Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 491
Alerts This Week
Warning Icon 1 491

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 4 articles for you...
219

Rocky Linux Autotrace Moderate Heap Buffer Overflow RLSA-2023-2589

Moderate: autotrace security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2023:2589", "synopsis": "Moderate: autotrace security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for autotrace.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "AutoTrace is a program for converting bitmaps to vector graphics.\n\nSecurity Fix(es):\n\n* autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c (CVE-2022-32323)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the Rocky Linux 9.2 Release Notes linked from the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2107471", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2107471", "description": ""}], "cves": [{"name": "CVE-2022-32323", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32323", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L", "cvss3BaseScore": "7.3", "cwe": "CWE-119"}], "references": [], "publishedAt": "2026-06-28T00:03:40.626303Z", "rpms": {"Rocky Linux 9": {"nvras": ["autotrace-0:0.31.1-65.el9.aarch64.rpm", "autotrace-0:0.31.1-65.el9.i686.rpm", "autotrace-0:0.31.1-65.el9.ppc64le.rpm", "autotrace-0:0.31.1-65.el9.s390x.rpm", "autotrace-0:0.31.1-65.el9.src.rpm", "autotrace-0:0.31.1-65.el9.x86_64.rpm", "autotrace-debuginfo-0:0.31.1-65.el9.aarch64.rpm", "autotrace-debuginfo-0:0.31.1-65.el9.i686.rpm", "autotrace-debuginfo-0:0.31.1-65.el9.ppc64le.rpm", "autotrace-debuginfo-0:0.31.1-65.el9.s390x.rpm", "autotrace-debuginfo-0:0.31.1-65.el9.x86_64.rpm","autotrace-debugsource-0:0.31.1-65.el9.aarch64.rpm", "autotrace-debugsource-0:0.31.1-65.el9.i686.rpm", "autotrace-debugsource-0:0.31.1-65.el9.ppc64le.rpm", "autotrace-debugsource-0:0.31.1-65.el9.s390x.rpm", "autotrace-debugsource-0:0.31.1-65.el9.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. A moderate security update for autotrace in Rocky Linux addresses a heap-buffer overflow vulnerability.. Rocky Linux autotrace security update, moderate security advisory, heap-buffer overflow CVE-2022-32323. . Severity: moderate. LinuxSecurity.com Team

Calendar%202 Jun 28, 2026 moderate Rocky Linux
219

Rocky Linux Autotrace Moderate Memory Buffer Overflow Flaw RLSA-2023-3067

Moderate: autotrace security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2023:3067", "synopsis": "Moderate: autotrace security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for autotrace.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "AutoTrace is a program for converting bitmaps to vector graphics.\n\nSecurity Fix(es):\n\n* autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c (CVE-2022-32323)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the Rocky Linux 8.8 Release Notes linked from the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2107471", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2107471", "description": ""}], "cves": [{"name": "CVE-2022-32323", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32323", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L", "cvss3BaseScore": "7.3", "cwe": "CWE-119"}], "references": [], "publishedAt": "2026-06-28T00:01:40.098233Z", "rpms": {"Rocky Linux 8": {"nvras": ["autotrace-0:0.31.1-55.el8.aarch64.rpm", "autotrace-0:0.31.1-55.el8.i686.rpm", "autotrace-0:0.31.1-55.el8.src.rpm", "autotrace-0:0.31.1-55.el8.x86_64.rpm", "autotrace-debuginfo-0:0.31.1-55.el8.aarch64.rpm", "autotrace-debuginfo-0:0.31.1-55.el8.i686.rpm", "autotrace-debuginfo-0:0.31.1-55.el8.x86_64.rpm", "autotrace-debugsource-0:0.31.1-55.el8.aarch64.rpm", "autotrace-debugsource-0:0.31.1-55.el8.i686.rpm", "autotrace-debugsource-0:0.31.1-55.el8.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Moderateautotrace security update available for Rocky Linux. Details on heap buffer overflow and CVSS scores are included.. Rocky Linux Autotrace Security Update Moderate CVE-2022-32323. . Severity: moderate. LinuxSecurity.com Team

Calendar%202 Jun 28, 2026 moderate Rocky Linux
98

RedHat RHSA-2023:3067-01 Moderate: Autotrace Heap Buffer Overflow

An update for autotrace is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: autotrace security update Advisory ID: RHSA-2023:3067-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:3067 Issue date: 2023-05-16 CVE Names: CVE-2022-32323 ==================================================================== 1. Summary: An update for autotrace is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux CRB (v. 8) - aarch64, ppc64le, s390x, x86_64 3. Description: AutoTrace is a program for converting bitmaps to vector graphics. Security Fix(es): * autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c (CVE-2022-32323) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.8 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2107471 - CVE-2022-32323autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c 6. Package List: Red Hat Enterprise Linux CRB (v. 8): Source: autotrace-0.31.1-55.el8.src.rpm aarch64: autotrace-0.31.1-55.el8.aarch64.rpm autotrace-debuginfo-0.31.1-55.el8.aarch64.rpm autotrace-debugsource-0.31.1-55.el8.aarch64.rpm ppc64le: autotrace-0.31.1-55.el8.ppc64le.rpm autotrace-debuginfo-0.31.1-55.el8.ppc64le.rpm autotrace-debugsource-0.31.1-55.el8.ppc64le.rpm s390x: autotrace-0.31.1-55.el8.s390x.rpm autotrace-debuginfo-0.31.1-55.el8.s390x.rpm autotrace-debugsource-0.31.1-55.el8.s390x.rpm x86_64: autotrace-0.31.1-55.el8.i686.rpm autotrace-0.31.1-55.el8.x86_64.rpm autotrace-debuginfo-0.31.1-55.el8.i686.rpm autotrace-debuginfo-0.31.1-55.el8.x86_64.rpm autotrace-debugsource-0.31.1-55.el8.i686.rpm autotrace-debugsource-0.31.1-55.el8.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2022-32323 https://access.redhat.com/security/updates/classification/#moderate https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.8_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBZGNuq9zjgjWX9erEAQgKAxAAo2uU4hr+KYz0nCSwRK9wKuwzfRXMhyG5 z4zEx3L0vcEfuOZwleWyg6RgiSJPUgFFQWjx/YxLKrD7j5QSqhyhjrQQ0/xxF9d4 mIIIANQUS8WkugGGPRFZjCndUHS+gTRO97yDh/gnD5s6wfylqesWV33m/cNCDvlt +hIpLb8LP9rbmRkskigvLHHjj+P4nNqptO3a7vzHn817CDijKO2vX3zVtVI+j1Ay /uQMMp9o2Z3MkP6WSsM9Og92TFDrr2EuyAuXlXI2RwwM5eEb5NbYozp9k6++zYtN hSeduBw8TmaFTRCN5m13mgESycSl2NpzaxnkoHHYk6KsKNXXnkP5gwlmCPkyzBMB CeNzn8TldXJzei7n+B/JHyoD54Ia6EfyAHvsx/NnP4Y6OyM63muvxODDGRfnZQjV mc75A1vAWUVYwghXlbH/zB/HkEA78eW6cgkszwPL//J/U7cvLYk5xKhb8XZHPzoC bcE4yZJNdBQs52Zlq2z0KkjA7BVs3fa+H70W41cO3n8nJjsKkA2o73fuRkUFnIAA DlnfMs2IesDINAdcl2UxegAcuI5sG0YU3vsljd/JaGySgfj9ObDKVPTasIJVA6R/ yYjRk1XrtiEF2mjAsFKkP4Yk4Bi8HAWisuPZGeZX7RyF2CL8KL8nsps5eiS8YPm8 Cr6Kz7qZCO8=Q1x0 -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Red Hat's notification outlines a significant security patch for gimp focusing on fixing vulnerabilities related to stack-overflow flaws.. Red Hat Security, Autotrace Update, Heap Overflow Issue, Security Advisory. . LinuxSecurity.com Team

Calendar%202 May 16, 2023 Red Hat
98

Red Hat Enterprise Linux 9 RHSA-2023-2589-01: Moderate Autotrace Overflow

An update for autotrace is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: autotrace security update Advisory ID: RHSA-2023:2589-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:2589 Issue date: 2023-05-09 CVE Names: CVE-2022-32323 ==================================================================== 1. Summary: An update for autotrace is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux CRB (v. 9) - aarch64, ppc64le, s390x, x86_64 3. Description: AutoTrace is a program for converting bitmaps to vector graphics. Security Fix(es): * autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c (CVE-2022-32323) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.2 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2107471 - CVE-2022-32323autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c 6. Package List: Red Hat Enterprise Linux CRB (v. 9): Source: autotrace-0.31.1-65.el9.src.rpm aarch64: autotrace-0.31.1-65.el9.aarch64.rpm autotrace-debuginfo-0.31.1-65.el9.aarch64.rpm autotrace-debugsource-0.31.1-65.el9.aarch64.rpm ppc64le: autotrace-0.31.1-65.el9.ppc64le.rpm autotrace-debuginfo-0.31.1-65.el9.ppc64le.rpm autotrace-debugsource-0.31.1-65.el9.ppc64le.rpm s390x: autotrace-0.31.1-65.el9.s390x.rpm autotrace-debuginfo-0.31.1-65.el9.s390x.rpm autotrace-debugsource-0.31.1-65.el9.s390x.rpm x86_64: autotrace-0.31.1-65.el9.i686.rpm autotrace-0.31.1-65.el9.x86_64.rpm autotrace-debuginfo-0.31.1-65.el9.i686.rpm autotrace-debuginfo-0.31.1-65.el9.x86_64.rpm autotrace-debugsource-0.31.1-65.el9.i686.rpm autotrace-debugsource-0.31.1-65.el9.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-32323 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.2_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBZFo0k9zjgjWX9erEAQi/rhAApsGCBXnU9wvTNFKKeTcLdInCicA00eYZ zsxLch7pZiH4TuL1OzZ+krlxGXGwJsz0/xCpTvyR35NXUASooJn+1mPMfAdqDxdt I/VTVHSRIICdZExLJRybcNHmrf56sMX1tM8ru/WtYaxF8ophq7d43HEAJTyE/zT/ hWyQqoeyv54fDcNcRUjGvCQM+o3rnxlVVxIoIHHZD5vzjzpQgq/JI3MyiXNauhFf fpfbyd6DUKq0GkCGKU4HPYD3tHHzoe0TcIxiSiUnP2AJ4A3gLjothbw6MvIkXu3v 3+CQMF0iOSKA3EX9J9s6aoAweJahSojxdmoE9eW2N7/aXv9ixif4RuBGt6YS7k2f jRQjXfZFOeu4lGdoD5/bF75rVERnkt4Qa48NTntKdOoUTmGYmZjc+d109+ab9x+I evqa9GiRQm57cmMOFF0R3kWau8OzRwwXwQT6tM1TcyKXDkeTa9zSUpYMcmSV8fDJ r+XIYr4r5KL5mWHMWHfE8wG5BexGxeJm2clNQRXTOt+G72Cp1wY85al547Mb625u po55LmxKiaW3QZmNpa4TtOgsktnpAYnETvJObEtYaCLVOLF8J6CHtVmWFj76YUEX y9RJOYu507Kr4bGH1OmGByDnwoLWxF1rEAoWV/kPXf3oqk7oGuxRlddYQLuUbmbo nShLR6Wgel8=yEWL -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Recent autotrace security patch for Red Hat tackles heap buffer overflow vulnerabilities. Discover the details today.. Red Hat Security, autotrace Update, Linux Security Patch, Heap Buffer Overflow, Enterprise Linux. . LinuxSecurity.com Team

Calendar%202 May 09, 2023 Red Hat
202

openSUSE: 2023:20228-2 Critical: Autotrace Memory Safety Update

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for autotrace ______________________________________________________________________________ Announcement ID: openSUSE-SU-2022:10197-1 Rating: important References: #1201529 Cross-References: CVE-2022-32323 CVSS scores: CVE-2022-32323 (NVD) : 7.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L Affected Products: openSUSE Backports SLE-15-SP4 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for autotrace fixes the following issues: - CVE-2022-32323: Fixed Heap overflow in ReadImage() (boo#1201529). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP4: zypper in -t patch openSUSE-2022-10197=1 Package List: - openSUSE Backports SLE-15-SP4 (aarch64 i586 ppc64le s390x x86_64): autotrace-0.31.1-bp154.3.3.1 autotrace-devel-0.31.1-bp154.3.3.1 libautotrace3-0.31.1-bp154.3.3.1 References: https://www.suse.com/security/cve/CVE-2022-32323.html https://bugzilla.suse.com/1201529 . Critical patch for openSUSE addresses a buffer overflow weakness in autotrace, remediating CVE-2022-32323 to enhance system security.. openSUSE Update, autotrace Fix, heap Overflow Patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 11, 2022 Important OpenSUSE
202

openSUSE: 2022:10199-1 Important: Heap Overflow in Autotrace

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for autotrace ______________________________________________________________________________ Announcement ID: openSUSE-SU-2022:10199-1 Rating: important References: #1201529 Cross-References: CVE-2022-32323 CVSS scores: CVE-2022-32323 (NVD) : 7.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L Affected Products: openSUSE Backports SLE-15-SP3 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for autotrace fixes the following issues: - CVE-2022-32323: Fixed Heap overflow in ReadImage() (boo#1201529). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP3: zypper in -t patch openSUSE-2022-10199=1 Package List: - openSUSE Backports SLE-15-SP3 (aarch64 i586 ppc64le s390x x86_64): autotrace-0.31.1-bp153.2.6.1 autotrace-devel-0.31.1-bp153.2.6.1 libautotrace3-0.31.1-bp153.2.6.1 References: https://www.suse.com/security/cve/CVE-2022-32323.html https://bugzilla.suse.com/1201529 . A critical advisory for openSUSE tackles a buffer overflow flaw in autotrace. Discover how to implement the fix today!. openSUSE Security, heap overflow Patch, autotrace Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 11, 2022 Important OpenSUSE
89

Ubuntu 22.04: 2023-4b5d1a7fd0 High: ImageMagick Buffer Overflow

AutoTrace ver. 0.31.9. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-6813a0eb99 2022-09-08 11:01:41.721574 --------------------------------------------------------------------------------Name : autotrace Product : Fedora 36 Version : 0.31.9 Release : 1.fc36 URL : Summary : Utility for converting bitmaps to vector graphics Description : AutoTrace is a program for converting bitmaps to vector graphics. Supported input formats include BMP, TGA, PNM, PPM, and any format supported by ImageMagick, whereas output can be produced in Postscript, SVG, xfig, SWF, and others. --------------------------------------------------------------------------------Update Information: AutoTrace ver. 0.31.9 --------------------------------------------------------------------------------ChangeLog: * Tue Aug 30 2022 Peter Lemenkov - 0.31.9-1 - Ver. 0.31.9 (API/ABI compatible) * Wed Jul 20 2022 Fedora Release Engineering - 0.31.1-64 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2121826 - CVE-2022-32323 autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2121826 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-6813a0eb99' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 36 rolls out AutoTrace 0.31.9, mitigating memory overflow issues while boosting visual performance. Check for updates!. AutoTrace Update, Fedora 36 Security, Vector Graphics Tool, Software Vulnerability Fix, Patch AutoTrace. . LinuxSecurity.com Team

Calendar%202 Sep 08, 2022 Fedora
202

openSUSE Leap 15.3: SUSE-SU-2022:0141-1 Moderate: Autotrace Issues

An update that fixes four vulnerabilities is now available. . SUSE Security Update: Security update for autotrace ______________________________________________________________________________ Announcement ID: openSUSE-SU-2022:0141-1 Rating: moderate References: #1169614 #1182158 #1182159 Cross-References: CVE-2017-9182 CVE-2017-9190 CVE-2019-19004 CVE-2019-19005 CVSS scores: CVE-2017-9182 (NVD) : 7.5 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2017-9190 (NVD) : 7.5 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2019-19004 (NVD) : 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L CVE-2019-19005 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: openSUSE Backports SLE-15-SP3 openSUSE Leap 15.3 ______________________________________________________________________________ An update that fixes four vulnerabilities is now available. Description: This update for autotrace fixes the following issues: - CVE-2019-19004: Fixed a biWidth*biBitCnt integer overflow fix (boo#1182158) - CVE-2019-19005, CVE-2017-9182, CVE-2017-9190: Bitmap double free fix (boo#1182159) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2022-141=1 - openSUSE Backports SLE-15-SP3: zypper in -t patch openSUSE-2022-141=1 Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): permissions-20181225-23.12.1 permissions-debuginfo-20181225-23.12.1 permissions-debugsource-20181225-23.12.1 - openSUSE Leap 15.3 (noarch): permissions-zypp-plugin-20181225-23.12.1 - openSUSE Backports SLE-15-SP3 (aarch64 i586 ppc64le s390x x86_64): autotrace-0.31.1-bp153.2.3.1 autotrace-devel-0.31.1-bp153.2.3.1 libautotrace3-0.31.1-bp153.2.3.1 References: https://www.suse.com/security/cve/CVE-2017-9182.html https://www.suse.com/security/cve/CVE-2017-9190.html https://www.suse.com/security/cve/CVE-2019-19004.html https://www.suse.com/security/cve/CVE-2019-19005.html https://bugzilla.suse.com/1169614 https://bugzilla.suse.com/1182158 https://bugzilla.suse.com/1182159 . A new update has been released to address several bugs in autotrace for openSUSE, improving both system security and overall performance.. openSUSE Security, autotrace Update, Software Fixes, System Integrity. . LinuxSecurity.com Team

Calendar%202 May 18, 2022 OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200