Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 29: FEDORA-2019-65509aac53 Critical Update for wpa_supplicant

Security fix for CVE-2019-16275. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-65509aac53 2019-11-15 03:20:21.101719 --------------------------------------------------------------------------------Name : wpa_supplicant Product : Fedora 29 Version : 2.7 Release : 2.fc29 URL : http://w1.fi/wpa_supplicant/ Summary : WPA/WPA2/IEEE 802.1X Supplicant Description : wpa_supplicant is a WPA Supplicant for Linux, BSD and Windows with support for WPA and WPA2 (IEEE 802.11i / RSN). Supplicant is the IEEE 802.1X/WPA component that is used in the client stations. It implements key negotiation with a WPA Authenticator and it controls the roaming and IEEE 802.11 authentication/association of the wlan driver. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2019-16275 --------------------------------------------------------------------------------ChangeLog: * Wed Oct 30 2019 Davide Caratti - 1:2.7-2 - fix AP mode PMF disconnection protection bypass (CVE-2019-16275, rh #1767026) * Tue Dec 18 2018 Lubomir Rintel - 1:2.7-1 - Update to 2.7 upstream release * Wed Aug 15 2018 Lubomir Rintel - 1:2.6-20 - Expose availability of SHA384 and FT on D-Bus * Wed Aug 15 2018 Lubomir Rintel - 1:2.6-19 - Drop the broken Pmf D-Bus property patch * Wed Aug 8 2018 Davide Caratti - 1:2.6-18 - Ignore unauthenticated encrypted EAPOL-Key data (CVE-2018-14526) --------------------------------------------------------------------------------References: [ 1 ] Bug #1767023 - CVE-2019-16275 wpa_supplicant: AP mode PMF disconnection protection bypass https://bugzilla.redhat.com/show_bug.cgi?id=1767023 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-65509aac53' at the command line. Formore information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . A patch for wpa_supplicant in Fedora 29 addresses CVE-2019-16275, improving safeguards against network interruptions.. wpa_supplicant Update,Fedora Security,Network Protection,Security Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 14, 2019 Critical Fedora
89

Fedora 30: 2019-2265b5ae86 Moderate: hostapd PMF Disconnection Bypass

Security fix CVE-2019-16275 (AP mode PMF disconnection protection bypass). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-2265b5ae86 2019-11-09 22:37:54.009125 --------------------------------------------------------------------------------Name : hostapd Product : Fedora 30 Version : 2.9 Release : 2.fc30 URL : http://w1.fi/hostapd/ Summary : IEEE 802.11 AP, IEEE 802.1X/WPA/WPA2/EAP/RADIUS Authenticator Description : hostapd is a user space daemon for access point and authentication servers. It implements IEEE 802.11 access point management, IEEE 802.1X/WPA/WPA2/EAP Authenticators and RADIUS authentication server. hostapd is designed to be a "daemon" program that runs in the back-ground and acts as the backend component controlling authentication. hostapd supports separate frontend programs and an example text-based frontend, hostapd_cli, is included with hostapd. --------------------------------------------------------------------------------Update Information: Security fix CVE-2019-16275 (AP mode PMF disconnection protection bypass) --------------------------------------------------------------------------------ChangeLog: * Wed Oct 30 2019 John W. Linville - 2.9-2 - Fix CVE-2019-16275 (AP mode PMF disconnection protection bypass) * Fri Aug 9 2019 John W. Linville - 2.9-1 - Update to version 2.9 from upstream * Thu Jul 25 2019 Fedora Release Engineering - 2.8-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Wed Jul 3 2019 Lubomir Rintel - 2.8-2 - Enable SAE * Wed May 15 2019 John W. Linville - 2.8-1 - Update to version 2.8 from upstream - Drop obsoleted patches * Fri Apr 12 2019 John W. Linville - 2.7-2 - Bump N-V-R for rebuild * Fri Apr 12 2019 John W. Linville - 2.7-1 - Update to version 2.7 from upstream - Remove obsolete patches for NL80211_ATTR_SMPS_MODE encoding and KRACK - Fix CVE-2019-9494 (cache attack against SAE) -Fix CVE-2019-9495 (cache attack against EAP-pwd) - Fix CVE-2019-9496 (SAE confirm missing state validation in hostapd/AP) - Fix CVE-2019-9497 (EAP-pwd server not checking for reflection attack) - Fix CVE-2019-9498 (EAP-pwd server missing commit validation for scalar/element) - Fix CVE-2019-9499 (EAP-pwd peer missing commit validation for scalar/element) --------------------------------------------------------------------------------References: [ 1 ] Bug #1767023 - CVE-2019-16275 wpa_supplicant: AP mode PMF disconnection protection bypass https://bugzilla.redhat.com/show_bug.cgi?id=1767023 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-2265b5ae86' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . A new Fedora 30 security patch fixes a hostapd vulnerability that could bypass PMF disconnection protection, enhancing wireless network security for users. Fedora Security Update, hostapd Bypass Issue, AP Mode Security, Linux Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 09, 2019 Important Fedora
89

Fedora 31: 2019-740834c559 Critical: hostapd AP Mode PMF Bypass

Security fix CVE-2019-16275 (AP mode PMF disconnection protection bypass). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-740834c559 2019-11-09 21:19:32.242223 --------------------------------------------------------------------------------Name : hostapd Product : Fedora 31 Version : 2.9 Release : 2.fc31 URL : http://w1.fi/hostapd/ Summary : IEEE 802.11 AP, IEEE 802.1X/WPA/WPA2/EAP/RADIUS Authenticator Description : hostapd is a user space daemon for access point and authentication servers. It implements IEEE 802.11 access point management, IEEE 802.1X/WPA/WPA2/EAP Authenticators and RADIUS authentication server. hostapd is designed to be a "daemon" program that runs in the back-ground and acts as the backend component controlling authentication. hostapd supports separate frontend programs and an example text-based frontend, hostapd_cli, is included with hostapd. --------------------------------------------------------------------------------Update Information: Security fix CVE-2019-16275 (AP mode PMF disconnection protection bypass) --------------------------------------------------------------------------------ChangeLog: * Wed Oct 30 2019 John W. Linville - 2.9-2 - Fix CVE-2019-16275 (AP mode PMF disconnection protection bypass) --------------------------------------------------------------------------------References: [ 1 ] Bug #1767023 - CVE-2019-16275 wpa_supplicant: AP mode PMF disconnection protection bypass https://bugzilla.redhat.com/show_bug.cgi?id=1767023 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-740834c559' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key.More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Implement critical security updates for Fedora's hostapd to protect against the PMF disconnection bypass vulnerability by following these steps outlined. Fedora, Hostapd, PMF, Bypass Fix, Security Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 09, 2019 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here