Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
197

Debian: DLA-2849-1 Moderate: Wireshark Memory And Buffer Flaws

Several vulnerabilities were fixed in the network traffic analyzer Wireshark. CVE-2021-22207 . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2849-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Adrian Bunk December 26, 2021 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : wireshark Version : 2.6.20-0+deb9u2 CVE ID : CVE-2021-22207 CVE-2021-22235 CVE-2021-39921 CVE-2021-39922 CVE-2021-39923 CVE-2021-39924 CVE-2021-39925 CVE-2021-39928 CVE-2021-39929 Debian Bug : 987853 Several vulnerabilities were fixed in the network traffic analyzer Wireshark. CVE-2021-22207 Excessive memory consumption in the MS-WSP dissector. CVE-2021-22235 Crash in the DNP dissector. CVE-2021-39921 NULL pointer exception in the Modbus dissector. CVE-2021-39922 Buffer overflow in the C12.22 dissector. CVE-2021-39923 Large loop in the PNRP dissector. CVE-2021-39924 Large loop in the Bluetooth DHT dissector. CVE-2021-39925 Buffer overflow in the Bluetooth SDP dissector. CVE-2021-39928 NULL pointer exception in the IEEE 802.11 dissector. CVE-2021-39929 Uncontrolled Recursion in the Bluetooth DHT dissector. For Debian 9 stretch, these problems have been fixed in version 2.6.20-0+deb9u2. We recommend that you upgrade your wireshark packages. For the detailed security status of wireshark please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/wireshark Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Elevate the Wireshark version in Debian LTS to rectify various security vulnerabilities discovered in network analysis software.. Wireshark SecurityUpdate, Debian LTS Advisory, Network Traffic Analysis, Memory Consumption Issues. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 26, 2021 Important Debian LTS
100

SUSE: 2018:4298-1 Moderate: Issues with Wireshark Dissector Flaws

An update that fixes 6 vulnerabilities is now available. . SUSE Security Update: Security update for wireshark ______________________________________________________________________________ Announcement ID: SUSE-SU-2018:4298-1 Rating: moderate References: #1117740 Cross-References: CVE-2018-19622 CVE-2018-19623 CVE-2018-19624 CVE-2018-19625 CVE-2018-19626 CVE-2018-19627 Affected Products: SUSE Linux Enterprise Software Development Kit 12-SP4 SUSE Linux Enterprise Software Development Kit 12-SP3 SUSE Linux Enterprise Server 12-SP4 SUSE Linux Enterprise Server 12-SP3 SUSE Linux Enterprise Desktop 12-SP4 SUSE Linux Enterprise Desktop 12-SP3 ______________________________________________________________________________ An update that fixes 6 vulnerabilities is now available. Description: This update for wireshark fixes the following issues: Update to Wireshark 2.4.11 (bsc#1117740). Security issues fixed: - CVE-2018-19625: The Wireshark dissection engine could crash (wnpa-sec-2018-51) - CVE-2018-19626: The DCOM dissector could crash (wnpa-sec-2018-52) - CVE-2018-19623: The LBMPDM dissector could crash (wnpa-sec-2018-53) - CVE-2018-19622: The MMSE dissector could go into an infinite loop (wnpa-sec-2018-54) - CVE-2018-19627: The IxVeriWave file parser could crash (wnpa-sec-2018-55) - CVE-2018-19624: The PVFS dissector could crash (wnpa-sec-2018-56) Further bug fixes and updated protocol support as listed in: - https://www.wireshark.org/docs/relnotes/wireshark-2.4.11.html Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 12-SP4: zypper in -t patchSUSE-SLE-SDK-12-SP4-2018-3067=1 - SUSE Linux Enterprise Software Development Kit 12-SP3: zypper in -t patch SUSE-SLE-SDK-12-SP3-2018-3067=1 - SUSE Linux Enterprise Server 12-SP4: zypper in -t patch SUSE-SLE-SERVER-12-SP4-2018-3067=1 - SUSE Linux Enterprise Server 12-SP3: zypper in -t patch SUSE-SLE-SERVER-12-SP3-2018-3067=1 - SUSE Linux Enterprise Desktop 12-SP4: zypper in -t patch SUSE-SLE-DESKTOP-12-SP4-2018-3067=1 - SUSE Linux Enterprise Desktop 12-SP3: zypper in -t patch SUSE-SLE-DESKTOP-12-SP3-2018-3067=1 Package List: - SUSE Linux Enterprise Software Development Kit 12-SP4 (aarch64 ppc64le s390x x86_64): wireshark-debuginfo-2.4.11-48.35.1 wireshark-debugsource-2.4.11-48.35.1 wireshark-devel-2.4.11-48.35.1 - SUSE Linux Enterprise Software Development Kit 12-SP3 (aarch64 ppc64le s390x x86_64): wireshark-debuginfo-2.4.11-48.35.1 wireshark-debugsource-2.4.11-48.35.1 wireshark-devel-2.4.11-48.35.1 - SUSE Linux Enterprise Server 12-SP4 (aarch64 ppc64le s390x x86_64): libwireshark9-2.4.11-48.35.1 libwireshark9-debuginfo-2.4.11-48.35.1 libwiretap7-2.4.11-48.35.1 libwiretap7-debuginfo-2.4.11-48.35.1 libwscodecs1-2.4.11-48.35.1 libwscodecs1-debuginfo-2.4.11-48.35.1 libwsutil8-2.4.11-48.35.1 libwsutil8-debuginfo-2.4.11-48.35.1 wireshark-2.4.11-48.35.1 wireshark-debuginfo-2.4.11-48.35.1 wireshark-debugsource-2.4.11-48.35.1 wireshark-gtk-2.4.11-48.35.1 wireshark-gtk-debuginfo-2.4.11-48.35.1 - SUSE Linux Enterprise Server 12-SP3 (aarch64 ppc64le s390x x86_64): libwireshark9-2.4.11-48.35.1 libwireshark9-debuginfo-2.4.11-48.35.1 libwiretap7-2.4.11-48.35.1 libwiretap7-debuginfo-2.4.11-48.35.1 libwscodecs1-2.4.11-48.35.1 libwscodecs1-debuginfo-2.4.11-48.35.1 libwsutil8-2.4.11-48.35.1 libwsutil8-debuginfo-2.4.11-48.35.1 wireshark-2.4.11-48.35.1 wireshark-debuginfo-2.4.11-48.35.1 wireshark-debugsource-2.4.11-48.35.1 wireshark-gtk-2.4.11-48.35.1 wireshark-gtk-debuginfo-2.4.11-48.35.1 - SUSE Linux Enterprise Desktop 12-SP4 (x86_64): libwireshark9-2.4.11-48.35.1 libwireshark9-debuginfo-2.4.11-48.35.1 libwiretap7-2.4.11-48.35.1 libwiretap7-debuginfo-2.4.11-48.35.1 libwscodecs1-2.4.11-48.35.1 libwscodecs1-debuginfo-2.4.11-48.35.1 libwsutil8-2.4.11-48.35.1 libwsutil8-debuginfo-2.4.11-48.35.1 wireshark-2.4.11-48.35.1 wireshark-debuginfo-2.4.11-48.35.1 wireshark-debugsource-2.4.11-48.35.1 wireshark-gtk-2.4.11-48.35.1 wireshark-gtk-debuginfo-2.4.11-48.35.1 - SUSE Linux Enterprise Desktop 12-SP3 (x86_64): libwireshark9-2.4.11-48.35.1 libwireshark9-debuginfo-2.4.11-48.35.1 libwiretap7-2.4.11-48.35.1 libwiretap7-debuginfo-2.4.11-48.35.1 libwscodecs1-2.4.11-48.35.1 libwscodecs1-debuginfo-2.4.11-48.35.1 libwsutil8-2.4.11-48.35.1 libwsutil8-debuginfo-2.4.11-48.35.1 wireshark-2.4.11-48.35.1 wireshark-debuginfo-2.4.11-48.35.1 wireshark-debugsource-2.4.11-48.35.1 wireshark-gtk-2.4.11-48.35.1 wireshark-gtk-debuginfo-2.4.11-48.35.1 References: https://www.suse.com/security/cve/CVE-2018-19622.html https://www.suse.com/security/cve/CVE-2018-19623.html https://www.suse.com/security/cve/CVE-2018-19624.html https://www.suse.com/security/cve/CVE-2018-19625.html https://www.suse.com/security/cve/CVE-2018-19626.html https://www.suse.com/security/cve/CVE-2018-19627.html https://bugzilla.suse.com/1117740 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . A recent security enhancement for tcpdump resolves various vulnerabilities highlighted in SUSE-SU-2021:3234-1, reinforcing overall application performance.. Wireshark Update,SUSE SecurityAdvisory,Software Development Kit,Dissector Issues. . LinuxSecurity.com Team

Calendar 2 Dec 29, 2018 SuSE
197

Debian: DLA-2021-3 Urgent: OpenSSH Security Vulnerabilities Detected

It was discovered that wireshark, a network protocol analyzer, contained several vulnerabilities that could result in infinite loops in different dissectors. Other issues are related to crash in dissectors that are . Package : wireshark Version : 1.12.1+g01b65bf-4+deb8u6~deb7u10 CVE ID : CVE-2018-7322 CVE-2018-7323 CVE-2018-7324 CVE-2018-7332 CVE-2018-7334 CVE-2018-7335 CVE-2018-7336 CVE-2018-7337 CVE-2018-7417 CVE-2018-7418 CVE-2018-7419 CVE-2018-7420 It was discovered that wireshark, a network protocol analyzer, contained several vulnerabilities that could result in infinite loops in different dissectors. Other issues are related to crash in dissectors that are caused by special crafted and malformed packets. For Debian 7 "Wheezy", these problems have been fixed in version 1.12.1+g01b65bf-4+deb8u6~deb7u10. We recommend that you upgrade your wireshark packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Important Wireshark upgrade for Debian LTS resolves endless loop problems when analyzing corrupted packets.. wireshark security, network protocol issues, Debian updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 18, 2018 Critical Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here