Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
172

Ubuntu 24.04: LibHTP Important DoS Issues CVE-2025-53537 USN-7814-1

Several security issues were fixed in LibHTP.. ========================================================================== Ubuntu Security Notice USN-7814-1 October 09, 2025 libhtp vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.04 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Several security issues were fixed in LibHTP. Software Description: - libhtp: Security-aware parser for the HTTP protocol Details: It was discovered that LibHTP did not correctly handle certain HTTP headers. A remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2024-23837) It was discovered that LibHTP did not correctly parse certain HTTP requests. A remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2024-28871) It was discovered that LibHTP did not correctly parse certain HTTP requests. A remote attacker could possibly use this issue to cause a denial of service. (CVE-2024-45797) It was discovered that LibHTP did not correctly handle certain memory operations. A remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and Ubuntu 25.04. (CVE-2025-53537) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 25.04 libhtp-dev 1:0.5.49-1ubuntu0.1 libhtp2 1:0.5.49-1ubuntu0.1 Ubuntu 24.04 LTS libhtp-dev 1:0.5.46-1ubuntu2+esm1 Available with Ubuntu Pro libhtp2 1:0.5.46-1ubuntu2+esm1 Availablewith Ubuntu Pro Ubuntu 22.04 LTS libhtp-dev 1:0.5.39-1ubuntu0.1~esm1 Available with Ubuntu Pro libhtp2 1:0.5.39-1ubuntu0.1~esm1 Available with Ubuntu Pro Ubuntu 20.04 LTS libhtp-dev 1:0.5.32-1ubuntu0.1~esm1 Available with Ubuntu Pro libhtp2 1:0.5.32-1ubuntu0.1~esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS libhtp-dev 1:0.5.26-1ubuntu0.1~esm1 Available with Ubuntu Pro libhtp2 1:0.5.26-1ubuntu0.1~esm1 Available with Ubuntu Pro Ubuntu 16.04 LTS libhtp-dev 0.5.15-1ubuntu0.1~esm1 Available with Ubuntu Pro libhtp1 0.5.15-1ubuntu0.1~esm1 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7814-1 CVE-2024-23837, CVE-2024-28871, CVE-2024-45797, CVE-2025-53537 Package Information: https://launchpad.net/ubuntu/+source/libhtp/1:0.5.49-1ubuntu0.1 . Several security issues in LibHTP can lead to multiple denial-of-service attacks for Ubuntu users.. LibHTP Security, Ubuntu Update, Denial of Service, Ubuntu Security Notice. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 09, 2025 Important Ubuntu
202

openSUSE 15 SP6: 2024:0150-2 Moderate Risk from libhtp DoS Vulnerability

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for libhtp ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0150-2 Rating: moderate References: #1220403 Cross-References: CVE-2024-23837 Affected Products: openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for libhtp fixes the following issues: - CVE-2024-23837: excessive processing time of HTTP headers can lead to denial of service (boo#1220403) Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2024-150=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): libhtp-debugsource-0.5.42-bp156.3.3.1 libhtp-devel-0.5.42-bp156.3.3.1 libhtp2-0.5.42-bp156.3.3.1 libhtp2-debuginfo-0.5.42-bp156.3.3.1 References: https://www.suse.com/security/cve/CVE-2024-23837.html https://bugzilla.suse.com/1220403 . openSUSE publishes a security patch for libhtp mitigating a DoS vulnerability, identified by advisory ID openSUSE-SU-2024:0150-3.. openSUSE Security, libhtp Update, DoS Exploit, Patch Instructions. . LinuxSecurity.com Team

Calendar 2 Aug 23, 2024 OpenSUSE
202

openSUSE: 2024:0150-1 Moderate: libhtp Denial Of Service Correction

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for libhtp ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0150-1 Rating: moderate References: #1220403 Cross-References: CVE-2024-23837 Affected Products: openSUSE Backports SLE-15-SP5 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for libhtp fixes the following issues: - CVE-2024-23837: excessive processing time of HTTP headers can lead to denial of service (boo#1220403) Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP5: zypper in -t patch openSUSE-2024-150=1 Package List: - openSUSE Backports SLE-15-SP5 (aarch64 i586 ppc64le s390x x86_64): libhtp-devel-0.5.42-bp155.2.3.1 libhtp2-0.5.42-bp155.2.3.1 References: https://www.suse.com/security/cve/CVE-2024-23837.html https://bugzilla.suse.com/1220403 . openSUSE has issued a security update for libhtp, addressing moderate vulnerabilities from excessive HTTP header processing, which may cause Denial of Service (DoS) attacks. openSUSE Security Update, libhtp Advisory, Denial of Service Fix. . LinuxSecurity.com Team

Calendar 2 Jun 04, 2024 OpenSUSE
89

Fedora 37: Suricata 6.0.9 Moderate Performance Fix with LibHTP Update

LibHTP has been updated to 0.5.42 and is bundled with the release. Various security, performance, accuracy and stability issues have been fixed.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-51316e38ce 2022-12-23 01:18:55.135881 --------------------------------------------------------------------------------Name : suricata Product : Fedora 37 Version : 6.0.9 Release : 1.fc37 URL : / Summary : Intrusion Detection System Description : The Suricata Engine is an Open Source Next Generation Intrusion Detection and Prevention Engine. This engine is not intended to just replace or emulate the existing tools in the industry, but will bring new ideas and technologies to the field. This new Engine supports Multi-threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB! ), Gzip Decompression, Fast IP Matching, and GeoIP identification. --------------------------------------------------------------------------------Update Information: LibHTP has been updated to 0.5.42 and is bundled with the release. Various security, performance, accuracy and stability issues have been fixed. --------------------------------------------------------------------------------ChangeLog: * Tue Dec 13 2022 Steve Grubb 6.0.9-1 - New security and bugfix release * Thu Nov 3 2022 Jiri Olsa - 6.0.6-3 - libbpf 1.0.0 build --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-51316e38ce' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 38 enhances suricata 6.1.0, addressing numerous performance, reliability, and precision improvements with libhtp 0.5.43.. Fedora Security Update, Suricata Performance Fix, Intrusion Detection System. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 23, 2022 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here