Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 526
Alerts This Week
Warning Icon 1 526

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Is continuous patching actually viable?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/156-is-continuous-patching-actually-viable?task=poll.vote&format=json
156
radio
0
[{"id":503,"title":"Delayed updates invite catastrophic breaches.","votes":1,"type":"x","order":1,"pct":50,"resources":[]},{"id":504,"title":"Automated fixes break production environments.","votes":1,"type":"x","order":2,"pct":50,"resources":[]},{"id":505,"title":"Manual approvals cannot keep pace.","votes":0,"type":"x","order":3,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
100

SUSE: 2022:4591-1 Moderate: Java-1_7_1-Ibm Security Issue

An update that solves one vulnerability and has one errata is now available. . SUSE Security Update: Security update for java-1_7_1-ibm ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:4591-1 Rating: moderate References: #1204703 #1205302 Cross-References: CVE-2022-3676 CVSS scores: CVE-2022-3676 (NVD) : 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N CVE-2022-3676 (SUSE): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N Affected Products: SUSE Linux Enterprise Server 12-SP2-BCL SUSE Linux Enterprise Server 12-SP4-LTSS SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server for SAP 12-SP4 SUSE Linux Enterprise Server for SAP Applications 12-SP5 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud Crowbar 9 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for java-1_7_1-ibm fixes the following issues: IBM Security Update November 2022: (bsc#1205302, bsc#1204703) - CVE-2022-3676: A security vulnerability was fixed in version 7.1.5.15, adding the reference here. Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2022-4591=1 - SUSE OpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2022-4591=1 - SUSE Linux Enterprise Software Development Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2022-4591=1 - SUSE Linux EnterpriseServer for SAP 12-SP4: zypper in -t patch SUSE-SLE-SAP-12-SP4-2022-4591=1 - SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2022-4591=1 - SUSE Linux Enterprise Server 12-SP4-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2022-4591=1 - SUSE Linux Enterprise Server 12-SP2-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP2-BCL-2022-4591=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (x86_64): java-1_7_1-ibm-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-alsa-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-devel-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-jdbc-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-plugin-1.7.1_sr5.15-38.77.1 - SUSE OpenStack Cloud 9 (x86_64): java-1_7_1-ibm-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-alsa-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-devel-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-jdbc-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-plugin-1.7.1_sr5.15-38.77.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (ppc64le s390x x86_64): java-1_7_1-ibm-devel-1.7.1_sr5.15-38.77.1 - SUSE Linux Enterprise Server for SAP 12-SP4 (ppc64le x86_64): java-1_7_1-ibm-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-devel-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-jdbc-1.7.1_sr5.15-38.77.1 - SUSE Linux Enterprise Server for SAP 12-SP4 (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-plugin-1.7.1_sr5.15-38.77.1 - SUSE Linux Enterprise Server 12-SP5 (ppc64le s390x x86_64): java-1_7_1-ibm-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-devel-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-jdbc-1.7.1_sr5.15-38.77.1 - SUSE Linux Enterprise Server 12-SP5 (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-plugin-1.7.1_sr5.15-38.77.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (ppc64le s390x x86_64): java-1_7_1-ibm-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-devel-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-jdbc-1.7.1_sr5.15-38.77.1 -SUSE Linux Enterprise Server 12-SP4-LTSS (x86_64): java-1_7_1-ibm-alsa-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-plugin-1.7.1_sr5.15-38.77.1 - SUSE Linux Enterprise Server 12-SP2-BCL (x86_64): java-1_7_1-ibm-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-alsa-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-devel-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-jdbc-1.7.1_sr5.15-38.77.1 java-1_7_1-ibm-plugin-1.7.1_sr5.15-38.77.1 References: https://www.suse.com/security/cve/CVE-2022-3676.html https://bugzilla.suse.com/1204703 https://bugzilla.suse.com/1205302 . SUSE Security Update resolving java-1_7_1-ibm issue with moderate severity. Essential patching instructions included.. SUSE Linux, Security Update, Java Patch Instructions. . LinuxSecurity.com Team

Calendar%202 Dec 20, 2022 SuSE
100

SUSE: 2020:3630-1 Critical Security Fix for PostgreSQL12 Released

An update that fixes 5 vulnerabilities is now available. . SUSE Security Update: Security update for postgresql12 ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:3630-1 Rating: important References: #1175193 #1175194 #1178666 #1178667 #1178668 Cross-References: CVE-2020-14349 CVE-2020-14350 CVE-2020-25694 CVE-2020-25695 CVE-2020-25696 Affected Products: SUSE OpenStack Cloud Crowbar 9 SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 7 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE Linux Enterprise Server for SAP 12-SP4 SUSE Linux Enterprise Server for SAP 12-SP3 SUSE Linux Enterprise Server for SAP 12-SP2 SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server 12-SP4-LTSS SUSE Linux Enterprise Server 12-SP3-LTSS SUSE Linux Enterprise Server 12-SP3-BCL SUSE Linux Enterprise Server 12-SP2-LTSS SUSE Linux Enterprise Server 12-SP2-BCL SUSE Enterprise Storage 5 HPE Helion Openstack 8 ______________________________________________________________________________ An update that fixes 5 vulnerabilities is now available. Description: This update for postgresql12 fixes the following issues: Upgrade to version 12.5: * CVE-2020-25695, bsc#1178666: Block DECLARE CURSOR ... WITH HOLD and firing of deferred triggers within index expressions and materialized view queries. * CVE-2020-25694, bsc#1178667: a) Fix usage of complex connection-string parameters in pg_dump, pg_restore, clusterdb, reindexdb, and vacuumdb. b) When psql's \connect command re-usesconnection parameters, ensure that all non-overridden parameters from a previous connection string are re-used. * CVE-2020-25696, bsc#1178668: Prevent psql's \gset command from modifying specially-treated variables. * Fix recently-added timetz test case so it works when the USA is not observing daylight savings time. (obsoletes postgresql-timetz.patch) * https://www.postgresql.org/about/news/postgresql-131-125-1110-1015-9620-and-9524-released-2111/ * https://www.postgresql.org/docs/12/release-12-5.html The previous postgresql12 update already addressed: Update to 12.4: * CVE-2020-14349, bsc#1175193: Set a secure search_path in logical replication walsenders and apply workers * CVE-2020-14350, bsc#1175194: Make contrib modules' installation scripts more secure. * https://www.postgresql.org/docs/12/release-12-4.html Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2020-3630=1 - SUSE OpenStack Cloud Crowbar 8: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-8-2020-3630=1 - SUSE OpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2020-3630=1 - SUSE OpenStack Cloud 8: zypper in -t patch SUSE-OpenStack-Cloud-8-2020-3630=1 - SUSE OpenStack Cloud 7: zypper in -t patch SUSE-OpenStack-Cloud-7-2020-3630=1 - SUSE Linux Enterprise Software Development Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2020-3630=1 - SUSE Linux Enterprise Server for SAP 12-SP4: zypper in -t patch SUSE-SLE-SAP-12-SP4-2020-3630=1 - SUSE Linux Enterprise Server for SAP 12-SP3: zypper in -t patch SUSE-SLE-SAP-12-SP3-2020-3630=1 - SUSE Linux Enterprise Server for SAP 12-SP2: zypper in -t patch SUSE-SLE-SAP-12-SP2-2020-3630=1 -SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2020-3630=1 - SUSE Linux Enterprise Server 12-SP4-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2020-3630=1 - SUSE Linux Enterprise Server 12-SP3-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP3-2020-3630=1 - SUSE Linux Enterprise Server 12-SP3-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP3-BCL-2020-3630=1 - SUSE Linux Enterprise Server 12-SP2-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP2-2020-3630=1 - SUSE Linux Enterprise Server 12-SP2-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP2-BCL-2020-3630=1 - SUSE Enterprise Storage 5: zypper in -t patch SUSE-Storage-5-2020-3630=1 - HPE Helion Openstack 8: zypper in -t patch HPE-Helion-OpenStack-8-2020-3630=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE OpenStack Cloud Crowbar 8 (x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE OpenStack Cloud 9 (x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE OpenStack Cloud 8 (x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE OpenStack Cloud 7 (s390x x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux EnterpriseSoftware Development Kit 12-SP5 (aarch64 ppc64le s390x x86_64): postgresql12-debugsource-12.5-3.9.1 postgresql12-debugsource-12.5-3.9.3 postgresql12-devel-12.5-3.9.3 postgresql12-devel-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Software Development Kit 12-SP5 (ppc64le s390x x86_64): postgresql12-server-devel-12.5-3.9.3 postgresql12-server-devel-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server for SAP 12-SP4 (ppc64le x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server for SAP 12-SP4 (x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server for SAP 12-SP3 (ppc64le x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server for SAP 12-SP3 (x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server for SAP 12-SP2 (ppc64le x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server for SAP 12-SP2 (x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP5 (aarch64 ppc64le s390x x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 postgresql12-12.5-3.9.3 postgresql12-contrib-12.5-3.9.3 postgresql12-contrib-debuginfo-12.5-3.9.3 postgresql12-debuginfo-12.5-3.9.3 postgresql12-debugsource-12.5-3.9.1 postgresql12-debugsource-12.5-3.9.3 postgresql12-plperl-12.5-3.9.3 postgresql12-plperl-debuginfo-12.5-3.9.3 postgresql12-plpython-12.5-3.9.3 postgresql12-plpython-debuginfo-12.5-3.9.3 postgresql12-pltcl-12.5-3.9.3 postgresql12-pltcl-debuginfo-12.5-3.9.3 postgresql12-server-12.5-3.9.3 postgresql12-server-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP5 (s390x x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP5 (noarch): postgresql12-docs-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP4-LTSS (aarch64 ppc64le s390x x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP4-LTSS (s390x x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP3-LTSS (aarch64 ppc64le s390x x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP3-LTSS (s390x x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP3-BCL (x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP2-LTSS (ppc64le s390x x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP2-LTSS (s390x x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Linux Enterprise Server 12-SP2-BCL (x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - SUSE Enterprise Storage 5 (aarch64 x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 - SUSE Enterprise Storage 5 (x86_64): libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 - HPE Helion Openstack 8 (x86_64): libecpg6-12.5-3.9.3 libecpg6-debuginfo-12.5-3.9.3 libpq5-12.5-3.9.3 libpq5-32bit-12.5-3.9.3 libpq5-debuginfo-12.5-3.9.3 libpq5-debuginfo-32bit-12.5-3.9.3 References: https://www.suse.com/security/cve/CVE-2020-14349.html https://www.suse.com/security/cve/CVE-2020-14350.html https://www.suse.com/security/cve/CVE-2020-25694.html https://www.suse.com/security/cve/CVE-2020-25695.html https://www.suse.com/security/cve/CVE-2020-25696.html https://bugzilla.suse.com/1175193 https://bugzilla.suse.com/1175194 https://bugzilla.suse.com/1178666 https://bugzilla.suse.com/1178667 https://bugzilla.suse.com/1178668 . New update released for SUSE postgresql12 addressing 5 major vulnerabilities with detailed installation guidelines.. PostgreSQL Update,SUSE Security Fix,SUSE Cloud Security,PostgreSQL12 Fixes. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 04, 2020 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Is continuous patching actually viable?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/156-is-continuous-patching-actually-viable?task=poll.vote&format=json
156
radio
0
[{"id":503,"title":"Delayed updates invite catastrophic breaches.","votes":1,"type":"x","order":1,"pct":50,"resources":[]},{"id":504,"title":"Automated fixes break production environments.","votes":1,"type":"x","order":2,"pct":50,"resources":[]},{"id":505,"title":"Manual approvals cannot keep pace.","votes":0,"type":"x","order":3,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200