Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 37: 2023-7456a62f60 Moderate: mbedtls 2.28.2 Security Issue

- Update to 2.28.2 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.2. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-7456a62f60 2023-01-11 01:20:34.979907 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 37 Version : 2.28.2 Release : 1.fc37 URL : https://www.trustedfirmware.org/projects/mbed-tls Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. --------------------------------------------------------------------------------Update Information: - Update to 2.28.2 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.2 --------------------------------------------------------------------------------ChangeLog: * Fri Dec 16 2022 Benson Muite - 2.28.2-1 - Update to 2.28.2 - Update URLs --------------------------------------------------------------------------------References: [ 1 ] Bug #2155397 - CVE-2022-46392 CVE-2022-46393 mbedtls: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2155397 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-7456a62f60' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The recent Fedora update for mbedtls 2.28.2 tackles urgent security vulnerabilities while introducing enhancements and corrections.. Fedora Mbedtls Update,Cryptographic Library Security,Security Update Notification. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 11, 2023 Important Fedora
89

Fedora 30: FEDORA-2020-e7f95c4df0 High: Mbed TLS Update 2.16.5

- Update to 2.16.5 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-e7f95c4df0 2020-03-13 02:29:45.056795 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 30 Version : 2.16.5 Release : 1.fc30 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: --------------------------------------------------------------------------------Update Information: - Update to 2.16.5 Release notes: Security Advisory: --------------------------------------------------------------------------------ChangeLog: * Tue Mar 3 2020 Morten Stevens - 2.16.5-1 - Update to 2.16.5 * Mon Feb 10 2020 Morten Stevens - 2.16.4-1 - Update to 2.16.4 * Wed Jan 29 2020 Fedora Release Engineering - 2.16.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild * Sat Sep 28 2019 Morten Stevens - 2.16.3-1 - Update to 2.16.3 - Side channel attack on deterministic ECDSA (CVE-2019-16910) * Tue Sep 3 2019 Morten Stevens - 2.16.2-4 - devel package needs pkcs11-helper-devel (#1748468) * Sat Aug 3 2019 Morten Stevens - 2.16.2-3 - Fix building on RHEL8 * Thu Jul 25 2019 Fedora Release Engineering - 2.16.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Sat Jul 20 2019 Morten Stevens - 2.16.2-1 - Update to 2.16.2 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2020-e7f95c4df0' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Updating Mbed TLS to version 2.16.5 on Fedora 30 bolsters security through enhanced cryptographic capabilities. Discover further details here.. Mbed TLS, Fedora 30, Security Advisory. . LinuxSecurity.com Team

Calendar 2 Mar 12, 2020 Fedora
89

Fedora 30: FEDORA-2019-812b77ed2e moderate: Crypto++ DoS Risk

Update to 8.2.0.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-812b77ed2e 2019-06-01 00:50:53.475243 --------------------------------------------------------------------------------Name : cryptopp Product : Fedora 30 Version : 8.2.0 Release : 1.fc30 URL : Summary : C++ class library of cryptographic schemes Description : Crypto++ Library is a free C++ class library of cryptographic schemes. See for a list of supported algorithms. One purpose of Crypto++ is to act as a repository of public domain (not copyrighted) source code. Although the library is copyrighted as a compilation, the individual files in it are in the public domain. --------------------------------------------------------------------------------Update Information: Update to 8.2.0. --------------------------------------------------------------------------------ChangeLog: * Tue May 21 2019 Vasiliy N. Glazov 8.2.0-1 - Update to 8.2.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1458792 - CVE-2017-9434 cryptopp: Out-of-bounds read in zinflate [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1458792 [ 2 ] Bug #1404145 - CVE-2016-9939 cryptopp: DoS in ASN.1 parser due to octet processing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1404145 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-812b77ed2e' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Crypto++ 8.2.0 addresses vulnerabilities linked to denial-of-service (DoS) threats. Explore details in the security advisory released for Fedora. Fedora Security, Crypto++ Update, DoS Risks, Cryptography. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 31, 2019 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here