Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 2 articles for you...
202

openSUSE: 2024:0146-1 Important: Fix Gifsicle Floating Point Issue

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for gifsicle ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0146-1 Rating: important References: #1216403 Cross-References: CVE-2023-46009 CVSS scores: CVE-2023-46009 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: openSUSE Backports SLE-15-SP5 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for gifsicle fixes the following issues: Update to version 1.95: - CVE-2023-46009: Fixed floating point exception vulnerability via resize_stream at src/xform.c (boo#1216403) Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP5: zypper in -t patch openSUSE-2024-146=1 Package List: - openSUSE Backports SLE-15-SP5 (aarch64 i586 ppc64le s390x x86_64): gifsicle-1.95-bp155.3.6.1 References: https://www.suse.com/security/cve/CVE-2023-46009.html https://bugzilla.suse.com/1216403 . A critical security patch for Gifsicle is out, addressing vulnerabilities in openSUSE. Users must update immediately to safeguard their systems. gifsicle update, openSUSE security, important fix, software patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 29, 2024 Important OpenSUSE
89

Fedora 38 - Gifsicle 2024-4672c1ff2d Moderate: DoS, FP Exception

Update to 1.95. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-4672c1ff2d 2024-03-01 01:39:46.018133 -------------------------------------------------------------------------------- Name : gifsicle Product : Fedora 38 Version : 1.95 Release : 1.fc38 URL : http://www.lcdf.org/gifsicle/ Summary : Powerful program for manipulating GIF images and animations Description : Gifsicle is a command-line tool for creating, editing, and getting information about GIF images and animations. Some more gifsicle features: * Batch mode for changing GIFs in place. * Prints detailed information about GIFs, including comments. * Control over interlacing, comments, looping, transparency... * Creates well-behaved GIFs: removes redundant colors, only uses local color tables if it absolutely has to (local color tables waste space and can cause viewing artifacts), etc. * It can shrink colormaps and change images to use the Web-safe palette (or any colormap you choose). * It can optimize your animations! This stores only the changed portion of each frame, and can radically shrink your GIFs. You can also use transparency to make them even smaller. Gifsicle?s optimizer is pretty powerful, and usually reduces animations to within a couple bytes of the best commercial optimizers. * Unoptimizing animations, which makes them easier to edit. * A dumb-ass name. One other program is included with gifsicle and gifdiff compares two GIFs for identical visual appearance. -------------------------------------------------------------------------------- Update Information: Update to 1.95 -------------------------------------------------------------------------------- ChangeLog: * Wed Feb 21 2024 Orion Poplawski - 1.95-1 - Update to 1.95 CVE-2023-46009 (bz#2244935) CVE-2023-44821 (bz#2250064) * Wed Jan 24 2024 Fedora ReleaseEngineering - 1.94-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Fri Jan 19 2024 Fedora Release Engineering - 1.94-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Wed Jul 19 2023 Fedora Release Engineering - 1.94-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Sun Jul 16 2023 Orion Poplawski - 1.94-1 - Update to 1.94 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2244935 - CVE-2023-46009 gifsicle: floating point exception vulnerability via resize_stream at src/xform.c https://bugzilla.redhat.com/show_bug.cgi?id=2244935 [ 2 ] Bug #2250064 - CVE-2023-44821 gifsicle: denial of service in Gif_Realloc calls https://bugzilla.redhat.com/show_bug.cgi?id=2250064 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-4672c1ff2d' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Explore the latest updates from Fedora regarding gifsicle, addressing critical concerns such as adenial of service vulnerability and a potential floating point anomaly.. Fedora Update,Gifsicle Tool,Security Advisory,Fedora 38,Image Manipulation. . LinuxSecurity.com Team

Calendar 2 Mar 01, 2024 Fedora
89

Fedora 39: FEDORA-2024-5e50570506 Critical: gifsicle DoS Fix

Update to 1.95. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-5e50570506 2024-03-01 01:07:58.185664 -------------------------------------------------------------------------------- Name : gifsicle Product : Fedora 39 Version : 1.95 Release : 1.fc39 URL : http://www.lcdf.org/gifsicle/ Summary : Powerful program for manipulating GIF images and animations Description : Gifsicle is a command-line tool for creating, editing, and getting information about GIF images and animations. Some more gifsicle features: * Batch mode for changing GIFs in place. * Prints detailed information about GIFs, including comments. * Control over interlacing, comments, looping, transparency... * Creates well-behaved GIFs: removes redundant colors, only uses local color tables if it absolutely has to (local color tables waste space and can cause viewing artifacts), etc. * It can shrink colormaps and change images to use the Web-safe palette (or any colormap you choose). * It can optimize your animations! This stores only the changed portion of each frame, and can radically shrink your GIFs. You can also use transparency to make them even smaller. Gifsicle?s optimizer is pretty powerful, and usually reduces animations to within a couple bytes of the best commercial optimizers. * Unoptimizing animations, which makes them easier to edit. * A dumb-ass name. One other program is included with gifsicle and gifdiff compares two GIFs for identical visual appearance. -------------------------------------------------------------------------------- Update Information: Update to 1.95 -------------------------------------------------------------------------------- ChangeLog: * Wed Feb 21 2024 Orion Poplawski - 1.95-1 - Update to 1.95 CVE-2023-46009 (bz#2244935) CVE-2023-44821 (bz#2250064) * Wed Jan 24 2024 Fedora ReleaseEngineering - 1.94-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Fri Jan 19 2024 Fedora Release Engineering - 1.94-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2244935 - CVE-2023-46009 gifsicle: floating point exception vulnerability via resize_stream at src/xform.c https://bugzilla.redhat.com/show_bug.cgi?id=2244935 [ 2 ] Bug #2250064 - CVE-2023-44821 gifsicle: denial of service in Gif_Realloc calls https://bugzilla.redhat.com/show_bug.cgi?id=2250064 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-5e50570506' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The recent upgrade to gifsicle 1.95 for Fedora 39 brings essential patches addressing vulnerabilities associated with GIF processing.. Fedora 39 Update,gifsicle Security Fix,gifsicle DoS,GIF Optimizer. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 01, 2024 Critical Fedora
202

openSUSE: 2023:0160-1 Important: Gifsicle Heap Overflow Fix

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for gifsicle ______________________________________________________________________________ Announcement ID: openSUSE-SU-2023:0160-1 Rating: important References: #1212645 Cross-References: CVE-2023-36193 CVSS scores: CVE-2023-36193 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: openSUSE Backports SLE-15-SP4 openSUSE Backports SLE-15-SP5 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for gifsicle fixes the following issues: - Update to version 1.94: * Fix some bugs, including fix for CVE-2023-36193: heap buffer overflow (read) via the ambiguity_error component at /src/clp.c (boo#1212645). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP5: zypper in -t patch openSUSE-2023-160=1 - openSUSE Backports SLE-15-SP4: zypper in -t patch openSUSE-2023-160=1 Package List: - openSUSE Backports SLE-15-SP5 (aarch64 i586 ppc64le s390x x86_64): gifsicle-1.94-bp155.3.3.1 gifsicle-debuginfo-1.94-bp155.3.3.1 gifsicle-debugsource-1.94-bp155.3.3.1 - openSUSE Backports SLE-15-SP4 (aarch64 i586 ppc64le s390x x86_64): gifsicle-1.94-bp154.2.3.1 References: https://www.suse.com/security/cve/CVE-2023-36193.html https://bugzilla.suse.com/1212645 . Security Advisory: gifsicle vulnerability CVE-2023-36193 has been promptly addressed. Crucial patch now accessible for openSUSE Backports users.. gifsicle update, openSUSE security, buffer overflow fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 29, 2023 Important OpenSUSE
89

Fedora 33: 2021-b349650e52 Critical: Gifsicle NULL Pointer Fix

Update to 1.93, fixes CVE-2020-19752. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-b349650e52 2021-09-23 19:28:47.072019 --------------------------------------------------------------------------------Name : gifsicle Product : Fedora 33 Version : 1.93 Release : 1.fc33 URL : http://www.lcdf.org/gifsicle/ Summary : Powerful program for manipulating GIF images and animations Description : Gifsicle is a command-line tool for creating, editing, and getting information about GIF images and animations. Some more gifsicle features: * Batch mode for changing GIFs in place. * Prints detailed information about GIFs, including comments. * Control over interlacing, comments, looping, transparency... * Creates well-behaved GIFs: removes redundant colors, only uses local color tables if it absolutely has to (local color tables waste space and can cause viewing artifacts), etc. * It can shrink colormaps and change images to use the Web-safe palette (or any colormap you choose). * It can optimize your animations! This stores only the changed portion of each frame, and can radically shrink your GIFs. You can also use transparency to make them even smaller. Gifsicle?s optimizer is pretty powerful, and usually reduces animations to within a couple bytes of the best commercial optimizers. * Unoptimizing animations, which makes them easier to edit. * A dumb-ass name. One other program is included with gifsicle and gifdiff compares two GIFs for identical visual appearance. --------------------------------------------------------------------------------Update Information: Update to 1.93, fixes CVE-2020-19752 --------------------------------------------------------------------------------ChangeLog: * Thu Jul 1 2021 Orion Poplawski - 1.93-1 - Update to 1.93 * Tue Jan 26 2021 Fedora Release Engineering -1.92-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2004042 - CVE-2020-19752 gifsicle: NULL pointer dereference in find_color_or_error function https://bugzilla.redhat.com/show_bug.cgi?id=2004042 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-b349650e52' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Attention users! A new update for Fedora is now available; it upgrades gifsicle to version 1.93, which fixes a serious NULL pointer flaw to improve overall system reliability.. gifsicle update,Fedora software,security patch,software vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 23, 2021 Critical Fedora
89

Fedora 34: 2021-c351011066 Moderate: Gifsicle NULL Pointer Issue

Update to 1.93, fixes CVE-2020-19752. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-c351011066 2021-09-23 19:25:44.307972 --------------------------------------------------------------------------------Name : gifsicle Product : Fedora 34 Version : 1.93 Release : 1.fc34 URL : http://www.lcdf.org/gifsicle/ Summary : Powerful program for manipulating GIF images and animations Description : Gifsicle is a command-line tool for creating, editing, and getting information about GIF images and animations. Some more gifsicle features: * Batch mode for changing GIFs in place. * Prints detailed information about GIFs, including comments. * Control over interlacing, comments, looping, transparency... * Creates well-behaved GIFs: removes redundant colors, only uses local color tables if it absolutely has to (local color tables waste space and can cause viewing artifacts), etc. * It can shrink colormaps and change images to use the Web-safe palette (or any colormap you choose). * It can optimize your animations! This stores only the changed portion of each frame, and can radically shrink your GIFs. You can also use transparency to make them even smaller. Gifsicle?s optimizer is pretty powerful, and usually reduces animations to within a couple bytes of the best commercial optimizers. * Unoptimizing animations, which makes them easier to edit. * A dumb-ass name. One other program is included with gifsicle and gifdiff compares two GIFs for identical visual appearance. --------------------------------------------------------------------------------Update Information: Update to 1.93, fixes CVE-2020-19752 --------------------------------------------------------------------------------ChangeLog: * Thu Jul 1 2021 Orion Poplawski - 1.93-1 - Update to1.93 --------------------------------------------------------------------------------References: [ 1 ] Bug #2004042 - CVE-2020-19752 gifsicle: NULL pointer dereference in find_color_or_error function https://bugzilla.redhat.com/show_bug.cgi?id=2004042 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-c351011066' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . The latest Fedora 34 release resolves problems with Gifsicle by fixing a NULL pointer error and improving overall performance.. Fedora Gifsicle Update, GIF Manipulation Tool, Security Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Sep 23, 2021 Important Fedora
203

Mageia 8 MGASA-2021-0437 Medium: Gifsicle Resize Vulnerability

Fixes a security vulnerability on certain resize operations with '--resize-method=box'. References: - https://bugs.mageia.org/show_bug.cgi?id=29458 . MGASA-2021-0437 - Updated gifsicle packages fix security vulnerability Publication date: 23 Sep 2021 URL: https://advisories.mageia.org/MGASA-2021-0437.html Type: security Affected Mageia releases: 8 Fixes a security vulnerability on certain resize operations with '--resize-method=box'. References: - https://bugs.mageia.org/show_bug.cgi?id=29458 - - http://www.lcdf.org/gifsicle/changes.html SRPMS: - 8/core/gifsicle-1.93-1.mga8 . Mageia 2021-0452 addresses a moderate severity vulnerability within pngcrush image transformation functions. For further information, continue reading.. Mageia Gifsicle Update, Security Fix, Resize Issue. . Severity: Medium. LinuxSecurity.com Team

Calendar 2 Sep 23, 2021 Medium Mageia
202

openSUSE Security Announcement: 2021:1249-1 Addresses Gifsicle Resize Bug

An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for gifsicle ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:1249-1 Rating: moderate References: Affected Products: openSUSE Leap 15.2 openSUSE Backports SLE-15-SP3 openSUSE Backports SLE-15-SP2 openSUSE Backports SLE-15-SP1 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for gifsicle fixes the following issues: Update to version 1.93: * Fix security bug on certain resize operations with `--resize-method=box` * Fix problems with colormapless GIFs. Update to version 1.92 * Add `--lossy` option from Kornel Lipi??ski. * Remove an assertion failure possible with `--conserve-memory` + `--colors` + `--careful`. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2021-1249=1 - openSUSE Backports SLE-15-SP3: zypper in -t patch openSUSE-2021-1249=1 - openSUSE Backports SLE-15-SP2: zypper in -t patch openSUSE-2021-1249=1 - openSUSE Backports SLE-15-SP1: zypper in -t patch openSUSE-2021-1249=1 Package List: - openSUSE Leap 15.2 (x86_64): gifsicle-1.93-lp152.5.3.1 gifsicle-debuginfo-1.93-lp152.5.3.1 gifsicle-debugsource-1.93-lp152.5.3.1 - openSUSE Backports SLE-15-SP3 (aarch64 i586 ppc64le s390x x86_64): gifsicle-1.93-bp153.2.3.1 gifsicle-debuginfo-1.93-bp153.2.3.1 gifsicle-debugsource-1.93-bp153.2.3.1 - openSUSE Backports SLE-15-SP2 (aarch64 ppc64le s390x x86_64): gifsicle-1.93-bp152.4.3.1 gifsicle-debuginfo-1.93-bp152.4.3.1 gifsicle-debugsource-1.93-bp152.4.3.1 - openSUSE Backports SLE-15-SP1 (aarch64 ppc64le s390x x86_64): gifsicle-1.93-bp151.4.3.1 References: . Update on gifsicle tackling resize vulnerabilities in openSUSE platforms; setup instructions provided.. openSUSE Update,gifsicle Security,Software Patch,Risk Management. . LinuxSecurity.com Team

Calendar 2 Sep 13, 2021 OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here