Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
98

RedHat: RHSA-2020-4163-01 Important: Thunderbird Security Fixes

An update for thunderbird is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: thunderbird security update Advisory ID: RHSA-2020:4163-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:4163 Issue date: 2020-10-01 CVE Names: CVE-2020-15673 CVE-2020-15676 CVE-2020-15677 CVE-2020-15678 ==================================================================== 1. Summary: An update for thunderbird is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Client (v. 7) - x86_64 Red Hat Enterprise Linux Server Optional (v. 7) - ppc64le, x86_64 Red Hat Enterprise Linux Workstation (v. 7) - x86_64 3. Description: Mozilla Thunderbird is a standalone mail and newsgroup client. This update upgrades Thunderbird to version 78.3.1. Security Fix(es): * Mozilla: Memory safety bugs fixed in Firefox 81 and Firefox ESR 78.3 (CVE-2020-15673) * Mozilla: XSS when pasting attacker-controlled data into a contenteditable element (CVE-2020-15676) * Mozilla: Download origin spoofing via redirect (CVE-2020-15677) * Mozilla: When recursing through layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free scenario (CVE-2020-15678) For more details about the securityissue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 All running instances of Thunderbird must be restarted for the update to take effect. 5. Bugs fixed (https://bugzilla.redhat.com/): 1881664 - CVE-2020-15677 Mozilla: Download origin spoofing via redirect 1881665 - CVE-2020-15676 Mozilla: XSS when pasting attacker-controlled data into a contenteditable element 1881666 - CVE-2020-15678 Mozilla: When recursing through layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free scenario 1881667 - CVE-2020-15673 Mozilla: Memory safety bugs fixed in Firefox 81 and Firefox ESR 78.3 6. Package List: Red Hat Enterprise Linux Client (v. 7): Source: thunderbird-78.3.1-1.el7_9.src.rpm x86_64: thunderbird-78.3.1-1.el7_9.x86_64.rpm thunderbird-debuginfo-78.3.1-1.el7_9.x86_64.rpm Red Hat Enterprise Linux Server Optional (v. 7): Source: thunderbird-78.3.1-1.el7_9.src.rpm ppc64le: thunderbird-78.3.1-1.el7_9.ppc64le.rpm thunderbird-debuginfo-78.3.1-1.el7_9.ppc64le.rpm x86_64: thunderbird-78.3.1-1.el7_9.x86_64.rpm thunderbird-debuginfo-78.3.1-1.el7_9.x86_64.rpm Red Hat Enterprise Linux Workstation (v. 7): Source: thunderbird-78.3.1-1.el7_9.src.rpm x86_64: thunderbird-78.3.1-1.el7_9.x86_64.rpm thunderbird-debuginfo-78.3.1-1.el7_9.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2020-15673 https://access.redhat.com/security/cve/CVE-2020-15676 https://access.redhat.com/security/cve/CVE-2020-15677 https://access.redhat.com/security/cve/CVE-2020-15678 https://access.redhat.com/security/updates/classification#important 8.Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBX3Xsq9zjgjWX9erEAQjk9BAAgf1EgTjrmkU+3ZmMxcdnTkH8RH3RoGoT Nw3Ti3ha9Y2TH9j9wOG7zd2JpaMLf/l4zsHhO1JXrhXVyeFiRuxy9kP9wMiU49Xa T1IgArSc/wz94/ftt0HtPBuHtOY/oLeZCNnzP4ST5ESSaUnn0cElRogQWcZN3ihD WCQh1AZQqy0NwOp7Nq/DmIhjkjwp/AVjRaRoRN+Pe2k6CRyKJmbKjtxhenZJKAmR di/Lo7oC6Jk1OFjF6qkJApJM8CTT7vqPckB59uzEBTBXB1ey2GerrQBzly4Ve+LO fMe84vSd8vLTN/vAj0TYftIDta8DqbhqsmTNWDlf8jwmAPtN186W0FHw4t97fSMD S8abJ+w3VSHraPVCm39hxnZNz7HAK0ER/5KOTM8qHWHVjtJVF6zabZ4lasNdO4cM 5xQ1bdZTKwi8jY2mF4F82vFW7w6+Vn314IyaZm2n4fsYfL120BKSarpsKwJKLtM0 /EvmBbVquwIq6dmFUy9eff6/+Pz6rlaxs/GX4ltskduQRf1xQgTvTCz2LFo5ADWn g1gIeJS581E6mdJxhF0tVI1hg1usxmIsZdprwCSX6/kwTwlUmsEnBI9dBVb47chr wvPrflLJ8O/7xGBgtuBrFKfRwFdl4mlYsSF7DrEVDqTgrFwqyVj54CzBKUjJN04u 3WNDQDKBBfQ=6rCk -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Boost your protection with the newest critical Thunderbird patch from Red Hat tackling various vulnerabilities.. Red Hat Updates, Thunderbird Security, Important Security Fixes, Memory Safety Issues, XSS Vulnerability. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 01, 2020 Important Red Hat
197

Debian 9: DLA-2387-1 Critical: Firefox-ESR Security Issues

Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, cross-site scripting or spoofing the origin of a download. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2387-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Emilio Pozuelo Monfort September 28, 2020 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : firefox-esr Version : 78.3.0esr-1~deb9u1 CVE ID : CVE-2020-15673 CVE-2020-15676 CVE-2020-15677 CVE-2020-15678 Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, cross-site scripting or spoofing the origin of a download. Debian follows the extended support releases (ESR) of Firefox. Support for the 68.x series has ended, so starting with this update we're now following the 78.x releases. Between 68.x and 78.x, Firefox has seen a number of feature updates. For more information please refer to https://www.firefox.com/en-US/firefox/78.0esr/releasenotes/?redirect_source=mozilla-org For Debian 9 stretch, these problems have been fixed in version 78.3.0esr-1~deb9u1. We recommend that you upgrade your firefox-esr packages. For the detailed security status of firefox-esr please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/firefox-esr Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Ubuntu Security Notice USN-4638-1 highlights vulnerabilities in libssl, impacting long-term support versions. Update is advised.. Debian Security Updates, Firefox ESR, Open Source Security. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Sep 28, 2020 Critical Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here