Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
172

Ubuntu 20.04 LTS USN-4614-1 Moderate: GDM Privileged User Issue

GDM could be made to create privileged users.. =========================================================================Ubuntu Security Notice USN-4614-1 November 03, 2020 gdm3 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.10 - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: GDM could be made to create privileged users. Software Description: - gdm3: GNOME Display Manager Details: Kevin Backhouse discovered that GDM incorrectly launched the initial setup tool when the accountsservice daemon was not reachable. A local attacker able to cause accountsservice to crash or stop responding could trick GDM into launching the initial setup tool and create a privileged user. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.10: gdm3 3.38.1-2ubuntu1.1 Ubuntu 20.04 LTS: gdm3 3.36.3-0ubuntu0.20.04.2 Ubuntu 18.04 LTS: gdm3 3.28.3-0ubuntu18.04.6 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4614-1 CVE-2020-16125 Package Information: https://launchpad.net/ubuntu/+source/gdm3/3.38.1-2ubuntu1.1 https://launchpad.net/ubuntu/+source/gdm3/3.36.3-0ubuntu0.20.04.2 https://launchpad.net/ubuntu/+source/gdm3/3.28.3-0ubuntu18.04.6 . A vulnerability in GDM enables the formation of elevated user accounts on Ubuntu 20.10, 20.04 LTS, and 18.04 LTS systems.. GDM Vulnerability, Ubuntu Security Notice, Local User Attack. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 03, 2020 Important Ubuntu
172

Ubuntu 18.10 & 18.04 LTS: USN-3892-1 Moderate: GDM Unauthorized Access

GDM could give unauthorized access to a different user.. =========================================================================Ubuntu Security Notice USN-3892-1 February 20, 2019 gdm3 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.10 - Ubuntu 18.04 LTS Summary: GDM could give unauthorized access to a different user. Software Description: - gdm3: GNOME Display Manager Details: Burghard Britzke discovered that GDM incorrectly handled certain configurations. An attacker could possibly use this issue to get unauthorized access to a different user. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.10: gdm3 3.30.1-1ubuntu5.1 Ubuntu 18.04 LTS: gdm3 3.28.3-0ubuntu18.04.4 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-3892-1 CVE-2019-3825 Package Information: https://launchpad.net/ubuntu/+source/gdm3/3.30.1-1ubuntu5.1 https://launchpad.net/ubuntu/+source/gdm3/3.28.3-0ubuntu18.04.4 . =========================================================================Ubuntu Security Notice USN-. unauthorized, different, ============================================. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 20, 2019 Important Ubuntu
87

Debian: DSA-4270-1 gdm3 Denial Of Service Use-After-Free

Chris Coulson discovered a use-after-free flaw in the GNOME Display Manager, triggerable by an unprivileged user via a specially crafted sequence of D-Bus method calls, leading to denial of service or potentially the execution of arbitrary code. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-4270-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Salvatore Bonaccorso August 13, 2018 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : gdm3 CVE ID : CVE-2018-14424 Chris Coulson discovered a use-after-free flaw in the GNOME Display Manager, triggerable by an unprivileged user via a specially crafted sequence of D-Bus method calls, leading to denial of service or potentially the execution of arbitrary code. For the stable distribution (stretch), this problem has been fixed in version 3.22.3-3+deb9u2. We recommend that you upgrade your gdm3 packages. For the detailed security status of gdm3 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/gdm3 Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . The Debian Security Advisory DSA-4270-2 outlines an urgent patch for gdm3, addressing a significant use-after-free vulnerability that could lead to unauthorized code execution.. Debian Security Advisory,Gnome Security Update,gdm3 Threat Mitigation,Use-After-Free Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 13, 2018 Important Debian
87

Debian DSA-2205-1 Critical: gdm3 Privilege Escalation Risk

Sebastian Krahmer discovered that the gdm3, the GNOME Desktop Manager, does not properly drop privileges when manipulating files related to the logged-in user. As a result, local users can gain root privileges. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2205-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Florian Weimer March 28, 2011 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : gdm3 Vulnerability : privilege escalation Problem type : local Debian-specific: no CVE ID : CVE-2011-0727 Sebastian Krahmer discovered that the gdm3, the GNOME Desktop Manager, does not properly drop privileges when manipulating files related to the logged-in user. As a result, local users can gain root privileges. The oldstable distribution (lenny) does not contain a gdm3 package. The gdm package is not affected by this issue. For the stable distribution (squeeze), this problem has been fixed in version 2.30.5-6squeeze2. For the testing distribution (wheezy) and the unstable distribution (sid), this problem will be fixed soon. We recommend that you upgrade your gdm3 packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Discover the latest gdm3 security patch for Debian addressing local privilege escalation issues. Prompt installation of these updates is crucial for system safety and integrity. gdm3 Security, Debian Update, Privilege Escalation, Local Access, GNOME Desktop. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 28, 2011 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here