Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
100

SUSE: 2022:1534-1 Important Security Update: libpcre1 Fix

The container suse/sles12sp5 was updated. The following patches have been included in this update:. SUSE Container Update Advisory: suse/sles12sp5 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:1534-1 Container Tags : suse/sles12sp5:6.5.349 , suse/sles12sp5:latest Container Release : 6.5.349 Severity : important Type : security References : 1199232 CVE-2022-1586 ----------------------------------------------------------------- The container suse/sles12sp5 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:2334-1 Released: Fri Jul 8 10:12:23 2022 Summary: Security update for pcre Type: security Severity: important References: 1199232,CVE-2022-1586 This update for pcre fixes the following issues: - CVE-2022-1586: Fixed unicode property matching issue. (bsc#1199232) The following package changes have been done: - libpcre1-8.45-8.12.1 updated . SUSE Container suse/sles12sp5 has been updated to address security vulnerabilities; it includes essential updates for libpcre1.. SUSE Container, suse/sles12sp5, security fix, libpcre1 update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jul 19, 2022 Important SuSE
91

Gentoo: GLSA-201607-02 Normal: libpcre Code Execution And DoS

Multiple vulnerabilities have been found in libpcre, the worst of which could lead to arbitrary code execution, or cause a Denial of Service condition. [More...]. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201607-02 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: libpcre: Multiple Vulnerabilities Date: July 09, 2016 Bugs: #529952, #551240, #553300, #570694, #575546 ID: 201607-02 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= Multiple vulnerabilities have been found in libpcre, the worst of which could lead to arbitrary code execution, or cause a Denial of Service condition. Background ========= libpcre is a library providing functions for Perl-compatible regular expressions. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-libs/libpcre < 8.38-r1 > = 8.38-r1 Description ========== Multiple vulnerabilities have been discovered in libpcre. Please review the CVE identifiers referenced below for details. Impact ===== An attacker can possibly execute arbitrary code or create a Denial of Service condition. Workaround ========= There is no known workaround at this time. Resolution ========= All libpcre users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =dev-libs/libpcre-8.38-r1" References ========= [ 1 ] CVE-2014-8964 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2014-8964 [ 2 ] CVE-2014-8964 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2014-8964 [ 3 ] CVE-2015-5073 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-5073 [ 4 ] CVE-2015-5073 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-5073 [ 5 ] CVE-2015-5073 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-5073 [ 6 ] CVE-2015-8380 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8380 [ 7 ] CVE-2015-8381 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8381 [ 8 ] CVE-2015-8383 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8383 [ 9 ] CVE-2015-8384 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8384 [ 10 ] CVE-2015-8385 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8385 [ 11 ] CVE-2015-8386 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8386 [ 12 ] CVE-2015-8387 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8387 [ 13 ] CVE-2015-8388 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8388 [ 14 ] CVE-2015-8389 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8389 [ 15 ] CVE-2015-8390 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8390 [ 16 ] CVE-2015-8391 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8391 [ 17 ] CVE-2015-8392 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8392 [ 18 ] CVE-2015-8393 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8393 [ 19 ] CVE-2015-8394 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8394 [ 20 ] CVE-2015-8395 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2015-8395 [ 21 ] CVE-2016-1283 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2016-1283 [ 22 ] CVE-2016-1283 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2016-1283 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/201607-02 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org. License ====== Copyright 2016 Gentoo Foundation, Inc;referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.5/ . Gentoo users must urgently update libpcre to resolve critical security vulnerabilities that might enable unauthorized code execution and denial-of-service attacks. Apply this patch immediately. Gentoo Advisory, libpcre security, software vulnerabilities. . LinuxSecurity.com Team

Calendar 2 Jul 09, 2016 Gentoo
91

Gentoo: GLSA-200508-17 High: libpcre Heap Integer Overflow Threat

libpcre is vulnerable to a heap integer overflow, possibly leading to the execution of arbitrary code.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200508-17 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: High Title: libpcre: Heap integer overflow Date: August 25, 2005 Bugs: #103337 ID: 200508-17 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= libpcre is vulnerable to a heap integer overflow, possibly leading to the execution of arbitrary code. Background ========= libpcre is a library providing functions for Perl-compatible regular expressions. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-libs/libpcre < 6.3 > = 6.3 Description ========== libpcre fails to check certain quantifier values in regular expressions for sane values. Impact ===== An attacker could possibly exploit this vulnerability to execute arbitrary code by sending specially crafted regular expressions to applications making use of the libpcre library. Workaround ========= There is no known workaround at this time. Resolution ========= All libpcre users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =dev-libs/libpcre-6.3" References ========= [ 1 ] CAN-2005-2491 https://www.cve.org/CVERecord?id=CAN-2005-2491 [ 2 ] SecurityTracker Alert ID 1014744 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/200508-17 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org/. License ====== Copyright 2005 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.0/ . libpcre contains a critical heap integer overflow vulnerability that hackers could exploit to run arbitrary code on Gentoo operating systems.. libpcre, Integer Overflow, High Severity, Code Execution. . LinuxSecurity.com Team

Calendar 2 Aug 25, 2005 Gentoo
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here