Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 511
Alerts This Week
Warning Icon 1 511

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 48 articles for you...
202

openSUSE 12.3: Important Acroread Update for Critical Exploits

An update that contains security fixes can now be installed.. openSUSE Security Update: acroread: not supported anymore ______________________________________________________________________________ Announcement ID: openSUSE-SU-2014:0006-1 Rating: important References: #843835 Affected Products: openSUSE 12.3:NonFree openSUSE 12.2:NonFree ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: Adobe discontinued the Adobe Reader 9 for Linux in June 2013 and has not fixed and will not fix any further security issues in it. As there is no new version, it is officially out of support. The SUSE Security Team strongly recommends to not use it anymore. Installing this update will deinstall the plugin package to avoid automatic exploitation via PDF embedded in webpages or emails. Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 12.3:NonFree: zypper in -t patch openSUSE-2014-12 - openSUSE 12.2:NonFree: zypper in -t patch openSUSE-2014-12 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE 12.3:NonFree (noarch): acroread-cmaps-9.4.1-8.1 acroread-fonts-ja-9.4.1-8.1 acroread-fonts-ko-9.4.1-8.1 acroread-fonts-zh_CN-9.4.1-8.1 acroread-fonts-zh_TW-9.4.1-8.1 - openSUSE 12.3:NonFree (i586): acroread-9.5.5-8.1 - openSUSE 12.2:NonFree (noarch): acroread-cmaps-9.4.1-3.16.1 acroread-fonts-ja-9.4.1-3.16.1 acroread-fonts-ko-9.4.1-3.16.1 acroread-fonts-zh_CN-9.4.1-3.16.1 acroread-fonts-zh_TW-9.4.1-3.16.1 - openSUSE 12.2:NonFree (i586): acroread-9.5.5-3.16.1 References: -- . Important security upgrade for openSUSE targeting acroread weaknesses and end ofassistance.. openSUSE Acroread Update, Security Fixes, PDF Exploitation. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 03, 2014 Important OpenSUSE
100

SUSE Linux Desktop 11 SP3: SUSE-SU-2013:1967-1 Important: Acroread Update

An update that contains security fixes can now be An update that contains security fixes can now be An update that contains security fixes can now be installed. It includes one version update. installed. It includes one version update.. SUSE Security Update: Security update for acroread ______________________________________________________________________________ Announcement ID: SUSE-SU-2013:1967-1 Rating: important References: #843835 Affected Products: SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP2 ______________________________________________________________________________ An update that contains security fixes can now be installed. It includes one version update. Description: Adobe has discontinued the support of Adobe Reader for Linux in June 2013. Newer security problems and bugs are no longer fixed. As the Adobe Reader is binary only software and we cannot provide a replacement, SUSE declares the acroread package of Adobe Reader as being out of support and unmaintained. If you do not need Acrobat Reader, we recommend to uninstall the "acroread" package. This update removes the Acrobat Reader PDF plugin to avoid automatic exploitation by clicking on web pages with embedded PDFs. The stand alone "acroread" binary is still available, but again, we do not recommend to use it. Indications: For all Acrobat Reader users. Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Desktop 11 SP3: zypper in -t patch sledsp3-acroread-8689 - SUSE Linux Enterprise Desktop 11 SP2: zypper in -t patch sledsp2-acroread-8688 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Desktop 11 SP3 (noarch): acroread-cmaps-9.4.6-0.4.5.1 acroread-fonts-ja-9.4.6-0.4.5.1 acroread-fonts-ko-9.4.6-0.4.5.1 acroread-fonts-zh_CN-9.4.6-0.4.5.1 acroread-fonts-zh_TW-9.4.6-0.4.5.1 - SUSE Linux Enterprise Desktop 11 SP3 (i586): acroread-9.5.5-0.5.5.1 - SUSE Linux Enterprise Desktop 11 SP2 (noarch): acroread-cmaps-9.4.6-0.4.5.1 acroread-fonts-ja-9.4.6-0.4.5.1 acroread-fonts-ko-9.4.6-0.4.5.1 acroread-fonts-zh_CN-9.4.6-0.4.5.1 acroread-fonts-zh_TW-9.4.6-0.4.5.1 - SUSE Linux Enterprise Desktop 11 SP2 (i586) [New Version: 9.5.5]: acroread-9.5.5-0.5.5.1 acroread_ja-9.4.2-0.4.1 References: . SUSE has rolled out a Security Update for acroread, presenting crucial patches and guidance for its users.. SUSE Linux Desktop, Acrobat Reader, Software Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 27, 2013 Important SuSE
98

Red Hat Enterprise Linux 5 & 6 Critical Advisory for Acroread Issue

Updated acroread packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical security impact. Common Vulnerability Scoring System (CVSS) base scores,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Critical: acroread security update Advisory ID: RHSA-2013:0826-01 Product: Red Hat Enterprise Linux Supplementary Advisory URL: https://access.redhat.com/errata/RHSA-2013:0826.html Issue date: 2013-05-15 CVE Names: CVE-2013-2549 CVE-2013-2718 CVE-2013-2719 CVE-2013-2720 CVE-2013-2721 CVE-2013-2722 CVE-2013-2723 CVE-2013-2724 CVE-2013-2725 CVE-2013-2726 CVE-2013-2727 CVE-2013-2729 CVE-2013-2730 CVE-2013-2731 CVE-2013-2732 CVE-2013-2733 CVE-2013-2734 CVE-2013-2735 CVE-2013-2736 CVE-2013-2737 CVE-2013-3337 CVE-2013-3338 CVE-2013-3339 CVE-2013-3340 CVE-2013-3341 ==================================================================== 1. Summary: Updated acroread packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop Supplementary (v. 5) - i386, x86_64 Red Hat Enterprise Linux Desktop Supplementary (v. 6) - i386, x86_64 Red Hat Enterprise Linux Server Supplementary (v. 5) - i386, x86_64 Red Hat Enterprise Linux Server Supplementary (v. 6) - i386, x86_64 Red Hat Enterprise LinuxWorkstation Supplementary (v. 6) - i386, x86_64 3. Description: Adobe Reader allows users to view and print documents in Portable Document Format (PDF). This update fixes multiple security flaws in Adobe Reader. These flaws are detailed in the Adobe Security bulletin APSB13-15, listed in the References section. A specially-crafted PDF file could cause Adobe Reader to crash or, potentially, execute arbitrary code as the user running Adobe Reader when opened. (CVE-2013-2549, CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2724, CVE-2013-2725, CVE-2013-2726, CVE-2013-2727, CVE-2013-2729, CVE-2013-2730, CVE-2013-2731, CVE-2013-2732, CVE-2013-2733, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3339, CVE-2013-3340, CVE-2013-3341) This update also fixes an information leak flaw in Adobe Reader. (CVE-2013-2737) All Adobe Reader users should install these updated packages. They contain Adobe Reader version 9.5.5, which is not vulnerable to these issues. All running instances of Adobe Reader must be restarted for the update to take effect. 4. Solution: Before applying this update, make sure all previously-released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/articles/11258 5. Bugs fixed (http://bugzilla.redhat.com/): 920180 - CVE-2013-2549 acroread: Unspecified vulnerability allows remote attackers to execute arbitrary code (CanSecWest 2013) 962931 - acroread: multiple code execution flaws (APSB13-15) 962940 - CVE-2013-2737 acroread: unspecified information leak issue (APSB13-15) 6. Package List: Red Hat Enterprise Linux Desktop Supplementary (v. 5): i386: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm x86_64: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm Red Hat Enterprise Linux Server Supplementary (v.5): i386: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm x86_64: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm Red Hat Enterprise Linux Desktop Supplementary (v. 6): i386: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm x86_64: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm Red Hat Enterprise Linux Server Supplementary (v. 6): i386: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm x86_64: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm Red Hat Enterprise Linux Workstation Supplementary (v. 6): i386: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm x86_64: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7.References: https://access.redhat.com/security/cve/CVE-2013-2549 https://access.redhat.com/security/cve/CVE-2013-2718 https://access.redhat.com/security/cve/CVE-2013-2719 https://access.redhat.com/security/cve/CVE-2013-2720 https://access.redhat.com/security/cve/CVE-2013-2721 https://access.redhat.com/security/cve/CVE-2013-2722 https://access.redhat.com/security/cve/CVE-2013-2723 https://access.redhat.com/security/cve/CVE-2013-2724 https://access.redhat.com/security/cve/CVE-2013-2725 https://access.redhat.com/security/cve/CVE-2013-2726 https://access.redhat.com/security/cve/CVE-2013-2727 https://access.redhat.com/security/cve/CVE-2013-2729 https://access.redhat.com/security/cve/CVE-2013-2730 https://access.redhat.com/security/cve/CVE-2013-2731 https://access.redhat.com/security/cve/CVE-2013-2732 https://access.redhat.com/security/cve/CVE-2013-2733 https://access.redhat.com/security/cve/CVE-2013-2734 https://access.redhat.com/security/cve/CVE-2013-2735 https://access.redhat.com/security/cve/CVE-2013-2736 https://access.redhat.com/security/cve/CVE-2013-2737 https://access.redhat.com/security/cve/CVE-2013-3337 https://access.redhat.com/security/cve/CVE-2013-3338 https://access.redhat.com/security/cve/CVE-2013-3339 https://access.redhat.com/security/cve/CVE-2013-3340 https://access.redhat.com/security/cve/CVE-2013-3341 https://access.redhat.com/security/updates/classification#critical 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2013 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.4 (GNU/Linux) iD8DBQFRk0/MXlSAg2UNWIIRAhqxAJ4gJLAd7fH03Yg3aRcMEMU+Nd0M6ACgp/Gf 8uNniEhkL7uQL8co68bkC2g=Ui99 -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . The latest security patch from Red Hat for acroread fixes several vulnerabilities affecting users of Enterprise Linux versions 5 and 6.. acroread security, red hat update, critical patch, enterprise linux. . Severity:Critical. LinuxSecurity.com Team

Calendar%202 May 15, 2013 Critical Red Hat
98

Red Hat: RHSA-2013:0826-01 Critical: Acroread Remote Code Execution

Updated acroread packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical [More...]. ==================================================================== Red Hat Security Advisory Synopsis: Critical: acroread security update Advisory ID: RHSA-2013:0826-01 Product: Red Hat Enterprise Linux Supplementary Advisory URL: https://access.redhat.com/errata/RHSA-2013:0826.html Issue date: 2013-05-15 CVE Names: CVE-2013-2549 CVE-2013-2718 CVE-2013-2719 CVE-2013-2720 CVE-2013-2721 CVE-2013-2722 CVE-2013-2723 CVE-2013-2724 CVE-2013-2725 CVE-2013-2726 CVE-2013-2727 CVE-2013-2729 CVE-2013-2730 CVE-2013-2731 CVE-2013-2732 CVE-2013-2733 CVE-2013-2734 CVE-2013-2735 CVE-2013-2736 CVE-2013-2737 CVE-2013-3337 CVE-2013-3338 CVE-2013-3339 CVE-2013-3340 CVE-2013-3341 ==================================================================== 1. Summary: Updated acroread packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop Supplementary (v. 5) - i386, x86_64 Red Hat Enterprise Linux Desktop Supplementary (v. 6) - i386, x86_64 Red Hat Enterprise Linux Server Supplementary (v. 5) - i386, x86_64 Red Hat Enterprise Linux Server Supplementary (v. 6) - i386, x86_64 Red Hat Enterprise Linux Workstation Supplementary (v. 6) - i386, x86_64 3. Description: Adobe Reader allows users to view and printdocuments in Portable Document Format (PDF). This update fixes multiple security flaws in Adobe Reader. These flaws are detailed in the Adobe Security bulletin APSB13-15, listed in the References section. A specially-crafted PDF file could cause Adobe Reader to crash or, potentially, execute arbitrary code as the user running Adobe Reader when opened. (CVE-2013-2549, CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2724, CVE-2013-2725, CVE-2013-2726, CVE-2013-2727, CVE-2013-2729, CVE-2013-2730, CVE-2013-2731, CVE-2013-2732, CVE-2013-2733, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3339, CVE-2013-3340, CVE-2013-3341) This update also fixes an information leak flaw in Adobe Reader. (CVE-2013-2737) All Adobe Reader users should install these updated packages. They contain Adobe Reader version 9.5.5, which is not vulnerable to these issues. All running instances of Adobe Reader must be restarted for the update to take effect. 4. Solution: Before applying this update, make sure all previously-released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/knowledge/articles/11258 5. Bugs fixed (http://bugzilla.redhat.com/): 920180 - CVE-2013-2549 acroread: Unspecified vulnerability allows remote attackers to execute arbitrary code (CanSecWest 2013) 962931 - acroread: multiple code execution flaws (APSB13-15) 962940 - CVE-2013-2737 acroread: unspecified information leak issue (APSB13-15) 6. Package List: Red Hat Enterprise Linux Desktop Supplementary (v. 5): i386: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm x86_64: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm Red Hat Enterprise Linux Server Supplementary (v.5): i386: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm x86_64: acroread-9.5.5-1.el5_9.i386.rpm acroread-plugin-9.5.5-1.el5_9.i386.rpm Red Hat Enterprise Linux Desktop Supplementary (v. 6): i386: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm x86_64: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm Red Hat Enterprise Linux Server Supplementary (v. 6): i386: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm x86_64: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm Red Hat Enterprise Linux Workstation Supplementary (v. 6): i386: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm x86_64: acroread-9.5.5-1.el6_4.i686.rpm acroread-plugin-9.5.5-1.el6_4.i686.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/#package 7.References: https://access.redhat.com/security/cve/CVE-2013-2549 https://access.redhat.com/security/cve/CVE-2013-2718 https://access.redhat.com/security/cve/CVE-2013-2719 https://access.redhat.com/security/cve/CVE-2013-2720 https://access.redhat.com/security/cve/CVE-2013-2721 https://access.redhat.com/security/cve/CVE-2013-2722 https://access.redhat.com/security/cve/CVE-2013-2723 https://access.redhat.com/security/cve/CVE-2013-2724 https://access.redhat.com/security/cve/CVE-2013-2725 https://access.redhat.com/security/cve/CVE-2013-2726 https://access.redhat.com/security/cve/CVE-2013-2727 https://access.redhat.com/security/cve/CVE-2013-2729 https://access.redhat.com/security/cve/CVE-2013-2730 https://access.redhat.com/security/cve/CVE-2013-2731 https://access.redhat.com/security/cve/CVE-2013-2732 https://access.redhat.com/security/cve/CVE-2013-2733 https://access.redhat.com/security/cve/CVE-2013-2734 https://access.redhat.com/security/cve/CVE-2013-2735 https://access.redhat.com/security/cve/CVE-2013-2736 https://access.redhat.com/security/cve/CVE-2013-2737 https://access.redhat.com/security/cve/CVE-2013-3337 https://access.redhat.com/security/cve/CVE-2013-3338 https://access.redhat.com/security/cve/CVE-2013-3339 https://access.redhat.com/security/cve/CVE-2013-3340 https://access.redhat.com/security/cve/CVE-2013-3341 https://access.redhat.com/security/updates/classification/#critical 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2013 Red Hat, Inc. . Newly released acroread updates for Red Hat Enterprise Linux versions 5 and 6 address severe vulnerabilities. Apply these fixes immediately to ensure your system's safety.. acroread Update, Red Hat Advisory, Security Patch, Critical Flaws. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 15, 2013 Critical Red Hat
202

openSUSE 12.2: 2013:0335-2 Critical: Acroread Remote Code Threat

An update that fixes two vulnerabilities is now available.. openSUSE Security Update: acroread to 9.5.4 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2013:0335-2 Rating: critical References: #803939 Cross-References: CVE-2013-0640 CVE-2013-0641 Affected Products: openSUSE 12.2:NonFree ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: acroread was updated to 9.5.4 to fix remote code execution problems. (CVE-2013-0640, CVE-2013-0641) More information can be found on: Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 12.2:NonFree: zypper in -t patch openSUSE-2013-151 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE 12.2:NonFree (noarch): acroread-cmaps-9.4.1-3.8.1 acroread-fonts-ja-9.4.1-3.8.1 acroread-fonts-ko-9.4.1-3.8.1 acroread-fonts-zh_CN-9.4.1-3.8.1 acroread-fonts-zh_TW-9.4.1-3.8.1 - openSUSE 12.2:NonFree (i586): acroread-9.5.4-3.8.1 acroread-browser-plugin-9.5.4-3.8.1 References: https://www.suse.com/security/cve/CVE-2013-0640.html https://www.suse.com/security/cve/CVE-2013-0641.html -- . The latest openSUSE Security Update for acroread addresses critical patches against severe remote code execution vulnerabilities, urging prompt installation for user protection.. openSUSE security, acroread update, remote code execution fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 28, 2013 Critical OpenSUSE
100

SUSE 2013:0349-1 Important: Acroread Code Execution Security Issue

An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. It includes two new package versions. It includes two new package versions.. SUSE Security Update: Security update for acroread ______________________________________________________________________________ Announcement ID: SUSE-SU-2013:0349-1 Rating: important References: #803939 Cross-References: CVE-2013-0640 CVE-2013-0641 Affected Products: SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 10 SP4 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. It includes two new package versions. Description: Acrobat Reader has been updated to 9.5.4 which fixes two critical security issues where attackers supplying PDFs could have caused code execution with acrobat. (CVE-2013-0640, CVE-2013-0641) More information can be found on: tml Security Issue references: * CVE-2013-0640 * CVE-2013-0641 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Desktop 11 SP2: zypper in -t patch sledsp2-acroread-7397 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Desktop 11 SP2 (noarch): acroread-cmaps-9.4.6-0.4.3.1 acroread-fonts-ja-9.4.6-0.4.3.1 acroread-fonts-ko-9.4.6-0.4.3.1 acroread-fonts-zh_CN-9.4.6-0.4.3.1 acroread-fonts-zh_TW-9.4.6-0.4.3.1 - SUSE Linux Enterprise Desktop 11 SP2 (i586) [New Version: 9.5.4]: acroread-9.5.4-0.3.1 - SUSE Linux Enterprise Desktop 10 SP4 (noarch) [New Version: 9.4.6]: acroread-cmaps-9.4.6-0.6.60 acroread-fonts-ja-9.4.6-0.6.60 acroread-fonts-ko-9.4.6-0.6.60 acroread-fonts-zh_CN-9.4.6-0.6.60 acroread-fonts-zh_TW-9.4.6-0.6.60 - SUSE Linux Enterprise Desktop 10 SP4 (i586) [New Version: 9.5.4]: acroread-9.5.4-0.6.1 References: https://www.suse.com/security/cve/CVE-2013-0640.html https://www.suse.com/security/cve/CVE-2013-0641.html . Essential SUSE Security Patch for acroread containing vital resolutions to tackle code execution vulnerabilities.. acroread update, SUSE Linux security, security patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 26, 2013 Important SuSE
202

openSUSE 11.4: 2013:0342-1 Critical: Remote Execution in Acroread

An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.. openSUSE Security Update: acroread to 9.5.4 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2013:0342-1 Rating: critical References: #803939 Cross-References: CVE-2013-0640 CVE-2013-0641 Affected Products: openSUSE 11.4 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: acroread was updated to 9.5.4 to fix remote code execution problems. (CVE-2013-0640, CVE-2013-0641) More information can be found on: Special Instructions and Notes: Please reboot the system after installing this update. Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 11.4: zypper in -t patch 2013-31 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE 11.4 (i586): acroread-9.5.4-14.1 acroread-browser-plugin-9.5.4-14.1 References: https://www.suse.com/security/cve/CVE-2013-0640.html https://www.suse.com/security/cve/CVE-2013-0641.html . The latest update for acroread fixes serious vulnerabilities related to remote code execution on openSUSE platforms.. acroread update, remote execution, security patch, openSUSE critical. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 25, 2013 Critical OpenSUSE
202

openSUSE 12.1: 2013:0335-1 Critical: acroread Remote Code Execution Threat

An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.. openSUSE Security Update: acroread to 9.5.4 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2013:0335-1 Rating: critical References: #803939 Cross-References: CVE-2013-0640 CVE-2013-0641 Affected Products: openSUSE 12.1 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: acroread was updated to 9.5.4 to fix remote code execution problems. (CVE-2013-0640, CVE-2013-0641) More information can be found on: Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 12.1: zypper in -t patch openSUSE-2013-151 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE 12.1 (noarch): acroread-cmaps-9.4.1-3.17.1 acroread-fonts-ja-9.4.1-3.17.1 acroread-fonts-ko-9.4.1-3.17.1 acroread-fonts-zh_CN-9.4.1-3.17.1 acroread-fonts-zh_TW-9.4.1-3.17.1 - openSUSE 12.1 (i586): acroread-9.5.4-3.17.1 acroread-browser-plugin-9.5.4-3.17.1 References: https://www.suse.com/security/cve/CVE-2013-0640.html https://www.suse.com/security/cve/CVE-2013-0641.html . Updating acroread to version 9.5.4 fixes important security vulnerabilities in openSUSE 12.1.. acroread Update, Remote Code Execution, OpenSUSE Security, Software Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 25, 2013 Critical OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200