Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 428
Alerts This Week
Warning Icon 1 428

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -2 articles for you...
219

Rocky Linux 8 RLSA-2023-6976 libfastjson Moderate Integer Overflow

Moderate: libfastjson security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2023:6976", "synopsis": "Moderate: libfastjson security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for libfastjson.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The libfastjson library provides essential JavaScript Object Notation (JSON) handling functions. The library enables users to construct JSON objects in C, output them as JSON-formatted strings, and convert JSON-formatted strings back to the C representation of JSON objects.\n\nSecurity Fix(es):\n\n* json-c, libfastjson: integer overflow and out-of-bounds write via a large JSON file (CVE-2020-12762)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the Rocky Linux 8.9 Release Notes linked from the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "1835253", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=1835253", "description": ""}], "cves": [{"name": "CVE-2020-12762", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12762", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-06-27T00:01:04.193077Z", "rpms": {"Rocky Linux 8": {"nvras": ["libfastjson-0:0.99.9-2.el8.aarch64.rpm", "libfastjson-0:0.99.9-2.el8.i686.rpm", "libfastjson-0:0.99.9-2.el8.src.rpm", "libfastjson-0:0.99.9-2.el8.x86_64.rpm", "libfastjson-debuginfo-0:0.99.9-2.el8.aarch64.rpm", "libfastjson-debuginfo-0:0.99.9-2.el8.i686.rpm","libfastjson-debuginfo-0:0.99.9-2.el8.x86_64.rpm", "libfastjson-debugsource-0:0.99.9-2.el8.aarch64.rpm", "libfastjson-debugsource-0:0.99.9-2.el8.i686.rpm", "libfastjson-debugsource-0:0.99.9-2.el8.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Stay informed with the latest moderate libfastjson security update for Rocky Linux addressing integer overflow issues.. libfastjson update, Rocky Linux security, integer overflow fix, CVSS score, JSON handling. . Severity: moderate. LinuxSecurity.com Team

Calendar%202 Jun 27, 2026 moderate Rocky Linux
219

Rocky Linux libfastjson Addresses Moderate Integer Overflow Security Issue

Moderate: libfastjson security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2023:6431", "synopsis": "Moderate: libfastjson security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for libfastjson.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The libfastjson library provides essential JavaScript Object Notation (JSON) handling functions. The library enables users to construct JSON objects in C, output them as JSON-formatted strings, and convert JSON-formatted strings back to the C representation of JSON objects.\n\nSecurity Fix(es):\n\n* json-c, libfastjson: integer overflow and out-of-bounds write via a large JSON file (CVE-2020-12762)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the Rocky Linux 9.3 Release Notes linked from the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "1835253", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=1835253", "description": ""}], "cves": [{"name": "CVE-2020-12762", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12762", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-06-25T12:03:37.665962Z", "rpms": {"Rocky Linux 9": {"nvras": ["libfastjson-0:0.99.9-5.el9.aarch64.rpm", "libfastjson-0:0.99.9-5.el9.i686.rpm", "libfastjson-0:0.99.9-5.el9.ppc64le.rpm", "libfastjson-0:0.99.9-5.el9.s390x.rpm", "libfastjson-0:0.99.9-5.el9.src.rpm", "libfastjson-0:0.99.9-5.el9.x86_64.rpm","libfastjson-debuginfo-0:0.99.9-5.el9.aarch64.rpm", "libfastjson-debuginfo-0:0.99.9-5.el9.i686.rpm", "libfastjson-debuginfo-0:0.99.9-5.el9.ppc64le.rpm", "libfastjson-debuginfo-0:0.99.9-5.el9.s390x.rpm", "libfastjson-debuginfo-0:0.99.9-5.el9.x86_64.rpm", "libfastjson-debugsource-0:0.99.9-5.el9.aarch64.rpm", "libfastjson-debugsource-0:0.99.9-5.el9.i686.rpm", "libfastjson-debugsource-0:0.99.9-5.el9.ppc64le.rpm", "libfastjson-debugsource-0:0.99.9-5.el9.s390x.rpm", "libfastjson-debugsource-0:0.99.9-5.el9.x86_64.rpm", "libfastjson-devel-0:0.99.9-5.el9.aarch64.rpm", "libfastjson-devel-0:0.99.9-5.el9.ppc64le.rpm", "libfastjson-devel-0:0.99.9-5.el9.s390x.rpm", "libfastjson-devel-0:0.99.9-5.el9.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Essential libfastjson security update for Rocky Linux involves a critical fix for integer overflow issues impacting JSON processing.. libfastjson repair, Rocky Linux mitigation, JSON handling security, moderate security patch. . Severity: moderate. LinuxSecurity.com Team

Calendar%202 Jun 25, 2026 moderate Rocky Linux
197

Debian 11: libfastjson Important Out-Of-Bounds Issue DLA-4258-1

An issue has been found in libfastjson, a fast json library for C. Due to missing checks, out-of-bounds write might happen when parsing large JSON files. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4258-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Thorsten Alteholz July 28, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : libfastjson Version : 0.99.9-1+deb11u1 CVE ID : CVE-2020-12762 An issue has been found in libfastjson, a fast json library for C. Due to missing checks, out-of-bounds write might happen when parsing large JSON files. For Debian 11 bullseye, this problem has been fixed in version 0.99.9-1+deb11u1. We recommend that you upgrade your libfastjson packages. For the detailed security status of libfastjson please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/libfastjson Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Important patch for libfastjson addresses a memory corruption vulnerability that impacts JSON decoding on Debian LTS platforms.. libfastjson security, Debian LTS update, JSON library vulnerability, Debian security advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 28, 2025 Important Debian LTS
100

SUSE: 2024:1850-2 Critical: libmypackage Memory Leak Resolution

* bsc#1171479 Cross-References: * CVE-2020-12762 . # Security update for libfastjson Announcement ID: SUSE-SU-2024:1846-1 Rating: important References: * bsc#1171479 Cross-References: * CVE-2020-12762 CVSS scores: * CVE-2020-12762 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2020-12762 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for libfastjson fixes the following issues: * CVE-2020-12762: Fixed integer overflow and out-of-bounds write via a large JSON file (bsc#1171479). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-1846=1 * SUSE Linux Enterprise Server 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-1846=1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-1846=1 ## Package List: * SUSE Linux Enterprise High Performance Computing 12 SP5 (aarch64 x86_64) * libfastjson4-0.99.8-3.6.1 * libfastjson4-debuginfo-0.99.8-3.6.1 * libfastjson-debugsource-0.99.8-3.6.1 * SUSE Linux Enterprise Server 12 SP5 (aarch64 ppc64le s390x x86_64) * libfastjson4-0.99.8-3.6.1 * libfastjson4-debuginfo-0.99.8-3.6.1 * libfastjson-debugsource-0.99.8-3.6.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 (ppc64le x86_64) * libfastjson4-0.99.8-3.6.1 * libfastjson4-debuginfo-0.99.8-3.6.1 * libfastjson-debugsource-0.99.8-3.6.1 ## References: *https://www.suse.com/security/cve/CVE-2020-12762.html * https://bugzilla.suse.com/show_bug.cgi?id=1171479 . The update for libfastjson resolves critical integer overflow vulnerabilities, bolstering the security of your systems. Check the installation guidelines for the new patch.. libfastjson updates, SUSE advisory, system integrity, security updates. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 29, 2024 Important SuSE
100

SUSE: 2024:1775-1 Important: Libfastjson Integer Overflow Resolved

* bsc#1171479 Cross-References: * CVE-2020-12762 . # Security update for libfastjson Announcement ID: SUSE-SU-2024:1775-1 Rating: important References: * bsc#1171479 Cross-References: * CVE-2020-12762 CVSS scores: * CVE-2020-12762 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2020-12762 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves one vulnerability can now be installed. ## Description: This update for libfastjson fixes the following issues: * CVE-2020-12762: Fixed integer overflow and out-of-bounds write via a large JSON file (bsc#1171479). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2024-1775=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2024-1775=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2024-1775=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-1775=1 * SUSE Linux Enterprise Server for SAPApplications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2024-1775=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-1775=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2024-1775=1 ## Package List: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (aarch64 x86_64) * libfastjson-debugsource-0.99.8-150000.3.3.1 * libfastjson4-debuginfo-0.99.8-150000.3.3.1 * libfastjson-devel-0.99.8-150000.3.3.1 * libfastjson4-0.99.8-150000.3.3.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * libfastjson-debugsource-0.99.8-150000.3.3.1 * libfastjson4-debuginfo-0.99.8-150000.3.3.1 * libfastjson-devel-0.99.8-150000.3.3.1 * libfastjson4-0.99.8-150000.3.3.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (aarch64 ppc64le s390x x86_64) * libfastjson-debugsource-0.99.8-150000.3.3.1 * libfastjson4-debuginfo-0.99.8-150000.3.3.1 * libfastjson-devel-0.99.8-150000.3.3.1 * libfastjson4-0.99.8-150000.3.3.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * libfastjson-debugsource-0.99.8-150000.3.3.1 * libfastjson4-debuginfo-0.99.8-150000.3.3.1 * libfastjson-devel-0.99.8-150000.3.3.1 * libfastjson4-0.99.8-150000.3.3.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * libfastjson-debugsource-0.99.8-150000.3.3.1 * libfastjson4-debuginfo-0.99.8-150000.3.3.1 * libfastjson-devel-0.99.8-150000.3.3.1 * libfastjson4-0.99.8-150000.3.3.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * libfastjson-debugsource-0.99.8-150000.3.3.1 * libfastjson4-debuginfo-0.99.8-150000.3.3.1 * libfastjson-devel-0.99.8-150000.3.3.1 * libfastjson4-0.99.8-150000.3.3.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * libfastjson-debugsource-0.99.8-150000.3.3.1 *libfastjson4-debuginfo-0.99.8-150000.3.3.1 * libfastjson-devel-0.99.8-150000.3.3.1 * libfastjson4-0.99.8-150000.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2020-12762.html * https://bugzilla.suse.com/show_bug.cgi?id=1171479 . Key enhancements for libfastjson address a significant vulnerability in SUSE Enterprise platforms. Apply the updates without delay.. libfastjson update, SUSE Enterprise Storage, security patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 24, 2024 Important SuSE
197

Debian 10: DLA-3461-1 Critical Libfastjson Out-Of-Bounds Issue

An issue has been found in libfastjson, a fast json library for C. Due to missing checks, out-of-bounds write might happen when parsing large JSON files. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3461-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Thorsten Alteholz June 20, 2023 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : libfastjson Version : 0.99.8-2+deb10u1 CVE ID : CVE-2020-12762 An issue has been found in libfastjson, a fast json library for C. Due to missing checks, out-of-bounds write might happen when parsing large JSON files. For Debian 10 buster, this problem has been fixed in version 0.99.8-2+deb10u1. We recommend that you upgrade your libfastjson packages. For the detailed security status of libfastjson please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/libfastjson Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Correction implemented for buffer overflow vulnerability in libfastjson JSON library on Debian 10. Users are strongly advised to upgrade for enhanced security measures.. libfastjson update, JSON library security, Debian LTS fix, coding errors, security best practices. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 20, 2023 Critical Debian LTS
203

Mageia 8: 2023-0160 Urgent: Libfastjson Buffer Overflow Vulnerability

Integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend. (CVE-2020-12762) References: - https://bugs.mageia.org/show_bug.cgi?id=31812 . MGASA-2023-0159 - Updated libfastjson packages fix security vulnerability Publication date: 06 May 2023 URL: https://advisories.mageia.org/MGASA-2023-0159.html Type: security Affected Mageia releases: 8 CVE: CVE-2020-12762 Integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend. (CVE-2020-12762) References: - https://bugs.mageia.org/show_bug.cgi?id=31812 - https://github.com/advisories/GHSA-3797-gmjf-45gm - https://nvd.nist.gov/vuln/detail/CVE-2020-12762 - https://www.cve.org/CVERecord?id=CVE-2020-12762 SRPMS: - 8/core/libfastjson-1.2304.0-1.mga8 . Enhanced libfastjson versions in Mageia address integer overflow and out-of-bounds vulnerabilities associated with substantial JSON documents.. Mageia Security Update, Libfastjson Patch, JSON Issues. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 06, 2023 Critical Mageia
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200