Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
89

Fedora: 2016-8749c58855 Critical: Ganglia XSS Issue Fix

Update to ganglia-web 3.7.2, fixing a XSS issue.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-8749c58855 2016-09-04 00:22:36.131025 -------------------------------------------------------------------------------- Name : ganglia Product : Fedora 24 Version : 3.7.2 Release : 10.fc24 URL : https://sourceforge.net/projects/ganglia/ Summary : Distributed Monitoring System Description : Ganglia is a scalable, real-time monitoring and execution environment with all execution requests and statistics expressed in an open well-defined XML format. -------------------------------------------------------------------------------- Update Information: Update to ganglia-web 3.7.2, fixing a XSS issue. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1369843 - ganglia: ganglia-web: Reflected XSS in the metrics API [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1369843 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update ganglia' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/This email address is being protected from spambots. You need JavaScript enabled to view it./ . The upgrade to ganglia version 3.7.2 on Fedora 24 resolves a significant cross-site scripting vulnerability in the monitoring framework, enhancing overall security measures.. Ganglia Update, Fedora 24 Security, XSS Patch, Monitoring System, Software Update. . Severity:Critical. LinuxSecurity.com Team

Calendar 2 Sep 04, 2016 Critical Fedora
89

Fedora 23: Trusted Update for Ganglia 3.7.1 Critical Auth Bypass

Update to ganglia-web 3.7.1, including security fix for CVE-2015-6816.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-de8ba28354 2015-11-01 01:51:21.178724 -------------------------------------------------------------------------------- Name : ganglia Product : Fedora 23 Version : 3.7.2 Release : 6.fc23 URL : https://sourceforge.net/projects/ganglia/ Summary : Distributed Monitoring System Description : Ganglia is a scalable, real-time monitoring and execution environment with all execution requests and statistics expressed in an open well-defined XML format. -------------------------------------------------------------------------------- Update Information: Update to ganglia-web 3.7.1, including security fix for CVE-2015-6816. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1260563 - CVE-2015-6816 ganglia: Bypassing Ganglia-web auth using boolean serialization [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1260563 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update ganglia' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . The recent update for Ganglia version 3.7.1 includes key security patches for Fedora 23, aimed at bolstering defense against vulnerabilities.. Fedora Updates,Ganglia Monitoring,Security Fix,SoftwareUpdate,System Administration. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 01, 2015 Critical Fedora
89

Fedora: 2015-ee7a2b5844 moderate: ganglia 3.7.1 auth issue

Update to ganglia-web 3.7.1, including security fix for CVE-2015-6816.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-ee7a2b5844 2015-10-23 11:59:44.995208 -------------------------------------------------------------------------------- Name : ganglia Product : Fedora 22 Version : 3.7.2 Release : 6.fc22 URL : https://sourceforge.net/projects/ganglia/ Summary : Distributed Monitoring System Description : Ganglia is a scalable, real-time monitoring and execution environment with all execution requests and statistics expressed in an open well-defined XML format. -------------------------------------------------------------------------------- Update Information: Update to ganglia-web 3.7.1, including security fix for CVE-2015-6816. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1260563 - CVE-2015-6816 ganglia: Bypassing Ganglia-web auth using boolean serialization [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1260563 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update ganglia' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . An upgrade for ganglia-web 3.7.1 on Fedora 22 has been released, resolving CVE-2015-6816 with critical patches. Discover more details here.. Ganglia Security Update,Fedora 22,CVE Fix,Ganglia-webUpdate,Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 23, 2015 Important Fedora
89

Fedora 21: Critical Ganglia Security Update Fixes CVE-2015-6816 Issue

Update to ganglia-web 3.7.1, including security fix for CVE-2015-6816.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-accdc7ebfc 2015-10-23 11:54:19.355938 -------------------------------------------------------------------------------- Name : ganglia Product : Fedora 21 Version : 3.7.2 Release : 6.fc21 URL : https://sourceforge.net/projects/ganglia/ Summary : Distributed Monitoring System Description : Ganglia is a scalable, real-time monitoring and execution environment with all execution requests and statistics expressed in an open well-defined XML format. -------------------------------------------------------------------------------- Update Information: Update to ganglia-web 3.7.1, including security fix for CVE-2015-6816. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1260563 - CVE-2015-6816 ganglia: Bypassing Ganglia-web auth using boolean serialization [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1260563 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update ganglia' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Explore the recent CentOS patch for Nagios, which resolves a significant privilege escalation vulnerability.. Ganglia Security Update,Fedora Update,Authentication Bypass Fix. . Severity: Critical.LinuxSecurity.com Team

Calendar 2 Oct 23, 2015 Critical Fedora
87

Debian: DSA-2610-1 Moderate: Ganglia Remote Script Execution Risk

Insufficient input sanitization in Ganglia, a web based monitoring system, could lead to remote PHP script execution with permissions of the user running the web browser. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-2610-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Yves-Alexis Perez January 21, 2013 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : ganglia Vulnerability : arbitrary script execution Problem type : remote Debian-specific: no CVE ID : CVE-2012-3448 Debian Bug : 683584 Insufficient input sanitization in Ganglia, a web based monitoring system, could lead to remote PHP script execution with permissions of the user running the web browser. For the stable distribution (squeeze), this problem has been fixed in version 3.1.7-1+squeeze1. For the testing distribution (wheezy), this problem has been fixed in version 3.3.8-1. For the unstable distribution (sid), this problem has been fixed in version 3.3.8-1. We recommend that you upgrade your ganglia packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Inadequate input validation in Ganglia highlights dangers of remote code execution. It is advisable to perform updates to reduce vulnerabilities.. Ganglia Security Update, Debian Advisory, Remote Script Execution, Input Sanitization, Web Monitoring. . LinuxSecurity.com Team

Calendar 2 Jan 21, 2013 Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here