Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
87

Debian: DSA 981-1 Critical: bmv Integer Overflow Exploit Risk

Updated package.. - ---------------------------------------------------------------------------Debian Security Advisory DSA 981-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff February 26th, 2006 http://www.debian.org/security/faq - ---------------------------------------------------------------------------Package : bmv Vulnerability : integer overflow Problem-Type : local(remote) Debian-specific: no CVE ID : CVE-2005-3278 Debian Bug : 335497 "felinemalice" discovered an integer overflow in BMV, a post script viewer for SVGAlib, that may lead to the execution of arbitrary code through specially crafted Postscript files. For the old stable distribution (woody) this problem has been fixed in version 1.2-14.3. For the stable distribution (sarge) this problem has been fixed in version 1.2-17sarge1. For the unstable distribution (sid) this problem has been fixed in version 1.2-18. We recommend that you upgrade your bmv package. Upgrade Instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 565 1898d7719bc8b5c0c5de50107d52ba3a Size/MD5 checksum: 14144 34d0323edc6916afcef9496205c54be4 Size/MD5 checksum: 50755 40c881800edac6b1d2ce75ea8da6e6b4 Intel IA-32 architecture: Size/MD5 checksum: 21932 19eba9d127882013b807744c866d89d9 Debian GNU/Linux 3.1 alias sarge - -------------------------------- Source archives: Size/MD5 checksum: 569 3f041ac1b04a613eef6164f657ef7a14 Size/MD5 checksum: 13051 90f228f3dadc268c9d1e16d986c10484 Size/MD5 checksum: 50755 40c881800edac6b1d2ce75ea8da6e6b4 Intel IA-32 architecture: Size/MD5 checksum: 24246 ee390b0280d154d7a7ccef558d7ecca8 These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Enhance bmv modules in Debian to address potential integer overflow vulnerabilities that could lead to unauthorized code execution.. Debian Security,bmv Package Update,Integer Overflow Fix,Code Execution Risk,Package Upgrade. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 02, 2006 Critical Debian
87

Ubuntu: DSA 634-1 Important: Api Insecure Cache Vulnerability Risk

Peter Samuelson, upstream maintainer of bmv, a PostScript viewer for SVGAlib, discovered that temporary files are created in an insecure fashion. A malicious local user could cause arbitrary files to be overwritten by a symlink attack.. --------------------------------------------------------------------------Debian Security Advisory DSA 633-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Martin Schulze January 11th, 2005 http://www.debian.org/security/faq --------------------------------------------------------------------------Package : bmv Vulnerability : insecure temporary file Problem-Type : local Debian-specific: no CVE ID : CAN-2003-0014 Peter Samuelson, upstream maintainer of bmv, a PostScript viewer for SVGAlib, discovered that temporary files are created in an insecure fashion. A malicious local user could cause arbitrary files to be overwritten by a symlink attack. For the stable distribution (woody) this problem has been fixed in version 1.2-14.2. For the unstable distribution (sid) this problem has been fixed in version 1.2-17. We recommend that you upgrade your bmv packages. Upgrade Instructions --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody -------------------------------- Source archives: Size/MD5 checksum: 565 7b056960fafe4fca7c72083788cf5844 Size/MD5 checksum: 11811 ab4e7218ce67de842d3a78e1c8e11caf Size/MD5 checksum: 50755 40c881800edac6b1d2ce75ea8da6e6b4 Intel IA-32 architecture: Size/MD5 checksum: 21762 b625704138829c0dcd96a25e0a7f365b These files will probably be moved into the stable distribution on its next revision. ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Ubuntu Security Notice USN-1234-1 highlights vulnerabilities in temporary file management which could allow for symlink exploitation.. Debian Security, Symlink Attacks, Insecure Files. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 11, 2005 Important Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here