Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
87

Debian Woody: DSA 712-1 Moderate: Geneweb Insecure Operations

Updated package.. - --------------------------------------------------------------------------Debian Security Advisory DSA 712-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Martin Schulze April 19th, 2005 http://www.debian.org/security/faq - --------------------------------------------------------------------------Package : geneweb Vulnerability : insecure file operations Problem-Type : local Debian-specific: yes CVE ID : CAN-2005-0391 Debian Bug : 304405 Tim Dijkstra discovered a problem during the upgrade of geneweb, a genealogy software with web interface. The maintainer scripts automatically converted files without checking their permissions and content, which could lead to the modification of arbitrary files. For the stable distribution (woody) this problem has been fixed in version 4.06-2woody1. For the unstable distribution (sid) this problem has been fixed in version 4.10-7. We recommend that you upgrade your geneweb package. Upgrade Instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 622 42f4904be438272ef8cdc58c209bf69e Size/MD5 checksum: 23312 8a6772692840aaa3a8190f3c620a93c7 Size/MD5 checksum: 832896 a64a4373cb82d6a3044718c7345e45f7 Alpha architecture: Size/MD5 checksum: 2337090 858feee271e9273832c88d48ba328a12 Size/MD5 checksum: 208060 f7307a991ec6bc392921d90abdc81ca2 ARMarchitecture: Size/MD5 checksum: 1944856 82b8aebab5bb58d37d15b999a4335f2a Size/MD5 checksum: 169726 7839aa9156ee97f9d1f3c4f86dd550c3 Intel IA-32 architecture: Size/MD5 checksum: 1684856 2a1bc1f0ec1fc6c3f7ef7c52fd1e94d8 Size/MD5 checksum: 144654 6894d141467665242c11498ad8d19c7e Intel IA-64 architecture: Size/MD5 checksum: 985874 1ab07405b51d714f67947bbdb2b75556 Size/MD5 checksum: 108438 4885192511533339a3f4bbac1f46e3af HP Precision architecture: Size/MD5 checksum: 865514 2e9ac4cb55344f560c09305d8e5ff69a Size/MD5 checksum: 88544 f9bb191412501d5bb0af4f1e3ad3da8d Motorola 680x0 architecture: Size/MD5 checksum: 769174 160c16c3ec87483ea98bf2d27d21791d Size/MD5 checksum: 72536 91fb0ee658037ed95eacf536d4a85066 Big endian MIPS architecture: Size/MD5 checksum: 830996 744a10d4b0b6274130243f20b5fd61b8 Size/MD5 checksum: 82986 e0ad1d6ec21c6e3d3c05f3d415dc7464 Little endian MIPS architecture: Size/MD5 checksum: 828712 f662f4bfd37628765ff6ed5f84db1ced Size/MD5 checksum: 82488 f59385de1518114ca79d4fafdd671c70 PowerPC architecture: Size/MD5 checksum: 1974276 6f7b75c7a7110573a60e23ee148ad08e Size/MD5 checksum: 172650 722401a02a51b2e0e56cb3192fd0112c IBM S/390 architecture: Size/MD5 checksum: 806318 9050118b04fd2ac2191a42626a0f475e Size/MD5 checksum: 78592 ef1d41ec105bff3fb06d7666ba1a5088 Sun Sparc architecture: Size/MD5 checksum: 2014300 a419b10c08cf4612a5acba067f4adc3f Size/MD5 checksum: 176650 8e4c69e79adc7df3de7464981c8e8d31 These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian Security Advisory DSA 712-1 http://www.debian.org/security/ Martin Schulze April 19th, 2005 h. updated, package, --------------------------------------------------------------------------debian. . LinuxSecurity.com Team

Calendar 2 Apr 19, 2005 Debian
87

Debian 3.0 DSA 223-1 Critical: Geneweb Remote Threat Exposure

A security issue has been discovered in geneweb, a genealogical software with web interface.. -------------------------------------------------------------------------- Debian Security Advisory DSA 223-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze January 7th, 2003 Debian -- Debian security FAQ -------------------------------------------------------------------------- Package : geneweb Vulnerability : information exposure Problem-Type : remote Debian-specific: no CVE Id : CAN-2002-1390 A security issue has been discovered by Daniel de Rauglaudre, upstream author of geneweb, a genealogical software with web interface. It runs as a daemon on port 2317 by default. Paths are not properly sanitized, so a carefully crafted URL lead geneweb to read and display arbitrary files of the system it runs on. For the current stable distribution (woody) this problem has been fixed in version 4.06-2. The old stable distribution (potato) is not affected. For the unstable distribution (sid) this problem has been fixed in version 4.09-1. We recommend that you upgrade your geneweb package. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody -------------------------------- Source archives: Size/MD5 checksum: 610 55ccdf8143b1a96e056094de24e31074 Size/MD5 checksum: 23357 1a3a36cbcef4e48b6a1effc5685023b6 Size/MD5 checksum: 832896 a64a4373cb82d6a3044718c7345e45f7 Alpha architecture: Size/MD5 checksum: 2336984 4a1a0e637ca669de6eefbf268a764d84 Size/MD5 checksum: 207902 d9aadcc1d453da3ca8526823d2a152d7 ARM architecture: Size/MD5 checksum: 1944708 9034949c9a7e0bef78fbfd300e23e30b Size/MD5 checksum: 169542 dbfebb1e79bed418b115f9d70ca3e550 Intel IA-32 architecture: Size/MD5 checksum: 1684746 5057e9e6b03bb4d0d6878952b501e219 Size/MD5 checksum: 144480 9c0734678de3b35399d98b421bf6943e Intel IA-64 architecture: Size/MD5 checksum: 985752 07f39fee8a2d299dec7745a663dd92d7 Size/MD5 checksum: 108274 da31852ab48cd19d6f31508706fecbf5 HP Precision architecture: Size/MD5 checksum: 865398 9cc1369fe825651dd1b94b405606985a Size/MD5 checksum: 88378 28813c61dfe7b9122497b163a453c18e Motorola 680x0 architecture: Size/MD5 checksum: 769050 51b9e4662732cfe495f46179ee421144 Size/MD5 checksum: 72366 5b9bfb854358d5698636fcb579ce341a Big endian MIPS architecture: Size/MD5 checksum: 830858 81707ac5153dbce3ef43814bb80ff0a1 Size/MD5 checksum: 82782 cbafd1fa38f65e89f998ff85fe57502f Little endian MIPS architecture: Size/MD5 checksum: 828578 4ecbe3e11bdd06060c68ac8f056c1236 Size/MD5 checksum: 82214 0f60da0df4e805b18b4bb47cfa18bea8 PowerPC architecture: Size/MD5 checksum: 1974062 53677870c90407d1ed124eac472696e4 Size/MD5 checksum: 172486 79a42dfd21220c05b1d26b356e4478b2 IBM S/390 architecture: Size/MD5 checksum: 806194 0f5b03a1f318cae873669d085acbde04 Size/MD5 checksum: 78434 902398e1ee72b17fd6a7572a82ed3d62 Sun Sparc architecture: Size/MD5 checksum: 2014210 9ce8b277ce809345177d262cfd296991 Size/MD5 checksum: 176504 9ce117759d03a1ef4a5db0c80de25cf7 These files will probably be moved into the stable distribution on its next revision. --------------------------------------------------------------------------------- For apt-get: deb Debian-- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Protect your Debian systems from information exposure threats with key strategies and essential geneweb updates.. Geneweb Security Issues, Debian Advisory, Information Exposure Protection. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 07, 2003 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here