Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
203

Mageia 7: 2020-0069 Moderate: Java-1.8.0-OpenJDK Update

The updated packages fix security vulnerabilities: Improper checks of SASL message properties in GssKrb5Base (Security, 8226352) (CVE-2020-2590) . MGASA-2020-0069 - Updated java-1.8.0-openjdk packages fix security vulnerabilities Publication date: 30 Jan 2020 URL: https://advisories.mageia.org/MGASA-2020-0069.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-2590, CVE-2020-2583, CVE-2020-2593, CVE-2020-2601, CVE-2020-2604, CVE-2020-2654, CVE-2020-2659 The updated packages fix security vulnerabilities: Improper checks of SASL message properties in GssKrb5Base (Security, 8226352) (CVE-2020-2590) Incorrect exception processing during deserialization in BeanContextSupport (Serialization, 8224909) (CVE-2020-2583) Incorrect isBuiltinStreamHandler causing URL normalization issues (Networking, 8228548) (CVE-2020-2593) Use of unsafe RSA-MD5 checkum in Kerberos TGS (Security, 8229951) (CVE-2020-2601) Serialization filter changes via jdk.serialFilter property modification (Serialization, 8231422) (CVE-2020-2604) Excessive memory usage in OID processing in X.509 certificate parsing (Libraries, 8234037) (CVE-2020-2654) Incomplete enforcement of maxDatagramSockets limit in DatagramChannelImpl (Networking, 8231795) (CVE-2020-2659) References: - https://bugs.mageia.org/show_bug.cgi?id=26075 - https://www.oracle.com/security-alerts/cpujan2020.html#AppendixJAVA - https://access.redhat.com/errata/RHSA-2020:0202 - https://www.cve.org/CVERecord?id=CVE-2020-2590 - https://www.cve.org/CVERecord?id=CVE-2020-2583 - https://www.cve.org/CVERecord?id=CVE-2020-2593 - https://www.cve.org/CVERecord?id=CVE-2020-2601 - https://www.cve.org/CVERecord?id=CVE-2020-2604 - https://www.cve.org/CVERecord?id=CVE-2020-2654 - https://www.cve.org/CVERecord?id=CVE-2020-2659 SRPMS: - 7/core/java-1.8.0-openjdk-1.8.0.242-1.b08.2.mga7 . Implementing security enhancements for java-1.8.0-openjdk in Mageia to bolster overall system security and ensure integrity.. java update, security enhancements, Mageiapackages, openjdk, patch notes. . LinuxSecurity.com Team

Calendar 2 Jan 30, 2020 Mageia
89

Fedora 30: 2019-c25a0e7032 Moderate: Deepin-Api Improper Checks

Fix improper checks in deepin-api polkit actions. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-c25a0e7032 2019-06-06 01:05:45.805424 --------------------------------------------------------------------------------Name : deepin-api Product : Fedora 30 Version : 3.17.0 Release : 2.fc30 URL : https://github.com/linuxdeepin/dde-api Summary : Go-lang bingding for dde-daemon Description : Go-lang bingding for dde-daemon. --------------------------------------------------------------------------------Update Information: Fix improper checks in deepin-api polkit actions --------------------------------------------------------------------------------ChangeLog: * Tue May 28 2019 Robin Lee - 3.17.0-2 - Fix a security issue --------------------------------------------------------------------------------References: [ 1 ] Bug #1713957 - Security: improper checks in deepin-api polkit actions https://bugzilla.redhat.com/show_bug.cgi?id=1713957 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-c25a0e7032' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines ListArchives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Addresses faulty validations in deepin-api polkit procedures for Fedora 30 security alert notifications and remediation guidelines.. deepin-api, Fedora Updates, Polkit Actions. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 05, 2019 Important Fedora
200

Scientific Linux: SLSA-2018-3409-1 Critical: OpenJDK Security Updates

OpenJDK: Improper field access checks (Hotspot, 8199226) (CVE-2018-3169) * OpenJDK: Incomplete enforcement of the trustURLCodebase restriction (JNDI, 8199177) (CVE-2018-3149) * OpenJDK: Incorrect handling of unsigned attributes in signed Jar manifests (Security, 8194534) (CVE-2018-3136) * OpenJDK: Leak of sensitive header data via HTTP redirect (Networking, 8196902) (CVE-2018-3139) * OpenJ [More...]. Synopsis: Important: java-1.7.0-openjdk security update Advisory ID: SLSA-2018:3409-1 Issue Date: 2018-10-31 CVE Numbers: CVE-2018-3169 CVE-2018-3214 CVE-2018-3139 CVE-2018-3180 CVE-2018-3136 CVE-2018-3149 -- Security Fix(es): * OpenJDK: Improper field access checks (Hotspot, 8199226) (CVE-2018-3169) * OpenJDK: Incomplete enforcement of the trustURLCodebase restriction (JNDI, 8199177) (CVE-2018-3149) * OpenJDK: Incorrect handling of unsigned attributes in signed Jar manifests (Security, 8194534) (CVE-2018-3136) * OpenJDK: Leak of sensitive header data via HTTP redirect (Networking, 8196902) (CVE-2018-3139) * OpenJDK: Missing endpoint identification algorithm check during TLS session resumption (JSSE, 8202613) (CVE-2018-3180) * OpenJDK: Infinite loop in RIFF format reader (Sound, 8205361) (CVE-2018-3214) -- SL6 x86_64 java-1.7.0-openjdk-1.7.0.201-2.6.16.0.el6_10.x86_64.rpm java-1.7.0-openjdk-debuginfo-1.7.0.201-2.6.16.0.el6_10.x86_64.rpm java-1.7.0-openjdk-devel-1.7.0.201-2.6.16.0.el6_10.x86_64.rpm java-1.7.0-openjdk-demo-1.7.0.201-2.6.16.0.el6_10.x86_64.rpm java-1.7.0-openjdk-src-1.7.0.201-2.6.16.0.el6_10.x86_64.rpm i386 java-1.7.0-openjdk-1.7.0.201-2.6.16.0.el6_10.i686.rpm java-1.7.0-openjdk-debuginfo-1.7.0.201-2.6.16.0.el6_10.i686.rpm java-1.7.0-openjdk-devel-1.7.0.201-2.6.16.0.el6_10.i686.rpm java-1.7.0-openjdk-demo-1.7.0.201-2.6.16.0.el6_10.i686.rpm java-1.7.0-openjdk-src-1.7.0.201-2.6.16.0.el6_10.i686.rpm noarch java-1.7.0-openjdk-javadoc-1.7.0.201-2.6.16.0.el6_10.noarch.rpm - Scientific Linux Development Team . Important security updates for java-1.7.0-openjdk tackle various threats in Scientific Linux. Ensure your system is current.. java security, openjdk updates, Scientific Linux advisory, security fixes, Java vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 31, 2018 Critical Scientific Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here