Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
203

Mageia Advisory 2022-0038: Critical Oracle VM VirtualBox Access Risk

Updated virtualbox packages fix security vulnerability: Vulnerability in the Oracle VM VirtualBoxp rior to 6.1.32 contains an easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise . MGASA-2022-0038 - Updated virtualbox packages fix security vulnerability Publication date: 26 Jan 2022 URL: https://advisories.mageia.org/MGASA-2022-0038.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-21295 Updated virtualbox packages fix security vulnerability: Vulnerability in the Oracle VM VirtualBoxp rior to 6.1.32 contains an easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle VM VirtualBox accessible data (CVE-2022-21295). For other fixes in this update, see the referenced changelog. References: - https://bugs.mageia.org/show_bug.cgi?id=29918 - https://www.oracle.com/security-alerts/cpujan2022.html#AppendixOVIR - - https://www.cve.org/CVERecord?id=CVE-2022-21295 SRPMS: - 8/core/virtualbox-6.1.32-1.mga8 - 8/core/kmod-virtualbox-6.1.32-1.mga8 . Recent updates to VirtualBox in Mageia resolve a vulnerability that posed risks of unauthorized data access.. Oracle VM VirtualBox Update, Mageia Critical Security, Unauthorized Access Issue, Security Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 26, 2022 Critical Mageia
100

SUSE: 2020:0132-1 Moderate: Mesa Exploitable Issue Addressed

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for Mesa ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:0132-1 Rating: moderate References: #1156015 Cross-References: CVE-2019-5068 Affected Products: SUSE Linux Enterprise Workstation Extension 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Basesystem 15 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for Mesa fixes the following issues: Security issue fixed: - CVE-2019-5068: Fixed exploitable shared memory permissions vulnerability (bsc#1156015). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 15: zypper in -t patch SUSE-SLE-Product-WE-15-2020-132=1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1: zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-SP1-2020-132=1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15: zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-2020-132=1 - SUSE Linux Enterprise Module for Basesystem 15: zypper in -t patch SUSE-SLE-Module-Basesystem-15-2020-132=1 Package List: - SUSE Linux Enterprise Workstation Extension 15 (x86_64): Mesa-dri-nouveau-18.0.2-27.6.1 Mesa-dri-nouveau-debuginfo-18.0.2-27.6.1 Mesa-drivers-debugsource-18.0.2-27.6.1 libXvMC_nouveau-18.0.2-27.6.1 libXvMC_nouveau-debuginfo-18.0.2-27.6.1 libvdpau_nouveau-18.0.2-27.6.1 libvdpau_nouveau-debuginfo-18.0.2-27.6.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (aarch64 ppc64le s390x x86_64): libwayland-egl-devel-18.0.2-27.6.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (aarch64 ppc64le s390x): Mesa-debugsource-18.0.2-27.6.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (x86_64): libwayland-egl-devel-32bit-18.0.2-27.6.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 (aarch64 ppc64le s390x x86_64): Mesa-drivers-debugsource-18.0.2-27.6.1 Mesa-libOpenCL-18.0.2-27.6.1 Mesa-libOpenCL-debuginfo-18.0.2-27.6.1 - SUSE Linux Enterprise Module for Basesystem 15 (aarch64 ppc64le s390x x86_64): Mesa-18.0.2-27.6.1 Mesa-debugsource-18.0.2-27.6.1 Mesa-devel-18.0.2-27.6.1 Mesa-dri-18.0.2-27.6.1 Mesa-dri-debuginfo-18.0.2-27.6.1 Mesa-dri-devel-18.0.2-27.6.1 Mesa-drivers-debugsource-18.0.2-27.6.1 Mesa-gallium-18.0.2-27.6.1 Mesa-gallium-debuginfo-18.0.2-27.6.1 Mesa-libEGL-devel-18.0.2-27.6.1 Mesa-libEGL1-18.0.2-27.6.1 Mesa-libEGL1-debuginfo-18.0.2-27.6.1 Mesa-libGL-devel-18.0.2-27.6.1 Mesa-libGL1-18.0.2-27.6.1 Mesa-libGL1-debuginfo-18.0.2-27.6.1 Mesa-libGLESv1_CM-devel-18.0.2-27.6.1 Mesa-libGLESv1_CM1-18.0.2-27.6.1 Mesa-libGLESv2-2-18.0.2-27.6.1 Mesa-libGLESv2-devel-18.0.2-27.6.1 Mesa-libGLESv3-devel-18.0.2-27.6.1 Mesa-libglapi-devel-18.0.2-27.6.1 Mesa-libglapi0-18.0.2-27.6.1 Mesa-libglapi0-debuginfo-18.0.2-27.6.1 libOSMesa-devel-18.0.2-27.6.1 libOSMesa8-18.0.2-27.6.1 libOSMesa8-debuginfo-18.0.2-27.6.1 libgbm-devel-18.0.2-27.6.1 libgbm1-18.0.2-27.6.1 libgbm1-debuginfo-18.0.2-27.6.1 libwayland-egl-devel-18.0.2-27.6.1 libwayland-egl1-18.0.2-27.6.1 libwayland-egl1-debuginfo-18.0.2-27.6.1 - SUSE Linux Enterprise Module for Basesystem 15 (aarch64 ppc64le x86_64): Mesa-libva-18.0.2-27.6.1 Mesa-libva-debuginfo-18.0.2-27.6.1 libvdpau_r300-18.0.2-27.6.1 libvdpau_r300-debuginfo-18.0.2-27.6.1 libvdpau_r600-18.0.2-27.6.1 libvdpau_r600-debuginfo-18.0.2-27.6.1 libxatracker-devel-1.0.0-27.6.1 libxatracker2-1.0.0-27.6.1 libxatracker2-debuginfo-1.0.0-27.6.1 - SUSE Linux Enterprise Module for Basesystem 15 (x86_64): Mesa-32bit-18.0.2-27.6.1 Mesa-dri-32bit-18.0.2-27.6.1 Mesa-dri-32bit-debuginfo-18.0.2-27.6.1 Mesa-gallium-32bit-18.0.2-27.6.1 Mesa-gallium-32bit-debuginfo-18.0.2-27.6.1 Mesa-libEGL1-32bit-18.0.2-27.6.1 Mesa-libEGL1-32bit-debuginfo-18.0.2-27.6.1 Mesa-libGL1-32bit-18.0.2-27.6.1 Mesa-libGL1-32bit-debuginfo-18.0.2-27.6.1 Mesa-libVulkan-devel-18.0.2-27.6.1 Mesa-libd3d-18.0.2-27.6.1 Mesa-libd3d-debuginfo-18.0.2-27.6.1 Mesa-libd3d-devel-18.0.2-27.6.1 Mesa-libglapi0-32bit-18.0.2-27.6.1 Mesa-libglapi0-32bit-debuginfo-18.0.2-27.6.1 libgbm1-32bit-18.0.2-27.6.1 libgbm1-32bit-debuginfo-18.0.2-27.6.1 libvdpau_radeonsi-18.0.2-27.6.1 libvdpau_radeonsi-debuginfo-18.0.2-27.6.1 libvulkan_intel-18.0.2-27.6.1 libvulkan_intel-debuginfo-18.0.2-27.6.1 libvulkan_radeon-18.0.2-27.6.1 libvulkan_radeon-debuginfo-18.0.2-27.6.1 References: https://www.suse.com/security/cve/CVE-2019-5068.html https://bugzilla.suse.com/1156015 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . Mesa's latest release tackles a critical vulnerability surrounding shared memory permissions notorious for being exploited. Read on for the complete breakdown.. mesa patch, SUSE security update, exploitable vulnerability fix. . LinuxSecurity.com Team

Calendar 2 Jan 20, 2020 SuSE
100

SUSE Linux: 2020:0111-1 Moderate: Mesa Permissions Issue

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for Mesa ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:0111-1 Rating: moderate References: #1156015 Cross-References: CVE-2019-5068 Affected Products: SUSE Linux Enterprise Workstation Extension 15-SP1 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 SUSE Linux Enterprise Module for Basesystem 15-SP1 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for Mesa fixes the following issues: Security issue fixed: - CVE-2019-5068: Fixed exploitable shared memory permissions vulnerability (bsc#1156015). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 15-SP1: zypper in -t patch SUSE-SLE-Product-WE-15-SP1-2020-111=1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1: zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-SP1-2020-111=1 - SUSE Linux Enterprise Module for Basesystem 15-SP1: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP1-2020-111=1 Package List: - SUSE Linux Enterprise Workstation Extension 15-SP1 (x86_64): Mesa-dri-nouveau-18.3.2-34.9.1 Mesa-dri-nouveau-debuginfo-18.3.2-34.9.1 Mesa-drivers-debugsource-18.3.2-34.9.1 libXvMC_nouveau-18.3.2-34.9.1 libXvMC_nouveau-debuginfo-18.3.2-34.9.1 libvdpau_nouveau-18.3.2-34.9.1 libvdpau_nouveau-debuginfo-18.3.2-34.9.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (aarch64 ppc64le s390x x86_64): Mesa-drivers-debugsource-18.3.2-34.9.1 Mesa-libOpenCL-18.3.2-34.9.1 Mesa-libOpenCL-debuginfo-18.3.2-34.9.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (aarch64 ppc64le x86_64): libXvMC_r600-18.3.2-34.9.1 libXvMC_r600-debuginfo-18.3.2-34.9.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (ppc64le): Mesa-dri-nouveau-18.3.2-34.9.1 Mesa-dri-nouveau-debuginfo-18.3.2-34.9.1 libXvMC_nouveau-18.3.2-34.9.1 libXvMC_nouveau-debuginfo-18.3.2-34.9.1 libvdpau_nouveau-18.3.2-34.9.1 libvdpau_nouveau-debuginfo-18.3.2-34.9.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (aarch64): Mesa-libd3d-18.3.2-34.9.1 Mesa-libd3d-debuginfo-18.3.2-34.9.1 Mesa-libd3d-devel-18.3.2-34.9.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (x86_64): Mesa-debugsource-18.3.2-34.9.1 Mesa-dri-nouveau-32bit-18.3.2-34.9.1 Mesa-dri-nouveau-32bit-debuginfo-18.3.2-34.9.1 Mesa-libd3d-32bit-18.3.2-34.9.1 Mesa-libd3d-32bit-debuginfo-18.3.2-34.9.1 Mesa-libd3d-devel-32bit-18.3.2-34.9.1 Mesa-libglapi-devel-32bit-18.3.2-34.9.1 libOSMesa-devel-32bit-18.3.2-34.9.1 libOSMesa8-32bit-18.3.2-34.9.1 libOSMesa8-32bit-debuginfo-18.3.2-34.9.1 libXvMC_nouveau-32bit-18.3.2-34.9.1 libXvMC_nouveau-32bit-debuginfo-18.3.2-34.9.1 libXvMC_r600-32bit-18.3.2-34.9.1 libXvMC_r600-32bit-debuginfo-18.3.2-34.9.1 libgbm-devel-32bit-18.3.2-34.9.1 libvdpau_nouveau-32bit-18.3.2-34.9.1 libvdpau_nouveau-32bit-debuginfo-18.3.2-34.9.1 libvdpau_r300-32bit-18.3.2-34.9.1 libvdpau_r300-32bit-debuginfo-18.3.2-34.9.1 libvdpau_r600-32bit-18.3.2-34.9.1 libvdpau_r600-32bit-debuginfo-18.3.2-34.9.1 libvdpau_radeonsi-32bit-18.3.2-34.9.1 libvdpau_radeonsi-32bit-debuginfo-18.3.2-34.9.1 libvulkan_intel-32bit-18.3.2-34.9.1 libvulkan_intel-32bit-debuginfo-18.3.2-34.9.1 libvulkan_radeon-32bit-18.3.2-34.9.1 libvulkan_radeon-32bit-debuginfo-18.3.2-34.9.1 - SUSE Linux Enterprise Module for Basesystem 15-SP1 (aarch64 ppc64le s390x x86_64): Mesa-18.3.2-34.9.1 Mesa-KHR-devel-18.3.2-34.9.1 Mesa-debugsource-18.3.2-34.9.1 Mesa-devel-18.3.2-34.9.1 Mesa-dri-18.3.2-34.9.1 Mesa-dri-debuginfo-18.3.2-34.9.1 Mesa-dri-devel-18.3.2-34.9.1 Mesa-drivers-debugsource-18.3.2-34.9.1 Mesa-gallium-18.3.2-34.9.1 Mesa-gallium-debuginfo-18.3.2-34.9.1 Mesa-libEGL-devel-18.3.2-34.9.1 Mesa-libEGL1-18.3.2-34.9.1 Mesa-libEGL1-debuginfo-18.3.2-34.9.1 Mesa-libGL-devel-18.3.2-34.9.1 Mesa-libGL1-18.3.2-34.9.1 Mesa-libGL1-debuginfo-18.3.2-34.9.1 Mesa-libGLESv1_CM-devel-18.3.2-34.9.1 Mesa-libGLESv1_CM1-18.3.2-34.9.1 Mesa-libGLESv2-2-18.3.2-34.9.1 Mesa-libGLESv2-devel-18.3.2-34.9.1 Mesa-libGLESv3-devel-18.3.2-34.9.1 Mesa-libglapi-devel-18.3.2-34.9.1 Mesa-libglapi0-18.3.2-34.9.1 Mesa-libglapi0-debuginfo-18.3.2-34.9.1 libOSMesa-devel-18.3.2-34.9.1 libOSMesa8-18.3.2-34.9.1 libOSMesa8-debuginfo-18.3.2-34.9.1 libgbm-devel-18.3.2-34.9.1 libgbm1-18.3.2-34.9.1 libgbm1-debuginfo-18.3.2-34.9.1 - SUSE Linux Enterprise Module for Basesystem 15-SP1 (aarch64 ppc64le x86_64): Mesa-libva-18.3.2-34.9.1 Mesa-libva-debuginfo-18.3.2-34.9.1 libvdpau_r300-18.3.2-34.9.1 libvdpau_r300-debuginfo-18.3.2-34.9.1 libvdpau_r600-18.3.2-34.9.1 libvdpau_r600-debuginfo-18.3.2-34.9.1 libxatracker-devel-1.0.0-34.9.1 libxatracker2-1.0.0-34.9.1 libxatracker2-debuginfo-1.0.0-34.9.1 - SUSE Linux Enterprise Module for Basesystem 15-SP1 (x86_64): Mesa-32bit-18.3.2-34.9.1 Mesa-dri-32bit-18.3.2-34.9.1 Mesa-dri-32bit-debuginfo-18.3.2-34.9.1 Mesa-gallium-32bit-18.3.2-34.9.1 Mesa-gallium-32bit-debuginfo-18.3.2-34.9.1 Mesa-libEGL1-32bit-18.3.2-34.9.1 Mesa-libEGL1-32bit-debuginfo-18.3.2-34.9.1 Mesa-libGL1-32bit-18.3.2-34.9.1 Mesa-libGL1-32bit-debuginfo-18.3.2-34.9.1 Mesa-libVulkan-devel-18.3.2-34.9.1 Mesa-libd3d-18.3.2-34.9.1 Mesa-libd3d-debuginfo-18.3.2-34.9.1 Mesa-libd3d-devel-18.3.2-34.9.1 Mesa-libglapi0-32bit-18.3.2-34.9.1 Mesa-libglapi0-32bit-debuginfo-18.3.2-34.9.1 libgbm1-32bit-18.3.2-34.9.1 libgbm1-32bit-debuginfo-18.3.2-34.9.1 libvdpau_radeonsi-18.3.2-34.9.1 libvdpau_radeonsi-debuginfo-18.3.2-34.9.1 libvulkan_intel-18.3.2-34.9.1 libvulkan_intel-debuginfo-18.3.2-34.9.1 libvulkan_radeon-18.3.2-34.9.1 libvulkan_radeon-debuginfo-18.3.2-34.9.1 References: https://www.suse.com/security/cve/CVE-2019-5068.html https://bugzilla.suse.com/1156015 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . A SUSE Security Patch addresses a vulnerability related to file permissions in Mesa, classified as medium severity.. SUSE Linux Update, Mesa Security Fix, Linux Enterprise Patch. . LinuxSecurity.com Team

Calendar 2 Jan 16, 2020 SuSE
197

Debian: DLA-2043-1 Moderate: gdk-pixbuf Denial Of Service Issues

Several issues in gdk-pixbuf, a library to handle pixbuf, have been found. CVE-2016-6352 fix for denial of service (out-of-bounds write and crash) via . Package : gdk-pixbuf Version : 2.31.1-2+deb8u8 CVE ID : CVE-2016-6352 CVE-2017-2870 CVE-2017-6312 CVE-2017-6313 CVE-2017-6314 Several issues in gdk-pixbuf, a library to handle pixbuf, have been found. CVE-2016-6352 fix for denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file CVE-2017-2870 Fix for an exploitable integer overflow vulnerability in the tiff_image_parse functionality. When software is compiled with clang, A specially crafted tiff file can cause a heap-overflow resulting in remote code execution. Debian package is compiled with gcc and is not affected, but probably some downstream is. CVE-2017-6312 Fix for an integer overflow in io-ico.c that allows attackers to cause a denial of service (segmentation fault and application crash) via a crafted image CVE-2017-6313 Fix for an integer underflow in the load_resources function in io-icns.c that allows attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file CVE-2017-6314 Fix for an infinite loop in the make_available_at_least function in io-tiff.c that allows attackers to cause a denial of service via a large TIFF file. For Debian 8 "Jessie", these problems have been fixed in version 2.31.1-2+deb8u8. We recommend that you upgrade your gdk-pixbuf packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Resolution for gdk-pixbuf security vulnerabilities addressing denial-of-service and integer overflow concerns. Update is advised.. gdk-pixbuf security, Debian LTS, denial of service fix, integer overflow. . LinuxSecurity.comTeam

Calendar 2 Dec 19, 2019 Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here