Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
197

Debian 10 Buster DLA-3423-1 Critical Epiphany Browser Credential Theft

It was discovered that there was a potential credential stealing attack in epiphany-browser, the default GNOME web browser. When using a sandboxed Content Security Policy (CSP) or the HTML . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3423-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Chris Lamb May 15, 2023 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : epiphany-browser Version : 3.32.1.2-3~deb10u3 CVE ID : CVE-2023-26081 Debian Bug : 1031727 It was discovered that there was a potential credential stealing attack in epiphany-browser, the default GNOME web browser. When using a sandboxed Content Security Policy (CSP) or the HTML "iframe" tag, the sandboxed web content was trusted by the main/surrounding resource. After this change, however, the password manager is disabled entirely in this situations, so that the untrusted web content cannot exfiltrate passwords. For Debian 10 buster, this problem has been fixed in version 3.32.1.2-3~deb10u3. We recommend that you upgrade your epiphany-browser packages. For the detailed security status of epiphany-browser please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/epiphany-browser Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . The Debian LTS advisory DLA-3423-1 reveals a serious vulnerability in epiphany-browser linked to credential theft, urging users to upgrade for protection against risks. Debian Security, Epiphany Browser, Credential Theft, Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 15, 2023 Critical Debian LTS
89

Fedora 10: 2009-2422 Moderate: Epiphany Browser Security Issues

Update to the new upstream Firefox 3.0.7 / XULRunner 1.9.0.7 fixing multiple security issues: https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/ This update also contains new builds of all applications depending on Gecko libraries, built against the new version. Note: after the updated packages are installed, Firefox must be restarted for the update to take effect.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2009-2422 2009-03-08 06:09:09 --------------------------------------------------------------------------------Name : epiphany Product : Fedora 10 Version : 2.24.3 Release : 3.fc10 URL : https://wiki.gnome.org/Apps Summary : GNOME web browser based on the Mozilla rendering engine Description : Epiphany is a simple GNOME web browser based on the Mozilla rendering engine. --------------------------------------------------------------------------------Update Information: Update to the new upstream Firefox 3.0.7 / XULRunner 1.9.0.7 fixing multiple security issues: https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/ This update also contains new builds of all applications depending on Gecko libraries, built against the new version. Note: after the updated packages are installed, Firefox must be restarted for the update to take effect. --------------------------------------------------------------------------------ChangeLog: * Fri Mar 6 2009 Jan Horak - 2.24.3-3 - Rebuild against newer gecko * Wed Feb 4 2009 Christopher Aillon - 2.24.3-2 - Rebuild against newer gecko * Fri Jan 16 2009 Matthias Clasen 2.24.3-1 - Update to 2.24.3 * Wed Jan 14 2009 Matěj Cepl 2.24.2.1-2 - Make epiphany own directories for plugins and extensions (#479921). * Mon Jan 5 2009 Christopher Aillon - 2.24.2.1-1 - Update to 2.24.2.1 * Thu Dec 18 2008 Martin Stransky - 2.24.2-5 - build fix to configure * Wed Dec 17 2008Christopher Aillon - 2.24.2-4 - Rebuild against newer gecko * Tue Nov 25 2008 Matthias Clasen - 2.24.2-3 - Update to 2.24.2 --------------------------------------------------------------------------------References: [ 1 ] Bug #488272 - CVE-2009-0771 Firefox 3 Layout Engine Crashes https://bugzilla.redhat.com/show_bug.cgi?id=488272 [ 2 ] Bug #488273 - CVE-2009-0772 Firefox 2 and 3 - Layout engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=488273 [ 3 ] Bug #488276 - CVE-2009-0773 Firefox 3 crashes in the JavaScript engine https://bugzilla.redhat.com/show_bug.cgi?id=488276 [ 4 ] Bug #488283 - CVE-2009-0774 Firefox 2 and 3 crashes in the JavaScript engine https://bugzilla.redhat.com/show_bug.cgi?id=488283 [ 5 ] Bug #488287 - CVE-2009-0775 Firefox XUL Linked Clones Double Free Vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=488287 [ 6 ] Bug #488290 - CVE-2009-0776 Firefox XML data theft via RDFXMLDataSource and cross-domain redirect https://bugzilla.redhat.com/show_bug.cgi?id=488290 [ 7 ] Bug #488292 - CVE-2009-0777 Firefox URL spoofing with invisible control characters https://bugzilla.redhat.com/show_bug.cgi?id=488292 --------------------------------------------------------------------------------This update can be installed with the "yum" update program. Use su -c 'yum update epiphany' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . New release for Fedora 10: Epiphany web browseraddresses various security vulnerabilities associated with Firefox XULRunner.. Fedora Update, Epiphany Browser, Firefox Security. . LinuxSecurity.com Team

Calendar 2 Mar 08, 2009 Fedora
89

Fedora Core 4: FEDORA-2005-769 Urgent Patch for Evolution Mail Client

Updated package.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-768 2005-08-17 ---------------------------------------------------------------------Product : Fedora Core 4 Name : epiphany Version : 1.6.5 Release : 1 Summary : GNOME web browser based on the Mozilla rendering engine Description : epiphany is a simple GNOME web browser based on the Mozilla rendering engine ---------------------------------------------------------------------* Wed Aug 17 2005 Marco Pesenti Gritti - 1.6.5-1 - Update to 1.6.5 - Remove patch integrated upstream ---------------------------------------------------------------------This update can be downloaded from: 99fec86f8515989856285e83a549284c SRPMS/epiphany-1.6.5-1.src.rpm f06f4e3da318e50516a10cb6d3956373 ppc/epiphany-1.6.5-1.ppc.rpm e1692fdd30b1a882e5fcaddcc64ed923 ppc/epiphany-devel-1.6.5-1.ppc.rpm da3dc22b947c8e222443ce94b5db3e8a ppc/debug/epiphany-debuginfo-1.6.5-1.ppc.rpm 2b059d8b0e564fc1d984d1f4e0f489f7 x86_64/epiphany-1.6.5-1.x86_64.rpm effb4eb02562be004685a2b685f8f051 x86_64/epiphany-devel-1.6.5-1.x86_64.rpm 16b229aaecd73ad69589aaf5d41404c7 x86_64/debug/epiphany-debuginfo-1.6.5-1.x86_64.rpm cc2e9466c0570142b1f4a29d6f432889 i386/epiphany-1.6.5-1.i386.rpm 6872a06d2cea3cfc83f29581308e925b i386/epiphany-devel-1.6.5-1.i386.rpm 43dc35463f64e1a696c034349c09b498 i386/debug/epiphany-debuginfo-1.6.5-1.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . The recent upgrade to the epiphany package on Fedora Core 4 boosts both security measures and stability, thereby enriching the GNOME internet browsing experience.. Fedora Core 4, Epiphany Browser, Security Update, Package Upgrade. . Severity:Important. LinuxSecurity.com Team

Calendar 2 Aug 18, 2005 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here