Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
98

Red Hat Enterprise Linux 2.1 RHSA-2005:583-01 Low: Local Dump Threat

Updated dump packages that address two security issues are now available for Red Hat Enterprise Linux 2.1. This update has been rated as having low security impact by the Red Hat Security Response Team.. - --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Low: dump security update Advisory ID: RHSA-2005:583-01 Advisory URL: https://access.redhat.com/errata/RHSA-2005:583.html Issue date: 2005-08-03 Updated on: 2005-08-03 Product: Red Hat Enterprise Linux CVE Names: CAN-2002-1914 - ---------------------------------------------------------------------1. Summary: Updated dump packages that address two security issues are now available for Red Hat Enterprise Linux 2.1. This update has been rated as having low security impact by the Red Hat Security Response Team. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS (Advanced Server) version 2.1 - i386, ia64 Red Hat Linux Advanced Workstation 2.1 - ia64 Red Hat Enterprise Linux ES version 2.1 - i386 Red Hat Enterprise Linux WS version 2.1 - i386 3. Problem description: Dump examines files in a file system, determines which ones need to be backed up, and copies those files to a specified disk, tape, or other storage medium. A flaw was found with dump file locking. A malicious local user could manipulate the file lock in such a way as to prevent dump from running. The Common Vulnerabilities and Exposures project (cve.mitre.org) assigned the name CAN-2002-1914 to this issue. Users of dump should upgrade to these erratum packages, which contain a patch to resolve this issue. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. This update is available via Red Hat Network. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date This will start an interactive processthat will result in the appropriate RPMs being upgraded on your system. 5. Bug IDs fixed (http://bugzilla.redhat.com/): 162903 - CAN-2002-1914 dump denial of service 6. RPMs required: Red Hat Enterprise Linux AS (Advanced Server) version 2.1: SRPMS: a2105338ff2279973bcec74ea8dd96dd dump-0.4b25-1.72.2.src.rpm i386: b14ad2aef495fd52b2bfa8501147a86c dump-0.4b25-1.72.2.i386.rpm 1d658c6130d9b317456b56b6e21acd42 rmt-0.4b25-1.72.2.i386.rpm ia64: ace0b517d6b4d26fdfc40744368053cd dump-0.4b25-1.72.2.ia64.rpm f6ed788f99e81abdde859cbb4dabe1fb rmt-0.4b25-1.72.2.ia64.rpm Red Hat Linux Advanced Workstation 2.1: SRPMS: a2105338ff2279973bcec74ea8dd96dd dump-0.4b25-1.72.2.src.rpm ia64: ace0b517d6b4d26fdfc40744368053cd dump-0.4b25-1.72.2.ia64.rpm f6ed788f99e81abdde859cbb4dabe1fb rmt-0.4b25-1.72.2.ia64.rpm Red Hat Enterprise Linux ES version 2.1: SRPMS: a2105338ff2279973bcec74ea8dd96dd dump-0.4b25-1.72.2.src.rpm i386: b14ad2aef495fd52b2bfa8501147a86c dump-0.4b25-1.72.2.i386.rpm 1d658c6130d9b317456b56b6e21acd42 rmt-0.4b25-1.72.2.i386.rpm Red Hat Enterprise Linux WS version 2.1: SRPMS: a2105338ff2279973bcec74ea8dd96dd dump-0.4b25-1.72.2.src.rpm i386: b14ad2aef495fd52b2bfa8501147a86c dump-0.4b25-1.72.2.i386.rpm 1d658c6130d9b317456b56b6e21acd42 rmt-0.4b25-1.72.2.i386.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: http://marc.theaimsgroup.com/?l=bugtraq&m=102701096228027 https://www.cve.org/CVERecord?id=CAN-2002-1914 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2005 Red Hat, Inc. . Red Hat issued a minor severity patch for the dump software to mitigate local vulnerabilities. Ensure that the security update is implemented without delay.. Red Hat Enterprise, Dump Package, Low Severity, Security Fix. .Severity: Low. LinuxSecurity.com Team

Calendar 2 Aug 03, 2005 Low Red Hat
89

Fedora Core: 2005-100 Moderate: Dump Package Write Issues

Updated dump packages contain fixes for unintentional writes to target partition and other bugfixes. The updated dump also contains support for Extended Attributes/Access Control Lists.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-100 2005-02-02 ---------------------------------------------------------------------Product : Fedora Core 3 Name : dump Version : 0.4b39 Release : 1.FC3 Summary : Programs for backing up and restoring ext2/ext3 filesystems. Description : The dump package contains both dump and restore. Dump examines files in a filesystem, determines which ones need to be backed up, and copies those files to a specified disk, tape, or other storage medium. The restore command performs the inverse function of dump; it can restore a full backup of a filesystem. Subsequent incremental backups can then be layered on top of the full backup. Single files and directory subtrees may also be restored from full or partial backups. Install dump if you need a system for both backing up filesystems and restoring filesystems after backups. ---------------------------------------------------------------------Update Information: Updated dump packages contain fixes for unintentional writes to target partition and other bugfixes. The updated dump also contains support for Extended Attributes/Access Control Lists. ---------------------------------------------------------------------* Mon Jan 31 2005 Jindrich Novy 0.4b39-1.FC3 - Updated to dump-0.4b39. - Add patch for EA/ACL support. ---------------------------------------------------------------------This update can be downloaded from: 659d47ddef2e51b464ebbfd79aea8c4e SRPMS/dump-0.4b39-1.FC3.src.rpm f845ddadb8fc98963a5a9769069b5a8d x86_64/dump-0.4b39-1.FC3.x86_64.rpm d614d23c55414573d2a3350e760a1831 x86_64/rmt-0.4b39-1.FC3.x86_64.rpm df110c56be18f012714828aaa000cb13 x86_64/debug/dump-debuginfo-0.4b39-1.FC3.x86_64.rpm 75bce0eaa97ebb82d409af1e064d238a i386/dump-0.4b39-1.FC3.i386.rpm bd1b770bcc929c5c7169574024d5ee43 i386/rmt-0.4b39-1.FC3.i386.rpm ef9148270a30d0c6299892e9250e527c i386/debug/dump-debuginfo-0.4b39-1.FC3.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Resolutions for inadvertent data entries and corrections in the refreshed archive distributions for Fedora Core 3.. dump package, backup tool, Fedora Core 3. . LinuxSecurity.com Team

Calendar 2 Feb 02, 2005 Fedora
89

Ubuntu: 2023-05-15 Important: Patch Data Integrity Error Resolution

Updated dump packages contain fixes related to possible data corruption, unintentional writes to target partition and many other bugfixes. The updated dump also contains support for Extended Attributes/Access Control Lists.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-101 2005-02-02 ---------------------------------------------------------------------Product : Fedora Core 2 Name : dump Version : 0.4b39 Release : 1.FC2 Summary : Programs for backing up and restoring ext2/ext3 filesystems. Description : The dump package contains both dump and restore. Dump examines files in a filesystem, determines which ones need to be backed up, and copies those files to a specified disk, tape, or other storage medium. The restore command performs the inverse function of dump; it can restore a full backup of a filesystem. Subsequent incremental backups can then be layered on top of the full backup. Single files and directory subtrees may also be restored from full or partial backups. Install dump if you need a system for both backing up filesystems and restoring filesystems after backups. ---------------------------------------------------------------------Update Information: Updated dump packages contain fixes related to possible data corruption, unintentional writes to target partition and many other bugfixes. The updated dump also contains support for Extended Attributes/Access Control Lists. ---------------------------------------------------------------------* Mon Jan 31 2005 Jindrich Novy 0.4b39-1.FC2 - Updated to dump-0.4b39. - Add patch for EA/ACL support. ---------------------------------------------------------------------This update can be downloaded from: 9dc88be1d796ac53b5b17c134934b82b SRPMS/dump-0.4b39-1.FC2.src.rpm 28cfbd63ec6a3d22b364052c2576188f x86_64/dump-0.4b39-1.FC2.x86_64.rpm 703021f38ebbfef0cfd60ccf3db33b81 x86_64/rmt-0.4b39-1.FC2.x86_64.rpm 21580a17f855093128be7017d71dd691 x86_64/debug/dump-debuginfo-0.4b39-1.FC2.x86_64.rpm 4de7937aa2530c34920cb01f99366cf7 i386/dump-0.4b39-1.FC2.i386.rpm 3d6dd04e53f5e439b93fd59286650137 i386/rmt-0.4b39-1.FC2.i386.rpm 0f07deed6a88f438e896f512e5804cbb i386/debug/dump-debuginfo-0.4b39-1.FC2.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Enhanced dump tool rectifies data loss issues and prevents accidental overwrites, improving filesystem backup reliability in Fedora Core 2.. Data Integrity, Backup Solutions, Filesystem Management, Bug Fixes. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 02, 2005 Important Fedora
87

Debian 2.1 Security Advisory: Critical Dump Symbolic Link Fix

The version of dump that was distributed with Debian GNU/Linux 2.1 suffers from a problem with restoring symbolic links. . -----BEGIN PGP SIGNED MESSAGE----- - ------------------------------------------------------------------------ Debian Security Advisory This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Wichert Akkerman December 2, 1999 - ------------------------------------------------------------------------ The version of dump that was distributed with Debian GNU/Linux 2.1 suffers from a problem with restoring symbolic links. This has been fixed in version 0.4b9-0slink1. We recommend you upgrade your dump package immediately. This version "Uses lchown instead of chown, fixing a possible security problem when restoring symlinks (a malicious user could use this to deliberately corrupt the ownership of important system files)". wget url will fetch the file for you dpkg -i file.deb will install the referenced file. Debian GNU/Linux 2.1 alias slink - -------------------------------- This version of Debian was released only for Intel, the Motorola 680x0, the alpha and the Sun sparc architecture. Source archives: b9- 0slink1.dsc MD5 checksum: 02974dac4f42f1b4959fabda825ebca3 b9-0slink1.diff.gz MD5 checksum: 0323e77166ae759ed6b8de3687f97384 . gz MD5 checksum: d865a4e26c528138d633618fb7f6a829 Alpha architecture: alpha/dump_0.4b9-0slink1_alpha.deb MD5 checksum: ee335c04fef89dab51cac3443cd9cea4 Intel ia32 architecture: i386/dump_0.4b9-0slink1_i386.deb MD5 checksum: 959fcc1e72a8871d76d1b5bd2aeb7ce3 Motorola 680x0 architecture: m68k/dump_0.4b9-0slink1_m68k.deb MD5 checksum: 8ff3687f65ae3a32814001e003881017 Sun Sparc architecture: sparc/dump_0.4b9-0slink1_sparc.deb MD5 checksum: 10c541690b5aa00a758e7bf78fe5d5c2 These files will be moved into soon. - -- - ---------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable updates For dpkg-ftp: dists/stable/updates Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. -----BEGIN PGP SIGNATURE----- Version: 2.6.3ia Charset: noconv iQB1AwUBOEboXKjZR/ntlUftAQHYVQL/a53YI94rxbEHgbQvUq/kkLhq/mbJ54oG FMMEO3B6n7nTx72yQrx/bt4RLCKsgtF5Oj3X1BdH/Wb+snF1fa2mmWDeN/q64LOe G+vEhu1d10wA/nyOPJ1qiSI2DMQtnF7A =gmhb -----END PGP SIGNATURE----- . Update your tar utility on Debian 2.1 without delay to resolve archive extraction problems. Important security patch released.. Debian Security Advisory,dump package upgrade,symbolic link fix,security issue. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 13, 1999 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here