Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
89

Fedora 31: FEDORA-2020-4c8a066b83 Low Risk Malicious CA Access

Per Upstream, a malicious CA could result in unexpected inventory access with the System CA patch. The risk is very low. That patch is now dropped.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-4c8a066b83 2020-01-16 19:15:48.104563 --------------------------------------------------------------------------------Name : ocsinventory-agent Product : Fedora 31 Version : 2.6.0 Release : 3.2.fc31 URL : https://ocsinventory-ng.org/?lang=fr/ Summary : Open Computer and Software Inventory Next Generation client Description : Open Computer and Software Inventory Next Generation is an application designed to help a network or system administrator keep track of computer configuration and software installed on the network. It also allows deploying software, commands or files on Windows and Linux client computers. ocsinventory-agent provides the client for Linux (Unified Unix Agent). --------------------------------------------------------------------------------Update Information: Per Upstream, a malicious CA could result in unexpected inventory access with the System CA patch. The risk is very low. That patch is now dropped. --------------------------------------------------------------------------------ChangeLog: * Mon Jan 6 2020 Pat Riehecky - 2.6.0-3.2 - More cleanup UTF8 parse - Smarter use of local CA list * Fri Dec 27 2019 Pat Riehecky - 2.6.0-3.1 - Cleanup UTF8 parse - drop system CA list, keep local CA list * Wed Dec 18 2019 Pat Riehecky - 2.6.0-3 - Use system CA certs if no custom client CA set * Tue Dec 3 2019 Pat Riehecky - 2.6.0-2.1 - Backport a few patches from upstream * Thu Aug 15 2019 Pat Riehecky - 2.6.0-2 - Return to Fedora - Use systemd timers rather than cron for regular runs - Add a handful of possible timers users might want * Mon May 20 2019 Philippe Beaumont - 2.6.0-1 - Update to 2.6.0 * Mon Dec 31 2018 Philippe Beaumont - 2.4.2-3 -Remove Module::Install as dependancy * Mon Dec 24 2018 Philippe Beaumont - 2.4.2-2 - Add core agent * Tue Jul 31 2018 Philippe Beaumont - 2.4.2-1 - Update to 2.4.2 * Sun Feb 11 2018 Philippe Beaumont - 2.4.0-1 - Update to 2.4.0 * Mon Jan 15 2018 Philippe Beaumont - 2.3.0-2 - Add SSL dependancies --------------------------------------------------------------------------------References: [ 1 ] Bug #1786712 - Failed to load Ocsinventory::Agent, Global symbol "$self" requires explicit package name https://bugzilla.redhat.com/show_bug.cgi?id=1786712 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-4c8a066b83' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Important update for ocsinventory-agent on Fedora to fix a low risk vulnerability. Please apply this patch promptly to secure your inventory management.. ocsinventory-agent Update, Fedora Patch, Malicious CA Risk, System CA Code. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Jan 16, 2020 Low Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here