Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
89

Fedora 41: Valkey 8.0.4 Important Security Patch for DoS Vulnerability

Valkey 8.0.4 - Released Mon 07 July 2025 Upgrade urgency SECURITY: This release includes security fixes we recommend you apply as soon as possible. Security fixes CVE-2025-32023 prevent out-of-bounds write during hyperloglog operations (#2146). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-34895333b5 2025-07-25 02:00:42.465777+00:00 -------------------------------------------------------------------------------- Name : valkey Product : Fedora 41 Version : 8.0.4 Release : 1.fc41 URL : https://valkey.io Summary : A persistent key-value database Description : Valkey is an advanced key-value store. It is often referred to as a data structure server since keys can contain strings, hashes, lists, sets and sorted sets. You can run atomic operations on these types, like appending to a string; incrementing the value in a hash; pushing to a list; computing set intersection, union and difference; or getting the member with highest ranking in a sorted set. In order to achieve its outstanding performance, Valkey works with an in-memory dataset. Depending on your use case, you can persist it either by dumping the dataset to disk every once in a while, or by appending each command to a log. Valkey also supports trivial-to-setup master-slave replication, with very fast non-blocking first synchronization, auto-reconnection on net split and so forth. Other features include Transactions, Pub/Sub, Lua scripting, Keys with a limited time-to-live, and configuration settings to make Valkey behave like a cache. You can use Valkey from most programming languages also. -------------------------------------------------------------------------------- Update Information: Valkey 8.0.4 - Released Mon 07 July 2025 Upgrade urgency SECURITY: This release includes security fixes we recommend you apply as soon as possible. Security fixes CVE-2025-32023 prevent out-of-bounds write duringhyperloglog operations (#2146) CVE-2025-48367 retry accept on transient errors (#2315) Security fixes backported from 8.1.2 CVE-2025-27151 Check length of AOF file name in valkey-check-aof (#2146) -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 16 2025 Remi Collet - 8.0.4-1 - update to 8.0.4 fixes CVE-2025-27151 CVE-2025-48367 and CVE-2025-32023 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2380113 - CVE-2025-27151 valkey: Redis Stack Buffer Overflow [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2380113 [ 2 ] Bug #2380116 - CVE-2025-48367 valkey: Redis Unauthenticated Denial of Service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2380116 [ 3 ] Bug #2380118 - CVE-2025-32023 valkey: Redis Hyperloglog Out-of-Bounds Write Vulnerability [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2380118 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-34895333b5' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives:https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Valkey 8.0.4 for Fedora 41 incorporates crucial security enhancements. Implement fixes for buffer overflows and authentication issues.. Fedora 41 Valkey security fixes, CVE-2025-32023 out-of-bounds, Key-Value database security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jul 25, 2025 Important Fedora
98

Red Hat OpenStack Platform 16.1 RHSA-2021-5072-01 Etcd Security Update

An update for etcd is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: Red Hat OpenStack Platform 16.1 (etcd) security update Advisory ID: RHSA-2021:5072-01 Product: Red Hat OpenStack Platform Advisory URL: https://access.redhat.com/errata/RHSA-2021:5072 Issue date: 2021-12-09 CVE Names: CVE-2021-31525 CVE-2021-33195 CVE-2021-33197 CVE-2021-33198 ==================================================================== 1. Summary: An update for etcd is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenStack Platform 16.1 - ppc64le, x86_64 3. Description: A highly-available key value store for shared configuration Security Fix(es): * net/http: panic in ReadRequest and ReadResponse when reading a very large header (CVE-2021-31525) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1958341 - CVE-2021-31525 golang: net/http: panic in ReadRequest and ReadResponse when reading a very large header 1989564 - CVE-2021-33195 golang: net: lookup functionsmay return invalid host names 1989570 - CVE-2021-33197 golang: net/http/httputil: ReverseProxy forwards connection headers if first one is empty 1989575 - CVE-2021-33198 golang: math/big.Rat: may cause a panic or an unrecoverable fatal error if passed inputs with very large exponents 6. Package List: Red Hat OpenStack Platform 16.1: Source: etcd-3.3.23-3.1.el8ost.1.src.rpm ppc64le: etcd-3.3.23-3.1.el8ost.1.ppc64le.rpm etcd-debuginfo-3.3.23-3.1.el8ost.1.ppc64le.rpm etcd-debugsource-3.3.23-3.1.el8ost.1.ppc64le.rpm x86_64: etcd-3.3.23-3.1.el8ost.1.x86_64.rpm etcd-debuginfo-3.3.23-3.1.el8ost.1.x86_64.rpm etcd-debugsource-3.3.23-3.1.el8ost.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2021-31525 https://access.redhat.com/security/cve/CVE-2021-33195 https://access.redhat.com/security/cve/CVE-2021-33197 https://access.redhat.com/security/cve/CVE-2021-33198 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBYbK/eNzjgjWX9erEAQgi1hAAkDi0+sr5a3h6z0Ui8MuUIu6lArCN5rQ0 m9QRRb7oxSLvgUHpJNdFgQEwXCnBcQ7YvQoopmhNQlzZK2/+D+WtlMv37WqOuJlv e8psYLrLfAakao+ICbwV3MY1hSq6AdAxh5mSw750eyH5XvN4j21x2RCWpjvT8QZL +5xzR24dJSIeNWs0haMtp2CNtcJ1gjnz4avPSQFUCn7E9bDKWMvyuIf0vsFVGC2p Q5pWRB1f7HW0zU/W3SlqlvvSiI9m4RTIMp63+wrm6ay36CVObHMkxTsiDSKw+BlU QfMizejdJFGmOvNh9jIiJlSEqFOkLhCPIfT8x8UVUm2mHbkRfUMDfjRKRQoFchdX EIW9QbU9FThYlsaUl8eTwGKtGrsPMUrsols61owvBfA+ALtYjarYsUoXejaXunWV z5VXXe7ceGlrYtvAtdaVRUVPM+W9md1/rpZRuF9zFtISCqz5AOBagA5VCpHz/KFv aBbV21/dMgY5HZy3GBLiYxDWVEbdbeviAfM0pelZ63MSGvrCFrH7S7CayZfv/60b kBddmbqJmCSPDoNOgLjlerBlA4hsXP/x8YvkDqrxcCU6P5JhtrF/LtOCtQiUU0+t skHxklomTknTNTM+FsKvqOWrmGykEpyvYWjUmxZit7GTnsdepVuRmWO8TWQH7q3E fzmSbYOgNtg=0OKe -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Moderate security alert for Red Hat OpenStack Platform 16.1 regarding etcd updates, highlighting critical impact information and resolution measures.. Red Hat Update, OpenStack Security, etcd Patch. . LinuxSecurity.com Team

Calendar 2 Dec 09, 2021 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here