Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
203

Mageia 7 MGASA-2020-0190: Critical Crawl Remote Code Execution

Updated crawl packages fix security vulnerability crawl 0.24.0 and earlier are subject to possible remote code evaluation with lua loadstring (CVE-2020-11722). . MGASA-2020-0190 - Updated crawl packages fix security vulnerability Publication date: 05 May 2020 URL: https://advisories.mageia.org/MGASA-2020-0190.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-11722 Updated crawl packages fix security vulnerability crawl 0.24.0 and earlier are subject to possible remote code evaluation with lua loadstring (CVE-2020-11722). This update fixes it, also updating crawl from version 0.23.2 to 0.24.1, with the following main gameplay changes: * Vampire species simplified * Thrown weapons streamlined * Fedhas reimagined * Sif Muna reworked References: - https://bugs.mageia.org/show_bug.cgi?id=26552 - - https://raw.githubusercontent.com/crawl/crawl/0.24.1/crawl-ref/docs/changelog.txt - https://github.com/crawl/crawl/commits/a250c9d538d3db384407f7e61470e8ec65ad5b83 - https://www.cve.org/CVERecord?id=CVE-2020-11722 SRPMS: - 7/core/crawl-0.24.1-2.ga250c9d538.1.mga7 . Recent updates to crawl packages fix a critical remote code execution vulnerability associated with lua loadstring, significantly improving Mageia's security posture.. Mageia Security Update, Crawl Vulnerability Fix, Remote Code Execution. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 05, 2020 Critical Mageia
87

Debian 3.0: DSA 432-1 Critical: Crawl Buffer Overflow Risk

The program applies an unchecked-length environment variable into a fixed size buffer.. - -------------------------------------------------------------------------- Debian Security Advisory DSA 432-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze February 3rd, 2004 Debian -- Debian security FAQ - -------------------------------------------------------------------------- Package : crawl Vulnerability : buffer overflow Problem-Type : local Debian-specific: no CVE ID : CAN-2004-0103 Steve Kemp from the GNU/Linux audit project discovered a problem in crawl, another console based dungeon exploration game, in the vein of nethack and rogue. The program uses several environment variables as inputs but doesn't apply a size check before copying one of them into a fixed size buffer. For the stable distribution (woody) this problem has been fixed in version 4.0.0beta23-2woody1. For the unstable distribution (sid) this problem has been fixed in version 4.0.0beta26-4. We recommend that you upgrade your crawl package. Upgrade Instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 615 31b653a8f4676721dce6fd4cd0be466a Size/MD5 checksum: 6917 b6265bdb9920f235974e956aee8ff3d8 Size/MD5 checksum: 1047863 6b988caff871f0df1c8f3cc907f2fce6 Alpha architecture: Size/MD5 checksum: 846352 cd6c9b2e3f956ffb90044d3f612a0541 ARM architecture: Size/MD5 checksum: 612148 1d40c12a7687b8c2fbac1ea96df77904 Intel IA-32 architecture: Size/MD5 checksum: 597308 23caee0901a3bb82a339865317bacec4 Intel IA-64 architecture: Size/MD5 checksum: 872990 650870a8100d6940786e51c8637bf620 HP Precision architecture: Size/MD5 checksum: 710630 3901b6834ce7bf7a207a90a2b7dc1d06 Motorola 680x0 architecture: Size/MD5 checksum: 582394 82175ccafa67ddf21c2ecbf76cc0bffd Big endian MIPS architecture: Size/MD5 checksum: 682518 6a0e340b338b97ee9a560e62b555d400 Little endian MIPS architecture: Size/MD5 checksum: 680054 c943ac5a2b8f40e937911bcdc41b7f7b PowerPC architecture: Size/MD5 checksum: 627012 6f582d4800a2f8a43aaed89bd9ee8d55 IBM S/390 architecture: Size/MD5 checksum: 595210 fc1e552be3a5e6f4a981feee849a672f Sun Sparc architecture: Size/MD5 checksum: 618752 db57f6fdc7c73721739027dd46fc1515 These files will probably be moved into the stable distribution on its next revision. - --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Critical advisory addresses buffer overflow in crawl package, requiring immediate update for Debian users.. Buffer Overflow,Crawl Package Update,Debian Security Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 03, 2004 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here