Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
200

Scientific Linux SL4.x Security Update: libgtop2 Moderate Risk

Moderate: libgtop2 security update. Date: Wed, 8 Aug 2007 14:58:00 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for libgtop2 on SL4.x i386/x86_64 Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it. Synopsis: Moderate: libgtop2 security update Issue date: 2007-08-07 CVE Names: CVE-2007-0235 A flaw was found in the way libgtop2 handled long filenames mapped into the address space of a process. An attacker could execute arbitrary code on behalf of the user running gnome-system-monitor by executing a process and mapping a file with a specially crafted name into the processes' address space. (CVE-2007-0235) This update also fixes the following bug: * when a version of libgtop2 compiled to run on a 32-bit architecture was used to inspect a process running in 64-bit mode, it failed to report certain information regarding address space mapping correctly. SL 4.x SRPMS: libgtop2-2.8.0-1.0.2.src.rpm i386: libgtop2-2.8.0-1.0.2.i386.rpm libgtop2-devel-2.8.0-1.0.2.i386.rpm x86_64: libgtop2-2.8.0-1.0.2.i386.rpm libgtop2-2.8.0-1.0.2.x86_64.rpm libgtop2-devel-2.8.0-1.0.2.x86_64.rpm -Connie Sieh -Troy Dawson . An important security patch for libgtop2 on Scientific Linux resolves a vulnerability that enables unauthorized code execution.. libgtop2 Security Update, Scientific Linux Security Advisory, Arbitrary Code Execution Fix. . LinuxSecurity.com Team

Calendar 2 Aug 08, 2007 Scientific Linux
87

Debian DSA 1255-1 Critical: Libgtop2 Buffer Overflow Threat

Updated package.. - --------------------------------------------------------------------------Debian Security Advisory DSA 1255-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff January 31st, 2007 http://www.debian.org/security/faq - --------------------------------------------------------------------------Package : libgtop2 Vulnerability : buffer overflow Problem-Type : local Debian-specific: no CVE ID : CVE-2007-0235 Debian Bug : 407020 Liu Qishuai discovered that the GNOME gtop library performs insufficient sanitising when parsing the system's /proc table, which may lead to the execution of arbitrary code. For the stable distribution (sarge) this problem has been fixed in version 2.6.0-4sarge1. For the upcoming stable distribution (etch) this problem has been fixed in version 2.14.4-3. For the unstable distribution (sid) this problem has been fixed in version 2.14.4-3. We recommend that you upgrade your libgtop2 packages. Upgrade Instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.1 alias sarge - -------------------------------- Source archives: Size/MD5 checksum: 1558 6e012a83940fe31ae0d64ced366a58e9 Size/MD5 checksum: 58508 d66ed1acf2831f659342792a1787ddbc Size/MD5 checksum: 1483167 aeae36a2da64b2b341b0b9db8a2d085c Alpha architecture: Size/MD5 checksum: 363984 b82767ef44963fb6d5945b7edfd3c055 Size/MD5 checksum: 38320 d40106921373e4cef359195b597e3ee2 Size/MD5 checksum: 100094 eb2cc8982703c37a65e38d706bfe916b AMD64 architecture: Size/MD5 checksum: 361060 9294a928287ce471a3218adbb86f53a4 Size/MD5 checksum: 37626 95373955bd4cbc749dde63b7e530650c Size/MD5 checksum: 90420 58541ddbeba9aef54baf1ca66a9e55c6 ARM architecture: Size/MD5 checksum: 359864 8e088f34eccb68ff8c82b4018c492dc0 Size/MD5 checksum: 36146 1e31c5281dc868e069a6b281e741dcbf Size/MD5 checksum: 92496 73203ae1976e14c34fb217270fa4527a HP Precision architecture: Size/MD5 checksum: 365318 d9a135ac041dc789b861161c7ba21f61 Size/MD5 checksum: 37572 a2f6faba4370e79305f4809abde941a8 Size/MD5 checksum: 95446 0a3d6c322172255a64275499ce91707b Intel IA-32 architecture: Size/MD5 checksum: 361340 4dc929bdc5b03c772b4f39c35d06aef0 Size/MD5 checksum: 36444 e9751591cff993c6bf0def55e430da0e Size/MD5 checksum: 90800 06925a21375447779f87e9b440fea29e Intel IA-64 architecture: Size/MD5 checksum: 368376 ce61826e7e7be0cb0b78aff82a16a989 Size/MD5 checksum: 40018 9f318e6a714e0ffe7286b343cab4d01e Size/MD5 checksum: 100456 0069bd4595ab148e463304102f6f0454 Motorola 680x0 architecture: Size/MD5 checksum: 358446 4e6a0874bbc2dc2ec7ff16707d10ec6e Size/MD5 checksum: 35892 6f42db70e6f9dd4b05129d403805b69e Size/MD5 checksum: 85486 47350bc782385b49cb70fd9932c79613 Big endian MIPS architecture: Size/MD5 checksum: 359904 6f0b86cd9dff9b34657bc1461a3297f7 Size/MD5 checksum: 37428 e0e158c23acba429687f6f7daac94e15 Size/MD5 checksum: 93148 cc7b5caf7f59f6071f462bcd6b7a41a7 Little endian MIPS architecture: Size/MD5 checksum: 359952 3dd91f0a99c72837c935d29cabf391b7 Size/MD5 checksum: 37418 159ffeb3dd3cc3eb2730dd2ed3dcfaaf Size/MD5 checksum: 932807c39762ad4fbbd839b4237ee8200a5e5 PowerPC architecture: Size/MD5 checksum: 362772 f9d055f15f97182b28d9f3ef66bac8a6 Size/MD5 checksum: 38218 ef49976f3e321177dc09c0881691cc94 Size/MD5 checksum: 91700 b5756141d6a49bb3b3223d825003c283 IBM S/390 architecture: Size/MD5 checksum: 363564 a6772e12fe606ee5e6253d2ea17dec5f Size/MD5 checksum: 37424 eac2d13c0e19b8cd513b95d773853e9f Size/MD5 checksum: 92106 915785051d79b03196cccc508acb1a42 Sun Sparc architecture: Size/MD5 checksum: 359220 9f195aa576358b0b7a8c7e1ae4cf6580 Size/MD5 checksum: 36184 c929e83611c822f8543ccdf7af13b0e0 Size/MD5 checksum: 88696 0695ec78b9b32ff2ccad5d7894760e03 These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . The Debian security advisory DSA 1255-1 addresses a severe buffer overflow flaw in the libgtop2 library, reducing risks of arbitrary code execution.. Debian Security, Libgtop2 Update, Buffer Overflow Risk. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 31, 2007 Critical Debian
172

Ubuntu 5.10, 6.06 LTS, 6.10 USN-407-1 Critical: Libgtop2 Buffer Overflow

Liu Qishuai discovered a buffer overflow in the /proc parsing routines in libgtop. By creating and running a process in a specially crafted long path and tricking an user into running gnome-system-monitor, an attacker could exploit this to execute arbitrary code with the user's privileges. . =========================================================== Ubuntu Security Notice USN-407-1 January 15, 2007 libgtop2 vulnerability https://bugs.launchpad.net/ubuntu/+source/libgtop2/+bug/79206 ========================================================== A security issue affects the following Ubuntu releases: Ubuntu 5.10 Ubuntu 6.06 LTS Ubuntu 6.10 This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The problem can be corrected by upgrading your system to the following package versions: Ubuntu 5.10: libgtop2-5 2.12.0-0ubuntu1.1 Ubuntu 6.06 LTS: libgtop2-7 2.14.1-0ubuntu1.1 Ubuntu 6.10: libgtop2-7 2.14.4-0ubuntu1.1 In general, a standard system upgrade is sufficient to effect the necessary changes. Details follow: Liu Qishuai discovered a buffer overflow in the /proc parsing routines in libgtop. By creating and running a process in a specially crafted long path and tricking an user into running gnome-system-monitor, an attacker could exploit this to execute arbitrary code with the user's privileges. Updated packages for Ubuntu 5.10: Source archives: Size/MD5: 5556 791af1d912da088b5dbdbaf8aa37b20b Size/MD5: 1421 24db7b76b5aec3e8e061197535a203db Size/MD5: 1039660 358b710c463b01ba58ef0b8fe6b23818 amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 59536 00690fbaa259fc912f510534157fe157 Size/MD5: 99396 3aa6528a1bcf3371b7b7eb1ce9a5b92f i386 architecture (x86 compatible Intel/AMD) Size/MD5: 583869195d353c45adca3994a25022eae9a36 Size/MD5: 96894 d6ec48f3be35baeaaffb780c1cf5512a powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 60424 4f8c50214d838f77395e8c098284ba43 Size/MD5: 99330 1c587f04173e0c0addb0840b470783e6 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 58068 4f8f39bab5f25b4539c21daf8f466852 Size/MD5: 96764 28a224d481b8f6afd86e46378b719d0f Updated packages for Ubuntu 6.06 LTS: Source archives: Size/MD5: 6343 dbc3bc45b84f78f49633a92ad6993818 Size/MD5: 1418 78cd77e17c3825e7118bc7fe12c71156 Size/MD5: 930295 84a7ac187e609594565bb6e731d21287 amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 62640 22fdd503710884583da14ba62a088759 Size/MD5: 102940 1205833458f90c9f641a9ec4acd99e61 i386 architecture (x86 compatible Intel/AMD) Size/MD5: 61060 e1bab8b7cdcec2a6a56956b193bf4e07 Size/MD5: 100084 e7d740a94cc1a2186ce0a6dfec492e8c powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 63616 4d22b62d6b16e9de6e56e684fbc18ff9 Size/MD5: 102736 0b54b07153901282568b4913fbfc74d1 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 60818 5cd7e26033bc1449f924de0a654dab3d Size/MD5: 99980 4b27af2bb2c86df2238a4c8a555ca427 Updated packages for Ubuntu 6.10: Source archives: Size/MD5: 6911 9cd6e7d03dc79a89c5cb36e9d49e75fb Size/MD5: 1490 4fae35724137fad1a1fa89411f2c2c3a Size/MD5: 925125 2fc3b461babfafa01fb39bef4c995972 Architecture independent packages: Size/MD5: 37164 e541a24286e6712b58b0e394bcdd0038 amd64 architecture (Athlon64, Opteron, EM64T Xeon) Size/MD5: 64950 6aa31cf8c983f041d491bb43614c7aab Size/MD5: 105226 0c8fd72b054f29f2298b6767ef11488c i386 architecture (x86 compatible Intel/AMD) Size/MD5: 64556b7f8feb0f615bcbb9a21fd69a5ed06cd Size/MD5: 103190 d3d89561e57a6c8eb7c83a87b97893e9 powerpc architecture (Apple Macintosh G3/G4/G5) Size/MD5: 65904 17b3c114fe2a1fe5d65721cb3d7ddf75 Size/MD5: 104692 5dc40cc4de80736623324d1a7d4aa627 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5: 63780 ee5af234c8f29ecfabf208f69c98d3e3 Size/MD5: 102848 588b6443f995fcf63263bcaaa6eaf592 . A paramount security notice for Ubuntu has been issued concerning a libgtop2 buffer overflow flaw that could permit remote code execution.. Ubuntu Libgtop2 Fix, Buffer Overflow Advisory, Linux Security Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 15, 2007 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here