Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
89

Fedora: FEDORA-2007-2530 Critical: OpenSSL Buffer Overflow Fix

This is important security update: fix an off-by-one in SSL_get_shared_ciphers and fix out of order DTLS fragments buffer overflow.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2007-2530 2007-10-18 02:26:13.687164 --------------------------------------------------------------------------------Name : openssl Product : Fedora 7 Version : 0.9.8b Release : 15.fc7 URL : https://www.openssl.org:443/ Summary : The OpenSSL toolkit Description : The OpenSSL toolkit provides support for secure communications between machines. OpenSSL includes a certificate management tool and shared libraries which provide various cryptographic algorithms and protocols. --------------------------------------------------------------------------------Update Information: This is important security update. --------------------------------------------------------------------------------ChangeLog: * Fri Oct 12 2007 Tomas Mraz 0.9.8b-15 - fix CVE-2007-5135 - off-by-one in SSL_get_shared_ciphers (#309801) - fix CVE-2007-4995 - out of order DTLS fragments buffer overflow (#321191) * Fri Aug 3 2007 Tomas Mraz 0.9.8b-14 - use localhost in testsuite, hopefully fixes slow build in koji - CVE-2007-3108 - fix side channel attack on private keys (#250577) - make ssl session cache id matching strict (#233599) * Wed Jul 25 2007 Tomas Mraz 0.9.8b-13 - allow building on ARM architectures (#245417) - use reference timestamps to prevent multilib conflicts (#218064) - -devel package must require pkgconfig (#241031) --------------------------------------------------------------------------------References: [ 1 ] CVE-2007-4995 [ 2 ] CVE-2007-5135 --------------------------------------------------------------------------------Updated packages: c37df9f93cb60be5979b3f298ea3ae9814af232a openssl-0.9.8b-15.fc7.i686.rpm 872818ef2e57fa32d5c1d54a2d47bf2126c6fe63openssl-debuginfo-0.9.8b-15.fc7.i686.rpm a75fdd97bbeaf8ace8b96e83ed16e62a4a2e18b8 openssl-perl-0.9.8b-15.fc7.ppc64.rpm 6b43364c50ce7d644d63bbf6a6be68099b1d0176 openssl-0.9.8b-15.fc7.ppc64.rpm 5620e969c6536cdb68e1f5f44c860549b54b779b openssl-devel-0.9.8b-15.fc7.ppc64.rpm 20135cbd53849dd3ee073b550d84be21a1e0bed0 openssl-debuginfo-0.9.8b-15.fc7.ppc64.rpm 56db1f0bdff4a5ca1adc17999109363516ce4328 openssl-debuginfo-0.9.8b-15.fc7.i386.rpm deb4791d48a17f547d167f7148c7b63e17afb55f openssl-devel-0.9.8b-15.fc7.i386.rpm 078a081396b3df338a07a5afc6e0e2f48123121b openssl-perl-0.9.8b-15.fc7.i386.rpm 00723bb077e41db70a379ba0f61a3f69a22a45d1 openssl-0.9.8b-15.fc7.i386.rpm 28964ed870499621571216e1b7ab1dee7ede7db4 openssl-perl-0.9.8b-15.fc7.x86_64.rpm 69f4c1496ffd3dd2be0e33249916039fbfa99dd6 openssl-0.9.8b-15.fc7.x86_64.rpm 8409e1077ca142d07c642af25f2bb090ea65561d openssl-devel-0.9.8b-15.fc7.x86_64.rpm 3d99d176e08a94e94d92516edee9d986f0a17bca openssl-debuginfo-0.9.8b-15.fc7.x86_64.rpm 024f3b18eb38869b94fadc83f9e1df8c52eaab54 openssl-devel-0.9.8b-15.fc7.ppc.rpm afec7510de2b5b2bdec29508e38c2b48a10e9b81 openssl-debuginfo-0.9.8b-15.fc7.ppc.rpm f9a7ada4fc87e54b86431aab03c8defb3c250bda openssl-perl-0.9.8b-15.fc7.ppc.rpm 6afadb49f1c65586b59af8010ee73a2d08f7776e openssl-0.9.8b-15.fc7.ppc.rpm 13f6e045792d030418081bae3b1c2606c6975b05 openssl-0.9.8b-15.fc7.src.rpm This update can be installed with the "yum" update program. Use su -c 'yum update openssl' at the command line. For more information, refer to "Managing Software with yum", available at . --------------------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Essential patch for CentOS addressing out-of-bounds access and DTLS packet fragmentation vulnerability in the OpenSSL library.. Fedora Update, OpenSSL Patch, Critical SecurityUpdate. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 17, 2007 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here