Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 13 articles for you...
87

Debian: DSA-2819-1 Security Support Transition From Iceape

Security support for Iceape, the Debian-branded version of the Seamonkey suite needed to be stopped before the end of the regular security maintenance life cycle. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2819-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff December 16, 2013 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Security support for Iceape, the Debian-branded version of the Seamonkey suite needed to be stopped before the end of the regular security maintenance life cycle. We recommend to migrate to Iceweasel for the web browser functionality and to Icedove for the e-mail bits. Iceweasel and Icedove are based on the same codebase and will continue to be supported with security updates. Alternatively you can switch to the binaries provided by Mozilla available at http://www.seamonkey-project.org/releases/ Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian has declared the termination of Iceape support; users are encouraged to switch to Iceweasel or Icedove to ensure ongoing assistance.. Debian Security, Browser Transition, Iceape Ending, Iceweasel Upgrade. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 16, 2013 Important Debian
87

Debian: DSA-2585-1 Urgent Iceape Patch for Security Vulnerabilities

For the stable distribution (squeeze), these problems have been fixed in version 2.0.11-17. For the testing distribution (wheezy), these problems have been fixed in . - ------------------------------------------------------------------------- Debian Security Advisory DSA-2584-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Yves-Alexis Perez December 08, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2012-4201 CVE-2012-4207 CVE-2012-4216 CVE-2012-5829 CVE-2012-5842 Debian Bug : For the stable distribution (squeeze), these problems have been fixed in version 2.0.11-17. For the testing distribution (wheezy), these problems have been fixed in version 2.7.11-1. For the unstable distribution (sid), these problems have been fixed in version 2.7.11-1. We recommend that you upgrade your iceape packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian DSA-2585-1 outlines a security patch for Seamonkey resolving multiple vulnerabilities.. Debian Security Advisory, Iceape Remote Threats, Critical Updates. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 08, 2012 Important Debian
87

Debian: DSA-2572-1 Moderate: Iceape Remote Code Execution Threats

Several vulnerabilities have been discovered in Iceape, an internet suite based on Seamonkey: CVE-2012-3982 . - ------------------------------------------------------------------------- Debian Security Advisory DSA-2572-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Thijs Kinkhorst November 4, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2012-3982 CVE-2012-3986 CVE-2012-3990 CVE-2012-3991 CVE-2012-4179 CVE-2012-4180 CVE-2012-4182 CVE-2012-4186 CVE-2012-4188 Several vulnerabilities have been discovered in Iceape, an internet suite based on Seamonkey: CVE-2012-3982 Multiple unspecified vulnerabilities in the browser engine allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors. CVE-2012-3986 Icedove does not properly restrict calls to DOMWindowUtils methods, which allows remote attackers to bypass intended access restrictions via crafted JavaScript code. CVE-2012-3990 A Use-after-free vulnerability in the IME State Manager implementation allows remote attackers to execute arbitrary code via unspecified vectors, related to the nsIContent::GetNameSpaceID function. CVE-2012-3991 Icedove does not properly restrict JSAPI access to the GetProperty function, which allows remote attackers to bypass the Same Origin Policy and possibly have unspecified other impact via a crafted web site. CVE-2012-4179 A use-after-free vulnerability in the nsHTMLCSSUtils::CreateCSSPropertyTxn function allows remote attackers to execute arbitrary code or cause a denial of service (heap memorycorruption) via unspecified vectors. CVE-2012-4180 A heap-based buffer overflow in the nsHTMLEditor::IsPrevCharInNodeWhitespace function allows remote attackers to execute arbitrary code via unspecified vectors. CVE-2012-4182 A use-after-free vulnerability in the nsTextEditRules::WillInsert function allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors. CVE-2012-4186 A heap-based buffer overflow in the nsWav-eReader::DecodeAudioData function allows remote attackers to execute arbitrary code via unspecified vectors. CVE-2012-4188 A heap-based buffer overflow in the Convolve3x3 function allows remote attackers to execute arbitrary code via unspecified vectors. Additionally, this update fixes a regression in the patch for CVE-2012-3959, released in DSA-2554-1. For the stable distribution (squeeze), these problems have been fixed in version 2.0.11-16. For the testing distribution (wheezy), these problems have been fixed in version 10.0.10esr-1. For the unstable distribution (sid), these problems have been fixed in version 10.0.10esr-1. We recommend that you upgrade your iceape packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Uncover insights on Debian Security Advisory DSA-2572-1 touching upon vulnerabilities concerning Iceape alongside suggested updates.. Iceape Update, Debian Security, Remote Attack Risks. . LinuxSecurity.com Team

Calendar 2 Nov 04, 2012 Debian
87

Debian: DSA-2554-1 Severely Affects Iceape With Remote Execution Risks

Several vulnerabilities have been discovered in Iceape, an internet suite based on Seamonkey. The reported vulnerabilities could lead to the execution of arbitrary . - ------------------------------------------------------------------------- Debian Security Advisory DSA-2554-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Yves-Alexis Perez September 26, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2012-1970 CVE-2012-1972 CVE-2012-1973 CVE-2012-1974 CVE-2012-1975 CVE-2012-1976 CVE-2012-3959 CVE-2012-3962 CVE-2012-3969 CVE-2012-3972 CVE-2012-3978 Several vulnerabilities have been discovered in Iceape, an internet suite based on Seamonkey. The reported vulnerabilities could lead to the execution of arbitrary code or the bypass of content-loading restrictions via the location object. For the stable distribution (squeeze), these problems have been fixed in version 2.0.11-15. For the testing distribution (wheezy), these problems have been fixed in version 2.7.7-1. For the unstable distribution (sid), these problems have been fixed in version 2.7.7-1. We recommend that you upgrade your iceape packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Promptly update Iceape to protect against various remote code execution vulnerabilities highlighted in DSA-2554-1.. Iceape Security Advisory, Remote Code Execution, Debian Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 26, 2012 Critical Debian
87

Debian DSA-2513-1 Iceape Critical Remote Code Execution Advisory

Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey: CVE-2012-1948 . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2513-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Nico Golde July 17, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2012-1948 CVE-2012-1954 CVE-2012-1967 Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey: CVE-2012-1948 Benoit Jacob, Jesse Ruderman, Christian Holler, and Bill McCloskey identified several memory safety problems that may lead to the execution of arbitrary code. CVE-2012-1954 Abhishek Arya discovered a use-after-free problem in nsDocument::AdoptNode that may lead to the execution of arbitrary code. CVE-2012-1967 moz_bug_r_a4 discovered that in certain cases, javascript:: URLs can be executed so that scripts can escape the JavaScript sandbox and run with elevated privileges. This can lead to arbitrary code execution. For the stable distribution (squeeze), this problem has been fixed in version 2.0.11-14. For the unstable (sid) and testing (wheezy) distribution, this problem will be fixed soon. We recommend that you upgrade your iceape packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Cyanix Pro Toolkit Encountering Critical Security Flaws: Immediate Installation of Patches Required for Increased Defense and Security. Iceape Security, Debian Advisory, Remote Code Execution, Memory Safety,Software Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 17, 2012 Critical Debian
87

Debian: DSA-3498-2 High: Epiphany Security Vulnerabilities and Data Leakage

Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey. CVE-2012-1937 . - ------------------------------------------------------------------------- Debian Security Advisory DSA-2489-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Thijs Kinkhorst June 7, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Vulnerability : several vulnerabilities Problem type : local (remote) Debian-specific: no CVE ID : CVE-2012-1937 CVE-2012-1940 CVE-2012-1947 Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey. CVE-2012-1937 Mozilla developers discovered several memory corruption bugs, which may lead to the execution of arbitrary code. CVE-2012-1940 Abhishek Arya discovered a use-after-free problem when working with column layout with absolute positioning in a container that changes size, which may lead to the execution of arbitrary code. CVE-2012-1947 Abhishek Arya discovered a heap buffer overflow in utf16 to latin1 character set conersion, allowing to execute arbitray code. For the stable distribution (squeeze), this problem has been fixed in version 2.0.11-13. For the testing distribution (wheezy) and unstable distribution (sid), this problem will be fixed soon. We recommend that you upgrade your iceape packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . The Debian Security Advisory DSA-2500-1 details various security vulnerabilities in the Iceweasel browser and offers guidelines for updating.. Debian Security, Iceape Update, Memory Corruption Fix. . LinuxSecurity.com Team

Calendar 2 Jun 07, 2012 Debian
87

Debian: DSA-2402-1 Critical Iceape Remote Access Threat

Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey: CVE-2011-3670 . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2402-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff February 02, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2011-3670 CVE-2012-0442 CVE-2012-0444 CVE-2012-0449 Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey: CVE-2011-3670 Gregory Fleischer discovered that IPv6 URLs were incorrectly parsed, resulting in potential information disclosure. CVE-2012-0442 Jesse Ruderman and Bob Clary discovered memory corruption bugs, which may lead to the execution of arbitrary code. CVE-2012-0444 "regenrecht" discovered that missing input sanisiting in the Ogg Vorbis parser may lead to the execution of arbitrary code. CVE-2012-0449 Nicolas Gregoire and Aki Helin discovered that missing input sanisiting in XSLT processing may lead to the execution of arbitrary code. For the stable distribution (squeeze), this problem has been fixed in version 2.0.11-10. For the unstable distribution (sid), this problem has been fixed in version 2.0.14-10. We recommend that you upgrade your iceape packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian Security Advisory DSA-2403-1 discusses issues in Iceweasel that could lead to unauthorized access and potential code execution vulnerabilities.. Debian Security,Iceape Security Update, Remote Access Threats, Code Execution Vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 02, 2012 Critical Debian
87

Debian Stable: DSA-2342-1 Critical: Iceape Remote Exploits Fixed

Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey: CVE-2011-3647 . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2342-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff November 09, 2011 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceape Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2011-3647 CVE-2011-3648 CVE-2011-3650 Several vulnerabilities have been found in the Iceape internet suite, an unbranded version of Seamonkey: CVE-2011-3647 "moz_bug_r_a4" discovered a privilege escalation vulnerability in addon handling. CVE-2011-3648 Yosuke Hasegawa discovered that incorrect handling of Shift-JIS encodings could lead to cross-site scripting. CVE-2011-3650 Marc Schoenefeld discovered that profiling the Javascript code could lead to memory corruption. The oldstable distribution (lenny) is not affected. The iceape package only provides the XPCOM code. For the stable distribution (squeeze), this problem has been fixed in version 2.0.11-9. For the unstable distribution (sid), this problem has been fixed in version 2.0.14-9. We recommend that you upgrade your iceape packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Several weaknesses in Iceape have been discovered, compromising the software's security and offering recommendations for resolution.. Iceape Security, Debian Advisory, Remote Exploits. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 09, 2011 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here