Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
89

Fedora 43 rust-reqsign Important API Security Fix RHSA-2025-4154ea83d0

uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-4154ea83d0 2025-11-05 02:09:57.817569+00:00 -------------------------------------------------------------------------------- Name : rust-reqsign Product : Fedora 43 Version : 0.18.0 Release : 1.fc43 URL : https://crates.io/crates/reqsign Summary : Signing HTTP requests for popular cloud services Description : Signing HTTP requests for AWS, Azure, Google, Huawei, Aliyun, Tencent and Oracle services. -------------------------------------------------------------------------------- Update Information: uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3 Blog post maturin 1.9.6 https://github.com/PyO3/maturin/blob/v1.9.6/Changelog.md python-typing-inspection 0.4.2 (2025-10-01) Add typing_objects.is_noextraitems() python-jiter 0.11.0 https://github.com/pydantic/jiter/releases/tag/v0.11.0 python-pydantic-extra-types 2.10.6 https://github.com/pydantic/pydantic-extra-types/releases/tag/v2.10.6 Typer 0.20.0 Features \u2728 Enable command suggestions on typo by default. Upgrades \u2b06\ufe0f Add (official) support for Python 3.14. Internal Assorted small enhancements. FastAPI 0.120.1 Upgrades \u2b06\ufe0f Bump Starlette to

Calendar%202 Nov 05, 2025 Important Fedora
89

Fedora 37: 2022-62b61a8542 Critical: Trafficserver 9.1.4 DoS Risks

Traffic Server is a high-performance building block for cloud services. It's more than just a caching proxy server; it also has support for plugins to build large scale web applications. Key features: Caching - Improve your response time, while reducing server load and bandwidth needs by caching and reusing frequently-requested web pages,. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-62b61a8542 2022-12-29 01:09:28.690982 --------------------------------------------------------------------------------Name : trafficserver Product : Fedora 37 Version : 9.1.4 Release : 1.fc37 URL : https://trafficserver.apache.org/ Summary : Fast, scalable and extensible HTTP/1.1 and HTTP/2 caching proxy server Description : Traffic Server is a high-performance building block for cloud services. It's more than just a caching proxy server; it also has support for plugins to build large scale web applications. Key features: Caching - Improve your response time, while reducing server load and bandwidth needs by caching and reusing frequently-requested web pages, images, and web service calls. Proxying - Easily add keep-alive, filter or anonymize content requests, or add load balancing by adding a proxy layer. Fast - Scales well on modern SMP hardware, handling 10s of thousands of requests per second. Extensible - APIs to write your own plug-ins to do anything from modifying HTTP headers to handling ESI requests to writing your own cache algorithm. Proven - Handling over 400TB a day at Yahoo! both as forward and reverse proxies, Apache Traffic Server is battle hardened. --------------------------------------------------------------------------------Update Information: Update to 9.1.4, resolves CVE-2022-32749, CVE-2022-37392, CVE-2022-40743 --------------------------------------------------------------------------------ChangeLog: * Mon Dec 19 2022 Jered Floyd 9.1.4-1 - Update to 9.1.4,resolves CVE-2022-32749, CVE-2022-37392, CVE-2022-40743 --------------------------------------------------------------------------------References: [ 1 ] Bug #2154123 - trafficserver-9.1.4-rc0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2154123 [ 2 ] Bug #2154896 - CVE-2022-32749 trafficserver: server crash under certain conditions [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2154896 [ 3 ] Bug #2154897 - CVE-2022-32749 trafficserver: server crash under certain conditions [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2154897 [ 4 ] Bug #2154899 - CVE-2022-37392 trafficserver: ATS is vulnerable to smuggle, cache poison, and DOS attacks [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2154899 [ 5 ] Bug #2154900 - CVE-2022-37392 trafficserver: ATS is vulnerable to smuggle, cache poison, and DOS attacks [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2154900 [ 6 ] Bug #2154902 - CVE-2022-40743 trafficserver: Security issues with the xdebug plugin [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2154902 [ 7 ] Bug #2154903 - CVE-2022-40743 trafficserver: Security issues with the xdebug plugin [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2154903 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-62b61a8542' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send anemail to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 37 security notice: trafficserver upgrade addresses severe vulnerabilities and boosts cloud application efficiency.. Traffic Server, Fedora Update, Cloud Services, Caching Proxy. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Dec 29, 2022 Critical Fedora
172

Ubuntu 22.04 LTS: USN-5485-1 Critical Kernel Information Exposure

Several security issues were addressed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-5485-1 June 17, 2022 linux, linux-aws, linux-aws-hwe, linux-aws-5.13, linux-aws-5.4, linux-azure, linux-azure-4.15, linux-azure-5.13, linux-azure-5.4, linux-azure-fde, linux-dell300x, linux-gcp, linux-gcp-4.15, linux-gcp-5.13, linux-gcp-5.4, linux-gke, linux-gke-5.4, linux-gkeop, linux-gkeop-5.4, linux-hwe, linux-hwe-5.13, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-intel-5.13, linux-intel-iotg, linux-kvm, linux-lowlatency, linux-oracle, linux-oracle-5.13, linux-oracle-5.4 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS - Ubuntu 21.10 - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 ESM - Ubuntu 14.04 ESM Summary: Several security issues were addressed in the Linux kernel. Software Description: - linux: Linux kernel - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems - linux-gke: Linux kernel for Google Container Engine (GKE) systems - linux-ibm: Linux kernel for IBM cloud systems - linux-intel-iotg: Linux kernel for Intel IoT platforms - linux-kvm: Linux kernel for cloud environments - linux-lowlatency: Linux low latency kernel - linux-oracle: Linux kernel for Oracle Cloud systems - linux-aws-5.13: Linux kernel for Amazon Web Services (AWS) systems - linux-azure-5.13: Linux kernel for Microsoft Azure cloud systems - linux-azure-fde: Linux kernel for Microsoft Azure cloud systems - linux-gcp-5.13: Linux kernel for Google Cloud Platform (GCP) systems - linux-gkeop: Linux kernel for Google Container Engine (GKE) systems - linux-hwe-5.13: Linux hardware enablement (HWE) kernel - linux-intel-5.13: Linux kernel for Intel IOTG - linux-oracle-5.13: Linux kernel for Oracle Cloudsystems - linux-aws-5.4: Linux kernel for Amazon Web Services (AWS) systems - linux-azure-4.15: Linux kernel for Microsoft Azure Cloud systems - linux-azure-5.4: Linux kernel for Microsoft Azure cloud systems - linux-dell300x: Linux kernel for Dell 300x platforms - linux-gcp-4.15: Linux kernel for Google Cloud Platform (GCP) systems - linux-gcp-5.4: Linux kernel for Google Cloud Platform (GCP) systems - linux-gke-5.4: Linux kernel for Google Container Engine (GKE) systems - linux-gkeop-5.4: Linux kernel for Google Container Engine (GKE) systems - linux-hwe-5.4: Linux hardware enablement (HWE) kernel - linux-ibm-5.4: Linux kernel for IBM cloud systems - linux-oracle-5.4: Linux kernel for Oracle Cloud systems - linux-aws-hwe: Linux kernel for Amazon Web Services (AWS-HWE) systems - linux-hwe: Linux hardware enablement (HWE) kernel Details: It was discovered that some Intel processors did not completely perform cleanup actions on multi-core shared buffers. A local attacker could possibly use this to expose sensitive information. (CVE-2022-21123) It was discovered that some Intel processors did not completely perform cleanup actions on microarchitectural fill buffers. A local attacker could possibly use this to expose sensitive information. (CVE-2022-21125) It was discovered that some Intel processors did not properly perform cleanup during specific special register write operations. A local attacker could possibly use this to expose sensitive information. (CVE-2022-21166) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: linux-image-5.15.0-1009-ibm 5.15.0-1009.11 linux-image-5.15.0-1010-gcp 5.15.0-1010.15 linux-image-5.15.0-1010-gke 5.15.0-1010.13 linux-image-5.15.0-1010-intel-iotg 5.15.0-1010.14 linux-image-5.15.0-1011-oracle 5.15.0-1011.15 linux-image-5.15.0-1012-azure 5.15.0-1012.15 linux-image-5.15.0-1012-kvm 5.15.0-1012.14 linux-image-5.15.0-1013-aws 5.15.0-1013.17 linux-image-5.15.0-39-generic 5.15.0-39.42 linux-image-5.15.0-39-generic-64k 5.15.0-39.42 linux-image-5.15.0-39-generic-lpae 5.15.0-39.42 linux-image-5.15.0-39-lowlatency 5.15.0-39.42 linux-image-5.15.0-39-lowlatency-64k 5.15.0-39.42 linux-image-aws 5.15.0.1013.13 linux-image-azure 5.15.0.1012.11 linux-image-gcp 5.15.0.1010.9 linux-image-generic 5.15.0.39.40 linux-image-generic-hwe-22.04 5.15.0.39.40 linux-image-generic-lpae 5.15.0.39.40 linux-image-generic-lpae-hwe-22.04 5.15.0.39.40 linux-image-gke 5.15.0.1010.13 linux-image-gke-5.15 5.15.0.1010.13 linux-image-ibm 5.15.0.1009.8 linux-image-intel-iotg 5.15.0.1010.10 linux-image-kvm 5.15.0.1012.10 linux-image-lowlatency 5.15.0.39.38 linux-image-lowlatency-hwe-22.04 5.15.0.39.38 linux-image-oem-20.04 5.15.0.39.40 linux-image-oracle 5.15.0.1011.9 linux-image-virtual 5.15.0.39.40 linux-image-virtual-hwe-22.04 5.15.0.39.40 Ubuntu 21.10: linux-image-5.13.0-1030-kvm 5.13.0-1030.33 linux-image-5.13.0-1031-aws 5.13.0-1031.35 linux-image-5.13.0-1031-azure 5.13.0-1031.37 linux-image-5.13.0-1033-gcp 5.13.0-1033.40 linux-image-5.13.0-1036-oracle 5.13.0-1036.43 linux-image-5.13.0-51-generic 5.13.0-51.58 linux-image-5.13.0-51-generic-lpae 5.13.0-51.58 linux-image-5.13.0-51-lowlatency 5.13.0-51.58 linux-image-aws 5.13.0.1031.29 linux-image-azure 5.13.0.1031.28 linux-image-gcp 5.13.0.1033.28 linux-image-generic 5.13.0.51.57 linux-image-generic-lpae 5.13.0.51.57 linux-image-gke 5.13.0.1033.28 linux-image-kvm 5.13.0.1030.27 linux-image-lowlatency 5.13.0.51.57 linux-image-oem-20.04 5.13.0.51.57 linux-image-oracle 5.13.0.1036.33 linux-image-virtual 5.13.0.51.57 Ubuntu 20.04 LTS: linux-image-5.13.0-1017-intel 5.13.0-1017.19 linux-image-5.13.0-1031-aws 5.13.0-1031.35~20.04.1 linux-image-5.13.0-1031-azure 5.13.0-1031.37~20.04.1 linux-image-5.13.0-1033-gcp 5.13.0-1033.40~20.04.1 linux-image-5.13.0-1036-oracle 5.13.0-1036.43~20.04.1 linux-image-5.13.0-51-generic 5.13.0-51.58~20.04.1 linux-image-5.13.0-51-generic-64k 5.13.0-51.58~20.04.1 linux-image-5.13.0-51-generic-lpae 5.13.0-51.58~20.04.1 linux-image-5.13.0-51-lowlatency 5.13.0-51.58~20.04.1 linux-image-5.4.0-1028-ibm 5.4.0-1028.32 linux-image-5.4.0-1048-gkeop 5.4.0-1048.51 linux-image-5.4.0-1070-kvm 5.4.0-1070.75 linux-image-5.4.0-1076-gke 5.4.0-1076.82 linux-image-5.4.0-1078-oracle 5.4.0-1078.86 linux-image-5.4.0-1080-aws 5.4.0-1080.87 linux-image-5.4.0-1080-gcp 5.4.0-1080.87 linux-image-5.4.0-1085-azure 5.4.0-1085.90 linux-image-5.4.0-1085-azure-fde 5.4.0-1085.90+cvm1.1 linux-image-5.4.0-120-generic 5.4.0-120.136 linux-image-5.4.0-120-generic-lpae 5.4.0-120.136 linux-image-5.4.0-120-lowlatency 5.4.0-120.136 linux-image-aws 5.13.0.1031.35~20.04.25 linux-image-aws-lts-20.04 5.4.0.1080.80 linux-image-azure 5.13.0.1031.37~20.04.20 linux-image-azure-fde 5.4.0.1085.90+cvm1.25 linux-image-azure-lts-20.04 5.4.0.1085.82 linux-image-gcp 5.13.0.1033.40~20.04.1 linux-image-gcp-lts-20.04 5.4.0.1080.86 linux-image-generic 5.4.0.120.121 linux-image-generic-hwe-20.04 5.13.0.51.58~20.04.31 linux-image-generic-lpae 5.4.0.120.121 linux-image-generic-lpae-hwe-20.04 5.13.0.51.58~20.04.31 linux-image-gke 5.4.0.1076.84 linux-image-gke-5.4 5.4.0.1076.84 linux-image-gkeop 5.4.0.1048.49 linux-image-gkeop-5.4 5.4.0.1048.49 linux-image-ibm 5.4.0.1028.25 linux-image-ibm-lts-20.04 5.4.0.1028.25 linux-image-intel 5.13.0.1017.15 linux-image-kvm 5.4.0.1070.67 linux-image-lowlatency 5.4.0.120.121 linux-image-lowlatency-hwe-20.04 5.13.0.51.58~20.04.31 linux-image-oem 5.4.0.120.121 linux-image-oem-osp1 5.4.0.120.121 linux-image-oracle 5.13.0.1036.43~20.04.1 linux-image-oracle-lts-20.04 5.4.0.1078.76 linux-image-virtual 5.4.0.120.121 linux-image-virtual-hwe-20.04 5.13.0.51.58~20.04.31 Ubuntu 18.04 LTS: linux-image-4.15.0-1048-dell300x 4.15.0-1048.53 linux-image-4.15.0-1101-oracle 4.15.0-1101.112 linux-image-4.15.0-1122-kvm 4.15.0-1122.127 linux-image-4.15.0-1130-gcp 4.15.0-1130.146 linux-image-4.15.0-1136-aws 4.15.0-1136.147 linux-image-4.15.0-1145-azure 4.15.0-1145.160 linux-image-4.15.0-187-generic 4.15.0-187.198 linux-image-4.15.0-187-generic-lpae 4.15.0-187.198 linux-image-4.15.0-187-lowlatency 4.15.0-187.198 linux-image-5.4.0-1028-ibm 5.4.0-1028.32~18.04.1 linux-image-5.4.0-1048-gkeop 5.4.0-1048.51~18.04.1 linux-image-5.4.0-1076-gke 5.4.0-1076.82~18.04.1 linux-image-5.4.0-1078-oracle 5.4.0-1078.86~18.04.1 linux-image-5.4.0-1080-aws 5.4.0-1080.87~18.04.1 linux-image-5.4.0-1080-gcp 5.4.0-1080.87~18.04.1 linux-image-5.4.0-1085-azure 5.4.0-1085.90~18.04.1 linux-image-5.4.0-120-generic 5.4.0-120.136~18.04.1 linux-image-5.4.0-120-generic-lpae 5.4.0-120.136~18.04.1 linux-image-5.4.0-120-lowlatency 5.4.0-120.136~18.04.1 linux-image-aws 5.4.0.1080.60 linux-image-aws-lts-18.04 4.15.0.1136.136 linux-image-azure 5.4.0.1085.62 linux-image-azure-lts-18.04 4.15.0.1145.115 linux-image-dell300x 4.15.0.1048.48 linux-image-gcp 5.4.0.1080.61 linux-image-gcp-lts-18.04 4.15.0.1130.146 linux-image-generic 4.15.0.187.173 linux-image-generic-hwe-18.04 5.4.0.120.136~18.04.100 linux-image-generic-lpae 4.15.0.187.173 linux-image-generic-lpae-hwe-18.04 5.4.0.120.136~18.04.100 linux-image-gke-5.4 5.4.0.1076.82~18.04.38 linux-image-gkeop-5.4 5.4.0.1048.51~18.04.45 linux-image-ibm 5.4.0.1028.42 linux-image-kvm 4.15.0.1122.115 linux-image-lowlatency 4.15.0.187.173 linux-image-lowlatency-hwe-18.04 5.4.0.120.136~18.04.100 linux-image-oem 5.4.0.120.136~18.04.100 linux-image-oem-osp1 5.4.0.120.136~18.04.100 linux-image-oracle 5.4.0.1078.86~18.04.55 linux-image-oracle-lts-18.04 4.15.0.1101.108 linux-image-snapdragon-hwe-18.04 5.4.0.120.136~18.04.100 linux-image-virtual 4.15.0.187.173 linux-image-virtual-hwe-18.04 5.4.0.120.136~18.04.100 Ubuntu 16.04 ESM: linux-image-4.15.0-1101-oracle 4.15.0-1101.112~16.04.1 linux-image-4.15.0-1130-gcp 4.15.0-1130.146~16.04.1 linux-image-4.15.0-1136-aws-hwe 4.15.0-1136.147~16.04.1 linux-image-4.15.0-1145-azure 4.15.0-1145.160~16.04.1 linux-image-4.15.0-187-generic 4.15.0-187.198~16.04.1 linux-image-4.15.0-187-lowlatency 4.15.0-187.198~16.04.1 linux-image-aws-hwe 4.15.0.1136.123 linux-image-azure 4.15.0.1145.132 linux-image-gcp 4.15.0.1130.127 linux-image-generic-hwe-16.04 4.15.0.187.174 linux-image-gke 4.15.0.1130.127 linux-image-lowlatency-hwe-16.04 4.15.0.187.174 linux-image-oem 4.15.0.187.174 linux-image-oracle 4.15.0.1101.86 linux-image-virtual-hwe-16.04 4.15.0.187.174 Ubuntu 14.04 ESM: linux-image-4.15.0-1145-azure 4.15.0-1145.160~14.04.1 linux-image-azure 4.15.0.1145.114 Please note that fully mitigating processor vulnerabilities requires corresponding processor microcode/firmware updates. After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, whichrequires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-5485-1 CVE-2022-21123, CVE-2022-21125, CVE-2022-21166 Package Information: https://launchpad.net/ubuntu/+source/linux/5.15.0-39.42 https://launchpad.net/ubuntu/+source/linux-aws/5.15.0-1013.17 https://launchpad.net/ubuntu/+source/linux-azure/5.15.0-1012.15 https://launchpad.net/ubuntu/+source/linux-gcp/5.15.0-1010.15 https://launchpad.net/ubuntu/+source/linux-gke/5.15.0-1010.13 https://launchpad.net/ubuntu/+source/linux-ibm/5.15.0-1009.11 https://launchpad.net/ubuntu/+source/linux-intel-iotg/5.15.0-1010.14 https://launchpad.net/ubuntu/+source/linux-kvm/5.15.0-1012.14 https://launchpad.net/ubuntu/+source/linux-lowlatency/5.15.0-39.42 https://launchpad.net/ubuntu/+source/linux-oracle/5.15.0-1011.15 https://launchpad.net/ubuntu/+source/linux/5.13.0-51.58 https://launchpad.net/ubuntu/+source/linux-aws/5.13.0-1031.35 https://launchpad.net/ubuntu/+source/linux-azure/5.13.0-1031.37 https://launchpad.net/ubuntu/+source/linux-gcp/5.13.0-1033.40 https://launchpad.net/ubuntu/+source/linux-kvm/5.13.0-1030.33 https://launchpad.net/ubuntu/+source/linux-oracle/5.13.0-1036.43 https://launchpad.net/ubuntu/+source/linux/5.4.0-120.136 https://launchpad.net/ubuntu/+source/linux-aws/5.4.0-1080.87 https://launchpad.net/ubuntu/+source/linux-aws-5.13/5.13.0-1031.35~20.04.1 https://launchpad.net/ubuntu/+source/linux-azure/5.4.0-1085.90 https://launchpad.net/ubuntu/+source/linux-azure-5.13/5.13.0-1031.37~20.04.1 https://launchpad.net/ubuntu/+source/linux-azure-fde/5.4.0-1085.90+cvm1.1 https://launchpad.net/ubuntu/+source/linux-gcp/5.4.0-1080.87 https://launchpad.net/ubuntu/+source/linux-gcp-5.13/5.13.0-1033.40~20.04.1 https://launchpad.net/ubuntu/+source/linux-gke/5.4.0-1076.82 https://launchpad.net/ubuntu/+source/linux-gkeop/5.4.0-1048.51 https://launchpad.net/ubuntu/+source/linux-hwe-5.13/5.13.0-51.58~20.04.1 https://launchpad.net/ubuntu/+source/linux-ibm/5.4.0-1028.32 https://launchpad.net/ubuntu/+source/linux-intel-5.13/5.13.0-1017.19 https://launchpad.net/ubuntu/+source/linux-kvm/5.4.0-1070.75 https://launchpad.net/ubuntu/+source/linux-oracle/5.4.0-1078.86 https://launchpad.net/ubuntu/+source/linux-oracle-5.13/5.13.0-1036.43~20.04.1 https://launchpad.net/ubuntu/+source/linux/4.15.0-187.198 https://launchpad.net/ubuntu/+source/linux-aws/4.15.0-1136.147 https://launchpad.net/ubuntu/+source/linux-aws-5.4/5.4.0-1080.87~18.04.1 https://launchpad.net/ubuntu/+source/linux-azure-4.15/4.15.0-1145.160 https://launchpad.net/ubuntu/+source/linux-azure-5.4/5.4.0-1085.90~18.04.1 https://launchpad.net/ubuntu/+source/linux-dell300x/4.15.0-1048.53 https://launchpad.net/ubuntu/+source/linux-gcp-4.15/4.15.0-1130.146 https://launchpad.net/ubuntu/+source/linux-gcp-5.4/5.4.0-1080.87~18.04.1 https://launchpad.net/ubuntu/+source/linux-gke-5.4/5.4.0-1076.82~18.04.1 https://launchpad.net/ubuntu/+source/linux-gkeop-5.4/5.4.0-1048.51~18.04.1 https://launchpad.net/ubuntu/+source/linux-hwe-5.4/5.4.0-120.136~18.04.1 https://launchpad.net/ubuntu/+source/linux-ibm-5.4/5.4.0-1028.32~18.04.1 https://launchpad.net/ubuntu/+source/linux-kvm/4.15.0-1122.127 https://launchpad.net/ubuntu/+source/linux-oracle/4.15.0-1101.112 https://launchpad.net/ubuntu/+source/linux-oracle-5.4/5.4.0-1078.86~18.04.1 . Several vulnerabilities addressed in the Linux kernel impacting a range of Ubuntu distributions, inclusive of Long Term Support (LTS) editions.. Linux Kernel Security Update, Ubuntu Vulnerability Notice, Linux Kernel Fix, Ubuntu Cloud Services. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 16, 2022 Critical Ubuntu
100

SUSE: 2022:0734-1 Important: Python-Twisted Secret Exposure Fix

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for python-Twisted ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:0734-1 Rating: important References: #1195667 Cross-References: CVE-2022-21712 CVSS scores: CVE-2022-21712 (NVD) : 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVE-2022-21712 (SUSE): 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N Affected Products: HPE Helion Openstack 8 SUSE Linux Enterprise High Performance Computing 12 SUSE Linux Enterprise Module for Web Scripting 12 SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12-SP3 SUSE Linux Enterprise Server 12-SP4 SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server for SAP Applications 12 SUSE Linux Enterprise Server for SAP Applications 12-SP3 SUSE Linux Enterprise Server for SAP Applications 12-SP4 SUSE Linux Enterprise Server for SAP Applications 12-SP5 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud Crowbar 9 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for python-Twisted fixes the following issues: - CVE-2022-21712: Fixed secret exposure in cross-origin redirects (bsc#1195667, GHSA-92x2-jw7w-xvvx) from Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2022-734=1 - SUSE OpenStack Cloud Crowbar 8: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-8-2022-734=1 - SUSE OpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2022-734=1 - SUSE OpenStack Cloud 8: zypper in -t patch SUSE-OpenStack-Cloud-8-2022-734=1 - SUSE Linux Enterprise Module for Web Scripting 12: zypper in -t patch SUSE-SLE-Module-Web-Scripting-12-2022-734=1 - HPE Helion Openstack 8: zypper in -t patch HPE-Helion-OpenStack-8-2022-734=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (x86_64): python-Twisted-15.2.1-9.11.1 python-Twisted-debuginfo-15.2.1-9.11.1 python-Twisted-debugsource-15.2.1-9.11.1 - SUSE OpenStack Cloud Crowbar 8 (x86_64): python-Twisted-15.2.1-9.11.1 python-Twisted-debuginfo-15.2.1-9.11.1 python-Twisted-debugsource-15.2.1-9.11.1 - SUSE OpenStack Cloud 9 (x86_64): python-Twisted-15.2.1-9.11.1 python-Twisted-debuginfo-15.2.1-9.11.1 python-Twisted-debugsource-15.2.1-9.11.1 - SUSE OpenStack Cloud 8 (x86_64): python-Twisted-15.2.1-9.11.1 python-Twisted-debuginfo-15.2.1-9.11.1 python-Twisted-debugsource-15.2.1-9.11.1 - SUSE Linux Enterprise Module for Web Scripting 12 (aarch64 ppc64le s390x x86_64): python-Twisted-15.2.1-9.11.1 python-Twisted-debuginfo-15.2.1-9.11.1 python-Twisted-debugsource-15.2.1-9.11.1 - HPE Helion Openstack 8 (x86_64): python-Twisted-15.2.1-9.11.1 python-Twisted-debuginfo-15.2.1-9.11.1 python-Twisted-debugsource-15.2.1-9.11.1 References: https://www.suse.com/security/cve/CVE-2022-21712.html https://bugzilla.suse.com/1195667 . Critical security patch released for python-Twisted in openSUSE. Fixes vulnerabilities in confidential data leakage during cross-origin redirects.. SUSE Linux, Python Twisted, Security Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 04, 2022 Important SuSE
100

SUSE: 2020:3914-1 Moderate: Multiple Xen Fixes for OpenStack

An update that solves 8 vulnerabilities and has two fixes is now available. . SUSE Security Update: Security update for xen ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:3914-1 Rating: moderate References: #1027519 #1176782 #1179477 #1179496 #1179498 #1179501 #1179502 #1179506 #1179514 #1179516 Cross-References: CVE-2020-29130 CVE-2020-29480 CVE-2020-29481 CVE-2020-29483 CVE-2020-29484 CVE-2020-29566 CVE-2020-29570 CVE-2020-29571 Affected Products: SUSE OpenStack Cloud Crowbar 9 SUSE OpenStack Cloud 9 SUSE Linux Enterprise Server for SAP 12-SP4 SUSE Linux Enterprise Server 12-SP4-LTSS ______________________________________________________________________________ An update that solves 8 vulnerabilities and has two fixes is now available. Description: This update for xen fixes the following issues: - CVE-2020-29480: Fixed an issue which could have allowed leak of non-sensitive data to administrator guests (bsc#117949 XSA-115). - CVE-2020-29481: Fixed an issue which could have allowd to new domains to inherit existing node permissions (bsc#1179498 XSA-322). - CVE-2020-29483: Fixed an issue where guests could disturb domain cleanup (bsc#1179502 XSA-325). - CVE-2020-29484: Fixed an issue where guests could crash xenstored via watchs (bsc#1179501 XSA-324). - CVE-2020-29566: Fixed an undue recursion in x86 HVM context switch code (bsc#1179506 XSA-348). - CVE-2020-29570: Fixed an issue where FIFO event channels control block related ordering (bsc#1179514 XSA-358). - CVE-2020-29571: Fixed an issue where FIFO event channels control structure ordering (bsc#1179516 XSA-359). - CVE-2020-29130: Fixed an out-of-bounds access while processing ARP packets (bsc#1179477). - Fixed an issue wheredump-core shows missing nr_pages during core (bsc#1176782). - Multiple other bugs (bsc#1027519) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2020-3914=1 - SUSE OpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2020-3914=1 - SUSE Linux Enterprise Server for SAP 12-SP4: zypper in -t patch SUSE-SLE-SAP-12-SP4-2020-3914=1 - SUSE Linux Enterprise Server 12-SP4-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2020-3914=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (x86_64): xen-4.11.4_16-2.48.1 xen-debugsource-4.11.4_16-2.48.1 xen-doc-html-4.11.4_16-2.48.1 xen-libs-32bit-4.11.4_16-2.48.1 xen-libs-4.11.4_16-2.48.1 xen-libs-debuginfo-32bit-4.11.4_16-2.48.1 xen-libs-debuginfo-4.11.4_16-2.48.1 xen-tools-4.11.4_16-2.48.1 xen-tools-debuginfo-4.11.4_16-2.48.1 xen-tools-domU-4.11.4_16-2.48.1 xen-tools-domU-debuginfo-4.11.4_16-2.48.1 - SUSE OpenStack Cloud 9 (x86_64): xen-4.11.4_16-2.48.1 xen-debugsource-4.11.4_16-2.48.1 xen-doc-html-4.11.4_16-2.48.1 xen-libs-32bit-4.11.4_16-2.48.1 xen-libs-4.11.4_16-2.48.1 xen-libs-debuginfo-32bit-4.11.4_16-2.48.1 xen-libs-debuginfo-4.11.4_16-2.48.1 xen-tools-4.11.4_16-2.48.1 xen-tools-debuginfo-4.11.4_16-2.48.1 xen-tools-domU-4.11.4_16-2.48.1 xen-tools-domU-debuginfo-4.11.4_16-2.48.1 - SUSE Linux Enterprise Server for SAP 12-SP4 (x86_64): xen-4.11.4_16-2.48.1 xen-debugsource-4.11.4_16-2.48.1 xen-doc-html-4.11.4_16-2.48.1 xen-libs-32bit-4.11.4_16-2.48.1 xen-libs-4.11.4_16-2.48.1 xen-libs-debuginfo-32bit-4.11.4_16-2.48.1 xen-libs-debuginfo-4.11.4_16-2.48.1 xen-tools-4.11.4_16-2.48.1 xen-tools-debuginfo-4.11.4_16-2.48.1 xen-tools-domU-4.11.4_16-2.48.1 xen-tools-domU-debuginfo-4.11.4_16-2.48.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (x86_64): xen-4.11.4_16-2.48.1 xen-debugsource-4.11.4_16-2.48.1 xen-doc-html-4.11.4_16-2.48.1 xen-libs-32bit-4.11.4_16-2.48.1 xen-libs-4.11.4_16-2.48.1 xen-libs-debuginfo-32bit-4.11.4_16-2.48.1 xen-libs-debuginfo-4.11.4_16-2.48.1 xen-tools-4.11.4_16-2.48.1 xen-tools-debuginfo-4.11.4_16-2.48.1 xen-tools-domU-4.11.4_16-2.48.1 xen-tools-domU-debuginfo-4.11.4_16-2.48.1 References: https://www.suse.com/security/cve/CVE-2020-29130.html https://www.suse.com/security/cve/CVE-2020-29480.html https://www.suse.com/security/cve/CVE-2020-29481.html https://www.suse.com/security/cve/CVE-2020-29483.html https://www.suse.com/security/cve/CVE-2020-29484.html https://www.suse.com/security/cve/CVE-2020-29566.html https://www.suse.com/security/cve/CVE-2020-29570.html https://www.suse.com/security/cve/CVE-2020-29571.html https://bugzilla.suse.com/1027519 https://bugzilla.suse.com/1176782 https://bugzilla.suse.com/1179477 https://bugzilla.suse.com/1179496 https://bugzilla.suse.com/1179498 https://bugzilla.suse.com/1179501 https://bugzilla.suse.com/1179502 https://bugzilla.suse.com/1179506 https://bugzilla.suse.com/1179514 https://bugzilla.suse.com/1179516 . Elevate your SUSE environment by applying the most recent Xen patches that rectify various security flaws and essential enhancements.. SUSE Updates, Xen Security Fixes, OpenStack Security, SUSE Cloud Advisory. . LinuxSecurity.com Team

Calendar%202 Dec 22, 2020 SuSE
100

SUSE: 2020:2325-1 Important: xorg-x11-server Security Patch

An update that fixes three vulnerabilities is now available. . SUSE Security Update: Security update for xorg-x11-server ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:2325-1 Rating: important References: #1174633 #1174635 #1174638 Cross-References: CVE-2020-14345 CVE-2020-14346 CVE-2020-14347 Affected Products: SUSE OpenStack Cloud Crowbar 9 SUSE OpenStack Cloud 9 SUSE Linux Enterprise Server for SAP 12-SP4 SUSE Linux Enterprise Server 12-SP4-LTSS ______________________________________________________________________________ An update that fixes three vulnerabilities is now available. Description: This update for xorg-x11-server fixes the following issues: - CVE-2020-14347: Leak of uninitialized heap memory from the X server to clients on pixmap allocation (bsc#1174633, ZDI-CAN-11426). - CVE-2020-14346: XIChangeHierarchy Integer Underflow Privilege Escalation Vulnerability (bsc#1174638, ZDI-CAN-11429). - CVE-2020-14345: XKB out-of-bounds access privilege escalation vulnerability (bsc#1174635, ZDI-CAN-11428). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2020-2325=1 - SUSE OpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2020-2325=1 - SUSE Linux Enterprise Server for SAP 12-SP4: zypper in -t patch SUSE-SLE-SAP-12-SP4-2020-2325=1 - SUSE Linux Enterprise Server 12-SP4-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2020-2325=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (x86_64): xorg-x11-server-1.19.6-4.8.1 xorg-x11-server-debuginfo-1.19.6-4.8.1 xorg-x11-server-debugsource-1.19.6-4.8.1 xorg-x11-server-extra-1.19.6-4.8.1 xorg-x11-server-extra-debuginfo-1.19.6-4.8.1 - SUSE OpenStack Cloud 9 (x86_64): xorg-x11-server-1.19.6-4.8.1 xorg-x11-server-debuginfo-1.19.6-4.8.1 xorg-x11-server-debugsource-1.19.6-4.8.1 xorg-x11-server-extra-1.19.6-4.8.1 xorg-x11-server-extra-debuginfo-1.19.6-4.8.1 - SUSE Linux Enterprise Server for SAP 12-SP4 (ppc64le x86_64): xorg-x11-server-1.19.6-4.8.1 xorg-x11-server-debuginfo-1.19.6-4.8.1 xorg-x11-server-debugsource-1.19.6-4.8.1 xorg-x11-server-extra-1.19.6-4.8.1 xorg-x11-server-extra-debuginfo-1.19.6-4.8.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (aarch64 ppc64le s390x x86_64): xorg-x11-server-1.19.6-4.8.1 xorg-x11-server-debuginfo-1.19.6-4.8.1 xorg-x11-server-debugsource-1.19.6-4.8.1 xorg-x11-server-extra-1.19.6-4.8.1 xorg-x11-server-extra-debuginfo-1.19.6-4.8.1 References: https://www.suse.com/security/cve/CVE-2020-14345.html https://www.suse.com/security/cve/CVE-2020-14346.html https://www.suse.com/security/cve/CVE-2020-14347.html https://bugzilla.suse.com/1174633 https://bugzilla.suse.com/1174635 https://bugzilla.suse.com/1174638 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . Tackles three essential xorg-x11-server vulnerabilities as SUSE advises system updates for at-risk environments. Safeguard your setup.. xorg-x11-server update, SUSE security patch, privilege escalation fix, cloud security update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Aug 25, 2020 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200