Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
203

Mageia: 2019-0249 Moderate: Sigil Arbitrary File Write Issue

Updated sigil package fixes security vulnerability: Mike Salvatore discovered that Sigil mishandled certain malformed EPUB files. An attacker could use this vulnerability to write arbitrary files to the filesystem (CVE-2019-14452). . MGASA-2019-0249 - Updated sigil packages fix security vulnerability Publication date: 06 Sep 2019 URL: https://advisories.mageia.org/MGASA-2019-0249.html Type: security Affected Mageia releases: 6, 7 CVE: CVE-2019-14452 Updated sigil package fixes security vulnerability: Mike Salvatore discovered that Sigil mishandled certain malformed EPUB files. An attacker could use this vulnerability to write arbitrary files to the filesystem (CVE-2019-14452). References: - https://bugs.mageia.org/show_bug.cgi?id=25290 - https://ubuntu.com/security/notices/USN-4085-1 - https://www.cve.org/CVERecord?id=CVE-2019-14452 SRPMS: - 6/core/sigil-0.9.16-1.mga6 - 7/core/sigil-0.9.16-1.mga7 . The latest Sigil release addresses a significant security vulnerability linked to improperly formatted EPUB documents that allowed unauthorized writes to the filesystem.. Sigil Security, Mageia Update, File System Threat, EPUB Vulnerability. . LinuxSecurity.com Team

Calendar 2 Sep 06, 2019 Mageia
172

Ubuntu 19.04 LTS Security Advisory 4111-1: Ghostscript File Access Risk

Ghostscript could be made to access arbitrary files if it opened a specially crafted file.. =========================================================================Ubuntu Security Notice USN-4111-1 August 29, 2019 ghostscript vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 19.04 - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Ghostscript could be made to access arbitrary files if it opened a specially crafted file. Software Description: - ghostscript: PostScript and PDF interpreter Details: Hiroki Matsukuma discovered that the PDF interpreter in Ghostscript did not properly restrict privileged calls when ‘-dSAFER’ restrictions were in effect. If a user or automated system were tricked into processing a specially crafted file, a remote attacker could possibly use this issue to access arbitrary files. (CVE-2019-14811, CVE-2019-14812, CVE-2019-14813, CVE-2019-14817) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 19.04: ghostscript 9.26~dfsg+0-0ubuntu7.3 libgs9 9.26~dfsg+0-0ubuntu7.3 Ubuntu 18.04 LTS: ghostscript 9.26~dfsg+0-0ubuntu0.18.04.11 libgs9 9.26~dfsg+0-0ubuntu0.18.04.11 Ubuntu 16.04 LTS: ghostscript 9.26~dfsg+0-0ubuntu0.16.04.11 libgs9 9.26~dfsg+0-0ubuntu0.16.04.11 In general, a standard system update will make all the necessary changes. References: CVE-2019-14811, CVE-2019-14812, CVE-2019-14813, CVE-2019-14817 Package Information: https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu7.3 https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.11 https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.11 . Recent Ghostscript flawsfound in Ubuntu may lead to unauthorized file access. Discover the security patches available and the process to update your systems.. Ghostscript Vulnerabilities, Ubuntu Security Notice, Arbitrary File Access, System Update Instructions, PostScript Interpreter. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 28, 2019 Important Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here