Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
172

Ubuntu 20.04 & 18.04: 7466-1 moderate KiCad denial of service

KiCad could be made to crash or run programs if it opened a specially crafted file.. ========================================================================== Ubuntu Security Notice USN-7466-1 April 28, 2025 kicad vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: KiCad could be made to crash or run programs if it opened a specially crafted file. Software Description: - kicad: Electronic schematic and PCB design software Details: It was discovered that KiCad incorrectly handled memory when opening malicious files. An attacker could possibly use this issue to cause a denial of service or execute arbitrary commands. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS kicad 5.1.5+dfsg1-2ubuntu0.1~esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS kicad 4.0.7+dfsg1-1ubuntu2+esm1 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7466-1 CVE-2022-23803, CVE-2022-23804, CVE-2022-23946, CVE-2022-23947 . The latest patch for KiCad on Ubuntu rectifies vulnerabilities that might result in unexpected crashes or unauthorized command execution.. KiCad Security Update, Ubuntu Pro, Denial of Service, Memory Issues, Software Security. . LinuxSecurity.com Team

Calendar 2 Apr 28, 2025 Ubuntu
197

Debian 10 DLA-3078-1 Critical: KiCad Buffer Overflow Fix

KiCad is a suite of programs for the creation of printed circuit boards. It includes a schematic editor, a PCB layout tool, support tools and a 3D viewer to display a finished & fully populated PCB. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-3078-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Stefano Rivera August 20, 2022 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : kicad Version : 5.0.2+dfsg1-1+deb10u1 CVE ID : CVE-2022-23803 CVE-2022-23804 CVE-2022-23946 CVE-2022-23947 KiCad is a suite of programs for the creation of printed circuit boards. It includes a schematic editor, a PCB layout tool, support tools and a 3D viewer to display a finished & fully populated PCB. Several buffer-overflows were discovered in the Gerber Viewer and excellon file parser, that could lead to code execution when opening a maliciously-crafted file. CVE-2022-23803 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA. CVE-2022-23804 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA. CVE-2022-23946 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA. CVE-2022-23947 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing functionality of KiCad EDA. For Debian 10 buster, these problems have been fixed in version 5.0.2+dfsg1-1+deb10u1. These problems were previously dealt with in DLA-2998-1 for Debian 9 stretch, but the buster update wasn't applied, at the time. We recommend that you upgrade your kicad packages. For thedetailed security status of kicad please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/kicad Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-3080-1 focuses on the update of gimp to rectify memory management vulnerabilities, ensuring improved protection.. Debian Security Update,kicad Buffer Overflow,Debian LTS Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 20, 2022 Critical Debian LTS
197

Debian 9 Stretch DLA-2998-1 Moderate: Kicad Buffer Overflow Threats

KiCad is a suite of programs for the creation of printed circuit boards. It includes a schematic editor, a PCB layout tool, support tools and a 3D viewer to display a finished & fully populated PCB. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-2998-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Stefano Rivera May 09, 2022 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : kicad Version : 4.0.5+dfsg1-4+deb9u1 CVE ID : CVE-2022-23803 CVE-2022-23804 CVE-2022-23946 CVE-2022-23947 KiCad is a suite of programs for the creation of printed circuit boards. It includes a schematic editor, a PCB layout tool, support tools and a 3D viewer to display a finished & fully populated PCB. Several buffer-overflows were discovered in the Gerber Viewer and excellon file parser, that could lead to code execution when opening a maliciously-crafted file. CVE-2022-23803 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA. CVE-2022-23804 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA. CVE-2022-23946 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA. CVE-2022-23947 A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing functionality of KiCad EDA. For Debian 9 stretch, these problems have been fixed in version 4.0.5+dfsg1-4+deb9u1. We recommend that you upgrade your kicad packages. For the detailed security status of kicad please refer to its security tracker pageat: https://security-tracker.debian.org/tracker/source-package/kicad Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Notice regarding kicad upgrade to resolve buffer overflow vulnerabilities. Immediate update advised for enhanced protection.. Debian Kicad Update, Buffer Overflow Fix, Security Advisory DLA-2998-1, Debian Security Updates. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 09, 2022 Important Debian LTS
89

Fedora 36: FEDORA-2023-54c3d755b2 Urgent: KiCad Buffer Overflow

Update to 6.0.2. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-78b18981a6 2022-03-02 16:10:21.012493 --------------------------------------------------------------------------------Name : kicad Product : Fedora 35 Version : 6.0.2 Release : 1.fc35 URL : https://www.kicad.org Summary : EDA software suite for creation of schematic diagrams and PCBs Description : KiCad is EDA software to design electronic schematic diagrams and printed circuit board artwork of up to 32 layers. --------------------------------------------------------------------------------Update Information: Update to 6.0.2 --------------------------------------------------------------------------------ChangeLog: * Fri Feb 11 2022 Steven A. Falco - 1:6.0.2-1 - Update to 6.0.2 * Thu Feb 10 2022 Orion Poplawski - 1:6.0.1-5 - Rebuild for glew 2.2 * Mon Jan 31 2022 Steven A. Falco - 1:6.0.1-4 - Fix conflict in docs * Tue Jan 25 2022 Steven A. Falco - 1:6.0.1-3 - Patch missing include file * Thu Jan 20 2022 Fedora Release Engineering - 1:6.0.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild * Wed Jan 12 2022 Steven A. Falco - 1:6.0.1-1 - Update to 6.0.1 * Sat Dec 25 2021 Steven A. Falco - 1:6.0.0-2 - Update cmake flags * Thu Dec 23 2021 Steven A. Falco - 1:6.0.0-1 - Update to 6.0.0 * Tue Nov 16 2021 Steven A. Falco - 1:6.0.0-0.1.rc1 - Update to 6.0.0-rc1 --------------------------------------------------------------------------------References: [ 1 ] Bug #2054957 - CVE-2022-23946 kicad: KiCad 6.0.1 Stack-based buffer overflow in GCodeNumber parsing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2054957 [ 2 ] Bug #2054960 - CVE-2022-23947 kicad: KiCad 6.0.1 Stack-based buffer overflow in DCodeNumber parsing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2054960 [ 3 ] Bug #2054974 - CVE-2022-23803 kicad: KiCad 6.0.1Stack-based buffer overflow in ReadXYCoord [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2054974 [ 4 ] Bug #2054980 - CVE-2022-23804 kicad: KiCad 6.0.1 Stack-based buffer overflow in ReadIJCoord [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2054980 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-78b18981a6' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Update to KiCad 6.0.2 addresses critical stack overflow flaws in Fedora 35, enhancing design tool security.. KiCad Update,Fedora Security,Software Patch,Design Automation. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Mar 02, 2022 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here