Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
203

Mageia 8 - MGASA-2021-0540: Critical Nginx/Vsftpd TLS Auth Issue

ALPACA: Application Layer Protocol Confusion - Analyzing and Mitigating Cracks in TLS Authentication References: - https://bugs.mageia.org/show_bug.cgi?id=29220 . MGASA-2021-0540 - Updated nginx/vsftpd packages fix security vulnerability Publication date: 08 Dec 2021 URL: https://advisories.mageia.org/MGASA-2021-0540.html Type: security Affected Mageia releases: 8 CVE: CVE-2021-3618 ALPACA: Application Layer Protocol Confusion - Analyzing and Mitigating Cracks in TLS Authentication References: - https://bugs.mageia.org/show_bug.cgi?id=29220 - https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./thread/44SPREQ2R4IE2VUUO2HVCFTUGDCYSXAD/ - https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./thread/TKXMYKALTHIBJLDHQPBKNQK2FWVOSIG7/ - https://www.cve.org/CVERecord?id=CVE-2021-3618 SRPMS: - 8/core/nginx-1.18.0-5.2.mga8 - 8/core/vsftpd-3.0.5-1.mga8 . Mageia 2021-0540 addresses security flaws in Nginx and Vsftpd, implementing updates that improve TLS authentication mechanisms.. Security Update, Mageia, nginx, vsftpd, TLS Auth Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 08, 2021 Critical Mageia
89

Fedora 33: FEDORA-2021-a856024cca Critical: Nginx ALPACA Protocol Confusion

Fixes CVE-2021-3618 nginx: ALPACA: Application Layer Protocol Confusion - Analyzing and Mitigating Cracks in TLS Authentication. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-a856024cca 2021-07-04 01:08:30.659384 --------------------------------------------------------------------------------Name : nginx Product : Fedora 33 Version : 1.20.1 Release : 3.fc33 URL : https://nginx.org Summary : A high performance web server and reverse proxy server Description : Nginx is a web server and a reverse proxy server for HTTP, SMTP, POP3 and IMAP protocols, with a strong focus on high concurrency, performance and low memory usage. --------------------------------------------------------------------------------Update Information: Fixes CVE-2021-3618 nginx: ALPACA: Application Layer Protocol Confusion -Analyzing and Mitigating Cracks in TLS Authentication --------------------------------------------------------------------------------ChangeLog: * Fri Jun 25 2021 Felix Kaechele - 1:1.20.1-3 - fix for CVE-2021-3618 (rhbz#1975651) --------------------------------------------------------------------------------References: [ 1 ] Bug #1975623 - CVE-2021-3618 ALPACA: Application Layer Protocol Confusion - Analyzing and Mitigating Cracks in TLS Authentication https://bugzilla.redhat.com/show_bug.cgi?id=1975623 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-a856024cca' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . The recent Debian upgrade resolves CVE-2021-3849 in apache tackling severe security flaws. Keep your systems safe!. Fedora Update, Nginx Security, ALPACA Protocol, TLS Authentication Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 03, 2021 Critical Fedora
89

Fedora 34: FEDORA-2021-031436cb0e High: Nginx TLS Authentication Fix

Fixes CVE-2021-3618 nginx: ALPACA: Application Layer Protocol Confusion - Analyzing and Mitigating Cracks in TLS Authentication. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-031436cb0e 2021-07-04 01:06:05.754467 --------------------------------------------------------------------------------Name : nginx Product : Fedora 34 Version : 1.20.1 Release : 3.fc34 URL : https://nginx.org Summary : A high performance web server and reverse proxy server Description : Nginx is a web server and a reverse proxy server for HTTP, SMTP, POP3 and IMAP protocols, with a strong focus on high concurrency, performance and low memory usage. --------------------------------------------------------------------------------Update Information: Fixes CVE-2021-3618 nginx: ALPACA: Application Layer Protocol Confusion -Analyzing and Mitigating Cracks in TLS Authentication --------------------------------------------------------------------------------ChangeLog: * Fri Jun 25 2021 Felix Kaechele - 1:1.20.1-3 - fix for CVE-2021-3618 (rhbz#1975651) --------------------------------------------------------------------------------References: [ 1 ] Bug #1975623 - CVE-2021-3618 ALPACA: Application Layer Protocol Confusion - Analyzing and Mitigating Cracks in TLS Authentication https://bugzilla.redhat.com/show_bug.cgi?id=1975623 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-031436cb0e' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Fedora 35 reveals a new update for Apache to address vulnerabilities in HTTP/2 protocol manipulation during TLS handshakes.. Fedora 34,Nginx Security Update,TLS Authentication Fix,Application Layer Protocol,High Severity Advisory. . LinuxSecurity.com Team

Calendar 2 Jul 03, 2021 Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here