Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
KDE Connect could allow authentication of impersonated devices.. ========================================================================== Ubuntu Security Notice USN-7905-1 December 03, 2025 kdeconnect vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.10 Summary: KDE Connect could allow authentication of impersonated devices. Software Description: - kdeconnect: connect smartphones to your desktop devices Details: It was discovered that KDE Connect incorrectly handled device IDs. An attacker could possibly use this issue to bypass authentication and connect an unpaired device. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 25.10 kdeconnect 25.08.1-0ubuntu2.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7905-1 CVE-2025-66270 Package Information: https://launchpad.net/ubuntu/+source/kdeconnect/25.08.1-0ubuntu2.1 . KDE Connect vulnerability in Ubuntu allows impersonated device authentication, a security issue requiring immediate updates.. KDE Connect security, Ubuntu security update, authentication bypass. . Severity: Important. LinuxSecurity.com Team
It was discovered that missing validation of the device ID during handshakes in KDE Connect, a tool to integrate smart phones to a desktop, could allow an attacker to impersonate another device. The oldstable distribution (bookworm) is not affected. For the stable distribution (trixie), this problem has been fixed in. - ------------------------------------------------------------------------- Debian Security Advisory DSA-6066-1
* bsc#1243747 Cross-References: * CVE-2025-48057 . # Security update for icinga2 Announcement ID: SUSE-SU-2025:02783-1 Release Date: 2025-08-13T08:53:45Z Rating: important References: * bsc#1243747 Cross-References: * CVE-2025-48057 CVSS scores: * CVE-2025-48057 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L * CVE-2025-48057 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-48057 ( NVD ): 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * HPC Module 12 * SUSE Linux Enterprise High Performance Computing 12 SP2 * SUSE Linux Enterprise High Performance Computing 12 SP3 * SUSE Linux Enterprise High Performance Computing 12 SP4 * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP2 * SUSE Linux Enterprise Server 12 SP3 * SUSE Linux Enterprise Server 12 SP4 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 SP2 * SUSE Linux Enterprise Server for SAP Applications 12 SP3 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for icinga2 fixes the following issues: * CVE-2025-48057: A certificate incorrectly treated as valid can allow an attacker to impersonate a trusted node (bsc#1243747). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * HPC Module 12 zypper in -t patch SUSE-SLE-Module-HPC-12-2025-2783=1 ## Package List: * HPC Module 12 (aarch64 x86_64) * icinga2-libs-2.8.2-3.11.2 * icinga2-ido-mysql-debuginfo-2.8.2-3.11.2 * icinga2-common-2.8.2-3.11.2 * icinga2-bin-debuginfo-2.8.2-3.11.2 * icinga2-debugsource-2.8.2-3.11.2 * icinga2-libs-debuginfo-2.8.2-3.11.2 * icinga2-doc-2.8.2-3.11.2 * icinga2-bin-2.8.2-3.11.2 * icinga2-ido-pgsql-debuginfo-2.8.2-3.11.2 * icinga2-ido-pgsql-2.8.2-3.11.2 * vim-icinga2-2.8.2-3.11.2 * icinga2-2.8.2-3.11.2 * icinga2-ido-mysql-2.8.2-3.11.2 ## References: * https://www.suse.com/security/cve/CVE-2025-48057.html * https://bugzilla.suse.com/show_bug.cgi?id=1243747 . SUSE unveiled a crucial patch for icinga2 to mitigate CVE-2025-48058, reinforcing defenses against spoofing vulnerabilities.. Icinga2 Update,SUSE Important Patch,CVE-2025-48057,SUSE Security Fix,Impersonation Vulnerability. . Severity: Important. LinuxSecurity.com Team
Important: kernel security and bug fix update. {"type": "TYPE_SECURITY", "shortCode": "RX", "name": "RXSA-2024:4211", "synopsis": "Important: kernel security and bug fix update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for kernel.\nThis update affects Rocky Linux SIG Cloud 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The kernel packages contain the Linux kernel, the core of any Linux operating system.\n\nSecurity Fix(es):\n\n* kernel: Bluetooth BR/EDR PIN Pairing procedure is vulnerable to an impersonation attack (CVE-2020-26555)\n\n* kernel: TCP-spoofed ghost ACKs and leak leak initial sequence number (CVE-2023-52881,RHV-2024-1001)\n\n* kernel: ovl: fix leaked entry (CVE-2021-46972)\n\n* kernel: platform/x86: dell-smbios-wmi: Fix oops on rmmod dell_smbios (CVE-2021-47073)\n\n* kernel: gro: fix ownership transfer (CVE-2024-35890)\n\n* kernel: tls: (CVE-2024-26584, CVE-2024-26583, CVE-2024-26585)\n\n* kernel: wifi: (CVE-2024-35789, CVE-2024-27410, CVE-2024-35838, CVE-2024-35845)\n\n* kernel: mlxsw: (CVE-2024-35855, CVE-2024-35854, CVE-2024-35853, CVE-2024-35852, CVE-2024-36007)\n\n* kernel: PCI interrupt mapping cause oops [rhel-8] (CVE-2021-46909)\n\n* kernel: ipc/mqueue, msg, sem: avoid relying on a stack reference past its expiry (CVE-2021-47069)\n\n* kernel: hwrng: core - Fix page fault dead lock on mmap-ed hwrng [rhel-8] (CVE-2023-52615)\n\n* kernel: net/mlx5e: (CVE-2023-52626, CVE-2024-35835, CVE-2023-52667, CVE-2024-35959)\n\n* kernel: drm/amdgpu: use-after-free vulnerability (CVE-2024-26656)\n\n* kernel: Bluetooth: Avoid potential use-after-free in hci_error_reset [rhel-8] (CVE-2024-26801)\n\n* kernel: Squashfs: check the inode number is not the invalid value of zero (CVE-2024-26982)\n\n* kernel: netfilter: nf_tables: use timestamp to check for set element timeout [rhel-8.10] (CVE-2024-27397)\n\n* kernel: mm/damon/vaddr-test: memory leak indamon_do_test_apply_three_regions() (CVE-2023-52560)\n\n* kernel: ppp_async: limit MRU to 64K (CVE-2024-26675)\n\n* kernel: x86/mm/swap: (CVE-2024-26759, CVE-2024-26906)\n\n* kernel: tipc: fix kernel warning when sending SYN message [rhel-8] (CVE-2023-52700)\n\n* kernel: RDMA/mlx5: Fix fortify source warning while accessing Eth segment (CVE-2024-26907)\n\n* kernel: erspan: make sure erspan_base_hdr is present in skb-> head (CVE-2024-35888)\n\n* kernel: powerpc/imc-pmu/powernv: (CVE-2023-52675, CVE-2023-52686)\n\n* kernel: KVM: SVM: improper check in svm_set_x2apic_msr_interception allows direct access to host x2apic msrs (CVE-2023-5090)\n\n* kernel: EDAC/thunderx: Incorrect buffer size in drivers/edac/thunderx_edac.c (CVE-2023-52464)\n\n* kernel: ipv6: sr: fix possible use-after-free and null-ptr-deref (CVE-2024-26735)\n\n* kernel: mptcp: fix data re-injection from stale subflow (CVE-2024-26826)\n\n* kernel: crypto: (CVE-2024-26974, CVE-2023-52669, CVE-2023-52813)\n\n* kernel: net/mlx5/bnx2x/usb: (CVE-2024-35960, CVE-2024-35958, CVE-2021-47310, CVE-2024-26804, CVE-2021-47311, CVE-2024-26859, CVE-2021-47236, CVE-2023-52703)\n\n* kernel: i40e: Do not use WQ_MEM_RECLAIM flag for workqueue (CVE-2024-36004)\n\n* kernel: perf/core: Bail out early if the request AUX area is out of bound (CVE-2023-52835)\n\n* kernel: USB/usbnet: (CVE-2023-52781, CVE-2023-52877, CVE-2021-47495)\n\n* kernel: can: (CVE-2023-52878, CVE-2021-47456)\n\n* kernel: mISDN: fix possible use-after-free in HFC_cleanup() (CVE-2021-47356)\n\n* kernel: udf: Fix NULL pointer dereference in udf_symlink function (CVE-2021-47353)\n\nBug Fix(es):\n\n* Kernel panic - kernel BUG at mm/slub.c:376! (JIRA:Rocky Linux SIG Cloud-29783)\n\n* Temporary values in FIPS integrity test should be zeroized [rhel-8.10.z] (JIRA:Rocky Linux SIG Cloud-35361)\n\n* Rocky Linux SIG Cloud8.6 - kernel: s390/cpum_cf: make crypto counters upward compatible (JIRA:Rocky Linux SIG Cloud-36048)\n\n* [Rocky Linux SIG Cloud8] blktests block/024 failed (JIRA:Rocky Linux SIGCloud-8130)\n\n* Rocky Linux SIG Cloud8.9: EEH injections results Error: Power fault on Port 0 and other call traces(Everest/1050/Shiner) (JIRA:Rocky Linux SIG Cloud-14195)\n\n* Latency spikes with Matrox G200 graphic cards (JIRA:Rocky Linux SIG Cloud-36172)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux SIG Cloud 8"], "fixes": [{"ticket": "1918601", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=1918601", "description": ""}, {"ticket": "2248122", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2248122", "description": ""}, {"ticket": "2258875", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2258875", "description": ""}, {"ticket": "2265517", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2265517", "description": ""}, {"ticket": "2265519", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2265519", "description": ""}, {"ticket": "2265520", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2265520", "description": ""}, {"ticket": "2265800", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2265800", "description": ""}, {"ticket": "2266408", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2266408", "description": ""}, {"ticket": "2266831", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2266831", "description": ""}, {"ticket": "2267513", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2267513", "description": ""}, {"ticket": "2267518", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2267518", "description": ""}, {"ticket": "2267730", "sourceBy": "RedHat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2267730", "description": ""}, {"ticket": "2270093", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2270093", "description": ""}, {"ticket": "2271680", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2271680", "description": ""}, {"ticket": "2272692", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2272692", "description": ""}, {"ticket": "2272829", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2272829", "description": ""}, {"ticket": "2273204", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2273204", "description": ""}, {"ticket": "2273278", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2273278", "description": ""}, {"ticket": "2273423", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2273423", "description": ""}, {"ticket": "2273429", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2273429", "description": ""}, {"ticket": "2275604", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2275604", "description": ""}, {"ticket": "2275633", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2275633", "description": ""}, {"ticket": "2275635", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2275635", "description": ""}, {"ticket": "2275733", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2275733", "description": ""}, {"ticket": "2278337", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2278337", "description": ""}, {"ticket": "2278354", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2278354", "description": ""}, {"ticket": "2280434", "sourceBy": "Red Hat", "sourceLink":"https://bugzilla.redhat.com/show_bug.cgi?id=2280434", "description": ""}, {"ticket": "2281057", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281057", "description": ""}, {"ticket": "2281113", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281113", "description": ""}, {"ticket": "2281157", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281157", "description": ""}, {"ticket": "2281165", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281165", "description": ""}, {"ticket": "2281251", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281251", "description": ""}, {"ticket": "2281253", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281253", "description": ""}, {"ticket": "2281255", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281255", "description": ""}, {"ticket": "2281257", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281257", "description": ""}, {"ticket": "2281272", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281272", "description": ""}, {"ticket": "2281311", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281311", "description": ""}, {"ticket": "2281334", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281334", "description": ""}, {"ticket": "2281346", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281346", "description": ""}, {"ticket": "2281350", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281350", "description": ""}, {"ticket": "2281689", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281689", "description": ""}, {"ticket": "2281693", "sourceBy": "Red Hat", "sourceLink":"https://bugzilla.redhat.com/show_bug.cgi?id=2281693", "description": ""}, {"ticket": "2281920", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281920", "description": ""}, {"ticket": "2281923", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281923", "description": ""}, {"ticket": "2281925", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281925", "description": ""}, {"ticket": "2281953", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281953", "description": ""}, {"ticket": "2281986", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2281986", "description": ""}, {"ticket": "2282394", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282394", "description": ""}, {"ticket": "2282400", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282400", "description": ""}, {"ticket": "2282471", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282471", "description": ""}, {"ticket": "2282472", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282472", "description": ""}, {"ticket": "2282581", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282581", "description": ""}, {"ticket": "2282609", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282609", "description": ""}, {"ticket": "2282612", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282612", "description": ""}, {"ticket": "2282653", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282653", "description": ""}, {"ticket": "2282680", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282680", "description": ""}, {"ticket": "2282698", "sourceBy": "Red Hat", "sourceLink":"https://bugzilla.redhat.com/show_bug.cgi?id=2282698", "description": ""}, {"ticket": "2282712", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282712", "description": ""}, {"ticket": "2282735", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282735", "description": ""}, {"ticket": "2282902", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282902", "description": ""}, {"ticket": "2282920", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2282920", "description": ""}], "cves": [{"name": "CVE-2020-26555", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2020-26555", "cvss3ScoringVector": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N", "cvss3BaseScore": "5.4", "cwe": "CWE-400"}, {"name": "CVE-2021-46909", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-46909", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.4", "cwe": "CWE-391"}, {"name": "CVE-2021-46972", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-46972", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "cvss3BaseScore": "5.5", "cwe": "CWE-402"}, {"name": "CVE-2021-47069", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47069", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-362"}, {"name": "CVE-2021-47073", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47073", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L", "cvss3BaseScore": "2.3", "cwe": "CWE-99"}, {"name": "CVE-2021-47236", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47236", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2021-47310", "sourceBy": "MITRE", "sourceLink":"https://www.cve.org/CVERecord?id=CVE-2021-47310", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2021-47311", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47311", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2021-47353", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47353", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-476"}, {"name": "CVE-2021-47356", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47356", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "6.7", "cwe": "CWE-416"}, {"name": "CVE-2021-47456", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47456", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2021-47495", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2021-47495", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2023-5090", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-5090", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H", "cvss3BaseScore": "6.0", "cwe": "CWE-755"}, {"name": "CVE-2023-52464", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52464", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:L", "cvss3BaseScore": "2.9", "cwe": "CWE-805"}, {"name": "CVE-2023-52560", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52560", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "cvss3BaseScore": "3.3", "cwe": "CWE-401"}, {"name": "CVE-2023-52615", "sourceBy": "MITRE", "sourceLink":"https://www.cve.org/CVERecord?id=CVE-2023-52615", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.4", "cwe": "CWE-400"}, {"name": "CVE-2023-52626", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52626", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H", "cvss3BaseScore": "6.0", "cwe": "CWE-125"}, {"name": "CVE-2023-52667", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52667", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2023-52669", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52669", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2023-52675", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52675", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2023-52686", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52686", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2023-52700", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52700", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-20"}, {"name": "CVE-2023-52703", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52703", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "cvss3BaseScore": "3.3", "cwe": "CWE-15"}, {"name": "CVE-2023-52781", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52781", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.4", "cwe": "CWE-20"}, {"name": "CVE-2023-52813", "sourceBy": "MITRE", "sourceLink":"https://www.cve.org/CVERecord?id=CVE-2023-52813", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-833"}, {"name": "CVE-2023-52835", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52835", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-125"}, {"name": "CVE-2023-52877", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52877", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.4", "cwe": "CWE-476"}, {"name": "CVE-2023-52878", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52878", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.4", "cwe": "CWE-125"}, {"name": "CVE-2023-52881", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-52881", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.9", "cwe": "UNKNOWN"}, {"name": "CVE-2024-26583", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26583", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.1", "cwe": "CWE-362-> CWE-416"}, {"name": "CVE-2024-26584", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26584", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-393"}, {"name": "CVE-2024-26585", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26585", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.0", "cwe": "CWE-362"}, {"name": "CVE-2024-26656", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26656", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.7", "cwe": "CWE-416"}, {"name": "CVE-2024-26675", "sourceBy": "MITRE","sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26675", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-20"}, {"name": "CVE-2024-26735", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26735", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-416-> CWE-476"}, {"name": "CVE-2024-26759", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26759", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-362"}, {"name": "CVE-2024-26801", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26801", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-26804", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26804", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-26826", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26826", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-20"}, {"name": "CVE-2024-26859", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26859", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "4.1", "cwe": "CWE-362"}, {"name": "CVE-2024-26906", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26906", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-20"}, {"name": "CVE-2024-26907", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26907", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "6.7", "cwe": "CWE-99"}, {"name": "CVE-2024-26974", "sourceBy":"MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26974", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H", "cvss3BaseScore": "5.8", "cwe": "UNKNOWN"}, {"name": "CVE-2024-26982", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-26982", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-27397", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-27397", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.0", "cwe": "UNKNOWN"}, {"name": "CVE-2024-27410", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-27410", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35789", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35789", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35835", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35835", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35838", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35838", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35845", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35845", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35852", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35852", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35853", "sourceBy":"MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35853", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35854", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35854", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35855", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35855", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35888", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35888", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35890", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35890", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35958", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35958", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35959", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35959", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-35960", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-35960", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-36004", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-36004", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}, {"name": "CVE-2024-36007", "sourceBy":"MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-36007", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2024-07-15T12:20:09.524479Z", "rpms": {"Rocky Linux SIG Cloud 8": {"nvras": ["bpftool-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "bpftool-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "bpftool-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "bpftool-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-abi-stablelists-0:4.18.0-553.8.1.el8_10.cloud.0.1.noarch.rpm", "kernel-core-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-core-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-cross-headers-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-cross-headers-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-debug-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-debug-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-debug-core-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-debug-core-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-debug-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-debug-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-debug-devel-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-debug-devel-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-debug-modules-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-debug-modules-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-debug-modules-extra-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-debug-modules-extra-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-devel-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm","kernel-devel-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-doc-0:4.18.0-553.8.1.el8_10.cloud.0.1.noarch.rpm", "kernel-headers-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-headers-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-modules-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-modules-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-modules-extra-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-modules-extra-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-tools-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-tools-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-tools-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-tools-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-tools-libs-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-tools-libs-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "kernel-tools-libs-devel-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "kernel-tools-libs-devel-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "perf-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "perf-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "perf-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "perf-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "python3-perf-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "python3-perf-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm", "python3-perf-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.aarch64.rpm", "python3-perf-debuginfo-0:4.18.0-553.8.1.el8_10.cloud.0.1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. The latest update for Rocky Linux kernel addresses critical vulnerabilities and bugs, enhancing system robustness and overall stability.. Rocky Linux Kernel Update, Kernel Bug Fix, Security Advisories, System Security Updates. . Severity: Important. LinuxSecurity.com Team
Multiple vulnerabilities were found in otrs2, the Open-Source Ticket Request System, which could lead to impersonation, denial of service, information disclosure, or execution of arbitrary code. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-3551-1
Multiple security vulnerabilities were found in symfony, a PHP framework for web and console applications and a set of reusable PHP components, which could lead to information disclosure or impersonation. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-3493-1
Two vulnerabilities were found in lemonldap-ng, an OpenID-Connect, CAS and SAML compatible Web-SSO system, that could result in information disclosure or impersonation. . -------------------------------------------------------------------------Debian LTS Advisory DLA-3287-1
Missing SAML signature validation in the SOGo groupware could result in impersonation attacks. (CVE-2021-33054) References: - https://bugs.mageia.org/show_bug.cgi?id=29255 . MGASA-2022-0481 - Updated sogo packages fix security vulnerability Publication date: 30 Dec 2022 URL: https://advisories.mageia.org/MGASA-2022-0481.html Type: security Affected Mageia releases: 8 CVE: CVE-2021-33054 Missing SAML signature validation in the SOGo groupware could result in impersonation attacks. (CVE-2021-33054) References: - https://bugs.mageia.org/show_bug.cgi?id=29255 - https://lists.debian.org/debian-lts-announce/2021/07/msg00007.html - https://lists.debian.org/debian-security-announce/2021/msg00215.html - https://www.cve.org/CVERecord?id=CVE-2021-33054 SRPMS: - 8/core/sogo-5.6.0-1.mga8 - 8/core/sope-5.6.0-1.1.mga8 . Mageia has released enhancements to its SOGo packages, tackling the absence of signature validation which mitigates impersonation threats. Discover the details here.. Mageia Security, SOGo Update, Impersonation Risk, Signature Validation Fix. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.