Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
197

Debian 11 DLA-4137-1: Critical libbpf Use-After-Free and Null-Pointer Fix

Two vulnerabilities have been fixed in libbpf, a library for interacting with eBPF in the Linux kernel. CVE-2022-3534 . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4137-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Adrian Bunk April 24, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : libbpf Version : 0.3-2+deb11u1 CVE ID : CVE-2022-3534 CVE-2022-3606 Debian Bug : 1023717 Two vulnerabilities have been fixed in libbpf, a library for interacting with eBPF in the Linux kernel. CVE-2022-3534 use-after-free in btf_dump_name_dups() CVE-2022-3606 null-pointer dereference in find_prog_by_sec_insn() For Debian 11 bullseye, these problems have been fixed in version 0.3-2+deb11u1. We recommend that you upgrade your libbpf packages. For the detailed security status of libbpf please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/libbpf Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Two significant flaws addressed in libbpf. Users of Debian 11 are urged to upgrade for improved protection.. libbpf Security Update, Debian LTS Advisory, Linux Kernel Security. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 24, 2025 Critical Debian LTS
202

openSUSE Leap 15.4: SUSE-SU-2023:0406-1 Critical Updates for libbpf Issues

An update that fixes two vulnerabilities is now available.. SUSE Security Update: Security update for libbpf ______________________________________________________________________________ Announcement ID: SUSE-SU-2023:0405-1 Rating: important References: #1204391 #1204502 Cross-References: CVE-2022-3534 CVE-2022-3606 CVSS scores: CVE-2022-3534 (NVD) : 8 CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2022-3534 (SUSE): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H CVE-2022-3606 (NVD) : 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVE-2022-3606 (SUSE): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Affected Products: SUSE Linux Enterprise Desktop 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Module for Basesystem 15-SP4 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap 15.4 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for libbpf fixes the following issues: - CVE-2022-3534: Fixed use-after-free in btf_dump_name_dups (bsc#1204391). - CVE-2022-3606: Fixed null pointer dereference in find_prog_by_sec_insn() (bsc#1204502). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2023-405=1 - SUSE Linux Enterprise Module for Basesystem 15-SP4: zypper in-t patch SUSE-SLE-Module-Basesystem-15-SP4-2023-405=1 Package List: - openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64): libbpf-debugsource-0.5.0-150400.3.3.1 libbpf-devel-0.5.0-150400.3.3.1 libbpf0-0.5.0-150400.3.3.1 libbpf0-debuginfo-0.5.0-150400.3.3.1 - openSUSE Leap 15.4 (x86_64): libbpf0-32bit-0.5.0-150400.3.3.1 libbpf0-32bit-debuginfo-0.5.0-150400.3.3.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (aarch64 ppc64le s390x x86_64): libbpf-debugsource-0.5.0-150400.3.3.1 libbpf0-0.5.0-150400.3.3.1 libbpf0-debuginfo-0.5.0-150400.3.3.1 References: https://www.suse.com/security/cve/CVE-2022-3534.html https://www.suse.com/security/cve/CVE-2022-3606.html https://bugzilla.suse.com/1204391 https://bugzilla.suse.com/1204502 . Critical libbpf security updates for openSUSE Leap 15.4 to fix important vulnerabilities. Update now!. libbpf Update, openSUSE Security, Vulnerability Fixes, Important Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 14, 2023 Important OpenSUSE
172

Ubuntu 22.10: 5759-2 Alert: LibBPF Buffer Overflow Leads to Security Breach

Several security issues were fixed in LibBPF.. =========================================================================Ubuntu Security Notice USN-5759-1 December 05, 2022 libbpf vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.10 - Ubuntu 22.04 LTS Summary: Several security issues were fixed in LibBPF. Software Description: - libbpf: eBPF helper library (development files) Details: It was discovered that LibBPF incorrectly handled certain memory operations under certain circumstances. An attacker could possibly use this issue to cause LibBPF to crash, resulting in a denial of service, or possibly execute arbitrary code. This issue only affected Ubuntu 22.10. (CVE-2021-45940, CVE-2021-45941, CVE-2022-3533) It was discovered that LibBPF incorrectly handled certain memory operations under certain circumstances. An attacker could possibly use this issue to cause LibBPF to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2022-3534, CVE-2022-3606) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.10: libbpf-dev 1:0.8.0-1ubuntu22.10.1 Ubuntu 22.04 LTS: libbpf-dev 1:0.5.0-1ubuntu22.04.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5759-1 CVE-2021-45940, CVE-2021-45941, CVE-2022-3533, CVE-2022-3534, CVE-2022-3606 Package Information: https://launchpad.net/ubuntu/+source/libbpf/0.8.0-1ubuntu22.10.1 . LibBPF encountered serious vulnerabilities patched in Ubuntu versions 22.04 and 22.10. Users at risk are urged to perform updates.. LibBPF Exploit, Ubuntu Security, Memory Management Issues. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 05, 2022 Critical Ubuntu
89

Fedora 33: FEDORA-2021-4786624190 Moderate: Libbpf Kernel Rebase

The 5.13.3 stable kernel rebase contains new features, improved hardware support, and a number of important fixes across the tree.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-4786624190 2021-07-22 01:15:41.725857 --------------------------------------------------------------------------------Name : libbpf Product : Fedora 33 Version : 0.4.0 Release : 1.fc33 URL : https://github.com/libbpf/libbpf Summary : Libbpf library Description : A mirror of bpf-next linux tree bpf-next/tools/lib/bpf directory plus its supporting header files. The version of the package reflects the version of ABI. --------------------------------------------------------------------------------Update Information: The 5.13.3 stable kernel rebase contains new features, improved hardware support, and a number of important fixes across the tree. --------------------------------------------------------------------------------ChangeLog: * Mon Jul 19 2021 Justin M. Forbes - 2:0.4.0-1 - release 0.4.0-1 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-4786624190' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines:https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Beware of the important libbpf update for Fedora 33, introducing vital fixes and new features enhancing support.. Fedora Update, libbpf Library, Kernel Rebase, Software Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jul 21, 2021 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here