Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 41: salt 2025-31a7eefb8f critical: remote execution flaws

Resolves CVE-2024-38824 RHBZ#2372731 Resolves CVE-2024-38824 RHBZ#2372733 Resolves CVE-2025-22239 RHBZ#2372732 Resolves CVE-2025-22239 RHBZ#2372734 Resolves CVE-2025-22236 RHBZ#2372774. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-31a7eefb8f 2025-06-29 01:22:44.380219+00:00 -------------------------------------------------------------------------------- Name : salt Product : Fedora 41 Version : 3007.4 Release : 4.fc41 URL : https://saltproject.io/ Summary : A parallel remote execution system Description : Salt is a distributed remote execution system used to execute commands and query data. It was developed in order to bring the best solutions found in the world of remote execution together and make them better, faster and more malleable. Salt accomplishes this via its ability to handle larger loads of information, and not just dozens, but hundreds or even thousands of individual servers, handle them quickly and through a simple and manageable interface. -------------------------------------------------------------------------------- Update Information: Resolves CVE-2024-38824 RHBZ#2372731 Resolves CVE-2024-38824 RHBZ#2372733 Resolves CVE-2025-22239 RHBZ#2372732 Resolves CVE-2025-22239 RHBZ#2372734 Resolves CVE-2025-22236 RHBZ#2372774 Resolves CVE-2025-22236 RHBZ#2372776 Resolves CVE-2025-22242 RHBZ#2372741 Resolves CVE-2025-22242 RHBZ#2372745 Resolves CVE-2025-22240 RHBZ#2372746 Resolves CVE-2025-22241 RHBZ#2372748 Resolves CVE-2025-22240 RHBZ#2372752 Resolves CVE-2025-22241 RHBZ#2372753 -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 19 2025 Robby Callicotte - 3007.4-4 - Combined rpmvercmp and contextvars patches * Thu Jun 19 2025 Robby Callicotte - 3007.4-3 - Updated contextvars patch * Thu Jun 19 2025 Robby Callicotte - 3007.4-2 - Updated sources * Thu Jun 19 2025 Robby Callicotte - 3007.4-1 - Update to 3007.4 RHBZ#2366381 - ResolvesCVE-2024-38824 RHBZ#2372731 - Resolves CVE-2024-38824 RHBZ#2372733 - Resolves CVE-2025-22239 RHBZ#2372732 - Resolves CVE-2025-22239 RHBZ#2372734 - Resolves CVE-2025-22236 RHBZ#2372774 - Resolves CVE-2025-22236 RHBZ#2372776 - Resolves CVE-2025-22242 RHBZ#2372741 - Resolves CVE-2025-22242 RHBZ#2372745 - Resolves CVE-2025-22240 RHBZ#2372746 - Resolves CVE-2025-22241 RHBZ#2372748 - Resolves CVE-2025-22240 RHBZ#2372752 - Resolves CVE-2025-22241 RHBZ#2372753 * Mon Jun 2 2025 Python Maint - 3007.2-3 - Rebuilt for Python 3.14 * Fri May 30 2025 Robby Callicotte - 3007.2-2 - Updated to 3007.2 * Fri May 30 2025 Robby Callicotte - 3007.2-1 - Updated to 3007.2 * Tue Feb 11 2025 Zbigniew Jędrzejewski-Szmek - 3007.1-3 - Drop call to %sysusers_create_compat * Sun Jan 19 2025 Fedora Release Engineering - 3007.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2372747 - CVE-2024-38823 salt: Replay attack in saltstack [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372747 [ 2 ] Bug #2372751 - CVE-2024-38823 salt: Replay attack in saltstack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372751 [ 3 ] Bug #2372755 - CVE-2024-38825 salt: Authentication bypass in saltstack [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372755 [ 4 ] Bug #2372756 - CVE-2024-38822 salt: Token validation errors in saltstack [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372756 [ 5 ] Bug #2372757 - CVE-2024-38825 salt: Authentication bypass in saltstack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372757 [ 6 ] Bug #2372758 - CVE-2024-38822 salt: Token validation errors in saltstack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372758 [ 7 ] Bug #2372772 - CVE-2025-22238 salt: Directory traversal in salt project [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372772 [8 ] Bug #2372773 - CVE-2025-22237 salt: Code injection in salt project [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372773 [ 9 ] Bug #2372775 - CVE-2025-22237 salt: Code injection in salt project [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372775 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-31a7eefb8f' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . This memorandum outlines essential enhancements for Salt within Fedora 41, targeting various security vulnerabilities with significant consequences.. Salt Update, Fedora 41 Advisory, Critical Security Fix, Remote Execution Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 29, 2025 Critical Fedora
89

Fedora 42 - Advisory FEDORA-2025-a5d73a0399: Salt Critical Issues

Resolves CVE-2024-38824 RHBZ#2372731 Resolves CVE-2024-38824 RHBZ#2372733 Resolves CVE-2025-22239 RHBZ#2372732 Resolves CVE-2025-22239 RHBZ#2372734 Resolves CVE-2025-22236 RHBZ#2372774. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-a5d73a0399 2025-06-29 01:03:14.526449+00:00 -------------------------------------------------------------------------------- Name : salt Product : Fedora 42 Version : 3007.4 Release : 4.fc42 URL : https://saltproject.io/ Summary : A parallel remote execution system Description : Salt is a distributed remote execution system used to execute commands and query data. It was developed in order to bring the best solutions found in the world of remote execution together and make them better, faster and more malleable. Salt accomplishes this via its ability to handle larger loads of information, and not just dozens, but hundreds or even thousands of individual servers, handle them quickly and through a simple and manageable interface. -------------------------------------------------------------------------------- Update Information: Resolves CVE-2024-38824 RHBZ#2372731 Resolves CVE-2024-38824 RHBZ#2372733 Resolves CVE-2025-22239 RHBZ#2372732 Resolves CVE-2025-22239 RHBZ#2372734 Resolves CVE-2025-22236 RHBZ#2372774 Resolves CVE-2025-22236 RHBZ#2372776 Resolves CVE-2025-22242 RHBZ#2372741 Resolves CVE-2025-22242 RHBZ#2372745 Resolves CVE-2025-22240 RHBZ#2372746 Resolves CVE-2025-22241 RHBZ#2372748 Resolves CVE-2025-22240 RHBZ#2372752 Resolves CVE-2025-22241 RHBZ#2372753 Resolves RHBZ#2366381 Resolves CVE-2024-38824 RHBZ#2372731 Resolves CVE-2024-38824 RHBZ#2372733 Resolves CVE-2025-22239 RHBZ#2372732 Resolves CVE-2025-22239 RHBZ#2372734 Resolves CVE-2025-22236 RHBZ#2372774 Resolves CVE-2025-22236 RHBZ#2372776 Resolves CVE-2025-22242 RHBZ#2372741 Resolves CVE-2025-22242 RHBZ#2372745 Resolves CVE-2025-22240 RHBZ#2372746 Resolves CVE-2025-22241 RHBZ#2372748 Resolves CVE-2025-22240RHBZ#2372752 Resolves CVE-2025-22241 RHBZ#2372753 -------------------------------------------------------------------------------- ChangeLog: * Thu Jun 19 2025 Robby Callicotte - 3007.4-4 - Combined rpmvercmp and contextvars patches * Thu Jun 19 2025 Robby Callicotte - 3007.4-3 - Updated contextvars patch * Thu Jun 19 2025 Robby Callicotte - 3007.4-2 - Updated sources * Thu Jun 19 2025 Robby Callicotte - 3007.4-1 - Update to 3007.4 RHBZ#2366381 - Resolves CVE-2024-38824 RHBZ#2372731 - Resolves CVE-2024-38824 RHBZ#2372733 - Resolves CVE-2025-22239 RHBZ#2372732 - Resolves CVE-2025-22239 RHBZ#2372734 - Resolves CVE-2025-22236 RHBZ#2372774 - Resolves CVE-2025-22236 RHBZ#2372776 - Resolves CVE-2025-22242 RHBZ#2372741 - Resolves CVE-2025-22242 RHBZ#2372745 - Resolves CVE-2025-22240 RHBZ#2372746 - Resolves CVE-2025-22241 RHBZ#2372748 - Resolves CVE-2025-22240 RHBZ#2372752 - Resolves CVE-2025-22241 RHBZ#2372753 * Mon Jun 2 2025 Python Maint - 3007.2-3 - Rebuilt for Python 3.14 * Fri May 30 2025 Robby Callicotte - 3007.2-2 - Updated to 3007.2 * Fri May 30 2025 Robby Callicotte - 3007.2-1 - Updated to 3007.2 * Tue Feb 11 2025 Zbigniew Jędrzejewski-Szmek - 3007.1-3 - Drop call to %sysusers_create_compat -------------------------------------------------------------------------------- References: [ 1 ] Bug #2372747 - CVE-2024-38823 salt: Replay attack in saltstack [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372747 [ 2 ] Bug #2372751 - CVE-2024-38823 salt: Replay attack in saltstack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372751 [ 3 ] Bug #2372755 - CVE-2024-38825 salt: Authentication bypass in saltstack [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372755 [ 4 ] Bug #2372756 - CVE-2024-38822 salt: Token validation errors in saltstack [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372756 [ 5 ] Bug #2372757 - CVE-2024-38825 salt: Authentication bypass in saltstack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372757 [ 6 ] Bug #2372758 - CVE-2024-38822 salt: Token validation errors in saltstack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372758 [ 7 ] Bug #2372772 - CVE-2025-22238 salt: Directory traversal in salt project [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372772 [ 8 ] Bug #2372773 - CVE-2025-22237 salt: Code injection in salt project [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2372773 [ 9 ] Bug #2372775 - CVE-2025-22237 salt: Code injection in salt project [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2372775 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-a5d73a0399' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Significant patches have been implemented for Salt in Fedora 42, tackling urgent vulnerabilities. Ensure you update to safeguard your system integrity.. Fedora 42 updates, Salt software issues, remote execution vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 29, 2025 Critical Fedora
89

Fedora 35: 2021-582b3cdde1 Important Salt Patch for Python Vulnerabilities

Update to CVE release 3001.6-1 for Python 3 Fixed in 3001.5: CVE-2020-28243 CVE-2020-28972 CVE-2020-35662 CVE-2021-3148 CVE-2021-3144 CVE-2021-25281 CVE-2021-25282 CVE-2021-25283 CVE-2021-25284 CVE-2021-3197. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-904a2dbc0c 2021-03-02 15:34:50.961953 --------------------------------------------------------------------------------Name : salt Product : Fedora 32 Version : 3001.6 Release : 1.fc32 URL : https://saltproject.io Summary : A parallel remote execution system Description : Salt is a distributed remote execution system used to execute commands and query data. It was developed in order to bring the best solutions found in the world of remote execution together and make them better, faster and more malleable. Salt accomplishes this via its ability to handle larger loads of information, and not just dozens, but hundreds or even thousands of individual servers, handle them quickly and through a simple and manageable interface. --------------------------------------------------------------------------------Update Information: Update to CVE release 3001.6-1 for Python 3 Fixed in 3001.5: CVE-2020-28243 CVE-2020-28972 CVE-2020-35662 CVE-2021-3148 CVE-2021-3144 CVE-2021-25281 CVE-2021-25282 CVE-2021-25283 CVE-2021-25284 CVE-2021-3197 --------------------------------------------------------------------------------ChangeLog: * Fri Feb 26 2021 SaltStack Packaging Team - 3001.6-1 - Update to CVE release 3001.6-1 for Python 3 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-904a2dbc0c' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPGkeys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Alert Update for Fedora 32: salt 2021-904a2dbc0c resolves multiple CVE vulnerabilities while improving execution capabilities.. Fedora Salt Update, Remote Execution Security, Python CVE Releases. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Mar 02, 2021 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here