Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
89

Fedora 27: FEDORA-2018-b5de855e94 Critical: Out-Of-Bounds Read Issue

- fix out-of-bounds read via a crafted ELF file (CVE-2018-10360). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-b5de855e94 2018-06-28 13:33:04.633361 --------------------------------------------------------------------------------Name : file Product : Fedora 27 Version : 5.31 Release : 12.fc27 URL : https://www.darwinsys.com/file/ Summary : A utility for determining file types Description : The file command is used to identify a particular file according to the type of data contained by the file. File can identify many different file types, including ELF binaries, system libraries, RPM packages, and different graphics formats. --------------------------------------------------------------------------------Update Information: - fix out-of-bounds read via a crafted ELF file (CVE-2018-10360) --------------------------------------------------------------------------------ChangeLog: * Wed Jun 13 2018 Kamil Dudka - 5.31-12 - fix out-of-bounds read via a crafted ELF file (CVE-2018-10360) * Wed Apr 18 2018 Kamil Dudka - 5.31-11 - increase strength of GIF to beat MBR (#1515180) --------------------------------------------------------------------------------References: [ 1 ] Bug #1590002 - CVE-2018-10360 file: out-of-bounds read via a crafted ELF file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1590002 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-b5de855e94' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/UPDABXIPURFX4SC3LBZH44CG2CJP26SL/ . Keep informed about the pivotal security patch for Fedora 27, addressing a buffer overflow vulnerability arising from specially designed ELF files.. Fedora 27 security update,file command fix,elf file exploit,out-of-bounds fix,security patch. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 28, 2018 Critical Fedora
98

Red Hat 6: RHSA-2014:1606-02 Moderate: File Command DoS Issues

Updated file packages that fix multiple security issues and several bugs are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Moderate security impact. Common Vulnerability Scoring System (CVSS) base scores, which give. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: file security and bug fix update Advisory ID: RHSA-2014:1606-02 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2014:1606.html Issue date: 2014-10-14 CVE Names: CVE-2012-1571 CVE-2014-0237 CVE-2014-0238 CVE-2014-1943 CVE-2014-2270 CVE-2014-3479 CVE-2014-3480 ==================================================================== 1. Summary: Updated file packages that fix multiple security issues and several bugs are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Moderate security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop (v. 6) - i386, x86_64 Red Hat Enterprise Linux Desktop Optional (v. 6) - i386, x86_64 Red Hat Enterprise Linux HPC Node (v. 6) - x86_64 Red Hat Enterprise Linux HPC Node Optional (v. 6) - x86_64 Red Hat Enterprise Linux Server (v. 6) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Server Optional (v. 6) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Workstation (v. 6) - i386, x86_64 Red Hat Enterprise Linux Workstation Optional (v. 6) - i386, x86_64 3. Description: The "file" command is used to identify a particular file according to the type of data contained in the file. The command can identify various file types, including ELF binaries, systemlibraries, RPM packages, and different graphics formats. Multiple denial of service flaws were found in the way file parsed certain Composite Document Format (CDF) files. A remote attacker could use either of these flaws to crash file, or an application using file, via a specially crafted CDF file. (CVE-2014-0237, CVE-2014-0238, CVE-2014-3479, CVE-2014-3480, CVE-2012-1571) Two denial of service flaws were found in the way file handled indirect and search rules. A remote attacker could use either of these flaws to cause file, or an application using file, to crash or consume an excessive amount of CPU. (CVE-2014-1943, CVE-2014-2270) This update also fixes the following bugs: * Previously, the output of the "file" command contained redundant white spaces. With this update, the new STRING_TRIM flag has been introduced to remove the unnecessary white spaces. (BZ#664513) * Due to a bug, the "file" command could incorrectly identify an XML document as a LaTex document. The underlying source code has been modified to fix this bug and the command now works as expected. (BZ#849621) * Previously, the "file" command could not recognize .JPG files and incorrectly labeled them as "Minix filesystem". This bug has been fixed and the command now properly detects .JPG files. (BZ#873997) * Under certain circumstances, the "file" command incorrectly detected NETpbm files as "x86 boot sector". This update applies a patch to fix this bug and the command now detects NETpbm files as expected. (BZ#884396) * Previously, the "file" command incorrectly identified ASCII text files as a .PIC image file. With this update, a patch has been provided to address this bug and the command now correctly recognizes ASCII text files. (BZ#980941) * On 32-bit PowerPC systems, the "from" field was missing from the output of the "file" command. The underlying source code has been modified to fix this bug and "file" output now contains the "from" field as expected. (BZ#1037279) * The "file" command incorrectly detected text files as "RRDTool DBversion ool - Round Robin Database Tool". This update applies a patch to fix this bug and the command now correctly detects text files. (BZ#1064463) * Previously, the "file" command supported only version 1 and 2 of the QCOW format. As a consequence, file was unable to detect a "qcow2 compat=1.1" file created on Red Hat Enterprise Linux 7. With this update, support for QCOW version 3 has been added so that the command now detects such files as expected. (BZ#1067771) All file users are advised to upgrade to these updated packages, which contain backported patches to correct these issues. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 664513 - too many spaces ... 805197 - CVE-2012-1571 file: out of bounds read in CDF parser 849621 - file is coming back with 'LaTeX document text' instead of 'XML document text' 873997 - file thinks the attached jpg is "Minix filesystem, V2, 50968 zones" 884396 - file detects netpbm files as x86 boot sector type sometimes 980941 - file reported wrong file type (reported .PIC image file instead of ASCII text file) 1064463 - text file detected as 'RRDTool DB version ool - Round Robin Database Tool' 1065836 - CVE-2014-1943 file: unrestricted recursion in handling of indirect type rules 1067771 - file unable to detect qcow2 compat=1.1 img created by RHEL7 1072220 - CVE-2014-2270 file: out-of-bounds access in search rules with offsets from input file 1098155 - CVE-2014-0238 file: CDF property info parsing nelements infinite loop 1098193 - CVE-2014-0237 file: cdf_unpack_summary_info() excessive looping DoS 1104858 - CVE-2014-3480 file: cdf_count_chain insufficient boundary check 1104869 - CVE-2014-3479 file: cdf_check_stream_offset insufficient boundary check 6. Package List: Red HatEnterprise Linux Desktop (v. 6): Source: file-5.04-21.el6.src.rpm i386: file-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.i686.rpm file-libs-5.04-21.el6.i686.rpm x86_64: file-5.04-21.el6.x86_64.rpm file-debuginfo-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.x86_64.rpm file-libs-5.04-21.el6.i686.rpm file-libs-5.04-21.el6.x86_64.rpm Red Hat Enterprise Linux Desktop Optional (v. 6): i386: file-debuginfo-5.04-21.el6.i686.rpm file-devel-5.04-21.el6.i686.rpm file-static-5.04-21.el6.i686.rpm python-magic-5.04-21.el6.i686.rpm x86_64: file-debuginfo-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.x86_64.rpm file-devel-5.04-21.el6.i686.rpm file-devel-5.04-21.el6.x86_64.rpm file-static-5.04-21.el6.x86_64.rpm python-magic-5.04-21.el6.x86_64.rpm Red Hat Enterprise Linux HPC Node (v. 6): Source: file-5.04-21.el6.src.rpm x86_64: file-5.04-21.el6.x86_64.rpm file-debuginfo-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.x86_64.rpm file-libs-5.04-21.el6.i686.rpm file-libs-5.04-21.el6.x86_64.rpm Red Hat Enterprise Linux HPC Node Optional (v. 6): x86_64: file-debuginfo-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.x86_64.rpm file-devel-5.04-21.el6.i686.rpm file-devel-5.04-21.el6.x86_64.rpm file-static-5.04-21.el6.x86_64.rpm python-magic-5.04-21.el6.x86_64.rpm Red Hat Enterprise Linux Server (v.6): Source: file-5.04-21.el6.src.rpm i386: file-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.i686.rpm file-devel-5.04-21.el6.i686.rpm file-libs-5.04-21.el6.i686.rpm python-magic-5.04-21.el6.i686.rpm ppc64: file-5.04-21.el6.ppc64.rpm file-debuginfo-5.04-21.el6.ppc.rpm file-debuginfo-5.04-21.el6.ppc64.rpm file-devel-5.04-21.el6.ppc.rpm file-devel-5.04-21.el6.ppc64.rpm file-libs-5.04-21.el6.ppc.rpm file-libs-5.04-21.el6.ppc64.rpm python-magic-5.04-21.el6.ppc64.rpm s390x: file-5.04-21.el6.s390x.rpm file-debuginfo-5.04-21.el6.s390.rpm file-debuginfo-5.04-21.el6.s390x.rpm file-devel-5.04-21.el6.s390.rpm file-devel-5.04-21.el6.s390x.rpm file-libs-5.04-21.el6.s390.rpm file-libs-5.04-21.el6.s390x.rpm python-magic-5.04-21.el6.s390x.rpm x86_64: file-5.04-21.el6.x86_64.rpm file-debuginfo-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.x86_64.rpm file-devel-5.04-21.el6.i686.rpm file-devel-5.04-21.el6.x86_64.rpm file-libs-5.04-21.el6.i686.rpm file-libs-5.04-21.el6.x86_64.rpm python-magic-5.04-21.el6.x86_64.rpm Red Hat Enterprise Linux Server Optional (v. 6): i386: file-debuginfo-5.04-21.el6.i686.rpm file-static-5.04-21.el6.i686.rpm ppc64: file-debuginfo-5.04-21.el6.ppc64.rpm file-static-5.04-21.el6.ppc64.rpm s390x: file-debuginfo-5.04-21.el6.s390x.rpm file-static-5.04-21.el6.s390x.rpm x86_64: file-debuginfo-5.04-21.el6.x86_64.rpm file-static-5.04-21.el6.x86_64.rpm Red Hat Enterprise Linux Workstation (v. 6): Source: file-5.04-21.el6.src.rpm i386: file-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.i686.rpm file-devel-5.04-21.el6.i686.rpm file-libs-5.04-21.el6.i686.rpm python-magic-5.04-21.el6.i686.rpm x86_64: file-5.04-21.el6.x86_64.rpm file-debuginfo-5.04-21.el6.i686.rpm file-debuginfo-5.04-21.el6.x86_64.rpm file-devel-5.04-21.el6.i686.rpm file-devel-5.04-21.el6.x86_64.rpm file-libs-5.04-21.el6.i686.rpm file-libs-5.04-21.el6.x86_64.rpm python-magic-5.04-21.el6.x86_64.rpm Red Hat Enterprise Linux Workstation Optional (v.6): i386: file-debuginfo-5.04-21.el6.i686.rpm file-static-5.04-21.el6.i686.rpm x86_64: file-debuginfo-5.04-21.el6.x86_64.rpm file-static-5.04-21.el6.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/#package 7. References: https://access.redhat.com/security/cve/CVE-2012-1571 https://access.redhat.com/security/cve/CVE-2014-0237 https://access.redhat.com/security/cve/CVE-2014-0238 https://access.redhat.com/security/cve/CVE-2014-1943 https://access.redhat.com/security/cve/CVE-2014-2270 https://access.redhat.com/security/cve/CVE-2014-3479 https://access.redhat.com/security/cve/CVE-2014-3480 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2014 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iD8DBQFUPK2pXlSAg2UNWIIRAso7AKC/EbxFblMfli0lLhGrWgaITTXzWwCfVRz8 WJQeVt3iCpD2AmTeeVy2qa8=Jpq5 -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Patch released for Red Hat Enterprise Linux addressing file command discrepancies and bolstering security protocols.. Red Hat Updates, File Command Security, Linux Bug Fixes, Moderate Security Update. . LinuxSecurity.com Team

Calendar%202 Oct 14, 2014 Red Hat
89

Fedora Core 3: 4.12-1.FC3.1 Moderate: File Command Bug Patch

The file command is used to identify a particular file according to the type of data contained by the file. File can identify many different file types, including ELF binaries, system libraries, RPM packages, and different graphics formats.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-098 2005-02-01 ---------------------------------------------------------------------Product : Fedora Core 3 Name : file Version : 4.12 Release : 1.FC3.1 Summary : A utility for determining file types. Description : The file command is used to identify a particular file according to the type of data contained by the file. File can identify many different file types, including ELF binaries, system libraries, RPM packages, and different graphics formats. You should install the file package, since the file command is such a useful utility. ---------------------------------------------------------------------* Mon Jan 31 2005 Radek Vokal - 4.12-1.FC3.1 - core64 patch fixing output on core files (#145354) - fixed crashes in threaded environment (#143871) - upgrade to file-4.12 - Convert libmagic.3 to UTF-8 - set of patches from debian.org - new magic types (#128763) - zlib added to BuildReq (#125294) ---------------------------------------------------------------------This update can be downloaded from: fe1c8655cc03cdc713a6c14d6b374614 SRPMS/file-4.12-1.FC3.1.src.rpm 1bf181d1334a1305bc9065e43149351b x86_64/file-4.12-1.FC3.1.x86_64.rpm 8e3381c945ae28de84c7870fef31180a x86_64/debug/file-debuginfo-4.12-1.FC3.1.x86_64.rpm 62f75c70350ab6ddd0d63d0844752348 i386/file-4.12-1.FC3.1.i386.rpm e4015b331d3a80cfb78a3c26b406f778 i386/debug/file-debuginfo-4.12-1.FC3.1.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailinglist This email address is being protected from spambots. You need JavaScript enabled to view it. . Attention Fedora Core 3 users: A new update for the 'file' command, version 4.12-1.FC3.1, is now available, fixing bugs and enhancing functionality. Fedora File Command Update, File Identification Utility, Command Utility. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 01, 2005 Important Fedora
100

SuSE: 2003:017 Moderate: File Command Buffer Overflow Threat

A buffer overflow vulnerability in the ELF format parsing of the "file" command, one which can be used to execute arbitrary code with the privileges of the user running the command has been fixed.. ______________________________________________________________________________ SuSE Security Announcement Package: file Announcement-ID: SuSE-SA:2003:017 Date: Friday, Mar 21th 2003 10:10 MET Affected products: 7.1, 7.2, 7.3, 8.0, 8.1 SuSE Linux Database Server SuSE eMail Server 3.1, III SuSE Firewall Adminhost VPN SuSE Linux Admin-CD for Firewall SuSE Firewall on CD 2 - VPN SuSE Firewall on CD 2 SuSE Linux Live-CD for Firewall SuSE Linux Connectivity Server SuSE Linux Enterprise Server 7 SuSE Linux Enterprise Server 8 SuSE Linux Office Server Vulnerability Type: remote system compromise Severity (1-10): 2 SuSE default package: yes Cross References: CAN-2003-0102 Content of this advisory: 1) security vulnerability resolved: buffer overflow problem description, discussion, solution and upgrade information 2) pending vulnerabilities, solutions, workarounds: - mutt - kernel - ethereal - qpopper - apcupsd - vnc - openssl - mod_php4 - pgp4pine - nethack - netpbm - man 3) standard appendix (further information) ______________________________________________________________________________ 1) problem description, brief discussion, solution,upgrade information The file command can be used to determine the type of files. iDEFENSE published a security report about a buffer overflow in the handling-routines for the ELF file-format. In conjunction with other mechanisms like print-filters, cron-jobs, eMail-scanners (like AMaViS) and alike this vulnerability can be used to gain higher privileges or to compromise the system remotely. There is no temporary fix known other then updating the system. Please download the update package for your distribution and verify its integrity by the methods listed in section 3) of this announcement. Then, install the package using the command "rpm -Fhv file.rpm" to apply the update. Our maintenance customers are being notified individually. The packages are being offered to install from the maintenance web. Please note, missing packages will be published as soon as possible. Intel i386 Platform: SuSE-8.1: 06e1fa8c7e00fd848b9ccff104a096f0 patch rpm(s): bcb67c0daac5b2542c1126aed315d37c source rpm(s): d10341b38f3e73253ce4c45c06c04ff0 SuSE-8.0: 622ee2ad1552679bc35254888d2d5373 patch rpm(s): eea3818ae69727885e490fc8034e6585 source rpm(s): 9357e8c51f48feffb5bbff72752ac013 SuSE-7.3: f93db1b0c3d3adfe893b0b0fd12f41d8 source rpm(s): 8206b3d2802237406e2edeb9ade377f1 SuSE-7.1: 3ac53edd9ee3995e8b5c05d3e94b5fd5 source rpm(s): 19b16688d3d2867f51554bd3cf4341ab Sparc Platform: SuSE-7.3: 8a8e966fc47b701669f0fb8d5064436a source rpm(s): 2411dd12c8bec3784ba7dff72764b766 AXP Alpha Platform: SuSE-7.1: 4afbdc453be439848e719a3cd1617c49 source rpm(s): ca965a4049a126492262281c7f9b7f4f PPC Power PC Platform: SuSE-7.3: 34fa8b1d8318fd887b840d5715894c97 source rpm(s): 87eb4efad58d1c375a98e1c9990d7e35 SuSE-7.1: 82b761b13f32f0bcfe3df906284bf0d9 source rpm(s): c7c729f7e8c93dd15ad6af5bfb65e826 ______________________________________________________________________________ 2) Pending vulnerabilities in SuSE Distributions and Workarounds: - mutt A buffer overflow in mutt's IMAP code may result in remote system compromise. New packages are currently being build and will be available soon. - kernel A bug in the Linux kernel was found that allows local users to become root. The bug can just be exploited if ptrace(2) is allowed, LKM and kmod support is enabled. We already build new kernels and are currently testing them. As a workaround kernel module loading can be disabled after every boot by executing the following action as root: # echo /just/a/temporary/workaround > /proc/sys/kernel/modprobe Please note, that this will disable some services. - ethereal A format string bug in ethereal's SOCKS handling code and a buffer overflow in the NTLMSSP was found in ethereal. Both bugs may lead to remote system compromise. New packages are currently being build and will be available soon. - qpopper In version 4.0.x of qpopper a buffer overflow *after* user authen- tication can be exploited to gain a shell on a POP-server machine. New packages are currently being build and will be available soon. - apcupsd The control and management daemon for APC UPS systems is vulnerable to remote code execution due to buffer overflow and format string bugs. A dedicated advisory for this issue will be released as soon as all packages are being build. - vnc VNC (Virtual Network Computing) uses a weak cookie generation process which can be exploited by an attacker to bypass authentication. New packages are currently being tested and will be available on our FTP servers soon. - openssl A paper regarding remote timing attacks against OpenSSL has been published by researchers of the Stanford University. It is possible to extract the private RSA key used by services using OpenSSL by observing their timing behavior. Additionally czech researchers found another bug in OpenSSL which is an extension of the "Bleichenbacher Attack". Fixed packages will be available on our FTP servers soon. - mod_php4 4.3.0 A serious security vulnerability was found in mod_php 4.3.0 which allows a remote attacker to read files or even execute PHP-code. This was possible due to direct access to the CGI module. SuSE does not ship this vulnerable version. - pgp4pine A buffer overflow in pine's filter add-on pgp4pine can be abused to execute arbitrary commands remotely. The pgp4pine version SuSE ships is not vulnerable to this bug. - nethack A buffer overflow in nethack can be exploited local users to gain higher privileges if the nethack binary is installed setuid/setgid. This bug is fixed for upcoming SuSE Linux versions. As a temporary workaround you should disable all s-bits on the nethack binary (/etc/permissions.local). - netpbm The netpbm package contains various integer overflows which can lead to arbitrary code execution. New packages are published on our FTP servers. - man A vulnerability in man was published that allows local privilege escalation. SuSE Linux does not ship this vulnerable version of man. ______________________________________________________________________________ 3) standard appendix: authenticity verification, additional information - Package authenticity verification: SuSE update packages are available on many mirror ftp servers all over the world. While this service is being considered valuable and important to the free and open source software community, many users wish to be sure about the origin ofthe package and its content before installing the package. There are two verification methods that can be used independently from each other to prove the authenticity of a downloaded file or rpm package: 1) md5sums as provided in the (cryptographically signed) announcement. 2) using the internal gpg signatures of the rpm package. 1) execute the command md5sum after you downloaded the file from a SuSE ftp server or its mirrors. Then, compare the resulting md5sum with the one that is listed in the announcement. Since the announcement containing the checksums is cryptographically signed (usually using the key This email address is being protected from spambots. You need JavaScript enabled to view it. ), the checksums show proof of the authenticity of the package. We disrecommend to subscribe to security lists which cause the email message containing the announcement to be modified so that the signature does not match after transport through the mailing list software. Downsides: You must be able to verify the authenticity of the announcement in the first place. If RPM packages are being rebuilt and a new version of a package is published on the ftp server, all md5 sums for the files are useless. 2) rpm package signatures provide an easy way to verify the authenticity of an rpm package. Use the command rpm -v --checksig to verify the signature of the package, where is the filename of the rpm package that you have downloaded. Of course, package authenticity verification can only target an un-installed rpm package file. Prerequisites: a) gpg is installed b) The package is signed using a certain key. The public part of this key must be installed by the gpg program in the directory ~/.gnupg/ under the user's home directory who performs the signature verification (usually root). You can import the key that is used by SuSE in rpm packages for SuSE Linux bysaving this announcement to a file ("announcement.txt") and running the command (do "su -" to be root): gpg --batch; gpg < announcement.txt | gpg --import SuSE Linux distributions version 7.1 and thereafter install the key " This email address is being protected from spambots. You need JavaScript enabled to view it. " upon installation or upgrade, provided that the package gpg is installed. The file containing the public key is placed at the top-level directory of the first CD (pubring.gpg) and at . - SuSE runs two security mailing lists to which any interested party may subscribe: This email address is being protected from spambots. You need JavaScript enabled to view it. - general/linux/SuSE security discussion. All SuSE security announcements are sent to this list. To subscribe, send an email to . This email address is being protected from spambots. You need JavaScript enabled to view it. - SuSE's announce-only mailing list. Only SuSE's security announcements are sent to this list. To subscribe, send an email to . For general information or the frequently asked questions (faq) send mail to: or respectively. ==================================================================== SuSE's security contact is or . The public key is listed below. ====================================================================______________________________________________________________________________ The information in this advisory may be distributed or reproduced, provided that the advisory is not modified in any way. In particular, it is desired that the clear-text signature shows proof of the authenticity of the text. SuSE Linux AG makes no warranties of any kind whatsoever with respect to the information contained in this security advisory. Type Bits/KeyID Date User ID pub 2048R/3D25D3D9 1999-03-06 SuSE Security Team pub 1024D/9C800ACA 2000-10-19 SuSE Package Signing Key . Fixes a buffer overflow in the file command tomitigate remote system compromise across SuSE Linux distributions.. Buffer Overflow Fix, Remote System Compromise, SuSE Security Advisory. . LinuxSecurity.com Team

Calendar%202 Mar 21, 2003 SuSE
91

Gentoo: 200310-5 Urgent: Image Processing Memory Leak Buffer Overflow

The file(1) command contains a buffer overflow vulnerability that canbe leveraged by an attacker to execute arbitrary code under theprivileges of another user.. - --------------------------------------------------------------------- GENTOO LINUX SECURITY ANNOUNCEMENT 200303-8 - --------------------------------------------------------------------- PACKAGE : file SUMMARY : buffer overflow DATE : 2003-03-08 22:11 UTC EXPLOIT : local VERSIONS AFFECTED : 3.41 CVE : CAN-2003-0102 - --------------------------------------------------------------------- > From advisory: "The file(1) command contains a buffer overflow vulnerability that can be leveraged by an attacker to execute arbitrary code under the privileges of another user." Read the full advisory at: /us-en SOLUTION It is recommended that all Gentoo Linux users who are running sys-apps/file upgrade to file-3.41 as follows: emerge sync emerge file emerge clean - --------------------------------------------------------------------- This email address is being protected from spambots. You need JavaScript enabled to view it. - GnuPG key is available at - --------------------------------------------------------------------- . - --------------------------------------------------------------------- GENTOO LINUX SECURITY ANNOUN. file(1), command, buffer, overflow, vulnerability, canbe, leveraged, attacker. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 08, 2003 Important Gentoo
98

Red Hat 6.2 RHSA-2003:086-07 Critical Buffer Overflow Threat

Updated file packages are available to close a buffer overflow vulnerability.. ` --------------------------------------------------------------------- Red Hat, Inc. Red Hat Security Advisory Synopsis: Updated file packages fix vulnerability Advisory ID: RHSA-2003:086-07 Issue date: 2003-03-05 Updated on: 2003-03-07 Product: Red Hat Linux Keywords: readelf.c flaw:buf Cross references: Obsoletes: CVE Names: CAN-2003-0102 --------------------------------------------------------------------- 1. Topic: Updated file packages are available to close a buffer overflow vulnerability. 2. Relevant releases/architectures: Red Hat Linux 6.2 - i386 Red Hat Linux 7.0 - i386 Red Hat Linux 7.1 - i386 Red Hat Linux 7.2 - i386, ia64 Red Hat Linux 7.3 - i386 Red Hat Linux 8.0 - i386 3. Problem description: The file command is used to identify a particular file according to the type of data contained in the file. The file utility before version 3.41 contains a buffer overflow vulnerability in the ELF parsing routines. This vulnerability may allow an attacker to create a carefully crafted binary which can allow arbitrary code to be run if a victim runs the 'file' command on that binary. There are other ways that an attacker may be able to take advantage of this vulnerability in the file command: -- In Red Hat Linux 6.2 and 7.0, the rhs-printfilter package makes use of the file command. This would allow an attacker who has the ability to print to execute arbitrary commands (as the user 'lp') on the print server by sending a malicious file. -- On some Red Hat Linux distributions it may also be possible to trigger this exploit by encouraging the victim to use the 'less' command on a malicious file which is named so that it will be processed by the 'lesspipe.sh' script. All users are advised to update to these erratum packages, which contain a backported patch to correct this vulnerability. Red Hat would like to thank iDefense fordisclosing this issue and zen-parse for discussion of some of the implications. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. To update all RPMs for your particular architecture, run: rpm -Fvh [filenames] where [filenames] is a list of the RPMs you wish to upgrade. Only those RPMs which are currently installed will be updated. Those RPMs which are not installed but included in the list will not be updated. Note that you can also use wildcards (*.rpm) if your current directory *only* contains the desired RPMs. Please note that this update is also available via Red Hat Network. Many people find this an easier way to apply updates. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date This will start an interactive process that will result in the appropriate RPMs being upgraded on your system. 5. RPMs required: Red Hat Linux 6.2: SRPMS: i386: Red Hat Linux 7.0: SRPMS: i386: Red Hat Linux 7.1: SRPMS: i386: Red Hat Linux 7.2: SRPMS: i386: ia64: Red Hat Linux 7.3: SRPMS: i386: Red Hat Linux 8.0: SRPMS: i386: 6. Verification: MD5 sum Package Name -------------------------------------------------------------------------- 8cb16a37290c4714429eef117a56e551 6.2/en/os/SRPMS/file-3.39-8.6x.src.rpm e84840bfb63e0807652b4c795a211b48 6.2/en/os/i386/file-3.39-8.6x.i386.rpm 15c75893938ec25e6ae872674560d782 7.0/en/os/SRPMS/file-3.39-8.7x.src.rpm 57ff358a59f9420cebf55059ab64300d 7.0/en/os/i386/file-3.39-8.7x.i386.rpm 15c75893938ec25e6ae872674560d782 7.1/en/os/SRPMS/file-3.39-8.7x.src.rpm 57ff358a59f9420cebf55059ab64300d 7.1/en/os/i386/file-3.39-8.7x.i386.rpm 15c75893938ec25e6ae872674560d782 7.2/en/os/SRPMS/file-3.39-8.7x.src.rpm 57ff358a59f9420cebf55059ab64300d 7.2/en/os/i386/file-3.39-8.7x.i386.rpm 4fe9b98179258155d4a3d4dc4e543d13 7.2/en/os/ia64/file-3.39-8.7x.ia64.rpm 15c75893938ec25e6ae872674560d7827.3/en/os/SRPMS/file-3.39-8.7x.src.rpm 57ff358a59f9420cebf55059ab64300d 7.3/en/os/i386/file-3.39-8.7x.i386.rpm 76ee5aa939dc04cd3cae2fdd18019f3d 8.0/en/os/SRPMS/file-3.39-9.src.rpm b0560e1725f28fe375f9885a7a6be684 8.0/en/os/i386/file-3.39-9.i386.rpm These packages are GPG signed by Red Hat, Inc. for security. Our key is available at About You can verify each package with the following command: rpm --checksig -v If you only wish to verify that each package has not been corrupted or tampered with, examine only the md5sum with the following command: md5sum 7. References: /us-en CVE -CVE-2003-0102 8. Contact: The Red Hat security contact is . More contact details at All Red Hat products Copyright 2003 Red Hat, Inc. _______________________________________________ Red Hat-watch-list mailing list To unsubscribe, visit: `. Oracle addresses a significant flaw in the java runtime, strengthening application security and blocking potential malware attacks.. Red Hat Linux, Buffer Overflow, Patch Management, Security Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 07, 2003 Critical Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200