Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 40: FEDORA-2024-129d8ca6fc High: Gnulib Type Confusion Threat

Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-129d8ca6fc 2024-03-07 22:24:39.963937 -------------------------------------------------------------------------------- Name : gnulib Product : Fedora 40 Version : 0 Release : 50.20230709git.fc40 URL : Summary : GNU Portability Library Description : The GNU portability library is a macro system and C declarations and definitions for commonly-used API elements and abstracted system behaviors. It can be used to improve portability and other functionality in your programs. -------------------------------------------------------------------------------- Update Information: Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires Automatic update for lucene-9.9.2-1.fc40. bump java source/target to 1.8, fixes 2266639 -------------------------------------------------------------------------------- ChangeLog: -------------------------------------------------------------------------------- References: [ 1 ] Bug #2123726 - consoleImageViewer crashes at start https://bugzilla.redhat.com/show_bug.cgi?id=2123726 [ 2 ] Bug #2261062 - directory-maven-plugin: FTBFS in Fedora rawhide/f40 https://bugzilla.redhat.com/show_bug.cgi?id=2261062 [ 3 ] Bug #2266639 - directory-maven-plugin fails to build with java-21-openjdk https://bugzilla.redhat.com/show_bug.cgi?id=2266639 [ 4 ] Bug #2266934 - CVE-2024-1938 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266934 [ 5 ] Bug #2266937 - CVE-2024-1939 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266937 [ 6 ] Bug #2267486 - Include Java 21 as system Java Change in Fedora 40 Beta https://bugzilla.redhat.com/show_bug.cgi?id=2267486 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-129d8ca6fc' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The latest Fedora update, FEDORA-2024-129d8ca6fc, addresses key type confusion vulnerabilities in Gnulib and Java, enhancing system security and stability.. Fedora Update,Gnulib,Type Confusion,Java 21,Security Release. . LinuxSecurity.com Team

Calendar 2 Mar 07, 2024 Fedora
89

Fedora 31: FEDORA-2020-663f619e9c Critical: gnulib Heap Overflow

Security fix for [CVE-2018-17942] - Update on 2020-01-07 - CVE-2018-17942. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-663f619e9c 2020-01-17 05:04:53.759076 --------------------------------------------------------------------------------Name : gnulib Product : Fedora 31 Version : 0 Release : 31.20200107git.fc31 URL : Summary : GNU Portability Library Description : The GNU portability library is a macro system and C declarations and definitions for commonly-used API elements and abstracted system behaviors. It can be used to improve portability and other functionality in your programs. --------------------------------------------------------------------------------Update Information: Security fix for [CVE-2018-17942] - Update on 2020-01-07 - CVE-2018-17942 --------------------------------------------------------------------------------ChangeLog: * Tue Jan 7 2020 Mosaab Alzoubi - 0-31.20200107git - Update on 2020-01-07 - CVE-2018-17942 --------------------------------------------------------------------------------References: [ 1 ] Bug #1635897 - CVE-2018-17942 gnulib: heap-based buffer overflow in convert_to_decimal function in vasnprintf.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1635897 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-663f619e9c' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailinglist -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . A patch was released for GNULIB in Fedora that resolves a critical heap overflow vulnerability as of 2020-01-07.. Fedora Security Advisory, GNULIB Update, Heap Overflow Fix, Fedora 31. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 17, 2020 Critical Fedora
89

Fedora 30: FEDORA-2020-acac61cfd0 severe: gnulib buffer overflow

Security fix for [CVE-2018-17942] - Update on 2020-01-07 - CVE-2018-17942. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-acac61cfd0 2020-01-16 22:29:29.725248 --------------------------------------------------------------------------------Name : gnulib Product : Fedora 30 Version : 0 Release : 31.20200107git.fc30 URL : Summary : GNU Portability Library Description : The GNU portability library is a macro system and C declarations and definitions for commonly-used API elements and abstracted system behaviors. It can be used to improve portability and other functionality in your programs. --------------------------------------------------------------------------------Update Information: Security fix for [CVE-2018-17942] - Update on 2020-01-07 - CVE-2018-17942 --------------------------------------------------------------------------------ChangeLog: * Tue Jan 7 2020 Mosaab Alzoubi - 0-31.20200107git - Update on 2020-01-07 - CVE-2018-17942 * Thu Jul 25 2019 Fedora Release Engineering - 0-30.20180720git - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Thu Mar 7 2019 Tim Landscheidt - 0-29.20180720git.fc30 - Remove obsolete requirements for post/preun scriptlets --------------------------------------------------------------------------------References: [ 1 ] Bug #1635897 - CVE-2018-17942 gnulib: heap-based buffer overflow in convert_to_decimal function in vasnprintf.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1635897 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-acac61cfd0' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More detailson the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . A crucial security advisory for Fedora 30 on January 7, 2020, warned of a buffer overflow vulnerability. Users must act quickly to secure their systems.. Fedora 30, gnulib, security patch, buffer overflow, software update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 16, 2020 Critical Fedora
197

Debian 8 Jessie: DLA-1543-1 Critical Gnulib Buffer Overflow

Ben Pfaff discovered that the convert_to_decimal function in the GNU Portability Library contains a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing. . Package : gnulib Version : 20140202+stable-2+deb8u1 CVE ID : CVE-2018-17942 Debian Bug : 910757 Ben Pfaff discovered that the convert_to_decimal function in the GNU Portability Library contains a heap-based buffer overflow because memory is not allocated for a trailing '\0' character during %f processing. For Debian 8 "Jessie", this problem has been fixed in version 20140202+stable-2+deb8u1. We recommend that you upgrade your gnulib packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance gnulib to rectify heap overflow vulnerability within convert_to_decimal function—significant security flaw addressed in Debian LTS.. Gnulib Update, Buffer Overflow Fix, Debian LTS, Security Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 11, 2018 Critical Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here