Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":547,"type":"x","order":1,"pct":78.48,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.88,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.34,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
89

Fedora 25: Empathy Update March 2017 for Certificate Issues

Fix certificate validation to work without legacy CAs.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-bd15ca5490 2017-03-23 12:06:37.067033 -------------------------------------------------------------------------------- Name : empathy Product : Fedora 25 Version : 3.12.13 Release : 2.fc25 URL : Summary : Instant Messaging Client for GNOME Description : Empathy is powerful multi-protocol instant messaging client which supports Jabber, GTalk, MSN, IRC, Salut, and other protocols. It is built on top of the Telepathy framework. -------------------------------------------------------------------------------- Update Information: Fix certificate validation to work without legacy CAs. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1381671 - Fails to connect to Google, with legacy CAs disabled, or with ca-certificates version 2.10 https://bugzilla.redhat.com/show_bug.cgi?id=1381671 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade empathy' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Fedora 25's security update on March 23, 2017, improves SSL certificate verification in Empathy, reducing reliance on outdated CAs and enhancing security. Certificate Validation, Fedora Update, Empathy Security. .Severity: Important. LinuxSecurity.com Team

Calendar 2 Mar 23, 2017 Important Fedora
172

Ubuntu 11.10 Security Notice USN-1250-1: Critical Empathy XSS Exploit

Empathy could be made to run programs or display webpages via speciallycrafted nicknames.. =========================================================================Ubuntu Security Notice USN-1250-1 October 28, 2011 empathy vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 11.10 - Ubuntu 11.04 - Ubuntu 10.10 - Ubuntu 10.04 LTS Summary: Empathy could be made to run programs or display webpages via specially crafted nicknames. Software Description: - empathy: GNOME multi-protocol chat and call client Details: It was discovered that a cross-site scripting (XSS) vulnerability in the Adium theme allows remote attackers to inject arbitrary javascript or HTML via a crafted nickname in XMPP group conversations. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 11.10: empathy 3.2.0.1-0ubuntu1.1 Ubuntu 11.04: empathy 2.34.0-0ubuntu3.2 Ubuntu 10.10: empathy 2.32.1-0ubuntu1.2 Ubuntu 10.04 LTS: empathy 2.30.3-0ubuntu1.1 After a standard system update you need to restart your session to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-1250-1 CVE-2011-3635, CVE-2011-4170 Package Information: https://launchpad.net/ubuntu/+source/empathy/3.2.0.1-0ubuntu1.1 https://launchpad.net/ubuntu/+source/empathy/2.34.0-0ubuntu3.2 https://launchpad.net/ubuntu/+source/empathy/2.32.1-0ubuntu1.2 https://launchpad.net/ubuntu/+source/empathy/2.30.3-0ubuntu1.1 . Tackling several Empathy weaknesses in Ubuntu, notably an XSS threat through specially designed nicknames. Stay updated!. empathy vulnerabilities, XMPP security, Ubuntu security, remote execution. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 28, 2011 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":547,"type":"x","order":1,"pct":78.48,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.88,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.34,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here