Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -2 articles for you...
197

Debian LTS: DLA-4085-1: tzdata new timezone database

This update includes the changes in tzdata 2025a. Notable changes are: - - Paraguay adopts permanent -03 starting in spring 2024. - - Updated leap second list, which was set to expire by the end of . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4085-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Emilio Pozuelo Monfort March 18, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : tzdata Version : 2025a-0+deb11u1 This update includes the changes in tzdata 2025a. Notable changes are: - - Paraguay adopts permanent -03 starting in spring 2024. - - Updated leap second list, which was set to expire by the end of June. For Debian 11 bullseye, this problem has been fixed in version 2025a-0+deb11u1. We recommend that you upgrade your tzdata packages. For the detailed security status of tzdata please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/tzdata Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-4085-1 discusses significant tzdata updates, like Paraguay's permanent timezone adoption.. changes, update, tzdata, 2025a, notable, paraguay, adopts, permanent. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Mar 18, 2025 Important Debian LTS
197

Debian 11 Bullseye DLA-3908-1: Security Support Packages End of Life

debian-security-support, the Debian security support coverage checker, has been updated in bullseye-security to mark the end of life of the following packages: * pdns-recursor: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1070176 . ------------------------------------------------------------------------- Debian LTS Advisory DLA-3908-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Santiago Ruano Rincón September 30, 2024 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : debian-security-support Version : 1:11+2024.09.30 Debian Bug : 1063756 debian-security-support, the Debian security support coverage checker, has been updated in bullseye-security to mark the end of life of the following packages: * pdns-recursor: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1070176 * slurm-wlm: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1071127 * libreswan: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1072527 * phppgadmin: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1072589 * pytest-salt-factories: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1070175 * pytest-testinfra: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1070175 * salt: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1070175 * gpac: See https://lists.debian.org/debian-lts/2024/08/msg00007.html * snort: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1063756 * iotjs: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1078334 * wpewebkit: See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1035997 * python2.7: See https://lists.debian.org/debian-lts/2024/08/msg00057.html * cython: See https://lists.debian.org/debian-lts/2024/08/msg00057.html * jython: See https://lists.debian.org/debian-lts/2024/08/msg00057.html * pypy: Seehttps://lists.debian.org/debian-lts/2024/08/msg00057.html * python-stdlib-extensions: See https://lists.debian.org/debian-lts/2024/08/msg00057.html For Debian 11 bullseye, this problem has been fixed in version 1:11+2024.09.30. We recommend that you upgrade your debian-security-support packages. For the detailed security status of debian-security-support please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/debian-security-support Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-3908-1 addresses updates for debian-security-support, indicating end of life for several packages.. debian-security-support, package update, security checker, debian release. . LinuxSecurity.com Team

Calendar 2 Sep 30, 2024 Debian LTS
87

Debian 11 (Bullseye) DSA-5673-1 Critical: glibc Buffer Overflow

Charles Fol discovered that the iconv() function in the GNU C library is prone to a buffer overflow vulnerability when converting strings to the ISO-2022-CN-EXT character set, which may lead to denial of service (application crash) or the execution of arbitrary code. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-5673-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Salvatore Bonaccorso April 23, 2024 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : glibc CVE ID : CVE-2024-2961 Debian Bug : 1069191 Charles Fol discovered that the iconv() function in the GNU C library is prone to a buffer overflow vulnerability when converting strings to the ISO-2022-CN-EXT character set, which may lead to denial of service (application crash) or the execution of arbitrary code. For the oldstable distribution (bullseye), this problem has been fixed in version 2.31-13+deb11u9. For the stable distribution (bookworm), this problem has been fixed in version 2.36-9+deb12u6. We recommend that you upgrade your glibc packages. For the detailed security status of glibc please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/glibc Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu Security Notice USN-5673-1 highlights severe glibc vulnerabilities that could result in Denial of Service incidents.. glibc Security, Buffer Overflow Issue, Debian Advisory Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 23, 2024 Critical Debian
87

Debian: DSA-5432-1 Moderate: Xmltooling Server-Side Request Forgery

Jurien de Jong discovered that the parsing of KeyInfo elements within the XMLTooling library may result in server-side request forgery. For the oldstable distribution (bullseye), this problem has been fixed . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5432-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Moritz Muehlenhoff June 18, 2023 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : xmltooling CVE ID : not yet available Jurien de Jong discovered that the parsing of KeyInfo elements within the XMLTooling library may result in server-side request forgery. For the oldstable distribution (bullseye), this problem has been fixed in version 3.2.0-3+deb11u1. For the stable distribution (bookworm), this problem has been fixed in version 3.2.3-1+deb12u1. We recommend that you upgrade your xmltooling packages. For the detailed security status of xmltooling please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/xmltooling Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian DSA-5433-1 tackles xmlcore vulnerability leading to cross-site scripting in bullseye.. xmltooling update, debian security, server-side request forgery. . LinuxSecurity.com Team

Calendar 2 Jun 18, 2023 Debian
87

Debian Bullseye: DSA-5396-2 Critical Update For Evolution Software

The webkit2gtk update released as 5396-1 introduced a compatibility problem that caused Evolution to display e-mail incorrectly. Evolution has been updated to solve this issue. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5396-2 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Alberto Garcia May 04, 2023 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : evolution Debian Bug : 1035469 The webkit2gtk update released as 5396-1 introduced a compatibility problem that caused Evolution to display e-mail incorrectly. Evolution has been updated to solve this issue. For the stable distribution (bullseye), this problem has been fixed in version 3.38.3-1+deb11u2. We recommend that you upgrade your evolution packages. For the detailed security status of evolution please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/evolution Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu has issued a patch for Thunderbird to resolve integration problems stemming from an earlier version. Update strongly advised.. Debian Security Advisory, Evolution Software, Compatibility Issue. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 04, 2023 Critical Debian
87

Debian DSA-5383-1: Ghostscript Update For Buffer Overflow Risk

It was discovered that Ghostscript, the GPL PostScript/PDF interpreter, is prone to a buffer overflow vulnerability in the (T)BCP encoding filters, which could result in the execution of arbitrary code if malformed document files are processed (despite the -dSAFER sandbox . - ------------------------------------------------------------------------- Debian Security Advisory DSA-5383-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Salvatore Bonaccorso April 05, 2023 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : ghostscript CVE ID : CVE-2023-28879 Debian Bug : 1033757 It was discovered that Ghostscript, the GPL PostScript/PDF interpreter, is prone to a buffer overflow vulnerability in the (T)BCP encoding filters, which could result in the execution of arbitrary code if malformed document files are processed (despite the -dSAFER sandbox being enabled). For the stable distribution (bullseye), this problem has been fixed in version 9.53.3~dfsg-7+deb11u4. We recommend that you upgrade your ghostscript packages. For the detailed security status of ghostscript please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/ghostscript Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian Security Announcement DSA-5384-1 addresses vulnerabilities in OpenSSL, which could lead to unauthorized data disclosure or the potential for system compromise.. Ghostscript Update, Debian Security, Buffer Overflow Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 05, 2023 Critical Debian
87

Debian Bullseye: DSA-5025-1 Critical: Tang Key Exposure

A flaw was discovered in tang, a network-based cryptographic binding server, which could result in leak of private keys. For the stable distribution (bullseye), this problem has been fixed in . - ------------------------------------------------------------------------- Debian Security Advisory DSA-5025-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Salvatore Bonaccorso December 19, 2021 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : tang CVE ID : CVE-2021-4076 A flaw was discovered in tang, a network-based cryptographic binding server, which could result in leak of private keys. For the stable distribution (bullseye), this problem has been fixed in version 8-3+deb11u1. We recommend that you upgrade your tang packages. For the detailed security status of tang please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/tang Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . The Debian Security Notice DSA-5026-1 highlights an urgent vulnerability in the software package 'xyz', jeopardizing user data integrity and accessing sensitive information.. Debian Security Advisory,Tang Security Update,Private Key Exposure,Network-Based Services. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 19, 2021 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here