Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
100

SUSE 12 SP5: SUSE-SU-2024:1702-1 Moderate: KDC Null Pointer Fix

* bsc#1189929 Cross-References: * CVE-2021-37750 . # Security update for krb5 Announcement ID: SUSE-SU-2024:1702-1 Rating: moderate References: * bsc#1189929 Cross-References: * CVE-2021-37750 CVSS scores: * CVE-2021-37750 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2021-37750 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 * SUSE Linux Enterprise Software Development Kit 12 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for krb5 fixes the following issues: Fixed inside previous release (v1.16.3-46.3.1): * CVE-2021-37750: Fixed KDC null pointer dereference via a FAST inner body that lacked a server field (bsc#1189929). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Software Development Kit 12 SP5 zypper in -t patch SUSE-SLE-SDK-12-SP5-2024-1702=1 * SUSE Linux Enterprise High Performance Computing 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-1702=1 * SUSE Linux Enterprise Server 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-1702=1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-1702=1 ## Package List: * SUSE Linux Enterprise Software Development Kit 12 SP5 (aarch64 ppc64le s390x x86_64) * krb5-debugsource-1.16.3-46.12.1 * krb5-devel-1.16.3-46.12.1 * krb5-debuginfo-1.16.3-46.12.1 * SUSE Linux Enterprise High Performance Computing 12 SP5 (aarch64 x86_64) * krb5-plugin-preauth-otp-debuginfo-1.16.3-46.12.1 * krb5-plugin-kdb-ldap-debuginfo-1.16.3-46.12.1 *krb5-plugin-preauth-pkinit-debuginfo-1.16.3-46.12.1 * krb5-client-1.16.3-46.12.1 * krb5-debugsource-1.16.3-46.12.1 * krb5-server-debuginfo-1.16.3-46.12.1 * krb5-client-debuginfo-1.16.3-46.12.1 * krb5-plugin-kdb-ldap-1.16.3-46.12.1 * krb5-plugin-preauth-pkinit-1.16.3-46.12.1 * krb5-1.16.3-46.12.1 * krb5-doc-1.16.3-46.12.1 * krb5-plugin-preauth-otp-1.16.3-46.12.1 * krb5-server-1.16.3-46.12.1 * krb5-debuginfo-1.16.3-46.12.1 * SUSE Linux Enterprise High Performance Computing 12 SP5 (x86_64) * krb5-32bit-1.16.3-46.12.1 * krb5-debuginfo-32bit-1.16.3-46.12.1 * SUSE Linux Enterprise Server 12 SP5 (aarch64 ppc64le s390x x86_64) * krb5-plugin-preauth-otp-debuginfo-1.16.3-46.12.1 * krb5-plugin-kdb-ldap-debuginfo-1.16.3-46.12.1 * krb5-plugin-preauth-pkinit-debuginfo-1.16.3-46.12.1 * krb5-client-1.16.3-46.12.1 * krb5-debugsource-1.16.3-46.12.1 * krb5-server-debuginfo-1.16.3-46.12.1 * krb5-client-debuginfo-1.16.3-46.12.1 * krb5-plugin-kdb-ldap-1.16.3-46.12.1 * krb5-plugin-preauth-pkinit-1.16.3-46.12.1 * krb5-1.16.3-46.12.1 * krb5-doc-1.16.3-46.12.1 * krb5-plugin-preauth-otp-1.16.3-46.12.1 * krb5-server-1.16.3-46.12.1 * krb5-debuginfo-1.16.3-46.12.1 * SUSE Linux Enterprise Server 12 SP5 (s390x x86_64) * krb5-32bit-1.16.3-46.12.1 * krb5-debuginfo-32bit-1.16.3-46.12.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 (ppc64le x86_64) * krb5-plugin-preauth-otp-debuginfo-1.16.3-46.12.1 * krb5-plugin-kdb-ldap-debuginfo-1.16.3-46.12.1 * krb5-plugin-preauth-pkinit-debuginfo-1.16.3-46.12.1 * krb5-client-1.16.3-46.12.1 * krb5-debugsource-1.16.3-46.12.1 * krb5-server-debuginfo-1.16.3-46.12.1 * krb5-client-debuginfo-1.16.3-46.12.1 * krb5-plugin-kdb-ldap-1.16.3-46.12.1 * krb5-plugin-preauth-pkinit-1.16.3-46.12.1 * krb5-1.16.3-46.12.1 * krb5-doc-1.16.3-46.12.1 * krb5-plugin-preauth-otp-1.16.3-46.12.1 * krb5-server-1.16.3-46.12.1 *krb5-debuginfo-1.16.3-46.12.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 (x86_64) * krb5-32bit-1.16.3-46.12.1 * krb5-debuginfo-32bit-1.16.3-46.12.1 ## References: * https://www.suse.com/security/cve/CVE-2021-37750.html * https://bugzilla.suse.com/show_bug.cgi?id=1189929 . Addressing the krb5 KDC invalid memory access issue referenced in CVE-2021-37750 on SUSE platforms.. SUSE Updates, Krb5 Security, KDC Vulnerability, Open Source Patch, Security Best Practices. . LinuxSecurity.com Team

Calendar 2 May 20, 2024 SuSE
217

Oracle Linux 8 ELSA-2021-3576 Moderate: KDC Null Deref Fix

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2021-3576 https://linux.oracle.com/errata/ELSA-2021-3576.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: krb5-devel-1.18.2-8.3.el8_4.i686.rpm krb5-devel-1.18.2-8.3.el8_4.x86_64.rpm krb5-libs-1.18.2-8.3.el8_4.i686.rpm krb5-libs-1.18.2-8.3.el8_4.x86_64.rpm krb5-pkinit-1.18.2-8.3.el8_4.i686.rpm krb5-pkinit-1.18.2-8.3.el8_4.x86_64.rpm krb5-server-1.18.2-8.3.el8_4.i686.rpm krb5-server-1.18.2-8.3.el8_4.x86_64.rpm krb5-server-ldap-1.18.2-8.3.el8_4.i686.rpm krb5-server-ldap-1.18.2-8.3.el8_4.x86_64.rpm krb5-workstation-1.18.2-8.3.el8_4.x86_64.rpm libkadm5-1.18.2-8.3.el8_4.i686.rpm libkadm5-1.18.2-8.3.el8_4.x86_64.rpm aarch64: krb5-devel-1.18.2-8.3.el8_4.aarch64.rpm krb5-libs-1.18.2-8.3.el8_4.aarch64.rpm krb5-pkinit-1.18.2-8.3.el8_4.aarch64.rpm krb5-server-1.18.2-8.3.el8_4.aarch64.rpm krb5-server-ldap-1.18.2-8.3.el8_4.aarch64.rpm krb5-workstation-1.18.2-8.3.el8_4.aarch64.rpm libkadm5-1.18.2-8.3.el8_4.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates/krb5-1.18.2-8.3.el8_4.src.rpm Related CVEs: CVE-2021-36222 CVE-2021-37750 Description of changes: [1.18.2-8.3] - Fix KDC null deref on TGS inner body null server (CVE-2021-37750) - Resolves: #1997600 [1.18.2-8.2] - Rebuild for rpminspect; no code changes - Resolves: #1983728 [1.18.2-8.1] - Fix KDC null deref on bad encrypted challenge (CVE-2021-36222) - Resolves: #1983728 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 8 security bulletin ELSA-2021-3577 tackles notable vulnerabilities in the httpd packages. Critical update information included!. Oracle Security, Linux Updates, Krb5 Issues, Advisory ELSA-2021-3576, Moderate Security Issues. . LinuxSecurity.com Team

Calendar 2 Sep 23, 2021 Oracle
89

Fedora: FEDORA-2007-620 Critical Update for krb5 Buffer Overflow Issue

This update incorporates fixes for a stack buffer overflow and heap corruption in the RPC library, and a fix for a potential stack buffer overflow in kadmind.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2007-620 2007-06-28 ---------------------------------------------------------------------Product : Fedora Core 5 Name : krb5 Version : 1.4.3 Release : 5.5 Summary : The Kerberos network authentication system. Description : Kerberos V5 is a trusted-third-party network authentication system, which can improve your network's security by eliminating the insecure practice of cleartext passwords. ---------------------------------------------------------------------Update Information: This update incorporates fixes for a stack buffer overflow and heap corruption in the RPC library, and a fix for a potential stack buffer overflow in kadmind. ---------------------------------------------------------------------* Wed Jun 27 2007 Nalin Dahyabhai 1.4.3-5.5 - incorporate fixes for MITKRB5-SA-2007-004 (CVE-2007-2442,CVE-2007-2443) and MITKRB5-SA-2007-005 (CVE-2007-2798) * Tue Apr 3 2007 Nalin Dahyabhai 1.4.3-5.4 - add patch to correct unauthorized access via krb5-aware telnet daemon (#229782, CVE-2007-0956) - add patch to fix buffer overflow in krb5kdc and kadmind (#231528, CVE-2007-0957) - add patch to fix double-free in kadmind (#231537, CVE-2007-1216) * Tue Jan 9 2007 Nalin Dahyabhai 1.4.3-5.3 - apply patch from Tom Yu to fix MITKRB-SA-2006-002 (CVE-2006-6143) * Fri Aug 18 2006 Nalin Dahyabhai 1.4.3-5.2 - switch to the updated patch for MITKRB-SA-2006-001 * Tue Aug 8 2006 Nalin Dahyabhai 1.4.3-5.1 - apply patch to address MITKRB-SA-2006-001 (CVE-2006-3084) * Fri Apr 14 2006 Stepan Kasal - 1.4.3-5 - Fix formatting typo in kinit.1 (krb5-kinit-man-typo.patch) ---------------------------------------------------------------------This update can be downloaded from: 428f5a1a16f261507e780a7468adcf054534228a SRPMS/krb5-1.4.3-5.5.src.rpm 428f5a1a16f261507e780a7468adcf054534228a noarch/krb5-1.4.3-5.5.src.rpm ae9338cee91736eab3a108b8713d4dce56e1e41e ppc/debug/krb5-debuginfo-1.4.3-5.5.ppc.rpm 7a6a044dbe79c2b1e52bb37493a125c81ec3d61a ppc/krb5-server-1.4.3-5.5.ppc.rpm 28f4db0ea0ee174c3d027b387e2dc1de3743920a ppc/krb5-libs-1.4.3-5.5.ppc.rpm b2b2e49c40a4f2f9896e1968533df905c9bf5a17 ppc/krb5-workstation-1.4.3-5.5.ppc.rpm d5138a1387d0c53555f30b62453c4acc48c3f850 ppc/krb5-devel-1.4.3-5.5.ppc.rpm fb2b5ee96faeb4a32e5ebef492e3951f884be0b7 x86_64/debug/krb5-debuginfo-1.4.3-5.5.x86_64.rpm c38ff027c2fc12e2f5574978d447d3312f46c083 x86_64/krb5-server-1.4.3-5.5.x86_64.rpm ae8e4ccde571e411765b76813df63179cccb14b0 x86_64/krb5-libs-1.4.3-5.5.x86_64.rpm a429a9a7e6bc3716bc3762aed47949aafce2fe93 x86_64/krb5-devel-1.4.3-5.5.x86_64.rpm 4097c5826880d51c689cc2ac9598865d2d963d2e x86_64/krb5-workstation-1.4.3-5.5.x86_64.rpm dbfb9c6daf7737dba40ef46ee83311179664eddd i386/krb5-devel-1.4.3-5.5.i386.rpm b1d93b42f28f0722f758493897ee8036cce1d8ab i386/krb5-server-1.4.3-5.5.i386.rpm 0d7d3f5d147c26f023e16c5c21f45716bfc04ab2 i386/krb5-libs-1.4.3-5.5.i386.rpm 08bb2e80ac94de576b5bc6129c329fed91e215c1 i386/krb5-workstation-1.4.3-5.5.i386.rpm 270cb51345181477d454f97015af76c5b303a25e i386/debug/krb5-debuginfo-1.4.3-5.5.i386.rpm This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at . ---------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Mitigations for buffer overflow vulnerabilities and heap corruption in Fedora Core 5's krb5 are vital for enhancing network security and preventing exploits. Fedora Core, NetworkAuthentication, Stack Overflow Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 29, 2007 Critical Fedora
98

Red Hat RHSA-2006:0612-01 Important: krb5 Privilege Escalation Security Fix

Updated krb5 packages are now available for Red Hat Enterprise Linux 4 to correct a privilege escalation security flaw. This update has been rated as having important security impact by the Red Hat Security Response Team.. - --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Important: krb5 security update Advisory ID: RHSA-2006:0612-01 Advisory URL: https://access.redhat.com/errata/RHSA-2006:0612.html Issue date: 2006-08-08 Updated on: 2006-08-08 Product: Red Hat Enterprise Linux Keywords: setuid CVE Names: CVE-2006-3083 - ---------------------------------------------------------------------1. Summary: Updated krb5 packages are now available for Red Hat Enterprise Linux 4 to correct a privilege escalation security flaw. This update has been rated as having important security impact by the Red Hat Security Response Team. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux Desktop version 4 - i386, x86_64 Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64 3. Problem description: Kerberos is a network authentication system which allows clients and servers to authenticate to each other through use of symmetric encryption and a trusted third party, the KDC. A flaw was found where some bundled Kerberos-aware applications would fail to check the result of the setuid() call. On Linux 2.6 kernels, the setuid() call can fail if certain user limits are hit. A local attacker could manipulate their environment in such a way to get the applications to continue to run as root, potentially leading to an escalation of privileges. (CVE-2006-3083). Users are advised to update to these erratum packages which contain a backported fix to correct this issue. 4. Solution: Before applying thisupdate, make sure all previously released errata relevant to your system have been applied. This update is available via Red Hat Network. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date This will start an interactive process that will result in the appropriate RPMs being upgraded on your system. 5. Bug IDs fixed (http://bugzilla.redhat.com/): 197818 - CVE-2006-3083 krb5 multiple unsafe setuid usage 6. RPMs required: Red Hat Enterprise Linux AS version 4: SRPMS: cea37ecb1360d88c2fdc83f5419babc1 krb5-1.3.4-33.src.rpm i386: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm 77b0759d3fcc4545c27f34d4e300cc16 krb5-devel-1.3.4-33.i386.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm f3daae1ee3b0631b863635c375afe72a krb5-server-1.3.4-33.i386.rpm f6a4726c5d77d16ea2f0713c92f10bae krb5-workstation-1.3.4-33.i386.rpm ia64: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm e4d6ec50ae455203023d5e55b0cca4da krb5-debuginfo-1.3.4-33.ia64.rpm 5dc4a77a4b3c4492afa7f74e83d9f5d0 krb5-devel-1.3.4-33.ia64.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm b15d34edd402823f6b5d1d1d0f013d8d krb5-libs-1.3.4-33.ia64.rpm ce76f409b19d6824f5d1fdda67c323ef krb5-server-1.3.4-33.ia64.rpm 4ad475560c2723d011b6cf0faf8eca86 krb5-workstation-1.3.4-33.ia64.rpm ppc: c1739675331b5f8d819eac90ad29c222 krb5-debuginfo-1.3.4-33.ppc.rpm 379c91cb057181e02cdfd6092d3f746c krb5-debuginfo-1.3.4-33.ppc64.rpm 2f5cceda4ec3dcb5a0fca0829055f512 krb5-devel-1.3.4-33.ppc.rpm de6fdc9b22ed426ba7542018e9174adb krb5-libs-1.3.4-33.ppc.rpm 8759e9dd51c3614a5259db73e57a26a3 krb5-libs-1.3.4-33.ppc64.rpm 55ebf269ef488d8a281ee28fcb450383 krb5-server-1.3.4-33.ppc.rpm 4015802b89b7d6b92023a3da7787e30d krb5-workstation-1.3.4-33.ppc.rpm s390: e4a005da7af0377354f69308b9a9acef krb5-debuginfo-1.3.4-33.s390.rpm 55995e2d6b79c58dbb85ec2af716fe78 krb5-devel-1.3.4-33.s390.rpm 811ab87d0c59091d4a0de6e748086d5e krb5-libs-1.3.4-33.s390.rpm 3ec54f81728a0a9ae22afcb2855ed732 krb5-server-1.3.4-33.s390.rpm fe5ee4916e5aa24d499a1f8992d1036d krb5-workstation-1.3.4-33.s390.rpm s390x: e4a005da7af0377354f69308b9a9acef krb5-debuginfo-1.3.4-33.s390.rpm 43c2b4a0cf29aca1247d0c1d6ba4e24a krb5-debuginfo-1.3.4-33.s390x.rpm 4883f400df4d8123c70604a430f92647 krb5-devel-1.3.4-33.s390x.rpm 811ab87d0c59091d4a0de6e748086d5e krb5-libs-1.3.4-33.s390.rpm 1e13d025a766bc5ab50ebe3062586ef9 krb5-libs-1.3.4-33.s390x.rpm 7f3303ba3883bf0c5135cd39ed02122c krb5-server-1.3.4-33.s390x.rpm 1441e757a4e8e58ca29e7270a86d28ef krb5-workstation-1.3.4-33.s390x.rpm x86_64: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm ae306e728d14d34e3cf20aa9b979dcd9 krb5-debuginfo-1.3.4-33.x86_64.rpm feada102b3dd0995e10f63e7c53ccf65 krb5-devel-1.3.4-33.x86_64.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm 368e23d9adef4244a67b2e1951d2b74b krb5-libs-1.3.4-33.x86_64.rpm e0d823bbf3a2cd51b3e918ab8d669355 krb5-server-1.3.4-33.x86_64.rpm e1b4250df40a8d392f011b2c89f79966 krb5-workstation-1.3.4-33.x86_64.rpm Red Hat Enterprise Linux Desktop version 4: SRPMS: cea37ecb1360d88c2fdc83f5419babc1 krb5-1.3.4-33.src.rpm i386: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm 77b0759d3fcc4545c27f34d4e300cc16 krb5-devel-1.3.4-33.i386.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm f3daae1ee3b0631b863635c375afe72a krb5-server-1.3.4-33.i386.rpm f6a4726c5d77d16ea2f0713c92f10bae krb5-workstation-1.3.4-33.i386.rpm x86_64: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm ae306e728d14d34e3cf20aa9b979dcd9 krb5-debuginfo-1.3.4-33.x86_64.rpm feada102b3dd0995e10f63e7c53ccf65 krb5-devel-1.3.4-33.x86_64.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm 368e23d9adef4244a67b2e1951d2b74b krb5-libs-1.3.4-33.x86_64.rpm e0d823bbf3a2cd51b3e918ab8d669355 krb5-server-1.3.4-33.x86_64.rpm e1b4250df40a8d392f011b2c89f79966 krb5-workstation-1.3.4-33.x86_64.rpm Red Hat Enterprise Linux ES version 4: SRPMS: cea37ecb1360d88c2fdc83f5419babc1 krb5-1.3.4-33.src.rpm i386: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm 77b0759d3fcc4545c27f34d4e300cc16 krb5-devel-1.3.4-33.i386.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm f3daae1ee3b0631b863635c375afe72a krb5-server-1.3.4-33.i386.rpm f6a4726c5d77d16ea2f0713c92f10bae krb5-workstation-1.3.4-33.i386.rpm ia64: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm e4d6ec50ae455203023d5e55b0cca4da krb5-debuginfo-1.3.4-33.ia64.rpm 5dc4a77a4b3c4492afa7f74e83d9f5d0 krb5-devel-1.3.4-33.ia64.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm b15d34edd402823f6b5d1d1d0f013d8d krb5-libs-1.3.4-33.ia64.rpm ce76f409b19d6824f5d1fdda67c323ef krb5-server-1.3.4-33.ia64.rpm 4ad475560c2723d011b6cf0faf8eca86 krb5-workstation-1.3.4-33.ia64.rpm x86_64: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm ae306e728d14d34e3cf20aa9b979dcd9 krb5-debuginfo-1.3.4-33.x86_64.rpm feada102b3dd0995e10f63e7c53ccf65 krb5-devel-1.3.4-33.x86_64.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm 368e23d9adef4244a67b2e1951d2b74b krb5-libs-1.3.4-33.x86_64.rpm e0d823bbf3a2cd51b3e918ab8d669355 krb5-server-1.3.4-33.x86_64.rpm e1b4250df40a8d392f011b2c89f79966 krb5-workstation-1.3.4-33.x86_64.rpm Red Hat Enterprise Linux WS version 4: SRPMS: cea37ecb1360d88c2fdc83f5419babc1 krb5-1.3.4-33.src.rpm i386: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm 77b0759d3fcc4545c27f34d4e300cc16 krb5-devel-1.3.4-33.i386.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm f3daae1ee3b0631b863635c375afe72a krb5-server-1.3.4-33.i386.rpm f6a4726c5d77d16ea2f0713c92f10bae krb5-workstation-1.3.4-33.i386.rpm ia64: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm e4d6ec50ae455203023d5e55b0cca4da krb5-debuginfo-1.3.4-33.ia64.rpm 5dc4a77a4b3c4492afa7f74e83d9f5d0 krb5-devel-1.3.4-33.ia64.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm b15d34edd402823f6b5d1d1d0f013d8d krb5-libs-1.3.4-33.ia64.rpm ce76f409b19d6824f5d1fdda67c323ef krb5-server-1.3.4-33.ia64.rpm 4ad475560c2723d011b6cf0faf8eca86 krb5-workstation-1.3.4-33.ia64.rpm x86_64: 7a3e83832f13a55c39a1ccc079a5c556 krb5-debuginfo-1.3.4-33.i386.rpm ae306e728d14d34e3cf20aa9b979dcd9 krb5-debuginfo-1.3.4-33.x86_64.rpm feada102b3dd0995e10f63e7c53ccf65 krb5-devel-1.3.4-33.x86_64.rpm 7650a2f59eb97b17b141804e28f09d44 krb5-libs-1.3.4-33.i386.rpm 368e23d9adef4244a67b2e1951d2b74b krb5-libs-1.3.4-33.x86_64.rpm e0d823bbf3a2cd51b3e918ab8d669355 krb5-server-1.3.4-33.x86_64.rpm e1b4250df40a8d392f011b2c89f79966 krb5-workstation-1.3.4-33.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://www.cve.org/CVERecord?id=CVE-2006-3083 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2006 Red Hat, Inc. . Essential krb5 security patch for Red Hat Enterprise Linux swiftly resolves elevation of privilege vulnerability.. krb5 Update, Red Hat Security, Privilege Escalation Fix, Enterprise Linux Packages. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 08, 2006 Important Red Hat
200

Scientific Linux 40 i386: RHSA-2005:564-01 Important: PHP Security Update

Important: php security update. Date: Tue, 12 Jul 2005 18:00:55 -0500 Reply-To: Connie Sieh Sender: Security Errata for Scientific Linux From: Connie Sieh Subject: ERRATA for SL 40 i386 now available Comments: To: scientific The following ERRATA for SL 40 i386 are now available from: Synopsis: Important: krb5 security update Advisory ID: RHSA-2005:567-02 Cross references: RHSA-2005:562 Obsoletes: RHSA-2005:330 CVE Names: CAN-2004-0175 CAN-2005-1174 CAN-2005-1175 CAN-2005-1689 krb5-devel-1.3.4-17.i386.rpm krb5-libs-1.3.4-17.i386.rpm krb5-server-1.3.4-17.i386.rpm krb5-workstation-1.3.4-17.i386.rpm Synopsis: Important: php security update Advisory ID: RHSA-2005:564-01 CVE Names: CAN-2005-1751 CAN-2005-1921 php-4.3.9-3.7.i386.rpm php-devel-4.3.9-3.7.i386.rpm php-domxml-4.3.9-3.7.i386.rpm php-gd-4.3.9-3.7.i386.rpm php-imap-4.3.9-3.7.i386.rpm php-ldap-4.3.9-3.7.i386.rpm php-mbstring-4.3.9-3.7.i386.rpm php-mysql-4.3.9-3.7.i386.rpm php-ncurses-4.3.9-3.7.i386.rpm php-odbc-4.3.9-3.7.i386.rpm php-pear-4.3.9-3.7.i386.rpm php-pgsql-4.3.9-3.7.i386.rpm php-snmp-4.3.9-3.7.i386.rpm php-xmlrpc-4.3.9-3.7.i386.rpm -Connie Sieh . Critical security patch released for python and openssl now ready for Scientific Linux 40 x86_64 users.. PHP Update, Scientific Linux, Security Fix, Krb5 Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jul 12, 2005 Important Scientific Linux
87

Debian: DSA 630-1 Moderate: krb5 Buffer Overflow Remote Exploit

A buffer overflow has been discovered in the MIT Kerberos 5 administration library (libkadm5srv) that could lead to the execution of arbitrary code upon exploition by an authenticated user, not necessarily one with administrative privileges.. --------------------------------------------------------------------------Debian Security Advisory DSA 629-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Martin Schulze January 7th, 2005 http://www.debian.org/security/faq --------------------------------------------------------------------------Package : krb5 Vulnerability : buffer overflow Problem-Type : remote Debian-specific: no CVE ID : CAN-2004-1189 CERT advisory : VU#948033 A buffer overflow has been discovered in the MIT Kerberos 5 administration library (libkadm5srv) that could lead to the execution of arbitrary code upon exploition by an authenticated user, not necessarily one with administrative privileges. For the stable distribution (woody) this problem has been fixed in version 1.2.4-5woody7. For the unstable distribution (sid) this problem has been fixed in version 1.3.6-1. We recommend that you upgrade your krb5 packages. Upgrade Instructions --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody -------------------------------- Source archives: Size/MD5 checksum: 750 fd8435f38c5bcd9b9656e441fb9abd7b Size/MD5 checksum: 81950 5bd658c2b131f5c98492fdfd2203c9f1 Size/MD5 checksum: 5443051663add9b5942be74a86fa860a3fa4167 Architecture independent components: Size/MD5 checksum: 512852 a586905a2d9a4a429018bc428d77cfeb Alpha architecture: Size/MD5 checksum: 253702 19712094d12e7766dc834e3b70b726cc Size/MD5 checksum: 217456 6653e1ceba60003a3c0e4fedf57ae7b8 Size/MD5 checksum: 62972 f44bcc5f824112493dbf820d8d9f9780 Size/MD5 checksum: 252058 8ac2d05b6ec64d26137749f97179d1af Size/MD5 checksum: 76350 0baf0e32de0c39899f7652c2fe7decbe Size/MD5 checksum: 58996 227382de7c2ad7007533d5bb9db3253e Size/MD5 checksum: 207386 ea0e85672048212df246f062939405ff Size/MD5 checksum: 83846 b1cb2761a09e7dfebad5703f7314b18a Size/MD5 checksum: 633354 b318d375df92aa294f8ce67ee23b415f Size/MD5 checksum: 367340 7f4f229b988503116dfa16a9054e1ddf ARM architecture: Size/MD5 checksum: 197220 71d53462187b431161145eccfce87eba Size/MD5 checksum: 160508 9aaa1fb847673bd25ba2483d71392750 Size/MD5 checksum: 48708 6ae17ac7cd08bac12d2873123d851494 Size/MD5 checksum: 198516 5de1c2b049c3624ff46496af77192109 Size/MD5 checksum: 63622 5d5522dec0448e0f57729925f4733a46 Size/MD5 checksum: 49282 9dadd6c94226982fae36a2ded267b7f9 Size/MD5 checksum: 165904 650eb257e6193880923bea8a05f293e0 Size/MD5 checksum: 73498 072d2e11c2884d84210430eef483af62 Size/MD5 checksum: 493268 46fa4c8e6c1da46f6c6b255e01ef88c1 Size/MD5 checksum: 295080 9bfde95e00ee9696418ca5da91616790 Intel IA-32 architecture: Size/MD5 checksum: 179228 a76ef45d1a4a8aabed0b15b24b9ec220 Size/MD5 checksum: 152240 5a49ea9418559c2290f24cce35dcfb9b Size/MD5 checksum: 46264 1c1d448c13dfade70d6bb5d3f722de15 Size/MD5 checksum: 178458 07bb562f18804e4d8cddc148a3670b7a Size/MD5 checksum: 61242 f9a4dcec325f665a40c580d1ba99c54b Size/MD5 checksum: 46518 4f27f215a73ade44a1748d02048f9348 Size/MD5 checksum: 156490 b19d8b8ec196ecf0b17e5f88219c12b2 Size/MD5 checksum: 71902 79c696e69f8dc4c6d78ce1faafbe2ea7 Size/MD5 checksum: 433796 9c9572f53fe3682eecfc04bb8171604e Size/MD5 checksum: 293572 7f1ca7a5ed2d82a8f9189bf1a1ec99c2 Intel IA-64 architecture: Size/MD5 checksum: 322312 61b8ad79fd83c422081b6a2f741e9793 Size/MD5 checksum: 266472 6989d3d3ea7883886b839ef84653bf5f Size/MD5 checksum: 73630 d700745210e741d67c82787208047581 Size/MD5 checksum: 322258 b5ba2e83948c6a2d53be191becefbf7b Size/MD5 checksum: 91946 370334afbc348047be50c70cd0d17b95 Size/MD5 checksum: 70580 1085ec524bdfd01d49e703d21dcb48fa Size/MD5 checksum: 256178 1033a307f29af8b71cbfc33ed41117ba Size/MD5 checksum: 107554 0e9aa08760c993fb8e01d93641098bd6 Size/MD5 checksum: 705834 5db078dbcc1757387a6b082d284e170a Size/MD5 checksum: 474838 d39cc29e1932e0de982211e13a222f2f HP Precision architecture: Size/MD5 checksum: 214580 9172a73271b5aed476d2ca8a2114dfca Size/MD5 checksum: 189796 782f991598e5328f5a0e78109a44825c Size/MD5 checksum: 53956 8e40364d05614da946bd158550a0387e Size/MD5 checksum: 213998 b497bc1a454b910e55daecfc4a6dc3e1 Size/MD5 checksum: 68696 e19909923dd8193f4893795e1cfa4c6e Size/MD5 checksum: 55778 2bb68da6073971eba133deca950bf4be Size/MD5 checksum: 182972 66c3713fb30dd8867dc0acc9d7db6478 Size/MD5 checksum: 85010 34169dd553fb8fe913e4956eba7cb326 Size/MD5 checksum: 557994 b7d20bff0ace7b96ffb43b02075c3a0f Size/MD5 checksum: 362034 1f85525ed20c4209ecc7af240777907f Motorola 680x0 architecture: Size/MD5 checksum: 164280 a0fd4852453f095e5ec3a7e410c3ac20 Size/MD5 checksum: 144764 12b4577dd46ef614021d9c265997a06b Size/MD5 checksum: 44396 5bdc2e074fdfe9e2fc65b0ec9e7aa701 Size/MD5 checksum: 163984 4458d437d86a31668ed05074a3232a53 Size/MD5 checksum: 56926 653767628956cd2bb74316464b6a8fa8 Size/MD5 checksum: 44708 13373efa4ddf293f7c25d0719ca9d054 Size/MD5 checksum: 146048 121d69649d1358ea3e765ed8ecf92067 Size/MD5 checksum: 69894 0d8925458afaddb1ea3e5e234665a7c8 Size/MD5 checksum: 408742 911321c5e848b376e4413275a3aa3edb Size/MD5 checksum: 277164 17d93df1412a4b52812a3c58dc1152b2 Big endian MIPS architecture: Size/MD5 checksum: 206620 67b13bb87dae8ccb0582329130b6a54b Size/MD5 checksum: 191174 6cbd3dbd27fa80f9eb1f3d2d4f6243e3 Size/MD5 checksum: 53392 07e4c1f5c5a1dd2c8da0fd3b85b08960 Size/MD5 checksum: 209646 b397529a52e73e04acb481af8c249f85 Size/MD5 checksum: 66476 9834075645839aa4f537478704212da1 Size/MD5 checksum: 54946 d37b2b796e741345b0fd56316ebd2491 Size/MD5 checksum: 175320 914cf4383aef1721137d0e023bfc31d2 Size/MD5 checksum: 72166 64fe0febbf5b3a3d904b8d21c5cee908 Size/MD5 checksum: 541216 86c717f14d707e240a2641bf4ad13ac9 Size/MD5 checksum: 308390 86077c1ec60a73156122ed8e62fc7b5f Little endian MIPS architecture: Size/MD5 checksum: 210750 686553fd7424ebcf16f60658e03ae380 Size/MD5 checksum: 190880 387b805b318536f5228349c0e5fdad4b Size/MD5 checksum: 53576 e7eb889a82d6edc077f1a097a07b0fa5 Size/MD5 checksum: 213246 06d845631194d3fee5edf9003a653260 Size/MD5 checksum: 66812 303a167555ae9731895485cd2314d56a Size/MD5 checksum: 54822 b075bedf7c7ca0e3d88f9ed9ffcf4f68 Size/MD5 checksum: 177162 f5241d2f197d2238872eb67ea3c4c114 Size/MD5 checksum: 71982 6b5adeb0b00b2b7aaeca2cbe77d3a4c9 Size/MD5 checksum: 540774 9057fc23104971b4ff664520f476c288 Size/MD5 checksum: 307056 98bce9e5d5f5a0453b73252192aaec7c PowerPC architecture: Size/MD5 checksum: 188368 225a6452126da3f0ba0c564f49a37458 Size/MD5 checksum: 164044 d828611dc4b689ea4766fa04c1cb6c11 Size/MD5 checksum: 49260 00db64e5595b941a161756193e319e5a Size/MD5 checksum: 189428 30872f8a05f28768347586a93c46927a Size/MD5 checksum: 62624 ea9a956f02a5757b3f548f99290b386d Size/MD5 checksum: 49212 b701544d3969a2b257990fdc65d7e8b4 Size/MD5 checksum: 162676 65e04fd60db7ab11dd805b5f3a0616de Size/MD5 checksum: 73946 9ce4eb5b654f77d8d067bf03a5142016 Size/MD5 checksum: 490818 806fa4962bb572653e31ffb3d5cd679b Size/MD5 checksum: 303460 45e561def5d91b3ddb48677c73bc53e9 IBM S/390 architecture: Size/MD5 checksum: 189214 7e560df38087e8ab7d6a2f1edfff5c85 Size/MD5 checksum: 166324 6c96d29a1f1780d00de5a581ef262748 Size/MD5 checksum: 50182 956bd389245a580bcc971ce487cac651 Size/MD5 checksum: 190506 35adeae94731ddf83a6a2be01caef546 Size/MD5 checksum: 66986 a48d89ffb4dea968ed081d332fa0adcc Size/MD5 checksum: 50154 6cf93e5e8b07bf1018d592c8a286352b Size/MD5 checksum: 164278 3ae59fb004fd3599ae43a3d0f8610b6a Size/MD5 checksum: 76526 d5f46ae47e713075a0fea7c50dcdd674 Size/MD5 checksum: 453372 c83b159129b9205372ed7008b9101f92 Size/MD5 checksum: 319554 f17c6dbddd8f2943cf23bac88bf1acda Sun Sparc architecture: Size/MD5 checksum: 183348 55972acf919f23ea353fb0786c5ec5f2 Size/MD5 checksum: 172928 1295410931bf30680325dbe117e89def Size/MD5 checksum: 49670 b77a7a3e9f9ad2a3df59e4d9c370ce1b Size/MD5 checksum: 184250 80d13501ba9678bb18101a4874d7557b Size/MD5 checksum: 64280 81783f7fa2e751ba764ceae870ec0ba5 Size/MD5 checksum: 49656 b2ff878087b2832c99450bd926461f74 Size/MD5 checksum: 159440b8187f396cae6baad31a220ffdc65e17 Size/MD5 checksum: 73296 1c5118443ff901d6529ee74eac861e42 Size/MD5 checksum: 462932 b111679bc2a72aa53cf0aedae56b1114 Size/MD5 checksum: 301332 69b896457af836873e9da5685c74061c These files will probably be moved into the stable distribution on its next update. ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Uncover the solution to a stack overflow vulnerability within the Debian kerberos software to avert unauthorized code execution.. Debian Security Advisory, krb5 exploits, buffer overflow fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 07, 2005 Important Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here