Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
217

Oracle Linux 9 ELSA-2025-12083 ICU Moderate Buffer Overflow Fix

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-12083 http://linux.oracle.com/errata/ELSA-2025-12083.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: icu-67.1-10.el9_6.x86_64.rpm libicu-67.1-10.el9_6.i686.rpm libicu-67.1-10.el9_6.x86_64.rpm libicu-devel-67.1-10.el9_6.i686.rpm libicu-devel-67.1-10.el9_6.x86_64.rpm aarch64: icu-67.1-10.el9_6.aarch64.rpm libicu-67.1-10.el9_6.aarch64.rpm libicu-devel-67.1-10.el9_6.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/icu-67.1-10.el9_6.src.rpm Related CVEs: CVE-2025-5222 Description of changes: [67.1-10] - ICU-22973 Fix buffer overflow by using CharString Resolves: RHEL-96664 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . New RPM releases for Oracle Linux 9 feature a critical patch addressing a Moderate buffer overflow vulnerability in ICU libraries. Key insights provided.. Oracle Linux, ICUs, security advisory, buffer overflow fix. . LinuxSecurity.com Team

Calendar%202 Jul 30, 2025 Oracle
217

Oracle Linux 6 ELSA-2011-1815 Moderate: Libicu Locale ID Overflow

The following updated rpms for Oracle Linux 6 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2011-1815 https://access.redhat.com/errata/RHSA-2011:1815.html The following updated rpms for Oracle Linux 6 have been uploaded to the Unbreakable Linux Network: i386: icu-4.2.1-9.1.el6_2.i686.rpm libicu-4.2.1-9.1.el6_2.i686.rpm libicu-devel-4.2.1-9.1.el6_2.i686.rpm libicu-doc-4.2.1-9.1.el6_2.noarch.rpm x86_64: icu-4.2.1-9.1.el6_2.x86_64.rpm libicu-4.2.1-9.1.el6_2.i686.rpm libicu-4.2.1-9.1.el6_2.x86_64.rpm libicu-devel-4.2.1-9.1.el6_2.i686.rpm libicu-devel-4.2.1-9.1.el6_2.x86_64.rpm libicu-doc-4.2.1-9.1.el6_2.noarch.rpm SRPMS: https://oss.oracle.com:443/ol6/SRPMS-updates/icu-4.2.1-9.1.el6_2.src.rpm Description of changes: [4.2.1-9.1] - Resolves: rhbz#766539 CVE-2011-4599 localeID overflow . Oracle Linux Security Alert ELSA-2011-1815 introduces vital patches addressing critical vulnerabilities. Discover further information.. Oracle Linux Security, Libicu Update, ELSA-2011-1815, Moderate Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 17, 2011 Important Oracle
172

Ubuntu 6.06, 7.10, 8.04, 8.10: USN-747-1 Critical ICY Bypass

It was discovered that libicu did not correctly handle certain invalid encoded data. If a user or automated system were tricked into processing specially crafted data with applications linked against libicu, certain content filters could be bypassed. [More...]. ==========================================================Ubuntu Security Notice USN-747-1 March 26, 2009 icu vulnerability CVE-2008-1036 ========================================================== A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS Ubuntu 7.10 Ubuntu 8.04 LTS Ubuntu 8.10 This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The problem can be corrected by upgrading your system to the following package versions: Ubuntu 6.06 LTS: libicu34 3.4.1a-1ubuntu1.6.06.2 Ubuntu 7.10: libicu36 3.6-3ubuntu0.2 Ubuntu 8.04 LTS: libicu38 3.8-6ubuntu0.1 Ubuntu 8.10: libicu38 3.8.1-2ubuntu0.1 After a standard system upgrade you need to restart applications linked against libicu, such as OpenOffice.org, to effect the necessary changes. Details follow: It was discovered that libicu did not correctly handle certain invalid encoded data. If a user or automated system were tricked into processing specially crafted data with applications linked against libicu, certain content filters could be bypassed. Updated packages for Ubuntu 6.06 LTS: Source archives: Size/MD5: 16244 dcba370b3c69ede4caada2cef6097a69 Size/MD5: 627 c389b659aef98a101d3b809d1b9179b4 Size/MD5: 9039695 d45f59eb03b22cff127173cd3017f2e6 Architecture independent packages: Size/MD5: 2916034 42b832f87d208c258594b016a27613d3 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 5875686 b8d2da7ecb92b29b968cddc64e2dc745 Size/MD5: 4792684 462550a7885baf62c31eaf830b6c7db0 i386architecture (x86 compatible Intel/AMD): Size/MD5: 5699948 5046cc627de4e5f664db86ed0fddbbb3 Size/MD5: 4738084 17eeb1616ef7872ba918d5016280380b powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 6049128 836759b1e1a985e8e8dc56e25dca5f2e Size/MD5: 4942576 596e46c4eca4d82f0390b2498af68e76 sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 5944400 14053337b91d73b2aa2ad6823d598acf Size/MD5: 4870286 4aa90044609bfadd3571b74978e8de92 Updated packages for Ubuntu 7.10: Source archives: Size/MD5: 15909 0aa59cbaaef67c9c50054128e201456b Size/MD5: 692 bfd481cc3f5af820727dac270cc1b287 Size/MD5: 9778863 0f1bda1992b4adca62da68a7ad79d830 Architecture independent packages: Size/MD5: 3577674 4b122a4cf856fbe2d5d27fcec6342da4 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 6589590 f9efc15ce23dad80d430547d1b9077c5 Size/MD5: 5497638 fb4da73e39f7c719964707b7748b204d i386 architecture (x86 compatible Intel/AMD): Size/MD5: 6461466 5a4775a7961fc74fadd6cd020963be58 Size/MD5: 5507326 e9e3a6ce5f63e26633d0b68ea1bf75c2 lpia architecture (Low Power Intel Architecture): Size/MD5: 6478988 bfbe625b13aa749d81c8f7ff807aaf12 Size/MD5: 5505690 df250daa1fa2713c85ddb75a99b2af11 powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 6919500 701645321e08cd212a7785c06b477405 Size/MD5: 5851166 e4a595757c30c55a0c35a484607a213c sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 6784998 d676d1c5abc60a82eba7ca9405cd1c39 Size/MD5: 5723330 5daa134cb3a8caca0d4e2a26fdbe1d7b Updated packages for Ubuntu 8.04 LTS: Source archives: Size/MD5: 17433 91b7b1de2b89ebdcef23ab8e77fdc811 Size/MD5: 999 f908e68e219ca437d77519d7cf862534 Size/MD5: 10515206 25a997240bb83a98d4515b6a88370314 Architecture independent packages: Size/MD5: 3657246 900ab0a246c578d6d4d4e6c5befca152 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 5997050 0e89eeddc3c6264d444366b45867c61d Size/MD5: 5877840 3c6f4f4ae66a58f867342e661d72c985 Size/MD5: 7040202 a71cb9ac380f57bf47fd907d9af34c8e Size/MD5: 2353324 8de67c16b3c0b30daee38915bfc901df Size/MD5: 5873082 6d69f425a495afbbb50016ff3108265e i386 architecture (x86 compatible Intel/AMD): Size/MD5: 6906146 181070f61f6ebc58b544d3651cf759da Size/MD5: 2248552 aee284ce96037513a357c83ae3fcb8be Size/MD5: 5876584 85065a4e8acba506070188b931186dfe lpia architecture (Low Power Intel Architecture): Size/MD5: 6928392 01b4e4324639c8e9b7d01e75d058f5a2 Size/MD5: 2285242 546e622d8f28e93bb1f7904d614f7b92 Size/MD5: 5876428 89011d2b6df82e8394a522acafc68180 powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 7373924 e2d4141adf969d1930cee65bb787a031 Size/MD5: 2345552 121930d8b9f8d46d63861c91dd906462 Size/MD5: 6235758 40686a9e91f303e3b62bda937c05ceee sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 7245714 cdb3c8b31b9e7d06d8a5f8b1902573f8 Size/MD5: 2124956 27dda5d787b2721e4a9d8831e2188c91 Size/MD5: 6106468 0edb46093a85263adfbfde054a7dd66a Updated packages for Ubuntu 8.10: Source archives: Size/MD5: 20684 e29cd0d24c6eff8df6aa84b3870436a7 Size/MD5: 1389 2bdd4abf5a9a4b4d9adb778995a516dc Size/MD5: 10591204 ca52a1eb5050478f5f7d24e16ce01f57 Architecture independent packages: Size/MD5: 3657524 f53a4fe91321a48c000f3dacf5831ebf amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 6063168 94e72e7c83473542ca163d0814d023b9 Size/MD5: 5926752 fd9b6a51d6ceec5c3def8a17940ac839 Size/MD5: 712471422ba2900462f28661b35c45313278386 Size/MD5: 2422072 70543124daaec75cf7ece7f399f03c2e Size/MD5: 5935486 df58d1b4e2c97fa03b322e2d57d7f40d i386 architecture (x86 compatible Intel/AMD): Size/MD5: 6979534 60bb47b69df7623fdbd1cfd72dbc8399 Size/MD5: 2294250 8fd201cda783cb232fbd86526c45989f Size/MD5: 5925606 939a221f55d9ba035ade57ca7df826ae lpia architecture (Low Power Intel Architecture): Size/MD5: 6991368 1d90c0dce7d8ebc583f7e236e5d9c866 Size/MD5: 2325380 ef6431dd1b7932a5e19e582267f6b858 Size/MD5: 5918506 d7fedf038baecb191c99a6afb7d8bc50 powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 7453914 b353f8f570a196ef114dc6ba0dbfb8f1 Size/MD5: 2404798 d706e47bf92812dc4ea05f5743e20d89 Size/MD5: 6297760 773cabdc4bfc7d11b0bf43e6f5b3361d sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 7310418 cff10011702e40730ab226fa42f7dcca Size/MD5: 2155336 122d757002a50ee8bb48103e132fb995 Size/MD5: 6149156 db33747648e2baf54cf5791aa9574686 . Ubuntu has issued an update for a critical vulnerability in the libicu library. This affects versions 20.04 LTS and 22.04 LTS and could allow code execution.. libicu, Ubuntu Security, Software Update, Content Filtering. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 26, 2009 Critical Ubuntu
87

Debian: DSA-1511-1 Critical: Libicu Local Buffer Overflow Threat

Several local vulnerabilities have been discovered in libicu, International Components for Unicode, The Common Vulnerabilities and Exposures project identifies the following problems:. - ------------------------------------------------------------------------Debian Security Advisory DSA-1511-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Steve Kemp March 03, 2008 http://www.debian.org/security/faq - ------------------------------------------------------------------------Package : libicu Vulnerability : various Problem type : local Debian-specific: no CVE Id(s) : 2007-4770 2007-4771 Debian Bug : 463688 Several local vulnerabilities have been discovered in libicu, International Components for Unicode, The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-4770 libicu in International Components for Unicode (ICU) 3.8.1 and earlier attempts to process backreferences to the nonexistent capture group zero (aka \0), which might allow context-dependent attackers to read from, or write to, out-of-bounds memory locations, related to corruption of REStackFrames. CVE-2007-4771 Heap-based buffer overflow in the doInterval function in regexcmp.cpp in libicu in International Components for Unicode (ICU) 3.8.1 and earlier allows context-dependent attackers to cause a denial of service (memory consumption) and possibly have unspecified other impact via a regular expression that writes a large amount of data to the backtracking stack. For the stable distribution (etch), these problems have been fixed in version 3.6-2etch1. For the unstable distribution (sid), these problems have been fixed in version 3.8-6. We recommend that you upgrade your libicu package. Upgrade instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are usingthe apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 4.0 alias etch - -------------------------------Source archives: Size/MD5 checksum: 9778863 0f1bda1992b4adca62da68a7ad79d830 Size/MD5 checksum: 591 13dcea6b1c9a282147b99c4867db6ee8 Size/MD5 checksum: 9552 82e560098b24b245872b163a522a80b8 Architecture independent packages: Size/MD5 checksum: 3332194 5da76263265814905245b97daec4c1c3 alpha architecture (DEC Alpha) Size/MD5 checksum: 7028746 b6b13d0fa262501923c97a859b400d10 Size/MD5 checksum: 5581984 0cd37ce9f234b9207accc424dc191f49 amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 6585582 9fe0ee74625a985628c9af096dd13827 Size/MD5 checksum: 5444228 250851db4a613e9a5d0029d73c1196c0 arm architecture (ARM) Size/MD5 checksum: 6631114 a73ff442415ca3bc336f1fb49e3aa701 Size/MD5 checksum: 5458358 c6d533fd7c1c51efbac58d2a96a386fb hppa architecture (HP PA RISC) Size/MD5 checksum: 7090294 aadca0bc8fb9307ea7fe293406a10e5f Size/MD5 checksum: 5909956 07bd8e6c733072fca8b96cc10e210a68 i386 architecture (Intel ia32) Size/MD5 checksum: 5468656 532aa02d6d67d4b6527ac8c29c9d110e Size/MD5 checksum: 6465540 bfd4d908b552bba2d871771f86369ec7 ia64 architecture (Intel ia64) Size/MD5 checksum: 7238880 10b410fcd460e47c3619de88167b74f5 Size/MD5 checksum: 5865536 dbc0ec913f08682cec4f1b75d35e0531 mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 7047506 c0b327e8229d1d4d33131453cdac6508 Size/MD5 checksum: 5748172 126a2f0bb4b61cc54d70edb882191576 powerpc architecture (PowerPC) Size/MD5 checksum: 5747754 8bc631ad394a86e11c24c5b9ffd76f1d Size/MD5 checksum: 6888906 c5542d6d957327fd6f540029f4195772 s390 architecture (IBM S/390) Size/MD5 checksum: 5776762 16a114247a39201f3966ff4f22b80342 Size/MD5 checksum: 6895102 15624240d20d2e0aa7a29bbc90895908 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 5671256 2c7a50b1fe50dbe4b3ef8995d91e5946 Size/MD5 checksum: 6771832 84a95a10934106c8cfc409032191de98 These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . - ------------------------------------------------------------------------Debian Security Advisory D. local, vulnerabilities, libicu, international, components, unicode. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 03, 2008 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200