Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 418
Alerts This Week
Warning Icon 1 418

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 38: FEDORA-2023-a5e10b188a moderate: Multiple FFmpeg Flaws

FFmpeg 6.0 upgrade. ---- update to 111.0.5563.64. Fixes the following security issues: CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-a5e10b188a 2023-03-14 00:16:44.047436 --------------------------------------------------------------------------------Name : alsa-plugins Product : Fedora 38 Version : 1.2.7.1 Release : 5.fc38 URL : https://www.alsa-project.org/wiki/Main_Page Summary : The Advanced Linux Sound Architecture (ALSA) Plugins Description : The Advanced Linux Sound Architecture (ALSA) provides audio and MIDI functionality to the Linux operating system. This package includes plugins for ALSA. --------------------------------------------------------------------------------Update Information: FFmpeg 6.0 upgrade. ---- update to 111.0.5563.64. Fixes the following security issues: CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 --------------------------------------------------------------------------------ChangeLog: * Sun Mar 12 2023 Neal Gompa - 1.2.7.1-5 - Rebuild for ffmpeg 6.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1944122 - notcurses-2.3.17 is available https://bugzilla.redhat.com/show_bug.cgi?id=1944122 [ 2 ] Bug #2022640 - notcurses-2.4.9 is available https://bugzilla.redhat.com/show_bug.cgi?id=2022640 [ 3 ] Bug #2028587 -notcurses-3.0.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2028587 [ 4 ] Bug #2045133 - notcurses: FTBFS in Fedora rawhide/f36 https://bugzilla.redhat.com/show_bug.cgi?id=2045133 [ 5 ] Bug #2053373 - notcurses-3.0.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=2053373 [ 6 ] Bug #2172934 - CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2172934 [ 7 ] Bug #2173846 - ffmpeg-6.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2173846 [ 8 ] Bug #2174875 - k3b-22.12.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=2174875 [ 9 ] Bug #2176135 - mlt-7.14.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2176135 [ 10 ] Bug #2176519 - CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 ... chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2176519 [ 11 ] Bug #2176520 - CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 ... chromium: various flaws [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2176520 [ 12 ] Bug #2177300 - retroarch-1.15.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2177300 [ 13 ] Bug #2177550 - nv-codec-headers-12.0.16.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2177550 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-a5e10b188a' at the command line. For more information,refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Transition to FFmpeg 6.0 equipped with alsa-plugins addressing multiple vulnerabilities for Fedora users.. alsa-plugins, Fedora, audio functionality, security issue, system update. . LinuxSecurity.com Team

Calendar%202 Mar 14, 2023 Fedora
89

Fedora 26 SDL2 Significant Integer Overflow Risk 220830

- Added audio stream conversion functions: - `SDL_NewAudioStream()` - `SDL_AudioStreamPut()` - `SDL_AudioStreamGet()` - `SDL_AudioStreamAvailable()` - `SDL_AudioStreamFlush()` - `SDL_AudioStreamClear()` - `SDL_FreeAudioStream()` - Added functions to query and set the SDL memory allocation functions: -. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-5b132e3803 2017-10-31 23:12:40.428387 --------------------------------------------------------------------------------Name : SDL2 Product : Fedora 26 Version : 2.0.7 Release : 1.fc26 URL : http://www.libsdl.org/ Summary : A cross-platform multimedia library Description : Simple DirectMedia Layer (SDL) is a cross-platform multimedia library designed to provide fast access to the graphics frame buffer and audio device. --------------------------------------------------------------------------------Update Information: - Added audio stream conversion functions: - `SDL_NewAudioStream()` -`SDL_AudioStreamPut()` - `SDL_AudioStreamGet()` -`SDL_AudioStreamAvailable()` - `SDL_AudioStreamFlush()` -`SDL_AudioStreamClear()` - `SDL_FreeAudioStream()` - Added functions to query and set the SDL memory allocation functions: -`SDL_GetMemoryFunctions()` - `SDL_SetMemoryFunctions()` -`SDL_GetNumAllocations()` - Added locking functions for multi-threaded access to the joystick and game controller APIs: - `SDL_LockJoysticks()` -`SDL_UnlockJoysticks()` - The following functions are now thread-safe: -`SDL_SetEventFilter()` - `SDL_GetEventFilter()` - `SDL_AddEventWatch()` - `SDL_DelEventWatch()` ---- Fix CVE-2017-2888 --------------------------------------------------------------------------------References: [ 1 ] Bug #1500734 - CVE-2017-2888 SDL2: SDL: Integer overflow while creating a new RGB surface [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1500734 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade SDL2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Key Fedora 26 SDL2 enhancement introduces new audio functionalities and resolves integer overflow vulnerabilities. Upgrade advised.. Fedora Security, SDL2 Update, Integer Overflow, Audio Functions, Memory Management. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 01, 2017 Important Fedora
89

Fedora Core 4: FEDORA-2005-470 Urgent: alsa-lib Audio Update

Updated package.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-469 2005-06-21 ---------------------------------------------------------------------Product : Fedora Core 4 Name : alsa-lib Version : 1.0.9rf Release : 2.FC4 Summary : The Advanced Linux Sound Architecture (ALSA) library. Description : The Advanced Linux Sound Architecture (ALSA) provides audio and MIDI functionality to the Linux operating system. This package includes the ALSA runtime libraries to simplify application programming and provide higher level functionality as well as support for the older OSS API, providing binary compatibility for most OSS programs. ---------------------------------------------------------------------* Thu Jun 16 2005 Martin Stransky - rebuilt * Mon May 30 2005 Martin Stransky 1.0.9rf-1 - New upstream version - moved alsacard utility to alsa-utils ---------------------------------------------------------------------This update can be downloaded from: aa5f80db2752931ddd552021fff09a4d SRPMS/alsa-lib-1.0.9rf-2.FC4.src.rpm 6ae3e44bb5b17ea391511ef9ba46e963 ppc/alsa-lib-1.0.9rf-2.FC4.ppc.rpm 196a000720f48aeded1eec9a0e454829 ppc/alsa-lib-devel-1.0.9rf-2.FC4.ppc.rpm 931ebc5c145199092c8a409a64baaa0a ppc/debug/alsa-lib-debuginfo-1.0.9rf-2.FC4.ppc.rpm cb9ced3e3f5f0a74400179e6c9cf2fa5 ppc/alsa-lib-1.0.9rf-2.FC4.ppc64.rpm e608277109ffbdd068d30b162f080310 x86_64/alsa-lib-1.0.9rf-2.FC4.x86_64.rpm c557a269aa3aa1a30e6f3dcf337c41d9 x86_64/alsa-lib-devel-1.0.9rf-2.FC4.x86_64.rpm 4c6e5f961c9c80556718608e4ab07009 x86_64/debug/alsa-lib-debuginfo-1.0.9rf-2.FC4.x86_64.rpm 66bd526c3134f18283402fa1a1df93b2 x86_64/alsa-lib-1.0.9rf-2.FC4.i386.rpm 66bd526c3134f18283402fa1a1df93b2 i386/alsa-lib-1.0.9rf-2.FC4.i386.rpm de011bf54335536c8429822d75f3f77f i386/alsa-lib-devel-1.0.9rf-2.FC4.i386.rpm 445864f155c76f0bc3af7054cad9a1ec i386/debug/alsa-lib-debuginfo-1.0.9rf-2.FC4.i386.rpm This update can alsobe installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . The latest revision of alsa-lib in Fedora Core 4 tackles essential problems, enhancing audio performance and ensuring better compatibility.. Fedora Update, Alsa-lib Enhancement, Audio Functionality Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 21, 2005 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200