Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
89

Fedora 27 NX-Libs Update: Critical Socket Handling Issue Resolved

nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. - Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-60c4aa0e01 2018-03-06 17:17:51.853212 --------------------------------------------------------------------------------Name : nx-libs Product : Fedora 27 Version : 3.5.0.33 Release : 4.fc27 URL : https://wiki.x2go.org/doku.php Summary : NX X11 protocol compression libraries Description : NX is a software suite which implements very efficient compression of the X11 protocol. This increases performance when using X applications over a network, especially a slow one. This package provides the core nx-X11 libraries customized for nxagent/x2goagent. --------------------------------------------------------------------------------Update Information: nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. -Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in mate-color-picker and potentially also other applications that make heavy use of RENDER trapezoids. x2goserver 4.0.1.22: - Fixed overzealous nxagent socket removal. - Keyboard mapping fixes, including preparation for usage with Arctica's nx-libs version (not supported in this version of X2Go Server, yet). -Support for Devuan and RT OS full desktop session spawning. - Always use short host name, don't rely on ${HOSTNAME} variable. Compatibilitywith non-bash login shells. - Spawn full desktop sessions with a new dbus user session instance. - Finnish translation update. - Added support for LXQt full desktop sessions. - New command: x2golistshadowsessions. --------------------------------------------------------------------------------References: [ 1 ] Bug #1478974 - x2go killed by systemd https://bugzilla.redhat.com/show_bug.cgi?id=1478974 [ 2 ] Bug #1510900 - nx-libs-3.5.0.33 is available https://bugzilla.redhat.com/show_bug.cgi?id=1510900 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade nx-libs' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Discover essential enhancements in Fedora 27's nx-libs that affect UNIX socket management and enhance connection performance.. nx-libs Update, Fedora 27 Security, X11 Network Improvement. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 06, 2018 Critical Fedora
89

Fedora 27: x2goserver Update 2017-60c4aa0e01 Critical Socket Exploit Fix

nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. - Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-60c4aa0e01 2018-03-06 17:17:51.853212 --------------------------------------------------------------------------------Name : x2goserver Product : Fedora 27 Version : 4.0.1.22 Release : 2.fc27 URL : https://wiki.x2go.org/doku.php Summary : X2Go Server Description : X2Go is a server based computing environment with - session resuming - low bandwidth support - session brokerage support - client side mass storage mounting support - audio support - authentication by smartcard and USB stick This package contains the main daemon and tools for X2Go server-side session administrations. --------------------------------------------------------------------------------Update Information: nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. -Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in mate-color-picker and potentially also other applications that make heavy use of RENDER trapezoids. x2goserver 4.0.1.22: - Fixed overzealous nxagent socket removal. - Keyboard mapping fixes, including preparation for usage with Arctica's nx-libs version (not supported in this version of X2Go Server, yet). -Support for Devuan and RT OS full desktop session spawning. - Always useshort host name, don't rely on ${HOSTNAME} variable. Compatibility with non-bash login shells. - Spawn full desktop sessions with a new dbus user session instance. - Finnish translation update. - Added support for LXQt full desktop sessions. - New command: x2golistshadowsessions. --------------------------------------------------------------------------------References: [ 1 ] Bug #1478974 - x2go killed by systemd https://bugzilla.redhat.com/show_bug.cgi?id=1478974 [ 2 ] Bug #1510900 - nx-libs-3.5.0.33 is available https://bugzilla.redhat.com/show_bug.cgi?id=1510900 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade x2goserver' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . The latest x2goserver update tackles vulnerabilities in socket security as well as improves connection speed performance. This release contains essential patches.. x2go server update, nx-libs exploit, Fedora security advisory, LAN WAN performance, software patching. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 06, 2018 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here