Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
89

Fedora 27: FEDORA-2018-3d879b4f4e Applies Fix for Cantata Vulnerability

Latest upstream release, omits some mounting code found to be insecure and not well tested.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-9296823b6c 2018-07-06 15:43:24.292407 --------------------------------------------------------------------------------Name : cantata Product : Fedora 27 Version : 2.3.1 Release : 1.fc27 URL : https://github.com/cdrummond/cantata Summary : Music Player Daemon (MPD) graphical client Description : Cantata is a graphical client for the music player daemon (MPD). Features: * Multiple MPD collections. * Highly customisable layout. * Songs grouped by album in play queue. * Context view to show artist, album, and song information of current track. * Simple tag editor. * File organizer - use tags to organize files and folders. * Ability to calculate ReplyGain tags. * Dynamic playlists. * Online services; Jamendo, Magnatune, SoundCloud, and Podcasts. * Radio stream support - with the ability to search for streams via TuneIn and ShoutCast. * USB-Mass-Storage and MTP device support. * Audio CD ripping and playback. * Playback of non-MPD songs, via simple in-built HTTP server. * MPRISv2 DBUS interface. * Support for KDE global shortcuts (KDE builds), GNOME media keys, and generic media keys (via Qxt support) * Ubuntu/ambiance theme integration. --------------------------------------------------------------------------------Update Information: Latest upstream release, omits some mounting code found to be insecure and not well tested. --------------------------------------------------------------------------------ChangeLog: * Wed Jun 27 2018 Rex Dieter - 2.3.1-1 - cantata-2.3.1 - include upstream commit that removes samba share mounting code * Fri Apr 27 2018 Rex Dieter - 2.3.0-1 - cantata-2.3.0 * Thu Mar 22 2018 Rex Dieter - 2.2.0-1 - cantata-2.2.0 * Wed Feb 7 2018 Fedora Release Engineering - 2.0.1-6 - Rebuilt forhttps://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild * Sun Jan 7 2018 Igor Gnatenko - 2.0.1-5 - Remove obsolete scriptlets --------------------------------------------------------------------------------References: [ 1 ] Bug #1595570 - CVE-2018-12562 cantata: Insufficient input validation in the 'mount.cifs.wrapper' script https://bugzilla.redhat.com/show_bug.cgi?id=1595570 [ 2 ] Bug #1595569 - CVE-2018-12561 cantata: Possible injection of additional mount options by manipulating the domain parameters of the samba URL https://bugzilla.redhat.com/show_bug.cgi?id=1595569 [ 3 ] Bug #1595567 - CVE-2018-12560 cantata: Directory traversal in the D-Bus service of cantata-mounter https://bugzilla.redhat.com/show_bug.cgi?id=1595567 [ 4 ] Bug #1595566 - CVE-2018-12559 cantata: Directory traversal due to insufficient mount target check in mounter.cpp https://bugzilla.redhat.com/show_bug.cgi?id=1595566 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-9296823b6c' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives:https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/GKSK32KTXLRRNHWZF5XFWRMJ24A33OSM/ . Fedora has upgraded Cantata to eliminate vulnerabilities related to insecure mounting practices. Discover the improvements made and the potential hazards that this update mitigates.. Fedora Cantata Update, Security Fix, Software Enhancements, Music Player Security. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 06, 2018 Critical Fedora
198

Arch Linux 2018-06-20 High Severity: Cantata Access Bypass and Escalation

The package cantata before version 2.3.1-2 is vulnerable to multiple issues including access restriction bypass and privilege escalation. . Arch Linux Security Advisory ASA-201806-12 ========================================= Severity: High Date : 2018-06-20 CVE-ID : CVE-2018-12559 CVE-2018-12560 CVE-2018-12561 CVE-2018-12562 Package : cantata Type : multiple issues Remote : No Link : https://security.archlinux.org/AVG-721 Summary ====== The package cantata before version 2.3.1-2 is vulnerable to multiple issues including access restriction bypass and privilege escalation. Resolution ========= Upgrade to 2.3.1-2. # pacman -Syu "cantata> =2.3.1-2" The problems have been fixed upstream but no release is available yet. Workaround ========= None. Description ========== - CVE-2018-12559 (privilege escalation) An issue was discovered in the cantata-mounter D-Bus service in Cantata through 2.3.1. The mount target path check in mounter.cpp `mpOk()` is insufficient. A regular user can consequently mount a CIFS filesystem anywhere (e.g., outside of the /home directory tree) by passing directory traversal sequences such as a home/../usr substring. - CVE-2018-12560 (access restriction bypass) An issue was discovered in the cantata-mounter D-Bus service in Cantata through 2.3.1. Arbitrary unmounts can be performed by regular users via directory traversal sequences such as a home/../sys/kernel substring. - CVE-2018-12561 (access restriction bypass) An issue was discovered in the cantata-mounter D-Bus service in Cantata through 2.3.1. A regular user can inject additional mount options such as file_mode= by manipulating (for example) the domain parameter of the samba URL. - CVE-2018-12562 (access restriction bypass) An issue was discovered in the cantata-mounter D-Bus service in Cantata through 2.3.1. The wrapper script 'mount.cifs.wrapper' uses the shell to forward the arguments to the actual mount.cifs binary. The shell evaluates wildcards (suchas in an injected string:/home/../tmp/* string). Impact ===== An unprivileged user is able to mount remote samba shares, enabling arbitrary filesystem access and privileged escalation. References ========= https://www.openwall.com/lists/oss-security/2018/06/18/1 https://github.com/CDrummond/cantata/commit/afc4f8315d3e96574925fb530a7004cc9e6ce3d3 https://www.openwall.com/lists/oss-security/2018/06/18/1 https://security.archlinux.org/CVE-2018-12559 https://security.archlinux.org/CVE-2018-12560 https://security.archlinux.org/CVE-2018-12561 https://security.archlinux.org/CVE-2018-12562 . Critical alert issued for Ubuntu Linux gnome-shell package regarding unauthorized access and elevation of privileges vulnerabilities. Immediate update advised.. Arch Linux, Cantata Issues, Security Update, Access Bypass, Privilege Escalation. . LinuxSecurity.com Team

Calendar 2 Jun 26, 2018 ArchLinux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here