Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
89

Fedora Core 2 FEDORA-2004-547 Moderate: Flim Cache Temp File Issue

Update to 1.14.7 release, which also fixes CAN-2004-0422.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2004-546 2004-12-15 ---------------------------------------------------------------------Product : Fedora Core 2 Name : flim Version : 1.14.7 Release : 0.FC2 Summary : Basic library for handling email messages for Emacs Description : FLIM is a library to provide basic features about message representation and encoding for Emacs. ---------------------------------------------------------------------Update Information: Update to 1.14.7 release, which also fixes CAN-2004-0422. ---------------------------------------------------------------------* Fri Dec 10 2004 Jens Petersen - 1.14.7-0.FC2 - backport FC3 package: - update to 1.14.7 release - includes fix for CAN-2004-0422 temp file vulnerability (124395) - drop requirements on emacs/xemacs for -nox users (Lars Hupfeldt Nielsen, 134479) - better url and summary - remove redundant docs, large changelog and tests (Warren Togami) ---------------------------------------------------------------------This update can be downloaded from: 07853817dad670bc579823fcd6da5b2e SRPMS/flim-1.14.7-0.FC2.src.rpm 12d318c9aa08ff9cacb9adb18ac7004f x86_64/flim-1.14.7-0.FC2.noarch.rpm 09f68ea43c5ada22faf6335b4cf580cc x86_64/flim-xemacs-1.14.7-0.FC2.noarch.rpm 12d318c9aa08ff9cacb9adb18ac7004f i386/flim-1.14.7-0.FC2.noarch.rpm 09f68ea43c5ada22faf6335b4cf580cc i386/flim-xemacs-1.14.7-0.FC2.noarch.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Fedora Core 2 has upgraded flim to version 1.14.7, addressing CAN-2004-0422 related to temporary file security issues. For more details about this update, click here. FedoraCore 2, Flim Update, CAN-2004-0422 Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 15, 2004 Important Fedora
87

Debian DSA 500-1 Critical: Flim Insecure Temporary File Access

This vulnerability could be exploited by a local user to overwrite files with the privileges of the user running emacs.. Debian Security Advisory DSA 500-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Matt Zimmerman May 1st, 2004 Debian -- Debian security FAQ - -------------------------------------------------------------------------- Package : flim Vulnerability : insecure temporary file Problem-Type : local Debian-specific: no CVE Ids : CAN-2004-0422 Tatsuya Kinoshita discovered a vulnerability in flim, an emacs library for working with internet messages, where temporary files were created without taking appropriate precautions. This vulnerability could potentially be exploited by a local user to overwrite files with the privileges of the user running emacs. the 'chroot' option. For the current stable distribution (woody) this problem has been fixed in version 1.14.3-9woody1. For the unstable distribution (sid), this problem will be fixed soon. We recommend that you update your flim package. Upgrade Instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 576 e355dde8fc5dfb1b6b86504ad98ecb3f Size/MD5 checksum: 8044 71ee1b83fab4c323625b1dbd34a84497 Size/MD5 checksum: 165844 5931a530506e944f0605aeb022b5b97c Architecture independent components: Size/MD5 checksum: 156874 525f828cc8022e80601cb5c67d10b482 These files will probably bemoved into the stable distribution on its next revision. - --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Debian Security Advisory DSA 500-1 outlines a critical flaw in flim, enabling local users to compromise file integrity.. debian advisories,insecure files,flim security,local exploitation. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 10, 2004 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here