storage NAS Review Today is a special day as it is the first time that I get to take a TerraMaster NAS for a spin in my testing area. TerraMaster might not be the most known NAS vendor, but they have a quite nice line-up of both NAS and DAS devices and today I'll be taking a closer look at the TerraMaster F2-220 <http://www.terra-master.com/html/en/article_read_1190.html>  small business and home cloud storage NAS server. TerraMaster is the NAS and DAS division of Noontec. URL - http://www.eteknix.com/terrastation-f2-220-2-bay-smb-cloud-storage-nas-review/ --
-
<http://www.eteknix.com> Gears of War 4 DirectX 12 Graphics Performance Analysis The Gears of War franchise's magical formula of chaotic action and a narrative which doesn't take itself too seriously has made it an enormous success. Even though it's often associated as an Xbox exclusive, the original title eventually launched on the PC platform and received widespread critical acclaim. Saying that, the later releases didn't make their way to Windows PCs which is a crying shame as Microsoft focused their efforts on the console market. Thankfully, Microsoft's new management has acknowledged the growth of PC gaming and the need to integrate multiple devices into a single ecosystem. The Universal Windows Platform is designed to act as a gateway for Microsoft's software library while bringing PCs, Xbox and mobile phones together, leading to a more enriching user experience. URL - http://www.eteknix.com/gears-war-4-directx-12-graphics-performance-analysis/ --
-
<http://www.eteknix.com> Fnatic Gear Clutch G1 Optical Gaming Mouse Review Fnatic is one of the names most gamers will be familiar with, as one of the biggest and most popular gaming teams in the world, they're in the perfect position to show off high-quality gaming peripherals. While a lot of gaming teams rely on sponsorship deals, Fnatic has gone one step further, producing their own gaming hardware and what better way to show people the products are great, than to use them themselves to win multiple tournaments! URL - http://www.eteknix.com/fnatic-gear-clutch-g1-optical-gaming-mouse-review/ --
-
[gentoo-announce] [ GLSA 201612-03 ] libsndfile: Multiple vulnerabilities
news posted a topic in Upcoming News
CentOS Errata and Security Advisory 2016:2843 Critical Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-2843.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 428cdbe6535695b8770f32372f3d88f886beabec9ada487d0aca157816c5973e firefox-45.5.1-1.el5.centos.i386.rpm x86_64: 428cdbe6535695b8770f32372f3d88f886beabec9ada487d0aca157816c5973e firefox-45.5.1-1.el5.centos.i386.rpm c0eddc4d631809868c0409114c051170671a357eaa95a3b29a8642f8c65e5d42 firefox-45.5.1-1.el5.centos.x86_64.rpm Source: 48ab00902da28957f5bb2ed54e684596d52c8fca825fbb24c19814786643fad4 firefox-45.5.1-1.el5.centos.src.rpm -- Johnny Hughes CentOS Project { http://www.centos.org/ } irc: hughesjr, #centos ( -at -) irc.freenode.net Twitter: JohnnyCentOS _______________________________________________ -
[CentOS-announce] CESA-2016:2843 Critical CentOS 5 firefox Security Update
news posted a topic in Upcoming News
CentOS Errata and Security Advisory 2016:2843 Critical Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-2843.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 428cdbe6535695b8770f32372f3d88f886beabec9ada487d0aca157816c5973e firefox-45.5.1-1.el5.centos.i386.rpm x86_64: 428cdbe6535695b8770f32372f3d88f886beabec9ada487d0aca157816c5973e firefox-45.5.1-1.el5.centos.i386.rpm c0eddc4d631809868c0409114c051170671a357eaa95a3b29a8642f8c65e5d42 firefox-45.5.1-1.el5.centos.x86_64.rpm Source: 48ab00902da28957f5bb2ed54e684596d52c8fca825fbb24c19814786643fad4 firefox-45.5.1-1.el5.centos.src.rpm -- Johnny Hughes CentOS Project { http://www.centos.org/ } irc: hughesjr, #centos ( -at -) irc.freenode.net Twitter: JohnnyCentOS _______________________________________________ -
[CentOS-announce] CESA-2016:2843 Critical CentOS 6 firefox Security Update
news posted a topic in Upcoming News
CentOS Errata and Security Advisory 2016:2843 Critical Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-2843.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 4272182e4744591510d2a8f695c4514ba5cd48ea53d1f4b730fea917ced95046 firefox-45.5.1-1.el6.centos.i686.rpm x86_64: 4272182e4744591510d2a8f695c4514ba5cd48ea53d1f4b730fea917ced95046 firefox-45.5.1-1.el6.centos.i686.rpm ec698684b1a62b6e27173e7a025cb354ab2f0f7a2f5ff19d76e0f410b4e18575 firefox-45.5.1-1.el6.centos.x86_64.rpm Source: d174016bedb5dc9b22630ceb8f15eb3ba11c2114baf4a5ba87bdf9fd9a4dd53c firefox-45.5.1-1.el6.centos.src.rpm -- Johnny Hughes CentOS Project { http://www.centos.org/ } irc: hughesjr, #centos ( -at -) irc.freenode.net Twitter: ( -at -) JohnnyCentOS _______________________________________________ -
Hello LanOC Affiliates and newsletter subscribers, here is our newest posting. We would appreciate you spreading the word! LanOC Reviews has released a new article which you and your readers might enjoy. We would be grateful if you would please share it with them. *TITLE:* V-Moda Crossfade Wireless ( -at -) LanOC Reviews <http://lanoc.org/review/audio/7375-v-moda-crossfade-wireless> *DESCRIPTION:* Hi, my name is Wes and I’m addicted to wireless headsets.. I hate to admit it, because I have just about any wired headset I could want in the warehouse, but on my main PC I prefer to use a wireless headset. Over the years I can’t even count the different ways that I have gotten tangled up in a headphone wire or damaged the wire with my chair so years ago I started using wireless headsets. I started with the Corsair Vengeance 1500’s then I went to the Logitech G930’s, and for the past three years I’ve had the SteelSeries H Wireless. I’ve run into multiple issues with reception issues, especially at LAN parties, battery issues, and at one point the Corsairs even just came apart in my hands. The H Wireless held up better and gave me fewer issues because of its swappable battery setup but the audio performance and comfort were never really as good as anything wired. But it's 2016, going on 2017 and I’m feeling saucy. I decided to check out the V-Moda Crossfade Wireless. I’ve got the wired version that I take with me to LAN events and love them, so I thought they might finally be the solution to the audio and comfort issues while being wireless so I’ve been giving them a try. *ARTICLE URL:* http://lanoc.org/review/audio/7375-v-moda-crossfade-wireless *LARGE IMAGE URL:* http://lanoc.org/images/reviews/2016/vmoda_crossfade_wireless/title.jpg *SMALL IMAGE URL:* http://lanoc.org/images/reviews/2016/vmoda_crossfade_wireless/email.jpg Thank you for your help Our content is syndicated by *RSS* 2.0 at: http://lanoc.org/review?fo rmat=feed&type=atom Check out our *YouTube* Channel: http://www.youtube.com/user/LanocReviews Follow us on *Twitter*: http://www.twitter.com/LanOC_Reviews Join our group on *Facebook*: http://www.facebook.com/LanOCReviews Join our *Steam* Group: http://steamcommunity.com/groups/lanoc *If this message has been sent to an incorrect address, or you no longer wish to receive our news, please email us back and let us know at reviews ( -at -) lanoc.org* ---------------------------------------- Wes Compton Editor-in-Chief LanOC Reviews http://lanoc.org ( -at -) LanOC_Reviews <http://twitter.com/#!/LanOC_Reviews> Google Plus <https://plus.google.com/u/1/b/111054267662763089650/> Our Facebook Page <http://www.facebook.com/LanOCReviews>
-
WD My Passport 4TB 2016 Edition Portable External Hard Drive Review @ Legit Reviews
news posted a topic in Upcoming News
The holiday season is officially here and chances are most of us will be travelling and taking more pictures than we normally would. Having a portable storage drive to ensure those memories are safely backed up is something you might want to think about. Portable storage solutions have continued to get better over the years and just this Fall the team over at WD did a complete redesign of their popular My Passport portable USB drive series. WD now offers the series in six vibrant colors – Black, Yellow, Red, White, Orange and Blue with a completely updated look. Article Title: WD My Passport 4TB 2016 Edition Portable External Hard Drive Review ( -at -) Legit Reviews Article URL: http://www.legitreviews.com/wd-passport-4tb-2016-edition-portable-external-hard-drive-review_188531 Unsubscribe: http://adserv.legitreviews.com/cgi-bin/dada/mail.cgi/u/legitpr/reviewnews// = -
Seagate IronWolf ST10000VN0004 10TB Hard Drive Review @ APH Networks
news posted a topic in Upcoming News
-------- SEAGATE IRONWOLF ST10000VN0004 10TB HARD DRIVE REVIEW ( -at -) APH NETWORKS Hello everyone! APH Networks has published a new review that your readers might enjoy. A post in your site's news section would be greatly appreciated! Don't forget to send your site news to us. As we promise to post your news articles on APH Networks periodically, we would certainly appreciate it if you do the same as well. Thank you for your support in advance! * Title: Seagate IronWolf ST10000VN0004 10TB Hard Drive Review ( -at -) APH Networks * Description: The Seagate IronWolf ST10000VN0004 10TB is the biggest hard drive money can buy. But do not let its capacity fool you -- it compromises nothing in speed and power efficiency. * Link: http://aphnetworks.com/reviews/seagate-ironwolf-st10000vn0004-10tb * Image: http://aphnetworks.com/review/seagate-ironwolf-st10000vn0004-10tb/006.JPG Best Regards, Jonathan Kwan Editor-in-Chief APH Networks Inc. http://aphnetworks.com -- Unsubscribe from this newsletter: http://aphnetworks.com/newsletter/confirm/remove/c77c84bd425t5 -
News: I made my dumb appliances smarter with the Internet of Things
news posted a topic in Upcoming News
Sometimes I forget things. In particular, I forget to transfer my clean but wet laundry from the washing machine to the dryer. When this happens, I have to waste time, detergent, electricity, and water to re-wash the clothes. I figured I could get crafty and make the dumb old washer and dryer whisper in my ear through the internet to make me less forgetful. Here's how I did it. Read more: http://techreport.com/blog/31056/i-made-my-dumb-appliances-smarter-with-the-internet-of-things --- The Tech Report - PC Hardware Explored http://techreport.com -- To unsubscribe from: TR-News, just follow this link: http://node1.techreport.com/cgi-bin/dada/mail.cgi/u/trnews/reviewnews// Click this link, or copy and paste the address into your browser. -
[security-announce] SUSE-SU-2016:2988-1: important: Security update for qemu
news posted a topic in Upcoming News
SUSE Security Update: Security update for qemu ______________________________________________________________________________ Announcement ID: SUSE-SU-2016:2988-1 Rating: important References: #1000345 #1001151 #1002116 #1002550 #1002557 #1003878 #1003893 #1003894 #1004702 #1004707 #1006536 #1006538 #1007391 #1007450 #1007454 #1007493 #1007494 #1007495 #996524 #998516 #999661 Cross-References: CVE-2016-7161 CVE-2016-7170 CVE-2016-7421 CVE-2016-7466 CVE-2016-7908 CVE-2016-7909 CVE-2016-8576 CVE-2016-8577 CVE-2016-8578 CVE-2016-8667 CVE-2016-8669 CVE-2016-8909 CVE-2016-8910 CVE-2016-9101 CVE-2016-9102 CVE-2016-9103 CVE-2016-9104 CVE-2016-9105 CVE-2016-9106 Affected Products: SUSE Linux Enterprise Server 12-SP1 SUSE Linux Enterprise Desktop 12-SP1 ______________________________________________________________________________ An update that solves 19 vulnerabilities and has two fixes is now available. Description: This update for qemu fixes the following issues: - Patch queue updated from https://gitlab.suse.de/virtualization/qemu.git SLE12-SP1 - Change package post script udevadm trigger calls to be device specific (bsc#1002116) - Address various security/stability issues * Fix OOB access in xlnx.xpx-ethernetlite emulation (CVE-2016-7161 bsc#1001151) * Fix OOB access in VMware SVGA emulation (CVE-2016-7170 bsc#998516) * Fix DOS in USB xHCI emulation (CVE-2016-7466 bsc#1000345) * Fix DOS in Vmware pv scsi interface (CVE-2016-7421 bsc#999661) * Fix DOS in ColdFire Fast Ethernet Controller emulation (CVE-2016-7908 bsc#1002550) * Fix DOS in USB xHCI emulation (CVE-2016-8576 bsc#1003878) * Fix DOS in virtio-9pfs (CVE-2016-8578 bsc#1003894) * Fix DOS in virtio-9pfs (CVE-2016-9105 bsc#1007494) * Fix DOS in virtio-9pfs (CVE-2016-8577 bsc#1003893) * Plug data leak in virtio-9pfs interface (CVE-2016-9103 bsc#1007454) * Fix DOS in virtio-9pfs interface (CVE-2016-9102 bsc#1007450) * Fix DOS in virtio-9pfs (CVE-2016-9106 bsc#1007495) * Fix DOS in 16550A UART emulation (CVE-2016-8669 bsc#1004707) * Fix DOS in PC-Net II emulation (CVE-2016-7909 bsc#1002557) * Fix DOS in PRO100 emulation (CVE-2016-9101 bsc#1007391) * Fix DOS in RTL8139 emulation (CVE-2016-8910 bsc#1006538) * Fix DOS in Intel HDA controller emulation (CVE-2016-8909 bsc#1006536) * Fix DOS in virtio-9pfs (CVE-2016-9104 bsc#1007493) * Fix DOS in JAZZ RC4030 emulation (CVE-2016-8667 bsc#1004702) - Fix case of disk corruption with migration due to improper internal state tracking (bsc#996524) Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 12-SP1: zypper in -t patch SUSE-SLE-SERVER-12-SP1-2016-1748=1 - SUSE Linux Enterprise Desktop 12-SP1: zypper in -t patch SUSE-SLE-DESKTOP-12-SP1-2016-1748=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Server 12-SP1 (ppc64le s390x x86_64): qemu-2.3.1-24.6 qemu-block-curl-2.3.1-24.6 qemu-block-curl-debuginfo-2.3.1-24.6 qemu-debugsource-2.3.1-24.6 qemu-guest-agent-2.3.1-24.6 qemu-guest-agent-debuginfo-2.3.1-24.6 qemu-lang-2.3.1-24.6 qemu-tools-2.3.1-24.6 qemu-tools-debuginfo-2.3.1-24.6 - SUSE Linux Enterprise Server 12-SP1 (s390x x86_64): qemu-kvm-2.3.1-24.6 - SUSE Linux Enterprise Server 12-SP1 (ppc64le): qemu-ppc-2.3.1-24.6 qemu-ppc-debuginfo-2.3.1-24.6 - SUSE Linux Enterprise Server 12-SP1 (x86_64): qemu-block-rbd-2.3.1-24.6 qemu-block-rbd-debuginfo-2.3.1-24.6 qemu-x86-2.3.1-24.6 - SUSE Linux Enterprise Server 12-SP1 (noarch): qemu-ipxe-1.0.0-24.6 qemu-seabios-1.8.1-24.6 qemu-sgabios-8-24.6 qemu-vgabios-1.8.1-24.6 - SUSE Linux Enterprise Server 12-SP1 (s390x): qemu-s390-2.3.1-24.6 qemu-s390-debuginfo-2.3.1-24.6 - SUSE Linux Enterprise Desktop 12-SP1 (noarch): qemu-ipxe-1.0.0-24.6 qemu-seabios-1.8.1-24.6 qemu-sgabios-8-24.6 qemu-vgabios-1.8.1-24.6 - SUSE Linux Enterprise Desktop 12-SP1 (x86_64): qemu-2.3.1-24.6 qemu-block-curl-2.3.1-24.6 qemu-block-curl-debuginfo-2.3.1-24.6 qemu-debugsource-2.3.1-24.6 qemu-kvm-2.3.1-24.6 qemu-tools-2.3.1-24.6 qemu-tools-debuginfo-2.3.1-24.6 qemu-x86-2.3.1-24.6 References: https://www.suse.com/security/cve/CVE-2016-7161.html https://www.suse.com/security/cve/CVE-2016-7170.html https://www.suse.com/security/cve/CVE-2016-7421.html https://www.suse.com/security/cve/CVE-2016-7466.html https://www.suse.com/security/cve/CVE-2016-7908.html https://www.suse.com/security/cve/CVE-2016-7909.html https://www.suse.com/security/cve/CVE-2016-8576.html https://www.suse.com/security/cve/CVE-2016-8577.html https://www.suse.com/security/cve/CVE-2016-8578.html https://www.suse.com/security/cve/CVE-2016-8667.html https://www.suse.com/security/cve/CVE-2016-8669.html https://www.suse.com/security/cve/CVE-2016-8909.html https://www.suse.com/security/cve/CVE-2016-8910.html https://www.suse.com/security/cve/CVE-2016-9101.html https://www.suse.com/security/cve/CVE-2016-9102.html https://www.suse.com/security/cve/CVE-2016-9103.html https://www.suse.com/security/cve/CVE-2016-9104.html https://www.suse.com/security/cve/CVE-2016-9105.html https://www.suse.com/security/cve/CVE-2016-9106.html https://bugzilla.suse.com/1000345 https://bugzilla.suse.com/1001151 https://bugzilla.suse.com/1002116 https://bugzilla.suse.com/1002550 https://bugzilla.suse.com/1002557 https://bugzilla.suse.com/1003878 https://bugzilla.suse.com/1003893 https://bugzilla.suse.com/1003894 https://bugzilla.suse.com/1004702 https://bugzilla.suse.com/1004707 https://bugzilla.suse.com/1006536 https://bugzilla.suse.com/1006538 https://bugzilla.suse.com/1007391 https://bugzilla.suse.com/1007450 https://bugzilla.suse.com/1007454 https://bugzilla.suse.com/1007493 https://bugzilla.suse.com/1007494 https://bugzilla.suse.com/1007495 https://bugzilla.suse.com/996524 https://bugzilla.suse.com/998516 https://bugzilla.suse.com/999661 -- To unsubscribe, e-mail: opensuse-security-announce+unsubscribe ( -at -) opensuse.org For additional commands, e-mail: opensuse-security-announce+help ( -at -) opensuse.org -
Game Awards 2016: Winners and Trailers, Weird Keyboards, Nokia Phone Comeback
news posted a topic in Upcoming News
TechSpot Weekly Newsletter Latest in tech December 2 ** TechSpot Feature ------------------------------------------------------------ A Gallery of Weird Keyboard Layouts AZERTY, JCUKEN, QWERTZ... What? (http://www.techspot.com/article/1179-weird-keyboard-layouts/'>http://www.techspot.com/article/1179-weird-keyboard-layouts/) #ThrowbackThursday There’s no place like home row, am I right? We have all undoubtedly come a long way from typing our very first letters to the point it becomes second nature, but it’s probably safe to say that many of us don’t know much about what lies beyond the standard QWERTY keyboard (http://www.techspot.com/article/1179-weird-keyboard-layouts/) . Well, there’s so much more... http://www.techspot.com/article/1179-weird-keyboard-layouts/ http://www.techspot.com/article/1179-weird-keyboard-layouts/ ** Featured Story ------------------------------------------------------------ It's PC vs Xbox One in Gears of War 4 this weekend (http://www.techspot.com/news/67255-pc-vs-xbox-one-gears-war-4-weekend.html) PC gamers will get their chance to show console gamers how it's done when Gears of War 4 trials cross-platform competitive multiplayer this weekend. While Gears of War 4 already supported cross-platform co-op, this special event is the first time PC… http://www.techspot.com/news/67255-pc-vs-xbox-one-gears-war-4-weekend.html ** Featured Story ------------------------------------------------------------ Nokia Android-powered smartphones set to arrive in 2017 (http://www.techspot.com/news/67245-nokia-branded-android-powered-smartphones-set-arrive-2017.html) Before Google, Apple, Samsung, LG, HTC, Sony, Huawei and a host of other modern-day handset makers rose to prominence, Nokia ruled the roost. From the late ‘90s through the early 2000s, mobile phones like the Nokia 5110 and Nokia 3310… http://www.techspot.com/news/67245-nokia-branded-android-powered-smartphones-set-arrive-2017.html ** Featured Story ------------------------------------------------------------ The Game Awards: winners, trailers, and news from the event (http://www.techspot.com/news/67258-game-awards-all-winners-trailers-news-event.html) The Game Awards 2016 took place last night, and, much like the recent Golden Joystick ceremony, the event was dominated by Overwatch. The multiplayer shooter was the winner in four different categories, including the coveted Game of the Year. http://www.techspot.com/news/67258-game-awards-all-winners-trailers-news-event.html ** Featured Story ------------------------------------------------------------ Are Smart TVs ever as good as dedicated streaming players? (http://www.techspot.com/news/67257-smart-tvs-ever-good-dedicated-streaming-players.html) As streaming media sources have become increasingly popular, so have devices that bring Netflix and more to our television screens. Now our TVs, Blu-ray players, and game consoles can all stream online video. With so many options, is it worth buying a Roku or other… http://www.techspot.com/news/67257-smart-tvs-ever-good-dedicated-streaming-players.html ** Featured Story ------------------------------------------------------------ Loads of game consoles changed hands on Black Friday, Cyber Monday (http://www.techspot.com/news/67237-ebay-loads-game-consoles-changed-hands-black-friday.html) The NES Classic Edition, Nintendo’s tiny retro console remake that’s next to impossible to find in stores, is fetching more on eBay than modern-day systems from Microsoft and Sony. In terms of sheer volume, however, the PlayStation 4 and Xbox… http://www.techspot.com/news/67237-ebay-loads-game-consoles-changed-hands-black-friday.html Twitter says it will ban Donald Trump if he violates the site's rules (http://www.techspot.com/news/67241-twitter-ban-donald-trump-if-violates-site-rules.html) http://www.techspot.com/news/67241-twitter-ban-donald-trump-if-violates-site-rules.html After Twitter had brought down the banhammer on a number of high-profile accounts associated with “alt-right†movements earlier this week, the question was raised whether it would ever remove its most famous "controversial" Tweeter: Donald Trump. When asked if it… Amazon's Snowmobile truck can haul 100 petabytes of customer data to the cloud (http://www.techspot.com/news/67239-amazon-snowmobile-truck-can-haul-100-petabytes-customer.html) http://www.techspot.com/news/67239-amazon-snowmobile-truck-can-haul-100-petabytes-customer.html When it comes to cloud computing, Amazon Web Services (AWS) is the undisputed market leader. But for those customers that need to transfer petabytes or exabytes of data, the process can take years or even decades. Now, Amazon has come… 38 percent of all Steam games were released in 2016 (http://www.techspot.com/news/67251-38-percent-all-steam-games-released-2016.html) http://www.techspot.com/news/67251-38-percent-all-steam-games-released-2016.html According to the latest analysis from Steam Spy, more than a third of all games currently listed on Steam were released this year. And this is without considering there's still just under a month of game releases to go in… Apple's plan to catch up with Google Maps: Data-collecting drones (http://www.techspot.com/news/67244-apple-plan-catch-up-google-maps-data-collecting.html) http://www.techspot.com/news/67244-apple-plan-catch-up-google-maps-data-collecting.html Apple is stepping up its efforts to close the gap between its own mapping app and Google’s. According to Bloomberg, the company is assembling a team of robotics and data-collection experts that will use drones to capture and update map… Netflix finally lets you download shows and movies for offline viewing (http://www.techspot.com/news/67230-netflix-finally-you-download-shows-movies-stream-offline.html) http://www.techspot.com/news/67230-netflix-finally-you-download-shows-movies-stream-offline.html A long requested feature has finally come to Netflix. Today the company announced that it’s launching offline playback for “many of your favorite streaming series and movies.†For now that includes original series like Narcos and Stranger Things, but also… ** The Gallery ------------------------------------------------------------ Coffee was too hot (https://www.instagram.com/thisistechspot/) https://www.instagram.com/thisistechspot/ ** Tech News ------------------------------------------------------------ * ** Woman sentenced to year in jail for using fake Facebook profile to frame her ex (http://www.techspot.com/news/67260-woman-sentenced-year-jail-using-fake-facebook-profile.html) ------------------------------------------------------------ * ** Motorola has no plans for Moto 360 smartwatch successor (http://www.techspot.com/news/67254-motorola-has-no-plans-moto-360-smartwatch-successor.html) ------------------------------------------------------------ * ** Google Play reveals top apps, games and media of 2016 (http://www.techspot.com/news/67248-google-play-reveals-top-apps-games-media-2016.html) ------------------------------------------------------------ * ** Apple expands Product (RED) lineup, adds new ways to contribute to World AIDS Day cause (http://www.techspot.com/news/67234-apple-expands-product-red-lineup-adds-new-ways.html) ------------------------------------------------------------ * ** Pebble brand likely to be phased out as Fitbit closes in on $40 million acquisition (http://www.techspot.com/news/67242-pebble-brand-likely-phased-out-fitbit-closes-40.html) ------------------------------------------------------------ * ** Reddit CEO formally apologizes for editing posts, reveals site is cracking down on toxic users (http://www.techspot.com/news/67240-reddit-cracking-down-toxic-users-ceo-formally-apologizes.html) ------------------------------------------------------------ * ** Play the NES Classic wirelessly with this tiny adaptor (http://www.techspot.com/news/67233-wireless-controller-adapter-fixes-nes-classic-edition-only.html) ------------------------------------------------------------ * ** Plex Cloud adds support for Google Drive, Dropbox and OneDrive (http://www.techspot.com/news/67262-plex-cloud-adds-support-google-drive-dropbox-onedrive.html) ------------------------------------------------------------ * ** Facebook is expanding the use of its offensive content-detecting AI to cover Live streams (http://www.techspot.com/news/67259-facebook-expanding-use-offensive-content-detecting-ai-cover.html) ------------------------------------------------------------ * ** Amazon Prime Video gets HBO and Cinemax add-ons (http://www.techspot.com/news/67247-amazon-prime-video-gets-hbo-cinemax-add-ons.html) ------------------------------------------------------------ * ** Microsoft's Surface Dial isn't quite as easy to repair as the Surface Studio, teardown reveals (http://www.techspot.com/news/67246-microsoft-surface-dial-isnt-easy-repair-surface-studio.html) ------------------------------------------------------------ * ** Gate is a smart lock with an integrated video doorbell (http://www.techspot.com/news/67236-gate-smart-lock-integrated-video-doorbell.html) ------------------------------------------------------------ * ** GoPro cost-cutting restructuring will reduce global workforce by 15 percent (http://www.techspot.com/news/67231-gopro-cost-cutting-restructuring-reduce-global-workforce-15.html) ------------------------------------------------------------ * ** YouTube announces support for 4K live streaming (http://www.techspot.com/news/67235-youtube-announces-support-4k-live-streaming.html) ------------------------------------------------------------ ** Software ------------------------------------------------------------ ** Downloads ------------------------------------------------------------ * Instagram for Android 10.1.0 (http://www.techspot.com/downloads/5762-instagram-for-android.html) * Mozilla Thunderbird 45.5.1 (http://www.techspot.com/downloads/232-mozilla-thunderbird.html) * K-Lite Mega Codec Pack 12.6.5 (http://www.techspot.com/downloads/615-klite-mega-codec-pack.html) * TunnelBear 3.0.29 (http://www.techspot.com/downloads/6558-tunnelbear.html) * Total Commander 9.0a RC1 (http://www.techspot.com/downloads/3594-total-commander-beta.html) * Samsung Kies 3.2.16044.2 (http://www.techspot.com/downloads/5293-samsung-kies.html) * PartitionGuru Free 4.9.2 (http://www.techspot.com/downloads/6584-partitionguru.html) * Google Chrome 55.0.2883.75 (http://www.techspot.com/downloads/4718-google-chrome-for-windows.html) ** Drivers ------------------------------------------------------------ * Realtek HD Audio Codec Driver 2.80 for Windows Vista/7/8/10 (http://www.techspot.com/drivers/driver/file/information/17056/) 2016-12-02 11:06:16 * HP Linux Imaging and Printing 3.16.11 (http://www.techspot.com/drivers/driver/file/information/16443/) 2016-11-30 11:40:26 * Amazon Kindle Paperwhite Firmware 5.8.7 (http://www.techspot.com/drivers/driver/file/information/16963/) 2016-12-02 11:13:19 * Amazon Kindle 7th Generation Firmware 5.8.7 (http://www.techspot.com/drivers/driver/file/information/17587/) 2016-12-02 11:10:20 * Amazon Kindle Voyage 7th Generation Firmware 5.8.7 (http://www.techspot.com/drivers/driver/file/information/17746/) 2016-12-02 11:11:49 ** Hot discussion ------------------------------------------------------------ General Discussion (http://www.techspot.com/community/forums/general-discussion.6/'>http://www.techspot.com/community/forums/general-discussion.6/'>http://www.techspot.com/community/forums/general-discussion.6/) What tech gifts do you plan on buying this Christmas? (http://www.techspot.com/community/topics/what-tech-gifts-do-you-plan-on-buying-this-christmas.231463/) General Discussion (http://www.techspot.com/community/forums/general-discussion.6/) What was your favorite tech gadget as a kid? (http://www.techspot.com/community/topics/what-was-your-favorite-tech-gadget-as-a-kid.223922/) General Discussion (http://www.techspot.com/community/forums/general-discussion.6/) The biggest game-changing PC upgrade of all-time? (http://www.techspot.com/community/topics/the-biggest-game-changing-pc-upgrade-of-all-time.228749/) ** Follow TechSpot ------------------------------------------------------------ TechSpot: http://www.facebook.com/techspot/ http://twitter.com/techspot/ http://www.techspot.com/feeds/ https://plus.google.com/+techspot https://www.instagram.com/thisistechspot/ http://steamcommunity.com/groups/techspot/ https://flipboard.com/ ( -at -) tech_spot https://www.youtube.com/user/techspotdotcom Feeds: News (http://www.techspot.com/backend.xml) , Reviews & Features (http://www.techspot.com/reviews.xml) , Downloads (http://www.techspot.com/downloads.xml) , Drivers (http://www.techspot.com/drivers.xml) -
Dear Editors, we just posted a new article which might be interesting to your readers. A post in your news section would be appreciated. Title: ASUS GTX 1050 Ti STRIX OC 4 GB Link: http://www.techpowerup.com/reviews/ASUS/GTX_1050_Ti_Strix_OC Brief: The ASUS GTX 1050 Ti STRIX OC is the highest clocked GTX 1050 Ti on the market, with a fantastic cooler that is not only nearly inaudible with outstanding temperatures, it also stops completely during desktop work. ASUS has also included a metal backplate with their card.
-
openSUSE Security Update: Security update for java-1_8_0-openjdk ______________________________________________________________________________ Announcement ID: openSUSE-SU-2016:2985-1 Rating: important References: #1005522 #1005523 #1005524 #1005525 #1005526 #1005527 #1005528 #988651 Cross-References: CVE-2016-5542 CVE-2016-5554 CVE-2016-5556 CVE-2016-5568 CVE-2016-5573 CVE-2016-5582 CVE-2016-5597 Affected Products: openSUSE Leap 42.2 openSUSE Leap 42.1 ______________________________________________________________________________ An update that solves 7 vulnerabilities and has one errata is now available. Description: OpenJDK Java was updated to jdk8u111 (icedtea 3.2.0) to fix the following issues: * Security fixes + S8146490: Direct indirect CRL checks + S8151921: Improved page resolution + S8155968: Update command line options + S8155973, CVE-2016-5542: Tighten jar checks (bsc#1005522) + S8156794: Extend data sharing + S8157176: Improved classfile parsing + S8157739, CVE-2016-5554: Classloader Consistency Checking (bsc#1005523) + S8157749: Improve handling of DNS error replies + S8157753: Audio replay enhancement + S8157759: LCMS Transform Sampling Enhancement + S8157764: Better handling of interpolation plugins + S8158302: Handle contextual glyph substitutions + S8158993, CVE-2016-5568: Service Menu services (bsc#1005525) + S8159495: Fix index offsets + S8159503: Amend Annotation Actions + S8159511: Stack map validation + S8159515: Improve indy validation + S8159519, CVE-2016-5573: Reformat JDWP messages (bsc#1005526) + S8160090: Better signature handling in pack200 + S8160094: Improve pack200 layout + S8160098: Clean up color profiles + S8160591, CVE-2016-5582: Improve internal array handling (bsc#1005527) + S8160838, CVE-2016-5597: Better HTTP service (bsc#1005528) + PR3206, RH1367357: lcms2: Out-of-bounds read in Type_MLU_Read() + CVE-2016-5556 (bsc#1005524) * New features + PR1370: Provide option to build without debugging + PR1375: Provide option to strip and link debugging info after build + PR1537: Handle alternative Kerberos credential cache locations + PR1978: Allow use of system PCSC + PR2445: Support system libsctp + PR3182: Support building without pre-compiled headers + PR3183: Support Fedora/RHEL system crypto policy + PR3221: Use pkgconfig to detect Kerberos CFLAGS and libraries * Import of OpenJDK 8 u102 build 14 + S4515292: ReferenceType.isStatic() returns true for arrays + S4858370: JDWP: Memory Leak: GlobalRefs never deleted when processing invokeMethod command + S6976636: JVM/TI test ex03t001 fails assertion + S7185591: jcmd-big-script.sh ERROR: could not find app's Java pid. + S8017462: G1: guarantee fails with UseDynamicNumberOfGCThreads + S8034168: ThreadMXBean/Locks.java failed, blocked on wrong object + S8036006: [TESTBUG] sun/tools/native2ascii/NativeErrors.java fails: Process exit code was 0, but error was expected. + S8041781: Need new regression tests for PBE keys + S8041787: Need new regressions tests for buffer handling for PBE algorithms + S8043836: Need new tests for AES cipher + S8044199: Tests for RSA keys and key specifications + S8044772: TempDirTest.java still times out with -Xcomp + S8046339: sun.rmi.transport.DGCAckHandler leaks memory + S8047031: Add SocketPermission tests for legacy socket types + S8048052: Permission tests for setFactory + S8048138: Tests for JAAS callbacks + S8048147: Privilege tests with JAAS Subject.doAs + S8048356: SecureRandom default provider tests + S8048357: PKCS basic tests + S8048360: Test signed jar files + S8048362: Tests for doPrivileged with accomplice + S8048596: Tests for AEAD ciphers + S8048599: Tests for key wrap and unwrap operations + S8048603: Additional tests for MAC algorithms + S8048604: Tests for strong crypto ciphers + S8048607: Test key generation of DES and DESEDE + S8048610: Implement regression test for bug fix of 4686632 in JCE + S8048617: Tests for PKCS12 read operations + S8048618: Tests for PKCS12 write operations. + S8048619: Implement tests for converting PKCS12 keystores + S8048624: Tests for SealedObject + S8048819: Implement reliability test for DH algorithm + S8048820: Implement tests for SecretKeyFactory + S8048830: Implement tests for new functionality provided in JEP 166 + S8049237: Need new tests for X509V3 certificates + S8049321: Support SHA256WithDSA in JSSE + S8049429: Tests for java client server communications with various TLS/SSL combinations. + S8049432: New tests for TLS property jdk.tls.client.protocols + S8049814: Additional SASL client-server tests + S8050281: New permission tests for JEP 140 + S8050370: Need new regressions tests for messageDigest with DigestIOStream + S8050371: More MessageDigest tests + S8050374: More Signature tests + S8050427: LoginContext tests to cover JDK-4703361 + S8050460: JAAS login/logout tests with LoginContext + S8050461: Tests for syntax checking of JAAS configuration file + S8054278: Refactor jps utility tests + S8055530: assert(_exits.control()->is_top() || !_gvn.type(ret_phi)->empty()) failed: return value must be well defined + S8055844: [TESTBUG] test/runtime/NMT/VirtualAllocCommitUncommitRecommit.java fails on Solaris Sparc due to incorrect page size being used + S8059677: Thread.getName() instantiates Strings + S8061464: A typo in CipherTestUtils test + S8062536: [TESTBUG] Conflicting GC combinations in jdk tests + S8065076: java/net/SocketPermission/SocketPermissionTest.java fails intermittently + S8065078: NetworkInterface.getNetworkInterfaces() triggers intermittent test failures + S8066871: java.lang.VerifyError: Bad local variable type - local final String + S8068427: Hashtable deserialization reconstitutes table with wrong capacity + S8069038: javax/net/ssl/TLS/TLSClientPropertyTest.java needs to be updated for JDK-8061210 + S8069253: javax/net/ssl/TLS/TestJSSE.java failed on Mac + S8071125: Improve exception messages in URLPermission + S8072081: Supplementary characters are rejected in comments + S8072463: Remove requirement that AKID and SKID have to match when building certificate chain + S8072725: Provide more granular levels for GC verification + S8073400: Some Monospaced logical fonts have a different width + S8073872: Schemagen fails with StackOverflowError if element references containing class + S8074931: Additional tests for CertPath API + S8075286: Additional tests for signature algorithm OIDs and transformation string + S8076486: [TESTBUG] javax/security/auth/Subject/doAs/NestedActions.java fails if extra VM options are given + S8076545: Text size is twice bigger under Windows L&F on Win 8.1 with HiDPI display + S8076995: gc/ergonomics/TestDynamicNumberOfGCThreads.java failed with java.lang.muntimeException: 'new_active_workers' missing from stdout/stderr + S8079138: Additional negative tests for XML signature processing + S8081512: Remove sun.invoke.anon classes, or move / co-locate them with tests + S8081771: ProcessTool.createJavaProcessBuilder() needs new addTestVmAndJavaOptions argument + S8129419: heapDumper.cpp: assert(length_in_bytes > 0) failed: nothing to copy + S8130150: Implement BigInteger.montgomeryMultiply intrinsic + S8130242: DataFlavorComparator transitivity exception + S8130304: Inference: NodeNotFoundException thrown with deep generic method call chain + S8130425: libjvm crash due to stack overflow in executables with 32k tbss/tdata + S8133023: ParallelGCThreads is not calculated correctly + S8134111: Unmarshaller unmarshalls XML element which doesn't have the expected namespace + S8135259: InetAddress.getAllByName only reports "unknown error" instead of actual cause + S8136506: Include sun.arch.data.model as a property that can be queried by jtreg + S8137068: Tests added in JDK-8048604 fail to compile + S8139040: Fix initializations before ShouldNotReachHere() etc. and enable -Wuninitialized on linux. + S8139581: AWT components are not drawn after removal and addition to a container + S8141243: Unexpected timezone returned after parsing a date + S8141420: Compiler runtime entries don't hold Klass* from being GCed + S8141445: Use of Solaris/SPARC M7 libadimalloc.so can generate unknown signal in hs_err file + S8141551: C2 can not handle returns with inccompatible interface arrays + S8143377: Test PKCS8Test.java fails + S8143647: Javac compiles method reference that allows results in an IllegalAccessError + S8144144: ORB destroy() leaks filedescriptors after unsuccessful connection + S8144593: Suppress not recognized property/feature warning messages from SAXParser + S8144957: Remove PICL warning message + S8145039: JAXB marshaller fails with ClassCastException on classes generated by xjc + S8145228: Java Access Bridge, getAccessibleStatesStringFromContext doesn't wrap the call to getAccessibleRole + S8145388: URLConnection.guessContentTypeFromStream returns image/jpg for some JPEG images + S8145974: XMLStreamWriter produces invalid XML for surrogate pairs on OutputStreamWriter + S8146035: Windows - With LCD antialiasing, some glyphs are not rendered correctly + S8146192: Add test for JDK-8049321 + S8146274: Thread spinning on WeakHashMap.getEntry() with concurrent use of nashorn + S8147468: Allow users to bound the size of buffers cached in the per-thread buffer caches + S8147645: get_ctrl_no_update() code is wrong + S8147807: crash in libkcms.so on linux-sparc + S8148379: jdk.nashorn.api.scripting spec. adjustments, clarifications + S8148627: RestrictTestMaxCachedBufferSize.java to 64-bit platforms + S8148820: Missing ( -at -) since Javadoc tag in Logger.log(Level, Supplier) + S8148926: Call site profiling fails on braces-wrapped anonymous function + S8149017: Delayed provider selection broken in RSA client key exchange + S8149029: Secure validation of XML based digital signature always enabled when checking wrapping attacks + S8149330: Capacity of StringBuilder should not get close to Integer.MAX_VALUE unless necessary + S8149334: JSON.parse(JSON.stringify([])).push(10) creates an array containing two elements + S8149368: [hidpi] JLabel font is twice bigger than JTextArea font on Windows 7,HiDPI, Windows L&F + S8149411: PKCS12KeyStore cannot extract AES Secret Keys + S8149417: Use final restricted flag + S8149450: LdapCtx.processReturnCode() throwing Null Pointer Exception + S8149453: [hidpi] JFileChooser does not scale properly on Windows with HiDPI display and Windows L&F + S8149543: range check CastII nodes should not be split through Phi + S8149743: JVM crash after debugger hotswap with lambdas + S8149744: fix testng.jar delivery in Nashorn build.xml + S8149915: enabling validate-annotations feature for xsd schema with annotation causes NPE + S8150002: Check for the validity of oop before printing it in verify_remembered_set + S8150470: JCK: api/xsl/conf/copy/copy19 test failure + S8150518: G1 GC crashes at G1CollectedHeap::do_collection_pause_at_safepoint(double) + S8150533: Test java/util/logging/LogManagerAppContextDeadlock.java times out intermittently. + S8150704: XALAN: ERROR: 'No more DTM IDs are available' when transforming with lots of temporary result trees + S8150780: Repeated offer and remove on ConcurrentLinkedQueue lead to an OutOfMemoryError + S8151064: com/sun/jdi/RedefineAddPrivateMethod.sh fails intermittently + S8151197: [TEST_BUG] Need to backport fix for test/javax/net/ssl/TLS/TestJSSE.java + S8151352: jdk/test/sample fails with "effective library path is outside the test suite" + S8151431: DateFormatSymbols triggers this.clone() in the constructor + S8151535: TESTBUG: java/lang/invoke/AccessControlTest.java should be modified to run with JTREG 4.1 b13 + S8151731: Add new jtreg keywords to jdk 8 + S8151998: VS2010 ThemeReader.cpp(758) : error C3861: 'round': identifier not found + S8152927: Incorrect GPL header in StubFactoryDynamicBase.java reported + S8153252: SA: Hotspot build on Windows fails if make/closed folder does not exist + S8153531: Improve exception messaging for RSAClientKeyExchange + S8153641: assert(thread_state == _thread_in_native) failed: Assumed thread_in_native while heap dump + S8153673: [bACKOUT] JDWP: Memory Leak: GlobalRefs never deleted when processing invokeMethod command + S8154304: NullpointerException at LdapReferralException.getReferralContext + S8154722: Test gc/ergonomics/TestDynamicNumberOfGCThreads.java fails + S8157078: 8u102 L10n resource file updates + S8157838: Personalized Windows Font Size is not taken into account in Java8u102 * Import of OpenJDK 8 u111 build 14 + S6882559: new JEditorPane("text/plain","") fails for null context class loader + S8049171: Additional tests for jarsigner's warnings + S8063086: Math.pow yields different results upon repeated calls + S8140530: Creating a VolatileImage with size 0,0 results in no longer working g2d.drawString + S8142926: OutputAnalyzer's shouldXXX() calls return this + S8147077: IllegalArgumentException thrown by api/java_awt/Component/FlipBufferStrategy/indexTGF_General + S8148127: IllegalArgumentException thrown by JCK test api/java_awt/Component/FlipBufferStrategy/indexTGF_General in opengl pipeline + S8150611: Security problem on sun.misc.resources.Messages* + S8153399: Constrain AppCDS behavior (back port) + S8157653: [Parfait] Uninitialised variable in awt_Font.cpp + S8158734: JEditorPane.createEditorKitForContentType throws NPE after 6882559 + S8158994: Service Menu services + S8159684: (tz) Support tzdata2016f + S8160904: Typo in code from 8079718 fix : enableCustomValueHanlde + S8160934: isnan() is not available on older MSVC compilers + S8161141: correct bugId for JDK-8158994 fix push + S8162411: Service Menu services 2 + S8162419: closed/com/oracle/jfr/runtime/TestVMInfoEvent.sh failing after JDK-8155968 + S8162511: 8u111 L10n resource file updates + S8162792: Remove constraint DSA keySize < 1024 from jdk.jar.disabledAlgorithms in jdk8 + S8164452: 8u111 L10n resource file update - msgdrop 20 + S8165816: jarsigner -verify shows jar unsigned if it was signed with a weak algorithm + S8166381: Back out changes to the java.security file to not disable MD5 * Backports + S8078628, PR3208: Zero build fails with pre-compiled headers disabled + S8141491, PR3159, G592292: Unaligned memory access in Bits.c + S8157306, PR3121: Random infrequent null pointer exceptions in javac (enabled on AArch64 only) + S8162384, PR3122: Performance regression: bimorphic inlining may be bypassed by type speculation * Bug fixes + PR3123: Some object files built without -fPIC on x86 only + PR3126: pax-mark-vm script calls "exit -1" which is invalid in dash + PR3127, G590348: Only apply PaX markings by default on running PaX kernels + PR3199: Invalid nashorn URL + PR3201: Update infinality configure test + PR3218: PR3159 leads to build failure on clean tree * AArch64 port + S8131779, PR3220: AARCH64: add Montgomery multiply intrinsic + S8167200, PR3220: AArch64: Broken stack pointer adjustment in interpreter + S8167421, PR3220: AArch64: in one core system, fatal error: Illegal threadstate encountered + S8167595, PR3220: AArch64: SEGV in stub code cipherBlockChaining_decryptAESCrypt + S8168888, PR3220: Port 8160591: Improve internal array handling to AArch64. * Shenandoah + PR3224: Shenandoah broken when building without pre-compiled headers - Build against system kerberos - Build against system pcsc and sctp - S8158260, PR2991, RH1341258: PPC64: unaligned Unsafe.getInt can lead to the generation of illegal instructions (bsc#988651) This update was imported from the SUSE:SLE-12-SP1:Update update project. Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.2: zypper in -t patch openSUSE-2016-1380=1 - openSUSE Leap 42.1: zypper in -t patch openSUSE-2016-1380=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE Leap 42.2 (i586 x86_64): java-1_8_0-openjdk-1.8.0.111-3.1 java-1_8_0-openjdk-accessibility-1.8.0.111-3.1 java-1_8_0-openjdk-debuginfo-1.8.0.111-3.1 java-1_8_0-openjdk-debugsource-1.8.0.111-3.1 java-1_8_0-openjdk-demo-1.8.0.111-3.1 java-1_8_0-openjdk-demo-debuginfo-1.8.0.111-3.1 java-1_8_0-openjdk-devel-1.8.0.111-3.1 java-1_8_0-openjdk-devel-debuginfo-1.8.0.111-3.1 java-1_8_0-openjdk-headless-1.8.0.111-3.1 java-1_8_0-openjdk-headless-debuginfo-1.8.0.111-3.1 java-1_8_0-openjdk-src-1.8.0.111-3.1 - openSUSE Leap 42.2 (noarch): java-1_8_0-openjdk-javadoc-1.8.0.111-3.1 - openSUSE Leap 42.1 (i586 x86_64): java-1_8_0-openjdk-1.8.0.111-18.1 java-1_8_0-openjdk-accessibility-1.8.0.111-18.1 java-1_8_0-openjdk-debuginfo-1.8.0.111-18.1 java-1_8_0-openjdk-debugsource-1.8.0.111-18.1 java-1_8_0-openjdk-demo-1.8.0.111-18.1 java-1_8_0-openjdk-demo-debuginfo-1.8.0.111-18.1 java-1_8_0-openjdk-devel-1.8.0.111-18.1 java-1_8_0-openjdk-devel-debuginfo-1.8.0.111-18.1 java-1_8_0-openjdk-headless-1.8.0.111-18.1 java-1_8_0-openjdk-headless-debuginfo-1.8.0.111-18.1 java-1_8_0-openjdk-src-1.8.0.111-18.1 - openSUSE Leap 42.1 (noarch): java-1_8_0-openjdk-javadoc-1.8.0.111-18.1 References: https://www.suse.com/security/cve/CVE-2016-5542.html https://www.suse.com/security/cve/CVE-2016-5554.html https://www.suse.com/security/cve/CVE-2016-5556.html https://www.suse.com/security/cve/CVE-2016-5568.html https://www.suse.com/security/cve/CVE-2016-5573.html https://www.suse.com/security/cve/CVE-2016-5582.html https://www.suse.com/security/cve/CVE-2016-5597.html https://bugzilla.suse.com/1005522 https://bugzilla.suse.com/1005523 https://bugzilla.suse.com/1005524 https://bugzilla.suse.com/1005525 https://bugzilla.suse.com/1005526 https://bugzilla.suse.com/1005527 https://bugzilla.suse.com/1005528 https://bugzilla.suse.com/988651 -- To unsubscribe, e-mail: opensuse-security-announce+unsubscribe ( -at -) opensuse.org For additional commands, e-mail: opensuse-security-announce+help ( -at -) opensuse.org
-
View this email in your browser (http://us3.campaign-archive2.com/?u=efc4c507c2cf964fc2462caca&id=dde6367418&e=0c004f9c13) Today we are going to take a look at Gigabyte’s Z170X-Designare motherboard, one of the company's more recent Socket 1151-based boards for Intel's 6th Generation Skylake-based processors. At first glance this is an unassuming board, at least in terms of its appearance. It features a dark and subdued black PCB with chrome highlights and nothing overly dramatic or gaudy. Yet for the sub-$250 price tag, this motherboard is loaded up with a strong array of cutting edge technologies... Gigabyte Z170X-Designare Motherboard Review: Affordable, High-Tech, Great Peformance (http://hothardware.us3.list-manage.com/track/click?u=efc4c507c2cf964fc2462caca&id=737ea7a3a4&e=0c004f9c13) http://hothardware.us3.list-manage1.com/track/click?u=efc4c507c2cf964fc2462caca&id=da790c1d50&e=0c004f9c13 http://hothardware.us3.list-manage2.com/track/click?u=efc4c507c2cf964fc2462caca&id=d3af26dae7&e=0c004f9c13 Best Regards, HotHardware.com (http://hothardware.us3.list-manage.com/track/click?u=efc4c507c2cf964fc2462caca&id=9d91c5770a&e=0c004f9c13) http://hothardware.us3.list-manage2.com/track/click?u=efc4c507c2cf964fc2462caca&id=c749580008&e=0c004f9c13 http://hothardware.us3.list-manage.com/track/click?u=efc4c507c2cf964fc2462caca&id=574b0d4b3d&e=0c004f9c13 http://hothardware.us3.list-manage.com/track/click?u=efc4c507c2cf964fc2462caca&id=df30896a50&e=0c004f9c13 ============================================================
-
SUSE Security Update: Security update for the Linux Kernel ______________________________________________________________________________ Announcement ID: SUSE-SU-2016:2976-1 Rating: important References: #1000189 #1001419 #1002165 #1003077 #1003344 #1003568 #1003677 #1003866 #1003925 #1004517 #1004520 #1005857 #1005896 #1005903 #1006917 #1006919 #1007944 #763198 #771065 #799133 #803320 #839104 #843236 #860441 #863873 #865783 #871728 #907611 #908458 #908684 #909077 #909350 #909484 #909618 #909994 #911687 #915183 #920016 #922634 #922947 #928138 #929141 #934760 #951392 #956514 #960689 #963655 #967716 #968010 #968014 #971975 #971989 #973203 #974620 #976867 #977687 #979514 #979595 #979681 #980371 #982218 #982783 #983535 #983619 #984102 #984194 #984992 #985206 #986337 #986362 #986365 #986445 #987565 #988440 #989152 #989261 #989764 #989779 #991608 #991665 #991923 #992566 #993127 #993890 #993891 #994296 #994436 #994618 #994759 #994926 #995968 #996329 #996664 #997708 #998399 #998689 #999584 #999600 #999907 #999932 Cross-References: CVE-2013-4312 CVE-2015-7513 CVE-2015-8956 CVE-2016-0823 CVE-2016-3841 CVE-2016-4998 CVE-2016-5696 CVE-2016-6480 CVE-2016-6828 CVE-2016-7042 CVE-2016-7097 CVE-2016-7117 CVE-2016-7425 Affected Products: SUSE Linux Enterprise Software Development Kit 11-SP4 SUSE Linux Enterprise Server 11-SP4 SUSE Linux Enterprise Server 11-EXTRA SUSE Linux Enterprise Debuginfo 11-SP4 ______________________________________________________________________________ An update that solves 13 vulnerabilities and has 87 fixes is now available. Description: The SUSE Linux Enterprise 11 SP4 kernel was updated to receive various security and bugfixes. For the PowerPC64 a new "bigmem" flavor has been added to support big Power machines. (FATE#319026) The following security bugs were fixed: - CVE-2016-7042: The proc_keys_show function in security/keys/proc.c in the Linux kernel, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allowed local users to cause a denial of service (stack memory corruption and panic) by reading the /proc/keys file (bnc#1004517). - CVE-2016-7097: The filesystem implementation in the Linux kernel preserves the setgid bit during a setxattr call, which allowed local users to gain group privileges by leveraging the existence of a setgid program with restrictions on execute permissions (bnc#995968). - CVE-2015-8956: The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel allowed local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) via vectors involving a bind system call on a Bluetooth RFCOMM socket (bnc#1003925). - CVE-2016-7117: Use-after-free vulnerability in the __sys_recvmmsg function in net/socket.c in the Linux kernel allowed remote attackers to execute arbitrary code via vectors involving a recvmmsg system call that is mishandled during error processing (bnc#1003077). - CVE-2016-0823: The pagemap_open function in fs/proc/task_mmu.c in the Linux kernel allowed local users to obtain sensitive physical-address information by reading a pagemap file, aka Android internal bug 25739721 (bnc#994759). - CVE-2016-7425: The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel did not restrict a certain length field, which allowed local users to gain privileges or cause a denial of service (heap-based buffer overflow) via an ARCMSR_MESSAGE_WRITE_WQBUFFER control code (bnc#999932). - CVE-2016-3841: The IPv6 stack in the Linux kernel mishandled options data, which allowed local users to gain privileges or cause a denial of service (use-after-free and system crash) via a crafted sendmsg system call (bnc#992566). - CVE-2016-6828: The tcp_check_send_head function in include/net/tcp.h in the Linux kernel did not properly maintain certain SACK state after a failed data copy, which allowed local users to cause a denial of service (tcp_xmit_retransmit_queue use-after-free and system crash) via a crafted SACK option (bnc#994296). - CVE-2016-5696: net/ipv4/tcp_input.c in the Linux kernel did not properly determine the rate of challenge ACK segments, which made it easier for remote attackers to hijack TCP sessions via a blind in-window attack (bnc#989152). - CVE-2016-6480: Race condition in the ioctl_send_fib function in drivers/scsi/aacraid/commctrl.c in the Linux kernel allowed local users to cause a denial of service (out-of-bounds access or system crash) by changing a certain size value, aka a "double fetch" vulnerability (bnc#991608). - CVE-2016-4998: The IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel allowed local users to cause a denial of service (out-of-bounds read) or possibly obtain sensitive information from kernel heap memory by leveraging in-container root access to provide a crafted offset value that leads to crossing a ruleset blob boundary (bnc#986365). - CVE-2015-7513: arch/x86/kvm/x86.c in the Linux kernel did not reset the PIT counter values during state restoration, which allowed guest OS users to cause a denial of service (divide-by-zero error and host OS crash) via a zero value, related to the kvm_vm_ioctl_set_pit and kvm_vm_ioctl_set_pit2 functions (bnc#960689). - CVE-2013-4312: The Linux kernel allowed local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by sending each descriptor over a UNIX socket before closing it, related to net/unix/af_unix.c and net/unix/garbage.c (bnc#839104 bsc#922947 bsc#968014). The following non-security bugs were fixed: - ahci: Order SATA device IDs for codename Lewisburg (fate#319286). - ahci: Remove obsolete Intel Lewisburg SATA RAID device IDs (fate#319286). - alsa: hda - Add Intel Lewisburg device IDs Audio (fate#319286). - arch/powerpc: Remove duplicate/redundant Altivec entries (bsc#967716). - avoid dentry crash triggered by NFS (bsc#984194). - bigmem: Add switch to configure bigmem patches (bsc#928138,fate#319026). - blktap2: eliminate deadlock potential from shutdown path (bsc#909994). - blktap2: eliminate race from deferred work queue handling (bsc#911687). - bnx2x: fix lockdep splat (bsc#908684 FATE#317539). - bonding: always set recv_probe to bond_arp_rcv in arp monitor (bsc#977687). - bonding: fix bond_arp_rcv setting and arp validate desync state (bsc#977687). - btrfs: account for non-CoW'd blocks in btrfs_abort_transaction (bsc#983619). - btrfs: ensure that file descriptor used with subvol ioctls is a dir (bsc#999600). - cdc-acm: added sanity checking for probe() (bsc#993891). - config.conf: add bigmem flavour on ppc64 - cpumask, nodemask: implement cpumask/nodemask_pr_args() (bnc1003866). - cxgb4: Set VPD size so we can read both VPD structures (bsc#976867). - dm space map metadata: fix sm_bootstrap_get_nr_blocks() (FATE#313903). - dm thin: fix race condition when destroying thin pool workqueue (FATE#313903). - drivers: hv: vmbus: avoid scheduling in interrupt context in vmbus_initiate_unload() (bnc#986337). - drivers: hv: vmbus: avoid wait_for_completion() on crash (bnc#986337). - drivers: hv: vmbus: do not loose HVMSG_TIMER_EXPIRED messages (bnc#986337). - drivers: hv: vmbus: do not send CHANNELMSG_UNLOAD on pre-Win2012R2 hosts (bnc#986337). - drivers: hv: vmbus: handle various crash scenarios (bnc#986337). - drivers: hv: vmbus: remove code duplication in message handling (bnc#986337). - drivers: hv: vss: run only on supported host versions (bnc#986337). - fs/cifs: cifs_get_root shouldn't use path with tree name (bsc#963655, bsc#979681). - fs/cifs: Compare prepaths when comparing superblocks (bsc#799133). - fs/cifs: Fix memory leaks in cifs_do_mount() (bsc#799133). - fs/cifs: Fix regression which breaks DFS mounting (bsc#799133). - fs/cifs: fix wrongly prefixed path to root (bsc#963655, bsc#979681) - fs/cifs: make share unaccessible at root level mountable (bsc#799133). - fs/cifs: Move check for prefix path to within cifs_get_root() (bsc#799133). - fs/select: add vmalloc fallback for select(2) (bsc#1000189). - hv: do not lose pending heartbeat vmbus packets (bnc#1006919). - i2c: i801: add Intel Lewisburg device IDs (fate#319286). - i40e: fix an uninitialized variable bug (bsc#909484 FATE#317397). - include/linux/mmdebug.h: should include linux/bug.h (bnc#971975 VM performance -- git fixes). - increase CONFIG_NR_IRQS 512 -> 2048 reportedly irq error with multiple nvme and tg3 in the same machine is resolved by increasing CONFIG_NR_IRQS (bsc#998399) - introduce SIZE_MAX (bsc#1000189). - ipv6: replacing a rt6_info needs to purge possible propagated rt6_infos too (bsc#865783). - kabi: Import kabi files from 3.0.101-80 - kabi-fix for flock_owner addition (bsc#998689). - kabi, unix: properly account for FDs passed over unix sockets (bnc#839104). - kaweth: fix firmware download (bsc#993890). - kaweth: fix oops upon failed memory allocation (bsc#993890). - kvm: x86: only channel 0 of the i8254 is linked to the HPET (bsc#960689). - kvm: x86: SYSENTER emulation is broken (bsc#994618). - libata: support the ata host which implements a queue depth less than 32 (bsc#871728) - libfc: sanity check cpu number extracted from xid (bsc#988440). - lib/vsprintf: implement bitmap printing through '%*pb[l]' (bnc#1003866). - lpfc: call lpfc_sli_validate_fcp_iocb() with the hbalock held (bsc#951392). - bigmem: make bigmem patches configurable (bsc#928138,fate#319026). - md: check command validity early in md_ioctl() (bsc#1004520). - md: Drop sending a change uevent when stopping (bsc#1003568). - md: fix problem when adding device to read-only array with bitmap (bnc#771065). - md: lockless I/O submission for RAID1 (bsc#982783). - md/raid10: always set reshape_safe when initializing reshape_position (fate#311379). - md/raid10: Fix memory leak when raid10 reshape completes (fate#311379). - mm: fix sleeping function warning from __put_anon_vma (bnc#1005857). - mm/memory.c: actually remap enough memory (bnc#1005903). - mm: thp: fix SMP race condition between THP page fault and MADV_DONTNEED (VM Functionality, bnc#986445). - mm, vmscan: Do not wait for page writeback for GFP_NOFS allocations (bnc#763198). - Move patches that create ppc64-bigmem to the powerpc section. Add comments that outline the procedure and warn the unsuspecting. - move the call of __d_drop(anon) into __d_materialise_unique(dentry, anon) (bsc#984194). - mpt2sas, mpt3sas: Fix panic when aer correct error occurred (bsc#997708). - mshyperv: fix recognition of Hyper-V guest crash MSR's (bnc#986337). - net: add pfmemalloc check in sk_add_backlog() (bnc#920016). - netback: fix flipping mode (bsc#996664). - netfilter: ipv4: defrag: set local_df flag on defragmented skb (bsc#907611). - netvsc: fix incorrect receive checksum offloading (bnc#1006917). - nfs4: reset states to use open_stateid when returning delegation voluntarily (bsc#1007944). - nfs: Do not disconnect open-owner on NFS4ERR_BAD_SEQID (bsc#989261). - nfs: Do not drop directory dentry which is in use (bsc#993127). - nfs: Do not write enable new pages while an invalidation is proceeding (bsc#999584). - nfs: Fix an LOCK/OPEN race when unlinking an open file (bsc#956514). - nfs: Fix a regression in the read() syscall (bsc#999584). - nfs: Fix races in nfs_revalidate_mapping (bsc#999584). - nfs: fix the handling of NFS_INO_INVALID_DATA flag in nfs_revalidate_mapping (bsc#999584). - nfs: Fix writeback performance issue on cache invalidation (bsc#999584). - nfs: Refresh open-owner id when server says SEQID is bad (bsc#989261). - nfsv4.1: Fix an NFSv4.1 state renewal regression (bnc#863873). - nfsv4: add flock_owner to open context (bnc#998689). - nfsv4: change nfs4_do_setattr to take an open_context instead of a nfs4_state (bnc#998689). - nfsv4: change nfs4_select_rw_stateid to take a lock_context inplace of lock_owner (bnc#998689). - nfsv4: do not check MAY_WRITE access bit in OPEN (bsc#985206). - nfsv4: enhance nfs4_copy_lock_stateid to use a flock stateid if there is one (bnc#998689). - nfsv4: fix broken patch relating to v4 read delegations (bsc#956514, bsc#989261, bsc#979595). - nfsv4: Fix range checking in __nfs4_get_acl_uncached and __nfs4_proc_set_acl (bsc#982218). - oom: print nodemask in the oom report (bnc#1003866). - pci: Add pci_set_vpd_size() to set VPD size (bsc#976867). - pciback: fix conf_space read/write overlap check. - pciback: return proper values during BAR sizing. - pci_ids: Add PCI device ID functions 3 and 4 for newer F15h models (fate#321400). - pm / hibernate: Fix rtree_next_node() to avoid walking off list ends (bnc#860441). - powerpc/64: Fix incorrect return value from __copy_tofrom_user (bsc#1005896). - powerpc: Add ability to build little endian kernels (bsc#967716). - powerpc: add kernel parameter iommu_alloc_quiet (bsc#994926). - powerpc: Avoid load of static chain register when calling nested functions through a pointer on 64bit (bsc#967716). - powerpc: blacklist fixes for unsupported subarchitectures ppc32 only: 6e0fdf9af216 powerpc: fix typo 'CONFIG_PMAC' obscure hardware: f7e9e3583625 powerpc: Fix missing L2 cache size in /sys/devices/system/cpu - powerpc: Build fix for powerpc KVM (bsc#928138,fate#319026). - powerpc: Do not build assembly files with ABIv2 (bsc#967716). - powerpc: Do not use ELFv2 ABI to build the kernel (bsc#967716). - powerpc: dtc is required to build dtb files (bsc#967716). - powerpc: Fix 64 bit builds with binutils 2.24 (bsc#967716). - powerpc: Fix error when cross building TAGS & cscope (bsc#967716). - powerpc: Make the vdso32 also build big-endian (bsc#967716). - powerpc: Make VSID_BITS* dependency explicit (bsc#928138,fate#319026). - powerpc/mm: Add 64TB support (bsc#928138,fate#319026). - powerpc/mm: Change the swap encoding in pte (bsc#973203). - powerpc/mm: Convert virtual address to vpn (bsc#928138,fate#319026). - powerpc/mm: Fix hash computation function (bsc#928138,fate#319026). - powerpc/mm: Increase the slice range to 64TB (bsc#928138,fate#319026). - powerpc/mm: Make KERN_VIRT_SIZE not dependend on PGTABLE_RANGE (bsc#928138,fate#319026). - powerpc/mm: Make some of the PGTABLE_RANGE dependency explicit (bsc#928138,fate#319026). - powerpc/mm: Replace open coded CONTEXT_BITS value (bsc#928138,fate#319026). - powerpc/mm: Simplify hpte_decode (bsc#928138,fate#319026). - powerpc/mm: Update VSID allocation documentation (bsc#928138,fate#319026). - powerpc/mm: Use 32bit array for slb cache (bsc#928138,fate#319026). - powerpc/mm: Use hpt_va to compute virtual address (bsc#928138,fate#319026). - powerpc/mm: Use the required number of VSID bits in slbmte (bsc#928138,fate#319026). - powerpc: Move kdump default base address to half RMO size on 64bit (bsc#1003344). - powerpc: Remove altivec fix for gcc versions before 4.0 (bsc#967716). - powerpc: Remove buggy 9-year-old test for binutils < 2.12.1 (bsc#967716). - powerpc: Rename USER_ESID_BITS* to ESID_BITS* (bsc#928138,fate#319026). - powerpc: Require gcc 4.0 on 64-bit (bsc#967716). - powerpc: Update kernel VSID range (bsc#928138,fate#319026). - ppp: defer netns reference release for ppp channel (bsc#980371). - qlcnic: fix a timeout loop (bsc#909350 FATE#317546) - random32: add prandom_u32_max (bsc#989152). - remove problematic preprocessor constructs (bsc#928138,fate#319026). - REVERT fs/cifs: fix wrongly prefixed path to root (bsc#963655, bsc#979681) - rpm/constraints.in: Bump x86 disk space requirement to 20GB Clamav tends to run out of space nowadays. - rpm/package-descriptions: add -bigmem description - s390/cio: fix accidental interrupt enabling during resume (bnc#1003677, LTC#147606). - s390/dasd: fix hanging device after clear subchannel (bnc#994436, LTC#144640). - s390/time: LPAR offset handling (bnc#1003677, LTC#146920). - s390/time: move PTFF definitions (bnc#1003677, LTC#146920). - sata: Adding Intel Lewisburg device IDs for SATA (fate#319286). - sched/core: Fix an SMP ordering race in try_to_wake_up() vs. schedule() (bnc#1001419). - sched/core: Fix a race between try_to_wake_up() and a woken up task (bnc#1002165). - sched: Fix possible divide by zero in avg_atom() calculation (bsc#996329). - scripts/bigmem-generate-ifdef-guard: auto-regen patches.suse/ppc64-bigmem-introduce-CONFIG_BIGMEM - scripts/bigmem-generate-ifdef-guard: Include this script to regenerate patches.suse/ppc64-bigmem-introduce-CONFIG_BIGMEM - scripts/bigmem-generate-ifdef-guard: make executable - scsi_dh_rdac: retry inquiry for UNIT ATTENTION (bsc#934760). - scsi: do not print 'reservation conflict' for TEST UNIT READY (bsc#984102). - scsi: ibmvfc: add FC Class 3 Error Recovery support (bsc#984992). - scsi: ibmvfc: Fix I/O hang when port is not mapped (bsc#971989) - scsi: ibmvfc: Set READ FCP_XFER_READY DISABLED bit in PRLI (bsc#984992). - scsi_scan: Send TEST UNIT READY to LUN0 before LUN scanning (bnc#843236,bsc#989779). - scsi: zfcp: spin_lock_irqsave() is not nestable (bsc#1003677,LTC#147374). - Set CONFIG_DEBUG_INFO=y and CONFIG_DEBUG_INFO_REDUCED=n on all platforms The specfile adjusts the config if necessary, but a new version of run_oldconfig.sh requires the settings to be present in the repository. - sfc: on MC reset, clear PIO buffer linkage in TXQs (bsc#909618 FATE#317521). - sort hyperv patches properly in series.conf - sunrpc/cache: drop reference when sunrpc_cache_pipe_upcall() detects a race (bnc#803320). - tg3: Avoid NULL pointer dereference in tg3_io_error_detected() (bsc#908458 FATE#317507). - tmpfs: change final i_blocks BUG to WARNING (bsc#991923). - tty: Signal SIGHUP before hanging up ldisc (bnc#989764). - Update patches.xen/xen3-auto-arch-x86.diff (bsc#929141, a.o.). - usb: fix typo in wMaxPacketSize validation (bsc#991665). - usb: hub: Fix auto-remount of safely removed or ejected USB-3 devices (bsc#922634). - usb: hub: Fix unbalanced reference count/memory leak/deadlocks (bsc#968010). - usb: validate wMaxPacketValue entries in endpoint descriptors (bnc#991665). - vlan: do not deliver frames for unknown vlans to protocols (bsc#979514). - vlan: mask vlan prio bits (bsc#979514). - vmxnet3: Wake queue from reset work (bsc#999907). - x86, amd_nb: Clarify F15h, model 30h GART and L3 support (fate#321400). - x86/asm/traps: Disable tracing and kprobes in fixup_bad_iret and sync_regs (bsc#909077). - x86/cpu/amd: Set X86_FEATURE_EXTD_APICID for future processors (fate#321400). - x86/gart: Check for GART support before accessing GART registers (fate#321400). - x86/MCE/intel: Cleanup CMCI storm logic (bsc#929141). - xenbus: inspect the correct type in xenbus_dev_request_and_reply(). - xen: x86/mm/pat, /dev/mem: Remove superfluous error message (bsc#974620). - xfs: Avoid grabbing ilock when file size is not changed (bsc#983535). - xfs: Silence warnings in xfs_vm_releasepage() (bnc#915183 bsc#987565). - zfcp: close window with unblocked rport during rport gone (bnc#1003677, LTC#144310). - zfcp: fix D_ID field with actual value on tracing SAN responses (bnc#1003677, LTC#144312). - zfcp: fix ELS/GS request&response length for hardware data router (bnc#1003677, LTC#144308). - zfcp: fix payload trace length for SAN request&response (bnc#1003677, LTC#144312). - zfcp: restore: Dont use 0 to indicate invalid LUN in rec trace (bnc#1003677, LTC#144312). - zfcp: restore tracing of handle for port and LUN with HBA records (bnc#1003677, LTC#144312). - zfcp: retain trace level for SCSI and HBA FSF response records (bnc#1003677, LTC#144312). - zfcp: trace full payload of all SAN records (req,resp,iels) (bnc#1003677, LTC#144312). - zfcp: trace on request for open and close of WKA port (bnc#1003677, LTC#144312). Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 11-SP4: zypper in -t patch sdksp4-kernel-12869=1 - SUSE Linux Enterprise Server 11-SP4: zypper in -t patch slessp4-kernel-12869=1 - SUSE Linux Enterprise Server 11-EXTRA: zypper in -t patch slexsp3-kernel-12869=1 - SUSE Linux Enterprise Debuginfo 11-SP4: zypper in -t patch dbgsp4-kernel-12869=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Software Development Kit 11-SP4 (noarch): kernel-docs-3.0.101-88.3 - SUSE Linux Enterprise Server 11-SP4 (i586 ia64 ppc64 s390x x86_64): kernel-default-3.0.101-88.1 kernel-default-base-3.0.101-88.1 kernel-default-devel-3.0.101-88.1 kernel-source-3.0.101-88.1 kernel-syms-3.0.101-88.1 kernel-trace-3.0.101-88.1 kernel-trace-base-3.0.101-88.1 kernel-trace-devel-3.0.101-88.1 - SUSE Linux Enterprise Server 11-SP4 (i586 x86_64): kernel-ec2-3.0.101-88.1 kernel-ec2-base-3.0.101-88.1 kernel-ec2-devel-3.0.101-88.1 kernel-xen-3.0.101-88.1 kernel-xen-base-3.0.101-88.1 kernel-xen-devel-3.0.101-88.1 - SUSE Linux Enterprise Server 11-SP4 (s390x): kernel-default-man-3.0.101-88.1 - SUSE Linux Enterprise Server 11-SP4 (ppc64): kernel-bigmem-3.0.101-88.1 kernel-bigmem-base-3.0.101-88.1 kernel-bigmem-devel-3.0.101-88.1 kernel-ppc64-3.0.101-88.1 kernel-ppc64-base-3.0.101-88.1 kernel-ppc64-devel-3.0.101-88.1 - SUSE Linux Enterprise Server 11-SP4 (i586): kernel-pae-3.0.101-88.1 kernel-pae-base-3.0.101-88.1 kernel-pae-devel-3.0.101-88.1 - SUSE Linux Enterprise Server 11-EXTRA (i586 ia64 ppc64 s390x x86_64): kernel-default-extra-3.0.101-88.1 - SUSE Linux Enterprise Server 11-EXTRA (i586 x86_64): kernel-xen-extra-3.0.101-88.1 - SUSE Linux Enterprise Server 11-EXTRA (x86_64): kernel-trace-extra-3.0.101-88.1 - SUSE Linux Enterprise Server 11-EXTRA (ppc64): kernel-ppc64-extra-3.0.101-88.1 - SUSE Linux Enterprise Server 11-EXTRA (i586): kernel-pae-extra-3.0.101-88.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586 ia64 ppc64 s390x x86_64): kernel-default-debuginfo-3.0.101-88.1 kernel-default-debugsource-3.0.101-88.1 kernel-trace-debuginfo-3.0.101-88.1 kernel-trace-debugsource-3.0.101-88.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586 ia64 s390x x86_64): kernel-default-devel-debuginfo-3.0.101-88.1 kernel-trace-devel-debuginfo-3.0.101-88.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586 x86_64): kernel-ec2-debuginfo-3.0.101-88.1 kernel-ec2-debugsource-3.0.101-88.1 kernel-xen-debuginfo-3.0.101-88.1 kernel-xen-debugsource-3.0.101-88.1 kernel-xen-devel-debuginfo-3.0.101-88.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (ppc64): kernel-bigmem-debuginfo-3.0.101-88.1 kernel-bigmem-debugsource-3.0.101-88.1 kernel-ppc64-debuginfo-3.0.101-88.1 kernel-ppc64-debugsource-3.0.101-88.1 - SUSE Linux Enterprise Debuginfo 11-SP4 (i586): kernel-pae-debuginfo-3.0.101-88.1 kernel-pae-debugsource-3.0.101-88.1 kernel-pae-devel-debuginfo-3.0.101-88.1 References: https://www.suse.com/security/cve/CVE-2013-4312.html https://www.suse.com/security/cve/CVE-2015-7513.html https://www.suse.com/security/cve/CVE-2015-8956.html https://www.suse.com/security/cve/CVE-2016-0823.html https://www.suse.com/security/cve/CVE-2016-3841.html https://www.suse.com/security/cve/CVE-2016-4998.html https://www.suse.com/security/cve/CVE-2016-5696.html https://www.suse.com/security/cve/CVE-2016-6480.html https://www.suse.com/security/cve/CVE-2016-6828.html https://www.suse.com/security/cve/CVE-2016-7042.html https://www.suse.com/security/cve/CVE-2016-7097.html https://www.suse.com/security/cve/CVE-2016-7117.html https://www.suse.com/security/cve/CVE-2016-7425.html https://bugzilla.suse.com/1000189 https://bugzilla.suse.com/1001419 https://bugzilla.suse.com/1002165 https://bugzilla.suse.com/1003077 https://bugzilla.suse.com/1003344 https://bugzilla.suse.com/1003568 https://bugzilla.suse.com/1003677 https://bugzilla.suse.com/1003866 https://bugzilla.suse.com/1003925 https://bugzilla.suse.com/1004517 https://bugzilla.suse.com/1004520 https://bugzilla.suse.com/1005857 https://bugzilla.suse.com/1005896 https://bugzilla.suse.com/1005903 https://bugzilla.suse.com/1006917 https://bugzilla.suse.com/1006919 https://bugzilla.suse.com/1007944 https://bugzilla.suse.com/763198 https://bugzilla.suse.com/771065 https://bugzilla.suse.com/799133 https://bugzilla.suse.com/803320 https://bugzilla.suse.com/839104 https://bugzilla.suse.com/843236 https://bugzilla.suse.com/860441 https://bugzilla.suse.com/863873 https://bugzilla.suse.com/865783 https://bugzilla.suse.com/871728 https://bugzilla.suse.com/907611 https://bugzilla.suse.com/908458 https://bugzilla.suse.com/908684 https://bugzilla.suse.com/909077 https://bugzilla.suse.com/909350 https://bugzilla.suse.com/909484 https://bugzilla.suse.com/909618 https://bugzilla.suse.com/909994 https://bugzilla.suse.com/911687 https://bugzilla.suse.com/915183 https://bugzilla.suse.com/920016 https://bugzilla.suse.com/922634 https://bugzilla.suse.com/922947 https://bugzilla.suse.com/928138 https://bugzilla.suse.com/929141 https://bugzilla.suse.com/934760 https://bugzilla.suse.com/951392 https://bugzilla.suse.com/956514 https://bugzilla.suse.com/960689 https://bugzilla.suse.com/963655 https://bugzilla.suse.com/967716 https://bugzilla.suse.com/968010 https://bugzilla.suse.com/968014 https://bugzilla.suse.com/971975 https://bugzilla.suse.com/971989 https://bugzilla.suse.com/973203 https://bugzilla.suse.com/974620 https://bugzilla.suse.com/976867 https://bugzilla.suse.com/977687 https://bugzilla.suse.com/979514 https://bugzilla.suse.com/979595 https://bugzilla.suse.com/979681 https://bugzilla.suse.com/980371 https://bugzilla.suse.com/982218 https://bugzilla.suse.com/982783 https://bugzilla.suse.com/983535 https://bugzilla.suse.com/983619 https://bugzilla.suse.com/984102 https://bugzilla.suse.com/984194 https://bugzilla.suse.com/984992 https://bugzilla.suse.com/985206 https://bugzilla.suse.com/986337 https://bugzilla.suse.com/986362 https://bugzilla.suse.com/986365 https://bugzilla.suse.com/986445 https://bugzilla.suse.com/987565 https://bugzilla.suse.com/988440 https://bugzilla.suse.com/989152 https://bugzilla.suse.com/989261 https://bugzilla.suse.com/989764 https://bugzilla.suse.com/989779 https://bugzilla.suse.com/991608 https://bugzilla.suse.com/991665 https://bugzilla.suse.com/991923 https://bugzilla.suse.com/992566 https://bugzilla.suse.com/993127 https://bugzilla.suse.com/993890 https://bugzilla.suse.com/993891 https://bugzilla.suse.com/994296 https://bugzilla.suse.com/994436 https://bugzilla.suse.com/994618 https://bugzilla.suse.com/994759 https://bugzilla.suse.com/994926 https://bugzilla.suse.com/995968 https://bugzilla.suse.com/996329 https://bugzilla.suse.com/996664 https://bugzilla.suse.com/997708 https://bugzilla.suse.com/998399 https://bugzilla.suse.com/998689 https://bugzilla.suse.com/999584 https://bugzilla.suse.com/999600 https://bugzilla.suse.com/999907 https://bugzilla.suse.com/999932 -- To unsubscribe, e-mail: opensuse-security-announce+unsubscribe ( -at -) opensuse.org For additional commands, e-mail: opensuse-security-announce+help ( -at -) opensuse.org
-
[gentoo-announce] [ GLSA 201612-02 ] DavFS2: Local privilege escalation
news posted a topic in Upcoming News
TITLE: Creative iRoar Go Review ( -at -) Vortez CONTENT: The iRoar Go addresses that, coming in 25% lighter and 40% smaller than the iRoar, it is the most portable Roar speaker yet. Adding to that, it has an IPX6 protection rating, meaning that it is sealed against dust, and has a waterproof rating to the equivalent of being jet-blasted from all angles for 3 minutes and should not show any signs of seepage, or failure. This means less concern on those poolside, or seaside trips, still be sure not drop it in the toilet or the ocean. LINK: http://www.vortez.net/review.php?id=1240 ---------------------------------------------------------------------------- -------------------- Please post this news item in your news section. Thank you. -
TITLE: Creative iRoar Go Review ( -at -) Vortez CONTENT: The iRoar Go addresses that, coming in 25% lighter and 40% smaller than the iRoar, it is the most portable Roar speaker yet. Adding to that, it has an IPX6 protection rating, meaning that it is sealed against dust, and has a waterproof rating to the equivalent of being jet-blasted from all angles for 3 minutes and should not show any signs of seepage, or failure. This means less concern on those poolside, or seaside trips, still be sure not drop it in the toilet or the ocean. LINK: http://www.vortez.net/review.php?id=1240 ---------------------------------------------------------------------------- -------------------- Please post this news item in your news section. Thank you.
-
MSI X99A XPower Gaming Titanium Motherboard Review ------------------------------------------------------------ http://us2.campaign-archive1.com/?u=bfb2b902b5fb045ad6f841f98&id=4e1ae59a6a&e=872093acb5 http://www.kitguru.net MSI X99A XPower Gaming Titanium Motherboard Review With its high-end price point and feature-set the MSI X99A XPower Gaming Titanium (https://www.msi.com/Motherboard/X99A-XPOWER-GAMING-TITANIUM.html#hero-overview) locks horns with the likes of the ASUS X99-DELUXE II and Gigabyte X99-Designare EX RGB, though ASRock lacks a similarly priced offering. A dissection of the product name reveals a motherboard that is trying to cater to Gamers and Overclockers on the X99 platform. Read the review here: http://www.kitguru.net/components/motherboard/ryan-martin/msi-x99a-xpower-gaming-titanium-motherboard-review/ ============================================================ ** follow on Twitter (http://twitter.com/#!/kitgurupress) | ** friend on Facebook (http://www.facebook.com/pages/KitGuru/162236020510911) | ** forward to a friend (http://us2.forward-to-friend.com/forward?u=bfb2b902b5fb045ad6f841f98&id=4e1ae59a6a&e=872093acb5) Copyright © 2016 KitGuru, All rights reserved. You are receiving this because you are a news partner or have signed up to receive our news.
-
<http://www.eteknix.com> D-Link Performace Series DIR-890L AC3200 Enthusiast Router Review With more and more devices requiring an internet connection, the choice of which router to get becomes a more vital one. TVs, consoles, mobile phones, tablets, PCs, laptops, and IoT devices all require internet access and when they all need it at the same time, the network can get congested. That's where D-Link's DIR-890L AC3200 Ultra Wi-Fi Router <http://us.dlink.com/products/connect/ac3200-ultra-wi-fi-router/>  comes into play as it has three bands and six antennas to distribute the load and achieve maximum coverage. URL - http://www.eteknix.com/d-link-performace-series-dir-890l-ac3200-enthusiast-router-review/ --
-
D-Link Performace Series DIR-890L AC3200 Enthusiast Router Review
news posted a topic in Upcoming News
<http://www.eteknix.com> D-Link Performace Series DIR-890L AC3200 Enthusiast Router Review With more and more devices requiring an internet connection, the choice of which router to get becomes a more vital one. TVs, consoles, mobile phones, tablets, PCs, laptops, and IoT devices all require internet access and when they all need it at the same time, the network can get congested. That's where D-Link's DIR-890L AC3200 Ultra Wi-Fi Router <http://us.dlink.com/products/connect/ac3200-ultra-wi-fi-router/>  comes into play as it has three bands and six antennas to distribute the load and achieve maximum coverage. URL - http://www.eteknix.com/d-link-performace-series-dir-890l-ac3200-enthusiast-router-review/ --