Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
202

openSUSE Leap 15.4: 2023-0322-1 Important Apache2 Security Fixes

An update that fixes three vulnerabilities is now available.. SUSE Security Update: Security update for apache2 ______________________________________________________________________________ Announcement ID: SUSE-SU-2023:0322-1 Rating: important References: #1207247 #1207250 #1207251 Cross-References: CVE-2006-20001 CVE-2022-36760 CVE-2022-37436 CVSS scores: CVE-2006-20001 (NVD) : 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2006-20001 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2022-36760 (NVD) : 9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H CVE-2022-36760 (SUSE): 6.5 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:L CVE-2022-37436 (NVD) : 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-37436 (SUSE): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N Affected Products: SUSE Linux Enterprise Desktop 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Module for Basesystem 15-SP4 SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP4 SUSE Linux Enterprise Module for Server Applications 15-SP4 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap 15.4 ______________________________________________________________________________ An update that fixes three vulnerabilities is now available. Description: This update for apache2 fixes the following issues: - CVE-2022-37436: Fixed an issue in mod_proxy where a malicious backend could cause the response headers to be truncated early, resulting in someheaders being incorporated into the response body (bsc#1207251). - CVE-2022-36760: Fixed an issue in mod_proxy_ajp that could allow request smuggling attacks (bsc#1207250). - CVE-2006-20001: Fixed an issue in mod_proxy_ajp where a request header could cause memory corruption (bsc#1207247). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2023-322=1 - SUSE Linux Enterprise Module for Server Applications 15-SP4: zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP4-2023-322=1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP4: zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2023-322=1 - SUSE Linux Enterprise Module for Basesystem 15-SP4: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2023-322=1 Package List: - openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64): apache2-2.4.51-150400.6.6.1 apache2-debuginfo-2.4.51-150400.6.6.1 apache2-debugsource-2.4.51-150400.6.6.1 apache2-devel-2.4.51-150400.6.6.1 apache2-event-2.4.51-150400.6.6.1 apache2-event-debuginfo-2.4.51-150400.6.6.1 apache2-example-pages-2.4.51-150400.6.6.1 apache2-prefork-2.4.51-150400.6.6.1 apache2-prefork-debuginfo-2.4.51-150400.6.6.1 apache2-utils-2.4.51-150400.6.6.1 apache2-utils-debuginfo-2.4.51-150400.6.6.1 apache2-worker-2.4.51-150400.6.6.1 apache2-worker-debuginfo-2.4.51-150400.6.6.1 - openSUSE Leap 15.4 (noarch): apache2-doc-2.4.51-150400.6.6.1 - SUSE Linux Enterprise Module for Server Applications 15-SP4 (aarch64 ppc64le s390x x86_64): apache2-debuginfo-2.4.51-150400.6.6.1 apache2-debugsource-2.4.51-150400.6.6.1 apache2-devel-2.4.51-150400.6.6.1 apache2-worker-2.4.51-150400.6.6.1 apache2-worker-debuginfo-2.4.51-150400.6.6.1 - SUSE Linux Enterprise Module for Server Applications 15-SP4 (noarch): apache2-doc-2.4.51-150400.6.6.1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP4 (aarch64 ppc64le s390x x86_64): apache2-debuginfo-2.4.51-150400.6.6.1 apache2-debugsource-2.4.51-150400.6.6.1 apache2-event-2.4.51-150400.6.6.1 apache2-event-debuginfo-2.4.51-150400.6.6.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (aarch64 ppc64le s390x x86_64): apache2-2.4.51-150400.6.6.1 apache2-debuginfo-2.4.51-150400.6.6.1 apache2-debugsource-2.4.51-150400.6.6.1 apache2-prefork-2.4.51-150400.6.6.1 apache2-prefork-debuginfo-2.4.51-150400.6.6.1 apache2-utils-2.4.51-150400.6.6.1 apache2-utils-debuginfo-2.4.51-150400.6.6.1 References: https://www.suse.com/security/cve/CVE-2006-20001.html https://www.suse.com/security/cve/CVE-2022-36760.html https://www.suse.com/security/cve/CVE-2022-37436.html https://bugzilla.suse.com/1207247 https://bugzilla.suse.com/1207250 https://bugzilla.suse.com/1207251 . Resolution for three security flaws in Apache2 via this critical SUSE patch. Safeguard your systems efficiently.. SUSE Linux, Apache2 Update, Security Advisory, Vulnerability Fix, Package Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 09, 2023 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here