Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
172

Ubuntu 18.04 LTS: USN-4505-1 Moderate: PHPMailer Filename Exploit

Attachments with specially crafted filenames could bypass filename-based mail attachment filters.. =========================================================================Ubuntu Security Notice USN-4505-1 September 16, 2020 libphp-phpmailer vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: Attachments with specially crafted filenames could bypass filename-based mail attachment filters. Software Description: - libphp-phpmailer: full featured email transfer class for PHP Details: Elar Lang discovered that PHPMailer did not properly escape double quote characters in filenames. A remote attacker could possibly exploit this with a crafted filename to bypass attachment filters that are based on matching filename extensions. (CVE-2020-13625) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: libphp-phpmailer 5.2.14+dfsg-2.3+deb9u2build0.18.04.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4505-1 CVE-2020-13625 Package Information: https://launchpad.net/ubuntu/+source/libphp-phpmailer/5.2.14+dfsg-2.3+deb9u2build0.18.04.1 . A critical PHPMailer vulnerability affects Ubuntu 18.04 LTS, allowing remote attackers potential unauthorized actions. Update to mitigate risks promptly. PHPMailer Exploit, Ubuntu Security Notice, Email Attachment Risk. . LinuxSecurity.com Team

Calendar 2 Sep 16, 2020 Ubuntu
89

Fedora 29 libfilezilla Security Update FEDORA-2019-6e77507660

Bugfixes, and a security fix: Fixed vulnerabilities: Filenames containing double-quotation marks were not escaped correctly when selected for opening/editing. Depending on the associated program, parts of the filename could be interpreted as commands.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-6e77507660 2019-07-06 05:07:52.250928 --------------------------------------------------------------------------------Name : libfilezilla Product : Fedora 29 Version : 0.17.1 Release : 1.fc29 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. --------------------------------------------------------------------------------Update Information: Bugfixes, and a security fix: Fixed vulnerabilities: Filenames containing double-quotation marks were not escaped correctly when selected for opening/editing. Depending on the associated program, parts of the filename could be interpreted as commands. --------------------------------------------------------------------------------ChangeLog: * Thu Jun 27 2019 Gwyn Ciesla - 0.17.1-1 - 0.17.1 * Tue Apr 30 2019 Gwyn Ciesla - 0.16.0-1 - 0.16.0 * Fri Feb 1 2019 Fedora Release Engineering - 0.15.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild * Mon Nov 26 2018 Gwyn Ciesla - 0.15.1-1 - 0.15.1 * Fri Oct 19 2018 Gwyn Ciesla - 0.15.0-1 - 0.15.0 * Fri Oct 5 2018 Gwyn Ciesla - 0.14.0-1 - 0.14.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1724743 - filezilla-3.43.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1724743 --------------------------------------------------------------------------------This update can be installed with the "dnf" updateprogram. Use su -c 'dnf upgrade --advisory FEDORA-2019-6e77507660' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . The Ubuntu team has released update UBUNTU-2022-3f40789019 for libnetwork, resolving significant vulnerability concerns.. libfilezilla, Fedora update, filename security fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 06, 2019 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here