Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
202

openSUSE Leap 15.3: 2021:3944-1 Important glib-networking Connection Fix

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for glib-networking ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:3944-1 Rating: important References: #1172460 Cross-References: CVE-2020-13645 CVSS scores: CVE-2020-13645 (NVD) : 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N CVE-2020-13645 (SUSE): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N Affected Products: openSUSE Leap 15.3 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for glib-networking fixes the following issues: Update to version 2.62.4: - CVE-2020-13645: Fixed a connection failure when the server identity is unset (bsc#1172460). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2021-3944=1 Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): glib-networking-2.62.4-3.3.1 glib-networking-debuginfo-2.62.4-3.3.1 glib-networking-debugsource-2.62.4-3.3.1 - openSUSE Leap 15.3 (noarch): glib-networking-lang-2.62.4-3.3.1 - openSUSE Leap 15.3 (x86_64): glib-networking-32bit-2.62.4-3.3.1 glib-networking-32bit-debuginfo-2.62.4-3.3.1 References: https://www.suse.com/security/cve/CVE-2020-13645.html https://bugzilla.suse.com/1172460 . Critical security enhancements for glib-networking released in openSUSE, featuring essential updates and detailed patch guidelines for users.. openSUSE Security Update, glib-networking, connection fix, software patching. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 06, 2021 Important OpenSUSE
202

openSUSE Leap 15.3: 2021:1234-2 Critical Mutt Network Patch

An update that solves one vulnerability and has one errata is now available. . openSUSE Security Update: Security update for mutt ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:2141-1 Rating: important References: #1179035 #1179113 Cross-References: CVE-2020-28896 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for mutt fixes the following issues: - CVE-2020-28896: incomplete connection termination could lead to sending credentials over unencrypted connections (bsc#1179035) - Avoid that message with a million tiny parts can freeze MUA for several minutes (bsc#1179113) This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2020-2141=1 Package List: - openSUSE Leap 15.2 (noarch): mutt-doc-1.10.1-lp152.3.6.1 mutt-lang-1.10.1-lp152.3.6.1 - openSUSE Leap 15.2 (x86_64): mutt-1.10.1-lp152.3.6.1 mutt-debuginfo-1.10.1-lp152.3.6.1 mutt-debugsource-1.10.1-lp152.3.6.1 References: https://www.suse.com/security/cve/CVE-2020-28896.html https://bugzilla.suse.com/1179035 https://bugzilla.suse.com/1179113 _______________________________________________ openSUSE Security Announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe, email This email address is being protected from spambots. You need JavaScript enabled to view it. List Netiquette: List Archives: . Important release for openSUSE Leap 15.2, addressing vulnerabilities in muttand improving the overall reliability of the email application.. openSUSE Security Update, Mutt Client, Connection Security, Email Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 01, 2020 Critical OpenSUSE
89

Fedora 30 Moderation: FEDORA-2019-63ba15cc83 Critical Connection Fix

Rebuilt with newer nghttp2 ---- This update includes the latest upstream release of `mod_http2`, version **1.15.3**. Upstream changes include: * fixes Timeout vs. KeepAliveTimeout behaviour, see PR 63534. * Fixes stream cleanup when connection throttling is in place. * Counts stream resets by client on streams initiated by client as cause for connection throttling. * Header length. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-63ba15cc83 2019-08-30 14:20:29.662750 --------------------------------------------------------------------------------Name : mod_http2 Product : Fedora 30 Version : 1.15.3 Release : 2.fc30 URL : https://icing.github.io/mod_h2/ Summary : module implementing HTTP/2 for Apache 2 Description : The mod_h2 Apache httpd module implements the HTTP2 protocol (h2+h2c) on top of libnghttp2 for httpd 2.4 servers. --------------------------------------------------------------------------------Update Information: Rebuilt with newer nghttp2 ---- This update includes the latest upstream release of `mod_http2`, version **1.15.3**. Upstream changes include: * fixes Timeout vs. KeepAliveTimeout behaviour, see PR 63534. * Fixes stream cleanup when connection throttling is in place. * Counts stream resets by client on streams initiated by client as cause for connection throttling. * Header length checks are now logged similar to HTTP/1.1 protocol handler * Header length is checked also on the merged value from several header instances and results in a 431 response. * fixing mod_proxy_http2 to support trailers in both directions. See PR 63502. --------------------------------------------------------------------------------ChangeLog: * Mon Aug 19 2019 Lubos Uhliarik - 1.15.3-2 - Rebuilt with newer nghttp2 * Thu Aug 8 2019 Joe Orton - 1.15.3-1 - update to 1.15.3 * Thu Jul 25 2019 Fedora Release Engineering - 1.15.1-2 - Rebuilt forhttps://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Wed May 29 2019 Joe Orton - 1.15.1-1 - update to 1.15.1 * Wed May 22 2019 Joe Orton - 1.15.0-1 - update to 1.15.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1741948 - CVE-2019-9511 CVE-2019-9516 CVE-2019-9517 mod_http2: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741948 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-63ba15cc83' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Upgrade your Fedora 30 environment by applying the most recent mod_http2 patch to resolve connectivity problems and enhance streaming performance.. Fedora Update, mod_http2, HTTP2 Protocol, Apache HTTPD, Stream Management. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 30, 2019 Critical Fedora
89

Fedora 25: Gajim Security Update Fixes Connection And Chat Problems

Gajim 0.16.8 * Fix rejoining MUCs after connection loss * Fix Groupchat invites * Fix encoding problems with newer GnuPG versions * Fix old messages randomly reappearing in the chat window * Fix some problems with IBB filetransfer * Make XEP-0146 Commands opt-in * Improve sending messages to your own resources * Improve reliability of delivery recipes * Many minor. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-3c561780c8 2017-06-15 02:57:02.425277 --------------------------------------------------------------------------------Name : gajim Product : Fedora 25 Version : 0.16.8 Release : 1.fc25 URL : https://gajim.org/ Summary : Jabber client written in PyGTK Description : Gajim is a Jabber client written in PyGTK. The goal of Gajim's developers is to provide a full featured and easy to use xmpp client for the GTK+ users. Gajim does not require GNOME to run, even though it exists with it nicely. --------------------------------------------------------------------------------Update Information: Gajim 0.16.8 * Fix rejoining MUCs after connection loss * Fix Groupchat invites * Fix encoding problems with newer GnuPG versions * Fix old messages randomly reappearing in the chat window * Fix some problems with IBB filetransfer * Make XEP-0146 Commands opt-in * Improve sending messages to your own resources * Improve reliability of delivery recipes * Many minor bugfixes --------------------------------------------------------------------------------References: [ 1 ] Bug #1456364 - CVE-2016-10376 gajim: XEP-0146 makes it possible to extract plain-text from OTR sessions [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1456364 [ 2 ] Bug #1458616 - gajim-0.16.8 is available https://bugzilla.redhat.com/show_bug.cgi?id=1458616 --------------------------------------------------------------------------------This update can be installed with the "dnf" updateprogram. Use su -c 'dnf upgrade gajim' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Dive into the recent Gajim release for Fedora 25, which tackles various major bugs and enhances messaging features.. Gajim Security Update,Fedora 25 Gajim,Jabber Chat Client,Connection Fixes. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 15, 2017 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here