Alerts This Week
Warning Icon 1 424
Alerts This Week
Warning Icon 1 424

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":559,"type":"x","order":1,"pct":78.73,"resources":[]},{"id":484,"title":"Formal training or courses","votes":31,"type":"x","order":2,"pct":4.37,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.79,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.11,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
87

Debian 2.2 Security Advisory: Curl Remote Exploit Error Logging Issue

The version of curl as distributed with Debian GNU/Linux 2.2 had a bug in the error logging code.. - ------------------------------------------------------------------------ Debian Security Advisory This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Wichert Akkerman October 13, 2000 - ------------------------------------------------------------------------ Package : curl and curl-ssl Problem type : remote exploit Debian-specific: no The version of curl as distributed with Debian GNU/Linux 2.2 had a bug in the error logging code: when it created an error message it failed to check the size of the buffer allocated for storing the message. This could be exploited by the remote machine by returning an invalid response to a request from curl which overflows the error buffer and trick curl into executing arbitrary code. Debian ships with two versions of curl: the normal curl package, and the crypto-enabled curl-ssl package. This bug has been fixed in curl version 6.0-1.1 and curl-ssl version 6.0-1.2 . We recommend you upgrade your curl or curl-ssl package immediately. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. Debian GNU/Linux 2.1 alias slink - -------------------------------- Slink did not contain curl or curl-ssl. Debian GNU/Linux 2.2 alias potato - --------------------------------- Potato was released for alpha, arm, i386, m68k, powerpc and sparc. At this moment packages for m68k are not yet available; they will later be announce on Debian -- Security Information . Fixed curl-ssl packages: Source archives: MD5 checksum: bdfd882127d9f246402be6f9cc8d02d3 MD5 checksum: 965a98adeb70df08f5219565c5d2a0cb MD5 checksum: dffbc34bc3c19d8e8c6a11495aa744fe Alpha architecture: MD5 checksum: 2c8992652534aa6d7e2fc95473a469a7 ARM architecture: MD5 checksum: 168a025e9374b2f96eeae3736bff094f Intel ia32architecture: MD5 checksum: 7ad6efee7ec787a450911fbc40111468 PowerPC architecture: MD5 checksum: 1d62c52cbb711cea17c375978de09e7f Sun Sparc architecture: MD5 checksum: c631f9b4f4789d6ba779d8ebc5ec4867 Fixed curl packages: Source archives: MD5 checksum: a95dde95e6a072bd44a8e59b9f3d0e49 MD5 checksum: d35d95a7e1b8e1d19692d27edecd2155 MD5 checksum: dffbc34bc3c19d8e8c6a11495aa744fe Alpha architecture: MD5 checksum: dbbe286ceabcd21e398f5bf9566182d0 ARM architecture: MD5 checksum: 9fb58f2b273e68b3ba00ebcf53737fa4 Intel ia32 architecture: MD5 checksum: 36bd0030616c54c60fb0ba2df5c31530 PowerPC architecture: MD5 checksum: d0cb857833f793276bd467773c3e58cf Sun Sparc architecture: MD5 checksum: 99f5c19a778e67eec371b316202274c0 These files will be moved into soon. For not yet released architectures please refer to the appropriate directory . - ---------------------------------------------------------------------------- apt-get: deb Debian -- Security Information stable/updates main dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian advisory highlights critical curl bug allowing unauthorized code execution, immediate patch required for users.. curl update, Debian security advisory, remote exploit fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 13, 2000 Important Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":559,"type":"x","order":1,"pct":78.73,"resources":[]},{"id":484,"title":"Formal training or courses","votes":31,"type":"x","order":2,"pct":4.37,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.79,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.11,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here