Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
87

Debian: DSA-2022-1 Moderate: MediaWiki Remote Disclosure Threat

Several vulnerabilities have been discovered in mediawiki, a web-based wiki engine. The following issues have been identified: Insufficient input sanitization in the CSS validation code allows editors . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - -------------------------------------------------------------------------- Debian Security Advisory DSA-2022-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Nico Golde March 23th, 2010 http://www.debian.org/security/faq - -------------------------------------------------------------------------- Package : mediawiki Vulnerability : several Problem type : remote Debian-specific: no Debian bug : none CVE ID : none assigned yet Several vulnerabilities have been discovered in mediawiki, a web-based wiki engine. The following issues have been identified: Insufficient input sanitization in the CSS validation code allows editorsto display external images in wiki pages. This can be a privacy concern on public wikis as it allows attackers to gather IP addresses and other information by linking these images to a web server under their control. Insufficient permission checks have been found in thump.php which can lead to disclosure of image files that are restricted to certain users(e.g. with img_auth.php). For the stable distribution (lenny), this problem has been fixed in version 1.12.0-2lenny4. For the testing distribution (squeeze), this problem has been fixed in version 1:1.15.2-1. For the unstable distribution (sid), this problem has been fixed in version 1:1.15.2-1. Upgrade instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by addingthe resources from the footer to the proper configuration. Debian GNU/Linux 5.0 alias lenny - -------------------------------- Debian (stable) - --------------- Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 1549 cdd8466f627db0d230059bea9dc3bffa Size/MD5 checksum: 7188806 117a1360f440883a51f0ebca32906ea0 Size/MD5 checksum: 61443 fe024a07a1555b8aa813183b98de41da Architecture independent packages: Size/MD5 checksum: 7231304 ec3604e69ac212e506df83c93e8fec14 alpha architecture (DEC Alpha) Size/MD5 checksum: 49794 92ea80eb2c975d2fa01e48385467eacd amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 156990 4a889dd13d45f38b3594a2dd47e9b59e arm architecture (ARM) Size/MD5 checksum: 49258 93033e2a83ec4436b07648a20f53ff60 armel architecture (ARM EABI) Size/MD5 checksum: 49226 2814b384dc142da907fa80ac1af1d32a hppa architecture (HP PA RISC) Size/MD5 checksum: 49774 29bfc18a66159684703604a192bc654a i386 architecture (Intel ia32) Size/MD5 checksum: 138776 109b418d062e4b954b98386ac36240d7 ia64 architecture (Intel ia64) Size/MD5 checksum: 49762 4eabbe35adb52e9b3c27ac3cebac3126 mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 49772 243c3c339a86ea1bbca7fa58192fd364 powerpc architecture (PowerPC) Size/MD5 checksum: 162814 82c66b11b70c174cc3b08e36cb4430be s390 architecture (IBM S/390) Size/MD5 checksum: 49246 7ffe72a079284372ae24c49e55b6170b sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 158134 d96cefd805d0ced4b6477c244ebf2e06 These files will probably be moved into the stable distribution on its next update. - --------------------------------------------------------------------------------- For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list:This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . The Debian Security Notice DSA-2022-1 outlines multiple vulnerabilities in mediawiki that could affect the confidentiality and safety of user information.. MediaWiki Threats, Debian Security Update, Input Sanitization Issues. . LinuxSecurity.com Team

Calendar 2 Mar 23, 2010 Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here