Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":547,"type":"x","order":1,"pct":78.48,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.88,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.34,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
203

Mageia 8: 2023-0005 Moderate: Minetest Lua Exploit Threat

This update provides minetest 5.6.1, the latest stable release of the open source voxel game. This updates provides a number of feature and bug fix changes compared to the previous version 5.4.0 provided in Mageia 8. See the linked release notes and changelogs for details. . MGASA-2023-0005 - Updated minetest packages fix security vulnerability Publication date: 13 Jan 2023 URL: https://advisories.mageia.org/MGASA-2023-0005.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-35978 This update provides minetest 5.6.1, the latest stable release of the open source voxel game. This updates provides a number of feature and bug fix changes compared to the previous version 5.4.0 provided in Mageia 8. See the linked release notes and changelogs for details. The update also improves compatibility with hosted game servers, which typically run and expect the latest stable release. The update also fixes a security vulnerability affecting single player with malicious mods (GHSA-663q-pcjw-27cc) In single player, a mod could set a global setting that controls the Lua script loaded to display the main menu. The script would be loaded as soon as the game session is exited. The Lua environment the menu runs in was not sandboxed and could directly interfere with the user's system. (CVE-2022-35978) References: - https://bugs.mageia.org/show_bug.cgi?id=31363 - https://blog.luanti.org/2022/08/04/5.6.0-released/ - https://docs.luanti.org/Changelog/ - https://docs.luanti.org/Changelog/ - https://docs.luanti.org/Changelog/ - https://github.com/luanti-org/luanti/security/advisories/GHSA-663q-pcjw-27cc - https://www.cve.org/CVERecord?id=CVE-2022-35978 SRPMS: - 8/core/minetest-5.6.1-1.mga8 . Mageia 2023-0005 upgrades minetest to address a major security flaw impacting single player gameplay due to harmful modifications.. Mageia Minetest Security Update, Lua Scripting Vulnerability, Single Player Game Threats. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 13, 2023 Important Mageia
89

Fedora 35: 2022-88e3257aef Critical: Fix for SuperTux Issue

Fix CVE-2022-30292. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-88e3257aef 2022-05-16 02:04:05.714253 --------------------------------------------------------------------------------Name : supertux Product : Fedora 35 Version : 0.6.3 Release : 2.fc35 URL : https://www.supertux.org Summary : Jump'n run like game Description : SuperTux is a jump'n run like game, Run and jump through multiple worlds, fighting off enemies by jumping on them or bumping them from below. Grabbing power-ups and other stuff on the way. --------------------------------------------------------------------------------Update Information: Fix CVE-2022-30292 --------------------------------------------------------------------------------ChangeLog: * Thu May 5 2022 David King - 0.6.3-2 - Fix CVE-2022-30292 (#2082179) --------------------------------------------------------------------------------References: [ 1 ] Bug #2082179 - CVE-2022-30292 supertux: squirrel: thread_call in sqbaselib.cpp lacks a certain sq_reservestack call [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2082179 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-88e3257aef' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct:https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Patch addressing CVE-2022-30292 in SuperTux game for Fedora 35 issued on May 16, 2022, improving both security measures and overall performance.. Fedora Updates, SuperTux Game, Security Patches. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 15, 2022 Critical Fedora
89

Fedora 22: 2015-10964 Critical Update For Wesnoth Authentication Issue

Latest upstream. https://www.openwall.com/lists/oss-security/2015/06/25/2 https://www.openwall.com/lists/oss-security/2015/06/25/2. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-10964 2015-06-30 17:57:52 -------------------------------------------------------------------------------- Name : wesnoth Product : Fedora 22 Version : 1.12.4 Release : 1.fc22 URL : http://www.wesnoth.org Summary : Turn-based strategy game with a fantasy theme Description : The Battle for Wesnoth is a turn-based strategy game with a fantasy theme. Build up a great army, gradually turning raw recruits into hardened veterans. In later games, recall your toughest warriors and form a deadly host against whom none can stand. Choose units from a large pool of specialists, and hand-pick a force with the right strengths to fight well on different terrains against all manner of opposition. Fight to regain the throne of Wesnoth, of which you are the legitimate heir, or use your dread power over the Undead to dominate the land of mortals, or lead your glorious Orcish tribe to victory against the humans who dared despoil your lands. Wesnoth has many different sagas waiting to be played out. You can create your own custom units, and write your own scenarios--or even full-blown campaigns. You can also challenge your friends--or strangers--and fight multi-player epic fantasy battles. -------------------------------------------------------------------------------- Update Information: Latest upstream. https://www.openwall.com/lists/oss-security/2015/06/25/2 https://www.openwall.com/lists/oss-security/2015/06/25/2 -------------------------------------------------------------------------------- ChangeLog: * Mon Jun 29 2015 Jon Ciesla - 1.12.4-1 - Upstream maintenance release. * Fri Jun 26 2015 Jon Ciesla - 1.12.2-3 - Patches for CVE-2015-5069 and CVE-2015-5070. * Fri Jun 19 2015 Fedora Release Engineering - 1.12.2-2 - Rebuilt forhttps://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1236011 - CVE-2015-5070 CVE-2015-5069 wesnoth: authentication information disclosure [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1236011 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update wesnoth' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Keep informed about the wesnoth security fix for Fedora 22, detailing essential vulnerabilities and how to upgrade.. Wesnoth Update,Fedora Security,Authentication Disclosure,Open Source Gaming. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 13, 2015 Critical Fedora
87

Debian: DSA 452-1 Serious: Zoom Chat Remote Exploit Warning Notice

can be exploited by a local attacker to gain gid "games".. Debian Security Advisory DSA 451-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Matt Zimmerman February 27th, 2004 Debian -- Debian security FAQ - -------------------------------------------------------------------------- Package : xboing Vulnerability : buffer overflows Problem-Type : local Debian-specific: no CVE Id : CAN-2004-0149 Debian bug : 174924 Steve Kemp discovered a number of buffer overflow vulnerabilities in xboing, a game, which could be exploited by a local attacker to gain gid "games". For the current stable distribution (woody) these problems have been fixed in version 2.4-26woody1. For the unstable distribution (sid), these problems have been fixed in version 2.4-26.1. We recommend that you update your xboing package. Upgrade Instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 580 f9ef94d37b5db34cf867d172529ad325 Size/MD5 checksum: 13200 3627d000f33d496e5092bef84c92963e Size/MD5 checksum: 586869 3b6ebbf4321cffc69048e5611aa9d28d Alpha architecture: Size/MD5 checksum: 533078 77530ad6b6abdb480af6a7d5ba03d609 ARM architecture: Size/MD5 checksum: 520166 de88300d9d4d6232b0e04d8dc700d5f1 Intel IA-32 architecture: Size/MD5 checksum: 510744 21f12476ececfab492a3525162e465bf Intel IA-64 architecture: Size/MD5checksum: 575066 d59a129a157f2c7f0d6b155d5c219c24 HP Precision architecture: Size/MD5 checksum: 516918 ef35a77de22e3785953b4824ae0f1324 Motorola 680x0 architecture: Size/MD5 checksum: 509124 065f733083fac4310355ed1d212b386d Big endian MIPS architecture: Size/MD5 checksum: 525836 b0af1feb5d8ced400a5e783f0abcfcd9 Little endian MIPS architecture: Size/MD5 checksum: 523436 34f791984ef83ac3237c40a3a615e3a0 PowerPC architecture: Size/MD5 checksum: 512960 09be35d56f9707f45cda7971c1996b58 IBM S/390 architecture: Size/MD5 checksum: 515484 2d00881d1d4204fef37e9a650bf96b90 Sun Sparc architecture: Size/MD5 checksum: 515784 517ce299d41930a7ed18ac2b48f178a1 These files will probably be moved into the stable distribution on its next revision. - --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Revise xboing to mitigate severe buffer overflow vulnerabilities outlined in Debian DSA 452-1 security advisory. Ensure all patches are applied to enhance system resilience.. Debian Security, Xboing Patch, Local Exploit, Buffer Overflow, Game Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 27, 2004 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":547,"type":"x","order":1,"pct":78.48,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.88,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.34,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here