Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
99

Slackware: 2.2.16 Advisory Critical: Privilege Escalation Risks

Capabilities and other security vulnerabilities have been discovered. ===================================Kernel Version 2.2.16 Security Fixes =================================== The 2.2.16 release of the Linux kernel is available and includes a number of security fixes. The following list of fixes comes from the kernel release notes: ---------------------------------------------------------------------------- Capabilities - Fixes for serious setuid handling flaws when using restricted capability sets ELF loader - The ELF loader could be tricked by erroneous headers Procfs - Several /proc drivers failed to do correct sanity checking Readv/writev - Potential overflow bug fixed Signal Stacks - Exec failed to clear an existing alternate sigstack System 5 Shared Memory - If a user managed to attach a segment 65536 times bad things happened. TCP multiconnect hang - The TCP code had a bug that could cause the machine to hang. This was user exploitable. ----------------------------------------------------------------------------- We recommend that you read the above as a list of reasons to upgrade to 2.2.16, if you're running a 2.2.x kernel. The capabilities hole is especially nasty, as it allows a local user to gain root access from a program that normally drops root privileges. The standard pre-built Slackware kernels have been built from 2.2.16 source and are now available in Slackware-current: ftp://ftp.slackware.com/pub/slackware/slackware-current/kernels/ You will probably also need a new set of modules, available from: They are also available in packaged form in the slackware-current ftp tree (). The files, within that directory, are: a1/modules.tgz, a1/scsimods.tgz, a1/sndmods.tgz, a1/fsmods.tgz, and n1/netmods.tgz The kernel release notes are available here: https://www.linux.com . Kernel version 2.2.16 addresses critical vulnerabilities. Update advised for enhanced user safety and improved reliability.. Kernel Update, SlackwareSecurity, Capabilities Fixes, Privilege Escalation. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 10, 2000 Critical Slackware
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here