Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
198

Arch Linux ASA-201605-9 High Severity: latex2rtf Arbitrary Code Execution

The package latex2rtf before version 2.3.10-1 is vulnerable to arbitrary code execution. . Arch Linux Security Advisory ASA-201605-9 ======================================== Severity: High Date : 2016-05-06 CVE-ID : CVE-2015-8106 Package : latex2rtf Type : arbitrary code execution Remote : Yes Link : https://wiki.archlinux.org/title/CVE Summary ====== The package latex2rtf before version 2.3.10-1 is vulnerable to arbitrary code execution. Resolution ========= Upgrade to 2.3.10-1. # pacman -Syu "latex2rtf> =2.3.10-1" The problem has been fixed upstream in version 2.3.10. Workaround ========= None. Description ========== A format string vulnerability was found in the CmdKeywords() function, where the user-controlled variable 'keywords' is passed as a format argument to vnsprintf(), when processing the \keywords command in a TeX file. Impact ===== An attacker can execute arbitrary code on the affected host by supplying a crafted TeX file. References ========= https://www.openwall.com/lists/oss-security/2015/11/16/39 https://access.redhat.com/security/cve/CVE-2015-8106 . Arch Linux Security Advisory ASA-202310-4 highlights a critical vulnerability in libxml2 that could facilitate unauthorized data access.. Arch Linux, latex2rtf, code execution threat, security advisory, updates. . LinuxSecurity.com Team

Calendar 2 May 06, 2016 ArchLinux
89

Fedora 23: FEDORA-2016-b9368247d4 moderate: latex2rtf format string

Update to 2.3.10 for CVE-2015-8106. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-b9368247d4 2016-04-09 10:22:58.046350 -------------------------------------------------------------------------------- Name : latex2rtf Product : Fedora 23 Version : 2.3.10 Release : 1.fc23 URL : Summary : LaTeX to RTF converter that handles equations, figures, and cross-references Description : LaTeX2rtf is a translator program which is intended to translate a LaTeX document (precisely: the text and a limited subset of LaTeX tags) into the RTF format which can be imported by several text processors (including Microsoft Word for Windows and Word for Macintosh). -------------------------------------------------------------------------------- Update Information: Update to 2.3.10 for CVE-2015-8106 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1282492 - CVE-2015-8106 latex2rtf: Format string vulnerability in CmdKeywords https://bugzilla.redhat.com/show_bug.cgi?id=1282492 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update latex2rtf' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . The release of latex2rtf 2.3.10 resolves CVE-2015-8106, targeting a format string vulnerability, thus enhancing protection for Fedora 23 users.. Fedora Security Update, latex2rtf Fix, Format String Issue. .LinuxSecurity.com Team

Calendar 2 Apr 09, 2016 Fedora
89

Fedora 22: FEDORA-2016-246417376c Moderate: latex2rtf Format Issue

Update to 2.3.10 for CVE-2015-8106. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-246417376c 2016-04-08 19:41:16.227879 -------------------------------------------------------------------------------- Name : latex2rtf Product : Fedora 22 Version : 2.3.10 Release : 1.fc22 URL : Summary : LaTeX to RTF converter that handles equations, figures, and cross-references Description : LaTeX2rtf is a translator program which is intended to translate a LaTeX document (precisely: the text and a limited subset of LaTeX tags) into the RTF format which can be imported by several text processors (including Microsoft Word for Windows and Word for Macintosh). -------------------------------------------------------------------------------- Update Information: Update to 2.3.10 for CVE-2015-8106 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1282492 - CVE-2015-8106 latex2rtf: Format string vulnerability in CmdKeywords https://bugzilla.redhat.com/show_bug.cgi?id=1282492 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update latex2rtf' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Patch for latex2rtf in Fedora 22 to rectify CVE-2015-8106 format string vulnerability for improved security implementation.. Fedora Updates, latex2rtf, CVE-2015-8106 SecurityFix. . LinuxSecurity.com Team

Calendar 2 Apr 08, 2016 Fedora
89

Fedora 24 latex2rtf Update: Format String Issue and Fix

Update to 2.3.10 for CVE-2015-8106. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-3e320f369e 2016-04-05 10:09:11.083931 -------------------------------------------------------------------------------- Name : latex2rtf Product : Fedora 24 Version : 2.3.10 Release : 1.fc24 URL : Summary : LaTeX to RTF converter that handles equations, figures, and cross-references Description : LaTeX2rtf is a translator program which is intended to translate a LaTeX document (precisely: the text and a limited subset of LaTeX tags) into the RTF format which can be imported by several text processors (including Microsoft Word for Windows and Word for Macintosh). -------------------------------------------------------------------------------- Update Information: Update to 2.3.10 for CVE-2015-8106 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1282492 - CVE-2015-8106 latex2rtf: Format string vulnerability in CmdKeywords https://bugzilla.redhat.com/show_bug.cgi?id=1282492 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update latex2rtf' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . -------------------------------------------------------------------------------- Fedora Update Notif. update, cve-2015-8106,-----------------------------------------------------------------. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 05, 2016 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here