Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
172

Ubuntu 20.04 and 18.04: USN-6352-1 Critical Apache Shiro Threat

Several security issues were fixed in Apache Shiro.. ========================================================================== Ubuntu Security Notice USN-6352-1 September 07, 2023 shiro vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS (Available with Ubuntu Pro) Summary: Several security issues were fixed in Apache Shiro. Software Description: - shiro: Powerful and easy-to-use Java security framework Details: It was discovered that Apache Shiro incorrectly handled certain HTTP requests. A remote attacker could possibly use this issue to bypass security restrictions. (CVE-2020-13933, CVE-2020-17510) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: libshiro-java 1.3.2-4ubuntu0.2 Ubuntu 18.04 LTS (Available with Ubuntu Pro): libshiro-java 1.3.2-3ubuntu0.18.04.1~esm1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6352-1 CVE-2020-13933, CVE-2020-17510 Package Information: https://launchpad.net/ubuntu/+source/shiro/1.3.2-4ubuntu0.2 . Numerous vulnerabilities resolved in Apache Shiro for Ubuntu. Make sure your system is current to uphold security protocols.. Apache Shiro, Ubuntu Security Notice, Security Patch, Java Security. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 07, 2023 Critical Ubuntu
100

SUSE: 2021:4582-1 Critical: Kernel Live Patch 22 for SLE 15 SP2

An update that fixes two vulnerabilities is now available. . SUSE Security Update: Security update for the Linux Kernel (Live Patch 18 for SLE 15 SP1) ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:3690-1 Rating: important References: #1178622 #1178783 Cross-References: CVE-2020-25668 CVE-2020-25705 Affected Products: SUSE Linux Enterprise Module for Live Patching 15-SP1 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for the Linux Kernel 4.12.14-197_67 fixes several issues. The following security issues were fixed: - CVE-2020-25668: Fixed a concurrency use-after-free in con_font_op (bsc#1178622). - CVE-2020-25705: Fixed a flaw which could have allowed an off-path remote user to effectively bypass source port UDP randomization (bsc#1178783). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Live Patching 15-SP1: zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP1-2020-3690=1 Package List: - SUSE Linux Enterprise Module for Live Patching 15-SP1 (ppc64le x86_64): kernel-livepatch-4_12_14-197_67-default-2-2.1 References: https://www.suse.com/security/cve/CVE-2020-25668.html https://www.suse.com/security/cve/CVE-2020-25705.html https://bugzilla.suse.com/show_bug.cgi?id=1178622 https://bugzilla.suse.com/show_bug.cgi?id=1178783 . SUSE has released a security update for the Linux Kernel (Live Patch 18) to address significant vulnerabilities in SLE 15 SP1.. Linux Kernel Update, SUSE Security Patch, Live Patching Fixes. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 07, 2020 Critical SuSE
203

Mageia 7: MGASA-2020-0021 Moderate: MediaWiki Bypass Protection

Updated mediawiki packages fix security vulnerability: MediaWiki through 1.33.1 allows attackers to bypass the Title_blacklist protection mechanism by starting with an arbitrary title, establishing a non-resolvable redirect for the associated page, and using redirect=1 . MGASA-2020-0021 - Updated mediawiki packages fix security vulnerability Publication date: 05 Jan 2020 URL: https://advisories.mageia.org/MGASA-2020-0021.html Type: security Affected Mageia releases: 7 CVE: CVE-2019-19709 Updated mediawiki packages fix security vulnerability: MediaWiki through 1.33.1 allows attackers to bypass the Title_blacklist protection mechanism by starting with an arbitrary title, establishing a non-resolvable redirect for the associated page, and using redirect=1 in the action API when editing that page (CVE-2019-19709). References: - https://bugs.mageia.org/show_bug.cgi?id=25986 - https://lists.wikimedia.org/hyperkitty/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/NVL4C4DDFUCRTQK7WWTAJZPQHAABFA7N/ - https://www.cve.org/CVERecord?id=CVE-2019-19709 SRPMS: - 7/core/mediawiki-1.31.6-1.mga7 . Recent updates to mediawiki packages fix a vulnerability that permits the circumvention of title limitations, affecting Mageia 7.. Mageia MediaWiki Security, MediaWiki Update, Mageia Security Advisory. . LinuxSecurity.com Team

Calendar 2 Jan 05, 2020 Mageia
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here