Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
99

Slackware 14.1: SSA:2016-152-01 Critical: Shell Issue in Imagemagick

New imagemagick packages are available for Slackware 14.0, 14.1, and -current to fix a security issue. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] imagemagick (SSA:2016-152-01) New imagemagick packages are available for Slackware 14.0, 14.1, and -current to fix a security issue. Here are the details from the Slackware 14.1 ChangeLog: +--------------------------+ patches/packages/imagemagick-6.8.6_10-i486-3_slack14.1.txz: Rebuilt. Removed popen() support to prevent another shell vulnerability. This issue was discovered by Bob Friesenhahn, of the GraphicsMagick project. For more information, see: https://www.cve.org/CVERecord?id=CVE-2016-5118 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 14.0: ftp://ftp.slackware.com/pub/slackware/slackware-14.0/patches/packages/imagemagick-6.7.7_10-i486-3_slack14.0.txz Updated package for Slackware x86_64 14.0: ftp://ftp.slackware.com/pub/slackware/slackware64-14.0/patches/packages/imagemagick-6.7.7_10-x86_64-3_slack14.0.txz Updated package for Slackware 14.1: ftp://ftp.slackware.com/pub/slackware/slackware-14.1/patches/packages/imagemagick-6.8.6_10-i486-3_slack14.1.txz Updated package for Slackware x86_64 14.1: ftp://ftp.slackware.com/pub/slackware/slackware64-14.1/patches/packages/imagemagick-6.8.6_10-x86_64-3_slack14.1.txz Updated package for Slackware -current: Updated package for Slackware x86_64 -current: MD5 signatures: +-------------+ Slackware 14.0 package: 8038f31b0d67731c68d018cd83156763 imagemagick-6.7.7_10-i486-3_slack14.0.txz Slackware x86_64 14.0 package: 0d9eb6efc627987cf1b99dab3e25d78b imagemagick-6.7.7_10-x86_64-3_slack14.0.txz Slackware 14.1package: e3f901a4083406da10c93ee5979c98e2 imagemagick-6.8.6_10-i486-3_slack14.1.txz Slackware x86_64 14.1 package: cb65d697fbcb85bcd1d4cb816273731b imagemagick-6.8.6_10-x86_64-3_slack14.1.txz Slackware -current package: 383e9ddac6637a4f847438716beaa256 xap/imagemagick-6.9.4_5-i586-1.txz Slackware x86_64 -current package: 0c723689026530a689a1520ee959eaa1 xap/imagemagick-6.9.4_5-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg imagemagick-6.8.6_10-i486-3_slack14.1.txz +-----+ . Updated ImageMagick bundles for Slackware have been released to rectify a significant shell vulnerability, safeguarding system integrity and enhancing security.. imagemagick update, shell issue, slackware packages. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 31, 2016 Critical Slackware
200

Critical Security Update for Firefox on Scientific Linux SL5.x and SL4.x

Critical: firefox security update. Date: Tue, 27 Nov 2007 15:47:35 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for firefox on SL5.x, SL4.x i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Critical: firefox security update Issue date: 2007-11-26 CVE Names: CVE-2007-5947 CVE-2007-5959 CVE-2007-5960 A cross-site scripting flaw was found in the way Firefox handled the jar: URI scheme. It was possible for a malicious website to leverage this flaw and conduct a cross-site scripting attack against a user running Firefox. (CVE-2007-5947) Several flaws were found in the way Firefox processed certain malformed web content. A webpage containing malicious content could cause Firefox to crash, or potentially execute arbitrary code as the user running Firefox. (CVE-2007-5959) A race condition existed when Firefox set the "window.location" property for a webpage. This flaw could allow a webpage to set an arbitrary Referer header, which may lead to a Cross-site Request Forgery (CSRF) attack against websites that rely only on the Referer header for protection. (CVE-2007-5960) SL 4.x SRPMS: firefox-1.5.0.12-0.8.el4.src.rpm i386: firefox-1.5.0.12-0.8.el4.i386.rpm x86_64: firefox-1.5.0.12-0.8.el4.i386.rpm firefox-1.5.0.12-0.8.el4.x86_64.rpm SL 5.x SRPMS: firefox-1.5.0.12-7.el5.src.rpm i386: firefox-1.5.0.12-7.el5.i386.rpm firefox-devel-1.5.0.12-7.el5.i386.rpm x86_64: firefox-1.5.0.12-7.el5.i386.rpm firefox-1.5.0.12-7.el5.x86_64.rpm firefox-devel-1.5.0.12-7.el5.i386.rpm firefox-devel-1.5.0.12-7.el5.x86_64.rpm -Connie Sieh -Troy Dawson . The recent Firefox security patch rectifies severe vulnerabilities present in Scientific Linux versions SL4.x and SL5.x.. firefox Update, Critical Exploits, Scientific Linux Security. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 27, 2007 Critical Scientific Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here