Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
200

Scientific Linux: SLSA-2019-2343-1 Moderate: httpd Access Control Fix

httpd: mod_auth_digest: access control bypass due to race condition (CVE-2019-0217) * httpd: URL normalization inconsistency (CVE-2019-0220) SL7 x86_64 httpd-tools-2.4.6-90.el7.x86_64.rpm mod_ssl-2.4.6-90.el7.x86_64.rpm httpd-devel-2.4.6-90.el7.x86_64.rpm httpd-manual-2.4.6-90.el7.noarch.rpm httpd-2.4.6-90.el7.x86_64.rpm mod_session-2.4.6-90.el7.x86_64.rpm mod_p [More...]. Synopsis: Moderate: httpd security and bug fix update Advisory ID: SLSA-2019:2343-1 Issue Date: 2019-08-06 CVE Numbers: CVE-2019-0220 CVE-2019-0217 -- Security Fix(es): * httpd: mod_auth_digest: access control bypass due to race condition (CVE-2019-0217) * httpd: URL normalization inconsistency (CVE-2019-0220) -- SL7 x86_64 httpd-tools-2.4.6-90.el7.x86_64.rpm mod_ssl-2.4.6-90.el7.x86_64.rpm httpd-devel-2.4.6-90.el7.x86_64.rpm httpd-manual-2.4.6-90.el7.noarch.rpm httpd-2.4.6-90.el7.x86_64.rpm mod_session-2.4.6-90.el7.x86_64.rpm mod_proxy_html-2.4.6-90.el7.x86_64.rpm mod_ldap-2.4.6-90.el7.x86_64.rpm httpd-debuginfo-2.4.6-90.el7.x86_64.rpm noarch httpd-manual-2.4.6-90.el7.noarch.rpm - Scientific Linux Development Team . Essential httpd security patch and bug fix release for Scientific Linux SL7 tackling access permissions vulnerabilities. Click to learn more.. httpd Update, Security Advisory, Mod_Auth_Digest, SL7, Bug Fix. . LinuxSecurity.com Team

Calendar 2 Aug 26, 2019 Scientific Linux
98

Red Hat Enterprise Linux 6: RHSA-2015-0991 Moderate: tomcat6 DoS Risk

Updated tomcat6 packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: tomcat6 security and bug fix update Advisory ID: RHSA-2015:0991-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2015:0991.html Issue date: 2015-05-12 CVE Names: CVE-2014-0227 ==================================================================== 1. Summary: Updated tomcat6 packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop (v. 6) - i386, x86_64 Red Hat Enterprise Linux Desktop Optional (v. 6) - i386, x86_64 Red Hat Enterprise Linux HPC Node (v. 6) - x86_64 Red Hat Enterprise Linux HPC Node Optional (v. 6) - x86_64 Red Hat Enterprise Linux Server (v. 6) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Server Optional (v. 6) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Workstation (v. 6) - i386, x86_64 Red Hat Enterprise Linux Workstation Optional (v. 6) - i386, x86_64 3. Description: Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies. It was discovered that the ChunkedInputFilter in Tomcat did not fail subsequent attempts to read input after malformed chunked encoding was detected. A remote attacker could possibly use this flaw to make Tomcat process part of the request body asnew request, or cause a denial of service. (CVE-2014-0227) This update also fixes the following bug: * Before this update, the tomcat6 init script did not try to kill the tomcat process if an attempt to stop it was unsuccessful, which would prevent tomcat from restarting properly. The init script was modified to correct this issue. (BZ#1207048) All Tomcat 6 users are advised to upgrade to these updated packages, which correct these issues. Tomcat must be restarted for this update to take effect. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1109196 - CVE-2014-0227 Tomcat/JBossWeb: request smuggling andl imited DoS in ChunkedInputFilter 6. Package List: Red Hat Enterprise Linux Desktop (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Desktop Optional (v.6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux HPC Node (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux HPC Node Optional (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise LinuxServer (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm ppc64: tomcat6-6.0.24-83.el6_6.ppc64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.ppc64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.ppc64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.ppc64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.ppc64.rpm tomcat6-javadoc-6.0.24-83.el6_6.ppc64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.ppc64.rpm tomcat6-lib-6.0.24-83.el6_6.ppc64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.ppc64.rpm tomcat6-webapps-6.0.24-83.el6_6.ppc64.rpm s390x: tomcat6-6.0.24-83.el6_6.s390x.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.s390x.rpm tomcat6-debuginfo-6.0.24-83.el6_6.s390x.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.s390x.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.s390x.rpm tomcat6-javadoc-6.0.24-83.el6_6.s390x.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.s390x.rpm tomcat6-lib-6.0.24-83.el6_6.s390x.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.s390x.rpm tomcat6-webapps-6.0.24-83.el6_6.s390x.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Server Optional (v.6): i386: tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm ppc64: tomcat6-admin-webapps-6.0.24-83.el6_6.ppc64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.ppc64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.ppc64.rpm tomcat6-javadoc-6.0.24-83.el6_6.ppc64.rpm tomcat6-webapps-6.0.24-83.el6_6.ppc64.rpm s390x: tomcat6-admin-webapps-6.0.24-83.el6_6.s390x.rpm tomcat6-debuginfo-6.0.24-83.el6_6.s390x.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.s390x.rpm tomcat6-javadoc-6.0.24-83.el6_6.s390x.rpm tomcat6-webapps-6.0.24-83.el6_6.s390x.rpm x86_64: tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Workstation (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Workstation Optional (v.6): i386: tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2014-0227 https://access.redhat.com/security/updates/classification/#moderate https://tomcat.apache.org/security-6.html#Fixed_in_Apache_Tomcat_6.0.43 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2015 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iD8DBQFVUmLIXlSAg2UNWIIRAt88AJwJq6Ag5AspNli+CUC0yZwWGPbvdACeMsrA C4/RY1qgnY7waDuBnQ2BEuM=/G33 -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Patched tomcat6 updates for Red Hat address vulnerabilities and defects. Critical for secure system functioning.. Red Hat Enterprise Linux,tomcat6 security,security updates. . LinuxSecurity.com Team

Calendar 2 May 12, 2015 Red Hat
98

Red Hat 4.7: RHSA-2010:0342-01 Important Fix for Kernel DoS

Updated kernel packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 4.7 Extended Update Support. The Red Hat Security Response Team has rated this update as having [More...]. ==================================================================== Red Hat Security Advisory Synopsis: Important: kernel security and bug fix update Advisory ID: RHSA-2010:0342-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2010:0342.html Issue date: 2010-04-06 CVE Names: CVE-2010-0008 ==================================================================== 1. Summary: Updated kernel packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 4.7 Extended Update Support. The Red Hat Security Response Team has rated this update as having important security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4.7.z - i386, ia64, noarch, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux ES version 4.7.z - i386, ia64, noarch, x86_64 3. Description: The kernel packages contain the Linux kernel, the core of any Linux operating system. This update fixes the following security issue: * a flaw was found in the sctp_rcv_ootb() function in the Linux kernel Stream Control Transmission Protocol (SCTP) implementation. A remote attacker could send a specially-crafted SCTP packet to a target system, resulting in a denial of service. (CVE-2010-0008, Important) This update also fixes the following bug: * the fix for CVE-2009-4538 provided by RHSA-2010:0111 introduced a regression, preventing Wake on LAN (WoL) working for network devices using the Intel PRO/1000 Linux driver, e1000e. Attempting to configure WoL for such devices resulted in the following error, even when configuringvalid options: "Cannot set new wake-on-lan settings: Operation not supported not setting wol" This update resolves this regression, and WoL now works as expected for network devices using the e1000e driver. (BZ#565495) Users should upgrade to these updated packages, which contain backported patches to correct these issues. The system must be rebooted for this update to take effect. 4. Solution: Before applying this update, make sure all previously-released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at 5. Bugs fixed (http://bugzilla.redhat.com/): 555658 - CVE-2010-0008 kernel: sctp remote denial of service 565495 - e1000e: wol is broken in kernel 2.6.9-89.19 [rhel-4.7.z] 6. Package List: Red Hat Enterprise Linux AS version4.7.z: Source: kernel-2.6.9-78.0.30.EL.src.rpm kernel-2.6.9-78.0.30.EL.src.rpm i386: kernel-2.6.9-78.0.30.EL.i686.rpm kernel-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm ia64: kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm noarch: kernel-doc-2.6.9-78.0.30.EL.noarch.rpm kernel-doc-2.6.9-78.0.30.EL.noarch.rpm ppc: kernel-2.6.9-78.0.30.EL.ppc64.rpm kernel-2.6.9-78.0.30.EL.ppc64.rpm kernel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-largesmp-2.6.9-78.0.30.EL.ppc64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ppc64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ppc64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ppc64.rpm s390: kernel-2.6.9-78.0.30.EL.s390.rpm kernel-2.6.9-78.0.30.EL.s390.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390.rpm kernel-devel-2.6.9-78.0.30.EL.s390.rpm kernel-devel-2.6.9-78.0.30.EL.s390.rpm s390x: kernel-2.6.9-78.0.30.EL.s390x.rpm kernel-2.6.9-78.0.30.EL.s390x.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390x.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390x.rpm kernel-devel-2.6.9-78.0.30.EL.s390x.rpm kernel-devel-2.6.9-78.0.30.EL.s390x.rpm x86_64: kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm Red Hat Enterprise Linux ES version4.7.z: Source: kernel-2.6.9-78.0.30.EL.src.rpm kernel-2.6.9-78.0.30.EL.src.rpm i386: kernel-2.6.9-78.0.30.EL.i686.rpm kernel-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm ia64: kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm noarch: kernel-doc-2.6.9-78.0.30.EL.noarch.rpm kernel-doc-2.6.9-78.0.30.EL.noarch.rpm x86_64: kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://access.redhat.com/security/cve/CVE-2010-0008 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2010 Red Hat, Inc. . The latest kernel security update for CentOS enhances system reliability and protects against denial-of-service vulnerabilities.. Red Hat Linux Security, Kernel Update Advisory, DoS Fix, Important Patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Apr 06, 2010 Important Red Hat
200

Scientific Linux 4.x Kernel Important Security Flaws CVE-2008-0598

Important: kernel security and bug fix update. Date: Wed, 25 Jun 2008 17:03:26 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for kernel on SL4.x i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Important: kernel security and bug fix update Issue date: 2008-06-25 CVE Names: CVE-2008-0598 CVE-2008-1367 CVE-2008-2365 CVE-2008-2729 These updated packages fix the following security issues: * A security flaw was found in the Linux kernel memory copy routines, when running on certain AMD64 systems. If an unsuccessful attempt to copy kernel memory from source to destination memory locations occurred, the copy routines did not zero the content at the destination memory location. This could allow a local unprivileged user to view potentially sensitive data. (CVE-2008-2729, Important) * Alexey Dobriyan discovered a race condition in the Linux kernel process-tracing system call, ptrace. A local unprivileged user could use this flaw to cause a denial of service (kernel hang). (CVE-2008-2365, Important) * Tavis Ormandy discovered a deficiency in the Linux kernel 32-bit and 64-bit emulation. This could allow a local unprivileged user to prepare and run a specially crafted binary, which would use this deficiency to leak uninitialized and potentially sensitive data. (CVE-2008-0598, Important) * It was discovered that the Linux kernel handled string operations in the opposite way to the GNU Compiler Collection (GCC). This could allow a local unprivileged user to cause memory corruption. (CVE-2008-1367, Low) As well, these updated packages fix the following bug: * On systems with a large number of CPUs (more than 16), multiple applications calling the "times()" system call may have caused a system hang. SL 4.x SRPMS: kernel-2.6.9-67.0.20.EL.src.rpm i386: kernel-2.6.9-67.0.20.EL.i686.rpm kernel-devel-2.6.9-67.0.20.EL.i686.rpm kernel-doc-2.6.9-67.0.20.EL.noarch.rpm kernel-hugemem-2.6.9-67.0.20.EL.i686.rpm kernel-hugemem-devel-2.6.9-67.0.20.EL.i686.rpm kernel-smp-2.6.9-67.0.20.EL.i686.rpm kernel-smp-devel-2.6.9-67.0.20.EL.i686.rpm kernel-xenU-2.6.9-67.0.20.EL.i686.rpm kernel-xenU-devel-2.6.9-67.0.20.EL.i686.rpm Dependencies: kernel-module-fuse-2.6.9-67.0.20.EL-2.5.3-1.SL.i686.rpm kernel-module-fuse-2.6.9-67.0.20.ELhugemem-2.5.3-1.SL.i686.rpm kernel-module-fuse-2.6.9-67.0.20.ELsmp-2.5.3-1.SL.i686.rpm kernel-module-fuse-2.6.9-67.0.20.ELxenU-2.5.3-1.SL.i686.rpm kernel-module-ipw3945-2.6.9-67.0.20.EL-1.1.0-1.SL4.i686.rpm kernel-module-ipw3945-2.6.9-67.0.20.ELhugemem-1.1.0-1.SL4.i686.rpm kernel-module-ipw3945-2.6.9-67.0.20.ELsmp-1.1.0-1.SL4.i686.rpm kernel-module-ipw3945-2.6.9-67.0.20.ELxenU-1.1.0-1.SL4.i686.rpm kernel-module-madwifi-2.6.9-67.0.20.EL-0.9.3.3-10.sl4.i686.rpm kernel-module-madwifi-2.6.9-67.0.20.ELhugemem-0.9.3.3-10.sl4.i686.rpm kernel-module-madwifi-2.6.9-67.0.20.ELsmp-0.9.3.3-10.sl4.i686.rpm kernel-module-madwifi-hal-2.6.9-67.0.20.EL-0.9.3.3-10.sl4.i686.rpm kernel-module-madwifi-hal-2.6.9-67.0.20.ELhugemem-0.9.3.3-10.sl4.i686.rpm kernel-module-madwifi-hal-2.6.9-67.0.20.ELsmp-0.9.3.3-10.sl4.i686.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.EL-1.41-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.ELhugemem-1.41-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.ELsmp-1.41-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.ELxenU-1.41-1.SL.i686.rpm kernel-module-openafs-2.6.9-67.0.20.EL-1.4.6-58.SL4.i686.rpm kernel-module-openafs-2.6.9-67.0.20.ELhugemem-1.4.6-58.SL4.i686.rpm kernel-module-openafs-2.6.9-67.0.20.ELsmp-1.4.6-58.SL4.i686.rpm kernel-module-openafs-2.6.9-67.0.20.ELxenU-1.4.6-58.SL4.i686.rpm kernel-module-r1000-2.6.9-67.0.20.EL-2.2-2.SL4x.i686.rpm kernel-module-r1000-2.6.9-67.0.20.ELhugemem-2.2-2.SL4x.i686.rpm kernel-module-r1000-2.6.9-67.0.20.ELsmp-2.2-2.SL4x.i686.rpm kernel-module-r1000-2.6.9-67.0.20.ELxenU-2.2-2.SL4x.i686.rpm x86_64: kernel-2.6.9-67.0.20.EL.x86_64.rpm kernel-devel-2.6.9-67.0.20.EL.x86_64.rpm kernel-doc-2.6.9-67.0.20.EL.noarch.rpm kernel-largesmp-2.6.9-67.0.20.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-67.0.20.EL.x86_64.rpm kernel-smp-2.6.9-67.0.20.EL.x86_64.rpm kernel-smp-devel-2.6.9-67.0.20.EL.x86_64.rpm kernel-xenU-2.6.9-67.0.20.EL.x86_64.rpm kernel-xenU-devel-2.6.9-67.0.20.EL.x86_64.rpm Dependencies: kernel-module-fuse-2.6.9-67.0.20.EL-2.5.3-1.SL.x86_64.rpm kernel-module-fuse-2.6.9-67.0.20.ELlargesmp-2.5.3-1.SL.x86_64.rpm kernel-module-fuse-2.6.9-67.0.20.ELsmp-2.5.3-1.SL.x86_64.rpm kernel-module-fuse-2.6.9-67.0.20.ELxenU-2.5.3-1.SL.x86_64.rpm kernel-module-ipw3945-2.6.9-67.0.20.EL-1.1.0-1.SL4.x86_64.rpm kernel-module-ipw3945-2.6.9-67.0.20.ELlargesmp-1.1.0-1.SL4.x86_64.rpm kernel-module-ipw3945-2.6.9-67.0.20.ELsmp-1.1.0-1.SL4.x86_64.rpm kernel-module-ipw3945-2.6.9-67.0.20.ELxenU-1.1.0-1.SL4.x86_64.rpm kernel-module-madwifi-2.6.9-67.0.20.EL-0.9.3.3-10.sl4.x86_64.rpm kernel-module-madwifi-2.6.9-67.0.20.ELlargesmp-0.9.3.3-10.sl4.x86_64.rpm kernel-module-madwifi-2.6.9-67.0.20.ELsmp-0.9.3.3-10.sl4.x86_64.rpm kernel-module-madwifi-hal-2.6.9-67.0.20.EL-0.9.3.3-10.sl4.x86_64.rpm kernel-module-madwifi-hal-2.6.9-67.0.20.ELlargesmp-0.9.3.3-10.sl4.x86_64.rpm kernel-module-madwifi-hal-2.6.9-67.0.20.ELsmp-0.9.3.3-10.sl4.x86_64.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.EL-1.41-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.ELlargesmp-1.41-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.ELsmp-1.41-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.9-67.0.20.ELxenU-1.41-1.SL.x86_64.rpm kernel-module-openafs-2.6.9-67.0.20.EL-1.4.6-58.SL4.x86_64.rpm kernel-module-openafs-2.6.9-67.0.20.ELlargesmp-1.4.6-58.SL4.x86_64.rpm kernel-module-openafs-2.6.9-67.0.20.ELsmp-1.4.6-58.SL4.x86_64.rpm kernel-module-openafs-2.6.9-67.0.20.ELxenU-1.4.6-58.SL4.x86_64.rpm kernel-module-r1000-2.6.9-67.0.20.EL-2.2-2.SL4x.x86_64.rpm kernel-module-r1000-2.6.9-67.0.20.ELlargesmp-2.2-2.SL4x.x86_64.rpm kernel-module-r1000-2.6.9-67.0.20.ELsmp-2.2-2.SL4x.x86_64.rpm kernel-module-r1000-2.6.9-67.0.20.ELxenU-2.2-2.SL4x.x86_64.rpm -Connie Sieh -Troy Dawson . Important software patch for Scientific Linux tackles multiple vulnerabilities, improving overall system resilience and safeguarding user information.. kernel security update, Scientific Linux security, Linux kernel fixes, important kernel updates. . Severity: Important.LinuxSecurity.com Team

Calendar 2 Jun 25, 2008 Important Scientific Linux
200

Scientific Linux SL5.0: Errata for Xen/Libvirt Moderate Update

Moderate: xen/libvirt security & bug update. Date: Thu, 6 Dec 2007 10:35:35 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for xen/libvirt on SL5.0 i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Moderate: xen/libvirt security & bug update Issue date: 2007-12-06 NOTE1: The xen update needs to be applied with the new kernel kernel-2.6.18-53.1.4.el5. Because a kernel does not automatically get updated, but the xen libraries do (by default) it is best to upgrade them both at the same time, and then reboot into the new kernel. Updating both the kernel and xen is because the new kernel has changed the way that it works with xen. So upgrading and booting into the new kernel will break your old xen. And updating xen and trying to restart xen domains in your old kernel will not work either. Updating the xen libraries will not affect currently running virtual machines, but will prevent any new ones being started or rebooted, until you have booted into the new kernel. NOTE2: This xen/kernel update is only really needed for the master virtual machine (Dom 0). Virtual machines can update their kernels without any problems. SL 5.x SRPMS: libvirt-0.2.3-9.el5.src.rpm python-virtinst-0.103.0-3.sl5.2.src.rpm virt-manager-0.4.0-3.el5.src.rpm xen-3.0.3-41.el5.src.rpm i386: libvirt-0.2.3-9.el5.i386.rpm libvirt-devel-0.2.3-9.el5.i386.rpm libvirt-python-0.2.3-9.el5.i386.rpm python-virtinst-0.103.0-3.sl5.2.noarch.rpm virt-manager-0.4.0-3.el5.i386.rpm xen-3.0.3-41.el5.i386.rpm xen-devel-3.0.3-41.el5.i386.rpm xen-libs-3.0.3-41.el5.i386.rpm x86_64: libvirt-0.2.3-9.el5.i386.rpm libvirt-0.2.3-9.el5.x86_64.rpm libvirt-devel-0.2.3-9.el5.i386.rpm libvirt-devel-0.2.3-9.el5.x86_64.rpm libvirt-python-0.2.3-9.el5.x86_64.rpm python-virtinst-0.103.0-3.sl5.2.noarch.rpm virt-manager-0.4.0-3.el5.x86_64.rpm xen-3.0.3-41.el5.x86_64.rpm xen-devel-3.0.3-41.el5.i386.rpm xen-devel-3.0.3-41.el5.x86_64.rpm xen-libs-3.0.3-41.el5.i386.rpm xen-libs-3.0.3-41.el5.x86_64.rpm -Connie Sieh -Troy Dawson . Security enhancements and bug resolution for xen/libvirt on Scientific Linux SL5.0, including kernel compatibility recommendations.. xen libvirt update Scientific Linux security bug. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 06, 2007 Important Scientific Linux
200

Scientific Linux: CVE-2005-3183 Low Severity W3C-Libwww Buffer Overflow

Low: w3c-libwww security and bug fix update. Date: Wed, 9 May 2007 15:15:09 -0500 Reply-To: Connie Sieh Sender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for SL4 w3c-libwww i386/x86_64 Comments: To: scientific Synopsis: Low: w3c-libwww security and bug fix update Issue date: 2007-05-01 CVE Names: CVE-2005-3183 Several buffer overflow flaws in w3c-libwww were found. If a client application that uses w3c-libwww connected to a malicious HTTP server, it could trigger an out of bounds memory access, causing the client application to crash (CVE-2005-3183). SRPMS: w3c-libwww-5.4.0-10.1.RHEL4.2.src.rpm i386: w3c-libwww-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-apps-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-devel-5.4.0-10.1.RHEL4.2.i386.rpm x86_64: w3c-libwww-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-5.4.0-10.1.RHEL4.2.x86_64.rpm w3c-libwww-apps-5.4.0-10.1.RHEL4.2.x86_64.rpm w3c-libwww-devel-5.4.0-10.1.RHEL4.2.x86_64.rpm -Connie Sieh -Troy Dawson . The recent update for w3c-libwww on Scientific Linux fixes low-severity security issues and minor bugs, enhancing user data integrity and stability. w3c-libwww, Security Advisory, Scientific Linux, Bug Fix, Buffer Overflow. . Severity: Low. LinuxSecurity.com Team

Calendar 2 May 09, 2007 Low Scientific Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here