Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
202

openSUSE 15.6: 2025:0551-1 moderate: python311 domain fix

An update that solves one vulnerability and has two security fixes can now be installed.. # Security update for python311 Announcement ID: SUSE-SU-2025:0551-1 Release Date: 2025-02-14T15:10:00Z Rating: moderate References: * bsc#1228165 * bsc#1231795 * bsc#1236705 Cross-References: * CVE-2025-0938 CVSS scores: * CVE-2025-0938 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N * CVE-2025-0938 ( SUSE ): 4.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N * CVE-2025-0938 ( NVD ): 6.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * Basesystem Module 15-SP6 * openSUSE Leap 15.6 * Python 3 Module 15-SP6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves one vulnerability and has two security fixes can now be installed. ## Description: This update for python311 fixes the following issues: * CVE-2025-0938: domain names containing square brackets are not identified as incorrect by urlparse. (bsc#1236705) Other fixes: * Update to version 3.11.11. * Remove -IVendor/ from python-config. (bsc#1231795) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-551=1 openSUSE-SLE-15.6-2025-551=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-551=1 * Python 3 Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Python3-15-SP6-2025-551=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * python311-idle-3.11.11-150600.3.16.2 *python311-debuginfo-3.11.11-150600.3.16.2 * python311-curses-debuginfo-3.11.11-150600.3.16.2 * libpython3_11-1_0-3.11.11-150600.3.16.2 * libpython3_11-1_0-debuginfo-3.11.11-150600.3.16.2 * python311-doc-3.11.11-150600.3.16.2 * python311-testsuite-debuginfo-3.11.11-150600.3.16.2 * python311-tools-3.11.11-150600.3.16.2 * python311-dbm-debuginfo-3.11.11-150600.3.16.2 * python311-3.11.11-150600.3.16.2 * python311-devel-3.11.11-150600.3.16.2 * python311-debugsource-3.11.11-150600.3.16.2 * python311-tk-3.11.11-150600.3.16.2 * python311-curses-3.11.11-150600.3.16.2 * python311-dbm-3.11.11-150600.3.16.2 * python311-testsuite-3.11.11-150600.3.16.2 * python311-doc-devhelp-3.11.11-150600.3.16.2 * python311-core-debugsource-3.11.11-150600.3.16.2 * python311-base-3.11.11-150600.3.16.2 * python311-tk-debuginfo-3.11.11-150600.3.16.2 * python311-base-debuginfo-3.11.11-150600.3.16.2 * openSUSE Leap 15.6 (x86_64) * python311-base-32bit-debuginfo-3.11.11-150600.3.16.2 * python311-base-32bit-3.11.11-150600.3.16.2 * python311-32bit-3.11.11-150600.3.16.2 * libpython3_11-1_0-32bit-debuginfo-3.11.11-150600.3.16.2 * libpython3_11-1_0-32bit-3.11.11-150600.3.16.2 * python311-32bit-debuginfo-3.11.11-150600.3.16.2 * openSUSE Leap 15.6 (aarch64_ilp32) * libpython3_11-1_0-64bit-debuginfo-3.11.11-150600.3.16.2 * python311-64bit-3.11.11-150600.3.16.2 * libpython3_11-1_0-64bit-3.11.11-150600.3.16.2 * python311-base-64bit-debuginfo-3.11.11-150600.3.16.2 * python311-base-64bit-3.11.11-150600.3.16.2 * python311-64bit-debuginfo-3.11.11-150600.3.16.2 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * python311-core-debugsource-3.11.11-150600.3.16.2 * python311-base-3.11.11-150600.3.16.2 * libpython3_11-1_0-3.11.11-150600.3.16.2 * libpython3_11-1_0-debuginfo-3.11.11-150600.3.16.2 * python311-base-debuginfo-3.11.11-150600.3.16.2 * Python 3 Module 15-SP6 (aarch64 ppc64le s390x x86_64) *python311-dbm-debuginfo-3.11.11-150600.3.16.2 * python311-3.11.11-150600.3.16.2 * python311-devel-3.11.11-150600.3.16.2 * python311-debugsource-3.11.11-150600.3.16.2 * python311-idle-3.11.11-150600.3.16.2 * python311-dbm-3.11.11-150600.3.16.2 * python311-tk-3.11.11-150600.3.16.2 * python311-debuginfo-3.11.11-150600.3.16.2 * python311-core-debugsource-3.11.11-150600.3.16.2 * python311-curses-3.11.11-150600.3.16.2 * python311-tk-debuginfo-3.11.11-150600.3.16.2 * python311-curses-debuginfo-3.11.11-150600.3.16.2 * python311-tools-3.11.11-150600.3.16.2 ## References: * https://www.suse.com/security/cve/CVE-2025-0938.html * https://bugzilla.suse.com/show_bug.cgi?id=1228165 * https://bugzilla.suse.com/show_bug.cgi?id=1231795 * https://bugzilla.suse.com/show_bug.cgi?id=1236705 . This patch addresses an issue with domain management in python311 and incorporates essential security enhancements for safeguarding.. openSUSE Security, python update, advisory update, software patching. . LinuxSecurity.com Team

Calendar 2 Feb 14, 2025 OpenSUSE
100

SUSE: 2025:0521-2 critical: python312 cache and resource concerns

* bsc#1228165 * bsc#1234290 * bsc#1236705 Cross-References: . # Security update for python312 Announcement ID: SUSE-SU-2025:0521-1 Release Date: 2025-02-13T16:11:53Z Rating: important References: * bsc#1228165 * bsc#1234290 * bsc#1236705 Cross-References: * CVE-2024-12254 * CVE-2025-0938 CVSS scores: * CVE-2024-12254 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2024-12254 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-12254 ( NVD ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2024-12254 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-0938 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N * CVE-2025-0938 ( SUSE ): 4.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N * CVE-2025-0938 ( NVD ): 6.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * openSUSE Leap 15.6 * Python 3 Module 15-SP6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves two vulnerabilities and has one security fix can now be installed. ## Description: This update for python312 fixes the following issues: * CVE-2025-0938: Functions `urllib.parse.urlsplit` and `urlparse` accept domain names including square brackets (bsc#1236705). * CVE-2024-12254: Unbounded memory buffering in SelectorSocketTransport.writelines() (bsc#1234290). Other bugfixes: * Position of SUSE Python interpreters on Externally managed environments (bsc#1228165). ##Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-521=1 openSUSE-SLE-15.6-2025-521=1 * Python 3 Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Python3-15-SP6-2025-521=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * libpython3_12-1_0-debuginfo-3.12.9-150600.3.18.1 * python312-tk-3.12.9-150600.3.18.1 * python312-curses-3.12.9-150600.3.18.1 * python312-debugsource-3.12.9-150600.3.18.1 * python312-idle-3.12.9-150600.3.18.1 * python312-base-3.12.9-150600.3.18.1 * python312-doc-devhelp-3.12.9-150600.3.18.1 * python312-tk-debuginfo-3.12.9-150600.3.18.1 * python312-debuginfo-3.12.9-150600.3.18.1 * libpython3_12-1_0-3.12.9-150600.3.18.1 * python312-base-debuginfo-3.12.9-150600.3.18.1 * python312-testsuite-3.12.9-150600.3.18.1 * python312-testsuite-debuginfo-3.12.9-150600.3.18.1 * python312-dbm-3.12.9-150600.3.18.1 * python312-curses-debuginfo-3.12.9-150600.3.18.1 * python312-doc-3.12.9-150600.3.18.1 * python312-3.12.9-150600.3.18.1 * python312-devel-3.12.9-150600.3.18.1 * python312-dbm-debuginfo-3.12.9-150600.3.18.1 * python312-core-debugsource-3.12.9-150600.3.18.1 * python312-tools-3.12.9-150600.3.18.1 * openSUSE Leap 15.6 (x86_64) * python312-32bit-3.12.9-150600.3.18.1 * python312-base-32bit-3.12.9-150600.3.18.1 * libpython3_12-1_0-32bit-debuginfo-3.12.9-150600.3.18.1 * python312-base-32bit-debuginfo-3.12.9-150600.3.18.1 * libpython3_12-1_0-32bit-3.12.9-150600.3.18.1 * python312-32bit-debuginfo-3.12.9-150600.3.18.1 * openSUSE Leap 15.6 (aarch64_ilp32) * python312-base-64bit-debuginfo-3.12.9-150600.3.18.1 * libpython3_12-1_0-64bit-debuginfo-3.12.9-150600.3.18.1 * python312-64bit-3.12.9-150600.3.18.1 *libpython3_12-1_0-64bit-3.12.9-150600.3.18.1 * python312-64bit-debuginfo-3.12.9-150600.3.18.1 * python312-base-64bit-3.12.9-150600.3.18.1 * Python 3 Module 15-SP6 (aarch64 ppc64le s390x x86_64) * libpython3_12-1_0-debuginfo-3.12.9-150600.3.18.1 * python312-3.12.9-150600.3.18.1 * python312-devel-3.12.9-150600.3.18.1 * python312-idle-3.12.9-150600.3.18.1 * python312-dbm-debuginfo-3.12.9-150600.3.18.1 * python312-curses-3.12.9-150600.3.18.1 * python312-tk-3.12.9-150600.3.18.1 * python312-tk-debuginfo-3.12.9-150600.3.18.1 * python312-debugsource-3.12.9-150600.3.18.1 * libpython3_12-1_0-3.12.9-150600.3.18.1 * python312-base-debuginfo-3.12.9-150600.3.18.1 * python312-base-3.12.9-150600.3.18.1 * python312-debuginfo-3.12.9-150600.3.18.1 * python312-core-debugsource-3.12.9-150600.3.18.1 * python312-tools-3.12.9-150600.3.18.1 * python312-dbm-3.12.9-150600.3.18.1 * python312-curses-debuginfo-3.12.9-150600.3.18.1 ## References: * https://www.suse.com/security/cve/CVE-2024-12254.html * https://www.suse.com/security/cve/CVE-2025-0938.html * https://bugzilla.suse.com/show_bug.cgi?id=1228165 * https://bugzilla.suse.com/show_bug.cgi?id=1234290 * https://bugzilla.suse.com/show_bug.cgi?id=1236705 . Essential Python 3.12 update for SUSE addresses two significant vulnerabilities regarding memory overflow and DNS processing.. python312 update,SUSE security advisory,buffer overflow,domain name issue. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 13, 2025 Important SuSE
202

openSUSE Leap 15.4: SUSE-SU-2025:0419-1 moderate: python311 domain issue

An update that solves one vulnerability and has one security fix can now be installed.. # Security update for python311 Announcement ID: SUSE-SU-2025:0419-1 Release Date: 2025-02-11T10:25:48Z Rating: moderate References: * bsc#1228165 * bsc#1236705 Cross-References: * CVE-2025-0938 CVSS scores: * CVE-2025-0938 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N * CVE-2025-0938 ( SUSE ): 4.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N * CVE-2025-0938 ( NVD ): 6.3 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * openSUSE Leap 15.4 * Public Cloud Module 15-SP4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability and has one security fix can now be installed. ## Description: This update for python311 fixes the following issues: * CVE-2025-0938: domain names containing square brackets are not identified as incorrect by urlparse. (bsc#1236705) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-419=1 * Public Cloud Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP4-2025-419=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * libpython3_11-1_0-3.11.11-150400.9.44.1 * python311-debugsource-3.11.11-150400.9.44.1 * python311-tk-debuginfo-3.11.11-150400.9.44.1 * python311-devel-3.11.11-150400.9.44.1 * python311-tk-3.11.11-150400.9.44.1 *python311-testsuite-3.11.11-150400.9.44.1 * python311-debuginfo-3.11.11-150400.9.44.1 * python311-tools-3.11.11-150400.9.44.1 * python311-doc-devhelp-3.11.11-150400.9.44.1 * python311-dbm-3.11.11-150400.9.44.1 * python311-doc-3.11.11-150400.9.44.1 * python311-curses-debuginfo-3.11.11-150400.9.44.1 * libpython3_11-1_0-debuginfo-3.11.11-150400.9.44.1 * python311-base-3.11.11-150400.9.44.1 * python311-dbm-debuginfo-3.11.11-150400.9.44.1 * python311-core-debugsource-3.11.11-150400.9.44.1 * python311-curses-3.11.11-150400.9.44.1 * python311-3.11.11-150400.9.44.1 * python311-idle-3.11.11-150400.9.44.1 * python311-testsuite-debuginfo-3.11.11-150400.9.44.1 * python311-base-debuginfo-3.11.11-150400.9.44.1 * openSUSE Leap 15.4 (x86_64) * python311-32bit-3.11.11-150400.9.44.1 * libpython3_11-1_0-32bit-3.11.11-150400.9.44.1 * python311-base-32bit-debuginfo-3.11.11-150400.9.44.1 * libpython3_11-1_0-32bit-debuginfo-3.11.11-150400.9.44.1 * python311-base-32bit-3.11.11-150400.9.44.1 * python311-32bit-debuginfo-3.11.11-150400.9.44.1 * openSUSE Leap 15.4 (aarch64_ilp32) * python311-base-64bit-debuginfo-3.11.11-150400.9.44.1 * python311-64bit-3.11.11-150400.9.44.1 * libpython3_11-1_0-64bit-debuginfo-3.11.11-150400.9.44.1 * python311-base-64bit-3.11.11-150400.9.44.1 * python311-64bit-debuginfo-3.11.11-150400.9.44.1 * libpython3_11-1_0-64bit-3.11.11-150400.9.44.1 * Public Cloud Module 15-SP4 (aarch64 ppc64le s390x x86_64) * python311-3.11.11-150400.9.44.1 * libpython3_11-1_0-3.11.11-150400.9.44.1 * python311-base-3.11.11-150400.9.44.1 ## References: * https://www.suse.com/security/cve/CVE-2025-0938.html * https://bugzilla.suse.com/show_bug.cgi?id=1228165 * https://bugzilla.suse.com/show_bug.cgi?id=1236705 . Essential patch released for python311 to rectify domain handling error in urlparse function. Safeguard your systems today!. python update, openSUSE security, advisory details, updateinstructions. . LinuxSecurity.com Team

Calendar 2 Feb 11, 2025 OpenSUSE
172

Ubuntu 22.04 LTS USN-5569-1 Moderate: Unbound Domain Caching Issue

Unbound could be made to cache rogue domain names.. =========================================================================Ubuntu Security Notice USN-5569-1 August 16, 2022 unbound vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Unbound could be made to cache rogue domain names. Software Description: - unbound: validating, recursive, caching DNS resolver Details: Xiang Li discovered that Unbound incorrectly handled delegation caching. A remote attacker could use this issue to keep rogue domain names resolvable long after they have been revoked. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: libunbound8 1.13.1-1ubuntu5.1 unbound 1.13.1-1ubuntu5.1 Ubuntu 20.04 LTS: libunbound8 1.9.4-2ubuntu1.3 unbound 1.9.4-2ubuntu1.3 Ubuntu 18.04 LTS: libunbound2 1.6.7-1ubuntu2.5 unbound 1.6.7-1ubuntu2.5 In general, a standard system update will make all the necessary changes. References: CVE-2022-30698, CVE-2022-30699 Package Information: https://launchpad.net/ubuntu/+source/unbound/1.13.1-1ubuntu5.1 https://launchpad.net/ubuntu/+source/unbound/1.9.4-2ubuntu1.3 https://launchpad.net/ubuntu/+source/unbound/1.6.7-1ubuntu2.5 . The notice details vulnerabilities linked to Unbound's caching mechanisms. Apply security updates to the impacted Ubuntu releases urgently.. Unbound Issues, Ubuntu Patch, Domain Security Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 16, 2022 Important Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here