Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
200

Scientific Linux SL7: SLSA-2022-7184-1 Critical: Matrix SDK Risks

This update upgrades Thunderbird to version 102.4.0. * Mozilla: Matrix SDK bundled with Thunderbird vulnerable to an impersonation attack by malicious server administrators (CVE-2022-39249) * Mozilla: Matrix SDK bundled with Thunderbird vulnerable to a device verification attack (CVE-2022-39250) * Mozilla: Matrix SDK bundled with Thunderbird vulnerable to an impersonation attack (CVE-2022-392 [More...]. Synopsis: Important: thunderbird security update Advisory ID: SLSA-2022:7184-1 Issue Date: 2022-10-25 CVE Numbers: CVE-2022-42927 CVE-2022-42928 CVE-2022-42929 CVE-2022-42932 CVE-2022-39236 CVE-2022-39249 CVE-2022-39250 CVE-2022-39251 -- This update upgrades Thunderbird to version 102.4.0. Security Fix(es): * Mozilla: Matrix SDK bundled with Thunderbird vulnerable to an impersonation attack by malicious server administrators (CVE-2022-39249) * Mozilla: Matrix SDK bundled with Thunderbird vulnerable to a device verification attack (CVE-2022-39250) * Mozilla: Matrix SDK bundled with Thunderbird vulnerable to an impersonation attack (CVE-2022-39251) * Mozilla: Same-origin policy violation could have leaked cross-origin URLs (CVE-2022-42927) * Mozilla: Memory Corruption in JS Engine (CVE-2022-42928) * Mozilla: Matrix SDK bundled with Thunderbird vulnerable to a data corruption issue (CVE-2022-39236) * Mozilla: Denial of Service via window.print (CVE-2022-42929) * Mozilla: Memory safety bugs fixed in Firefox ESR 102.4 and Thunderbird 102.4 (CVE-2022-42932) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE -- SL7 x86_64 thunderbird-102.4.0-1.el7_9.x86_64.rpm thunderbird-debuginfo-102.4.0-1.el7_9.x86_64.rpm - Scientific Linux Development Team . The update to Thunderbird 102.4.0 addresses several security flaws in the Matrix SDK andenhances overall security measures.. Thunderbird Update, Matrix SDK, Security Patch, Important Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 26, 2022 Important Scientific Linux
202

openSUSE: 2020:2363-1 Important Fix for kdeconnect-kde Device Verification

An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for kdeconnect-kde ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:2363-1 Rating: important References: #1177672 Affected Products: openSUSE Backports SLE-15-SP2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for kdeconnect-kde fixes the following issue: - Add fingerprinting for device verification (boo#1177672). This update was imported from the openSUSE:Leap:15.2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP2: zypper in -t patch openSUSE-2020-2363=1 Package List: - openSUSE Backports SLE-15-SP2 (aarch64 ppc64le s390x x86_64): kdeconnect-kde-20.04.2-bp152.2.6.1 - openSUSE Backports SLE-15-SP2 (noarch): kdeconnect-kde-lang-20.04.2-bp152.2.6.1 kdeconnect-kde-zsh-completion-20.04.2-bp152.2.6.1 References: https://bugzilla.suse.com/1177672 . openSUSE Security Update for gnome-shell announcement ID: openSUSE-SU-2021:1234-1 contains critical patches.. openSUSE Security Update,kdeconnect-kde fixes,installation instructions. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 30, 2020 Important OpenSUSE
202

openSUSE: 2020:2361-1 Important: kdeconnect-kde Device Verification Fix

An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for kdeconnect-kde ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:2361-1 Rating: important References: #1177672 Affected Products: openSUSE Backports SLE-15-SP1 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for kdeconnect-kde fixes the following issues: - Add fingerprinting for device verification (boo#1177672). This update was imported from the openSUSE:Leap:15.1:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP1: zypper in -t patch openSUSE-2020-2361=1 Package List: - openSUSE Backports SLE-15-SP1 (aarch64 ppc64le s390x x86_64): kdeconnect-kde-1.3.3-bp151.4.6.1 - openSUSE Backports SLE-15-SP1 (noarch): kdeconnect-kde-lang-1.3.3-bp151.4.6.1 References: https://bugzilla.suse.com/1177672 . Stay secure with the latest kdeconnect-kde update, which patches vulnerabilities to protect user data and improve security protocols for safe transmission. openSUSE,kdeconnect,security update,important patch,installation instructions. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 29, 2020 Important OpenSUSE
202

openSUSE Leap 15.2: 2020:2343-1 Important Update for Kdeconnect-Kde

An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for kdeconnect-kde ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:2343-1 Rating: important References: #1177672 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for kdeconnect-kde fixes the following issue: - Add fingerprinting for device verification (boo#1177672). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2020-2343=1 Package List: - openSUSE Leap 15.2 (noarch): kdeconnect-kde-lang-20.04.2-lp152.2.6.1 kdeconnect-kde-zsh-completion-20.04.2-lp152.2.6.1 - openSUSE Leap 15.2 (x86_64): kdeconnect-kde-20.04.2-lp152.2.6.1 kdeconnect-kde-debuginfo-20.04.2-lp152.2.6.1 kdeconnect-kde-debugsource-20.04.2-lp152.2.6.1 References: https://bugzilla.suse.com/1177672 _______________________________________________ openSUSE Security Announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe, email This email address is being protected from spambots. You need JavaScript enabled to view it. List Netiquette: https://en.opensuse.org/openSUSE:Mailing_list_netiquette List Archives: . The recent update for kdeconnect-kde highlights crucial security enhancements in openSUSE. Please adhere to the patch guidelines for proper installation.. kdeconnect-kde, OpenSUSE Updates, Device Protection, Security Enhancements. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 26, 2020 Important OpenSUSE
202

openSUSE Leap 15.1: 2020:2334-1 Important: kdeconnect-kde Security Update

An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for kdeconnect-kde ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:2334-1 Rating: important References: #1177672 Affected Products: openSUSE Leap 15.1 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for kdeconnect-kde fixes the following issues: - Add fingerprinting for device verification (boo#1177672). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.1: zypper in -t patch openSUSE-2020-2334=1 Package List: - openSUSE Leap 15.1 (x86_64): kdeconnect-kde-1.3.3-lp151.2.6.1 kdeconnect-kde-debuginfo-1.3.3-lp151.2.6.1 kdeconnect-kde-debugsource-1.3.3-lp151.2.6.1 - openSUSE Leap 15.1 (noarch): kdeconnect-kde-lang-1.3.3-lp151.2.6.1 References: https://bugzilla.suse.com/1177672 _______________________________________________ openSUSE Security Announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe, email This email address is being protected from spambots. You need JavaScript enabled to view it. List Netiquette: https://en.opensuse.org/openSUSE:Mailing_list_netiquette List Archives: . Crucial openSUSE Security Patch for kdeconnect-kde addresses device verification vulnerabilities with suggested update guidelines.. openSUSE Security Update,kdeconnect-kde,device verification patch,security fixes. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 26, 2020 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here