Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 429
Alerts This Week
Warning Icon 1 429

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":1,"type":"x","order":1,"pct":16.67,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":50,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
89

Fedora 39: 2023-e075ac32be moderate: gnutls DoS issue fix

New upstream release with a fix for [GNUTLS- SA-2023-10-23](https://www.gnutls.org/security-new.html#GNUTLS-SA-2023-10-23).. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-e075ac32be 2023-11-30 03:29:42.580484 -------------------------------------------------------------------------------- Name : gnutls Product : Fedora 39 Version : 3.8.2 Release : 1.fc39 URL : http://www.gnutls.org/ Summary : A TLS protocol implementation Description : GnuTLS is a secure communications library implementing the SSL, TLS and DTLS protocols and technologies around them. It provides a simple C language application programming interface (API) to access the secure communications protocols as well as APIs to parse and write X.509, PKCS #12, OpenPGP and other required structures. -------------------------------------------------------------------------------- Update Information: New upstream release with a fix for [GNUTLS- SA-2023-10-23](https://www.gnutls.org/security-new.html#GNUTLS-SA-2023-10-23). -------------------------------------------------------------------------------- ChangeLog: * Mon Nov 27 2023 Daiki Ueno - 3.8.2-1 - [packit] 3.8.2 upstream release -------------------------------------------------------------------------------- References: [ 1 ] Bug #2249801 - gnutls-3.8.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=2249801 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-e075ac32be' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . A new upstream release of GnuTLS for Fedora 39 addresses a moderate DoS issue to enhance security.. gnutls update,fedora 39,security advisory,TLS protocol,communication library. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 30, 2023 Important Fedora
99

Slackware 14.2: 2016-275-01 Critical: Mozilla-Thunderbird Update

New mozilla-thunderbird packages are available for Slackware 14.1, 14.2, and -current to fix security issues. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] mozilla-thunderbird (SSA:2016-275-01) New mozilla-thunderbird packages are available for Slackware 14.1, 14.2, and -current to fix security issues. Here are the details from the Slackware 14.2 ChangeLog: +--------------------------+ patches/packages/mozilla-thunderbird-45.4.0-i586-1_slack14.2.txz: Upgraded. This release contains security fixes and improvements. For more information, see: https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/ (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 14.1: Updated package for Slackware x86_64 14.1: Updated package for Slackware 14.2: Updated package for Slackware x86_64 14.2: Updated package for Slackware -current: Updated package for Slackware x86_64 -current: MD5 signatures: +-------------+ Slackware 14.1 package: bbc7a109aed0f6258f563f152f3d95b3 mozilla-thunderbird-45.4.0-i486-1_slack14.1.txz Slackware x86_64 14.1 package: 5aaf769ae54a1933f84833ad73808bb2 mozilla-thunderbird-45.4.0-x86_64-1_slack14.1.txz Slackware 14.2 package: 72106c3f885a6523422f22263c265a14 mozilla-thunderbird-45.4.0-i586-1_slack14.2.txz Slackware x86_64 14.2 package: 241190d62a7eb1d87eb517cc176f463b mozilla-thunderbird-45.4.0-x86_64-1_slack14.2.txz Slackware -current package: f45be7939e94e14dc46f8571616580dd xap/mozilla-thunderbird-45.4.0-i586-1.txz Slackware x86_64 -current package: 458c7b0cf5519cb3284d4c22f07924e6 xap/mozilla-thunderbird-45.4.0-x86_64-1.txz Installation instructions: +------------------------+ Upgrade thepackage as root: # upgradepkg mozilla-thunderbird-45.4.0-i486-1_slack14.1.txz +-----+ . Security patches for Slackware enhance stability in mozilla-thunderbird, safeguarding user interactions. Ensure you're updated!. Mozilla-Thunderbird, Slackware Update, Software Security Patch, Package Upgrade. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 01, 2016 Critical Slackware
217

Oracle Linux 4 ELSA-2011-1820 Moderate: Pidgin Security Update Details

The following updated rpms for Oracle Linux 4 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2011-1820 https://access.redhat.com/errata/RHSA-2011:1820.html The following updated rpms for Oracle Linux 4 have been uploaded to the Unbreakable Linux Network: i386: finch-2.6.6-10.el4.i386.rpm finch-devel-2.6.6-10.el4.i386.rpm libpurple-2.6.6-10.el4.i386.rpm libpurple-devel-2.6.6-10.el4.i386.rpm libpurple-perl-2.6.6-10.el4.i386.rpm libpurple-tcl-2.6.6-10.el4.i386.rpm pidgin-2.6.6-10.el4.i386.rpm pidgin-devel-2.6.6-10.el4.i386.rpm pidgin-perl-2.6.6-10.el4.i386.rpm x86_64: finch-2.6.6-10.el4.x86_64.rpm finch-devel-2.6.6-10.el4.x86_64.rpm libpurple-2.6.6-10.el4.x86_64.rpm libpurple-devel-2.6.6-10.el4.x86_64.rpm libpurple-perl-2.6.6-10.el4.x86_64.rpm libpurple-tcl-2.6.6-10.el4.x86_64.rpm pidgin-2.6.6-10.el4.x86_64.rpm pidgin-devel-2.6.6-10.el4.x86_64.rpm pidgin-perl-2.6.6-10.el4.x86_64.rpm ia64: finch-2.6.6-10.el4.ia64.rpm finch-devel-2.6.6-10.el4.ia64.rpm libpurple-2.6.6-10.el4.ia64.rpm libpurple-devel-2.6.6-10.el4.ia64.rpm libpurple-perl-2.6.6-10.el4.ia64.rpm libpurple-tcl-2.6.6-10.el4.ia64.rpm pidgin-2.6.6-10.el4.ia64.rpm pidgin-devel-2.6.6-10.el4.ia64.rpm pidgin-perl-2.6.6-10.el4.ia64.rpm SRPMS: https://oss.oracle.com:443/el4/SRPMS-updates/pidgin-2.6.6-10.el4.src.rpm Description of changes: [2.6.6-10.el4] - Add patch for CVE-2011-4603 (RH bug #766449). [2.6.6-9.el4] - Add patch for CVE-2011-4602 (RH bug #766449). [2.6.6-8.el4] - Add patch for CVE-2011-4601 (RH bug #766449). . As of October 2023, Oracle Linux 4 has updated Pidgin to address security issues from advisory ELSA-2011-1820, preventing potential exploits and enhancing system security. Oracle Linux Updates, Pidgin Security Fix, Moderate Severity Advisory. . LinuxSecurity.com Team

Calendar%202 Dec 14, 2011 Oracle
99

Slackware 10.1: 2005-162-01 Moderate: Gaim Remote Crash Risk

New gaim packages are available for Slackware 9.0, 9.1, 10.0, 10.1, and -current to fix some minor security issues. Sites that use GAIM should upgrade to the new version. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] gaim (SSA:2005-162-01) New gaim packages are available for Slackware 9.0, 9.1, 10.0, 10.1, and -current to fix some minor security issues. Sites that use GAIM should upgrade to the new version. Here are the details from the Slackware 10.1 ChangeLog: +--------------------------+ patches/packages/gaim-1.3.1-i486-1.tgz: Upgraded to gaim-1.3.1 and gaim-encryption-2.38. This fixes a couple of remote crash bugs, so users of the MSN and Yahoo! chat protocols should upgrade to gaim-1.3.1. (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Updated package for Slackware 9.0: Updated package for Slackware 9.1: Updated package for Slackware 10.0: Updated package for Slackware 10.1: Updated package for Slackware -current: MD5 signatures: +-------------+ Slackware 9.0 package: a75a60429363acd205166590ca17277f gaim-1.3.1-i386-1.tgz Slackware 9.1 package: 929de8fdd072554ae10e6bf8e75d232c gaim-1.3.1-i486-1.tgz Slackware 10.0 package: 4b0f13b8c99088536b7d72bb037cc5a2 gaim-1.3.1-i486-1.tgz Slackware 10.1 package: c0f249e8b5e862fa07f0c38e51e00844 gaim-1.3.1-i486-1.tgz Slackware -current package: f9b715b0d493fa91fc1d49cde13deefb gaim-1.3.1-i486-1.tgz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg gaim-1.3.1-i486-1.tgz +-----+ . Recent updates for Gaim on Slackware address several small security vulnerabilities. It's essential to upgrade to ensure your communication remains secure.. Slackware Security,Gaim Update,Remote Crash Fix. . LinuxSecurity.com Team

Calendar%202 Jun 14, 2005 Slackware
89

Fedora Core 3 Update: OpenSSL Critical Fix for CAN-2004-0081

This update adds missing fix for CAN-2004-0081.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-078 2005-01-31 ---------------------------------------------------------------------Product : Fedora Core 3 Name : openssl096b Version : 0.9.6b Release : 21 Summary : The OpenSSL toolkit. Description : The OpenSSL toolkit provides support for secure communications between machines. OpenSSL includes a certificate management tool and shared libraries which provide various cryptographic algorithms and protocols. ---------------------------------------------------------------------Update Information: This update adds missing fix for CAN-2004-0081. ---------------------------------------------------------------------* Wed Oct 27 2004 Nalin Dahyabhai 0.9.6b-21 - rebuild * Wed Oct 27 2004 Nalin Dahyabhai 0.9.6b-20 - rebuild ---------------------------------------------------------------------This update can be downloaded from: 376588aa72cdac37281ae30e76e4092f SRPMS/openssl096b-0.9.6b-21.src.rpm def5ab22bd527f72611575e8f9edee0e x86_64/openssl096b-0.9.6b-21.x86_64.rpm 74ecfc4d2954604d2a54007d8dc54cb5 x86_64/debug/openssl096b-debuginfo-0.9.6b-21.x86_64.rpm 7154a102525adb6d7e6955783759559c x86_64/openssl096b-0.9.6b-21.i386.rpm 7154a102525adb6d7e6955783759559c i386/openssl096b-0.9.6b-21.i386.rpm fa8467ff5b3508b36f775ddd047625ea i386/debug/openssl096b-debuginfo-0.9.6b-21.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Important patch released for Fedora Core 3 rectifying unaddressed vulnerability CAN-2004-0081 in OpenSSL library.. Fedora Core Update, OpenSSL Security, CAN-2004-0081, OpenSSL Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jan 31, 2005 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":1,"type":"x","order":1,"pct":16.67,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":50,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200