Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 57 articles for you...
217

Oracle Linux 7 ELSA-2024-8357 Critical: NetworkManager-libreswan Config Fix

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-8357 http://linux.oracle.com/errata/ELSA-2024-8357.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: aarch64: NetworkManager-libreswan-1.2.4-2.0.1.el7.aarch64.rpm NetworkManager-libreswan-gnome-1.2.4-2.0.1.el7.aarch64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates//NetworkManager-libreswan-1.2.4-2.0.1.el7.src.rpm Related CVEs: CVE-2024-9050 Description of changes: [1.2.4-2.0.1] - Fix improper escaping of Libreswan configuration [CVE-2024-9050][Orabug: 37206712] _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . The latest Oracle Linux Security Advisory ELSA-2024-8362 includes enhancements for OpenSSL, fixing critical vulnerabilities.. Oracle Linux Updates, NetworkManager-libreswan, Security Advisory, Linux Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 11, 2024 Critical Oracle
217

Oracle Linux 7: ELSA-2024-8357 critical: NetworkManager-libreswan fix

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-8357 http://linux.oracle.com/errata/ELSA-2024-8357.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: NetworkManager-libreswan-1.2.4-2.0.1.el7.x86_64.rpm NetworkManager-libreswan-gnome-1.2.4-2.0.1.el7.x86_64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates//NetworkManager-libreswan-1.2.4-2.0.1.el7.src.rpm Related CVEs: CVE-2024-9050 Description of changes: [1.2.4-2.0.1] - Fix improper escaping of Libreswan configuration [CVE-2024-9050][Orabug: 37206712] _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux patches for NetworkManager-libreswan resolve setup complications. Refer to the ELSA-2024-8357 announcement for more information.. Oracle Linux Updates, Libreswan Security, NetworkManager Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 11, 2024 Critical Oracle
89

Fedora 39: FEDORA-2024-d20b38c63f important: libreswan local escalation

This is an update to 1.2.24 release of NetworkManager-libreswan, the IPSec VPN plugin for NetworkManager. It fixes a local privilege escalation bug due to improper escaping of Libreswan configuration. (CVE-2024-9050). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-d20b38c63f 2024-10-31 01:38:05.886403 -------------------------------------------------------------------------------- Name : NetworkManager-libreswan Product : Fedora 39 Version : 1.2.24 Release : 1.fc39 URL : https://gitlab.gnome.org/GNOME/NetworkManager-libreswan Summary : NetworkManager VPN plug-in for IPsec VPN Description : This package contains software for integrating the libreswan VPN software with NetworkManager and the GNOME desktop -------------------------------------------------------------------------------- Update Information: This is an update to 1.2.24 release of NetworkManager-libreswan, the IPSec VPN plugin for NetworkManager. It fixes a local privilege escalation bug due to improper escaping of Libreswan configuration. (CVE-2024-9050) -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 22 2024 Lubomir Rintel - 1.2.24-1 - Update to 1.2.24 release - Fixes a local privilege escalation bug with severity "important" (CVE-2024-9050) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2320956 - CVE-2024-9050 NetworkManager-libreswan: Local privilege escalation via leftupdown [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2320956 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d20b38c63f' at the command line. For more information, refer to the dnf documentation availableat http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: . Fedora 39's NetworkManager-libreswan upgrade resolves a local privilege escalation vulnerability. This update mitigates CVE-2024-9050.. NetworkManager-libreswan, Fedora security update, IPSec plugin. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 31, 2024 Important Fedora
217

Oracle Linux 8 ELSA-2024-4376 Moderate: Libreswan Security Update

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-4376 http://linux.oracle.com/errata/ELSA-2024-4376.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: libreswan-4.12-2.0.1.el8_10.4.x86_64.rpm aarch64: libreswan-4.12-2.0.1.el8_10.4.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates//libreswan-4.12-2.0.1.el8_10.4.src.rpm Related CVEs: CVE-2024-3652 Description of changes: [4.12-2.0.1.4] - Add libreswan-oracle.patch to detect Oracle Linux distro [4.12-2.4] - Fix CVE-2024-3652 (RHEL-32482) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Advisory ELSA-2024-4376 provides information on updates for libreswan, categorized with moderate severity. Learn additional details here.. Libreswan Security, Oracle Linux, RPM Updates, Security Advisory, Networking Security. . LinuxSecurity.com Team

Calendar 2 Jul 09, 2024 Oracle
219

Rocky Linux 9 RLSA-2024:4050 Moderate: Libreswan Service Disruption

Moderate: libreswan security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2024:4050", "synopsis": "Moderate: libreswan security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for libreswan.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Libreswan is an implementation of IPsec and IKE for Linux. IPsec is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks such as virtual private network (VPN).\n\nSecurity Fix(es):\n\n* libreswan: IKEv1 default AH/ESP responder can crash and restart (CVE-2024-3652)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2274448", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2274448", "description": ""}], "cves": [{"name": "CVE-2024-3652", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-3652", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2024-07-02T14:11:35.145045Z", "rpms": {"Rocky Linux 9": {"nvras": ["libreswan-0:4.12-2.el9_4.1.aarch64.rpm", "libreswan-0:4.12-2.el9_4.1.ppc64le.rpm", "libreswan-0:4.12-2.el9_4.1.s390x.rpm", "libreswan-0:4.12-2.el9_4.1.src.rpm", "libreswan-0:4.12-2.el9_4.1.x86_64.rpm", "libreswan-debuginfo-0:4.12-2.el9_4.1.aarch64.rpm", "libreswan-debuginfo-0:4.12-2.el9_4.1.ppc64le.rpm", "libreswan-debuginfo-0:4.12-2.el9_4.1.s390x.rpm", "libreswan-debuginfo-0:4.12-2.el9_4.1.x86_64.rpm", "libreswan-debugsource-0:4.12-2.el9_4.1.aarch64.rpm","libreswan-debugsource-0:4.12-2.el9_4.1.ppc64le.rpm", "libreswan-debugsource-0:4.12-2.el9_4.1.s390x.rpm", "libreswan-debugsource-0:4.12-2.el9_4.1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. A recent security patch for libreswan identifies potential risks that could lead to service interruptions in Rocky Linux 9, specifically regarding IPsec VPN connections.. Rocky Linux Security, Libreswan Update, IPsec Issue. . LinuxSecurity.com Team

Calendar 2 Jul 02, 2024 Rocky Linux
89

Fedora 39: FEDORA-2024-07c9cfd337 Critical: Libreswan IKEv1 Crash Issue

Update to 4.15 for CVE-2024-3652. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-07c9cfd337 2024-07-01 01:33:14.869106 -------------------------------------------------------------------------------- Name : libreswan Product : Fedora 39 Version : 4.15 Release : 1.fc39 URL : https://libreswan.org/ Summary : Internet Key Exchange (IKEv1 and IKEv2) implementation for IPsec Description : Libreswan is a free implementation of IPsec & IKE for Linux. IPsec is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks. Everything passing through the untrusted net is encrypted by the ipsec gateway machine and decrypted by the gateway at the other end of the tunnel. The resulting tunnel is a virtual private network or VPN. This package contains the daemons and userland tools for setting up Libreswan. Libreswan also supports IKEv2 (RFC7296) and Secure Labeling Libreswan is based on Openswan-2.6.38 which in turn is based on FreeS/WAN-2.04 -------------------------------------------------------------------------------- Update Information: Update to 4.15 for CVE-2024-3652 -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 22 2024 Paul Wouters - 4.15-1 - Update libreswan to 4.15 for CVE-2024-3652 - Resolves rhbz#2274448 CVE-2024-3652 libreswan: IKEv1 default AH/ESP responder can crash and restart - Allow "ipsec import" to try importing PKCS#12 non-interactively if there is no password -------------------------------------------------------------------------------- References: [ 1 ] Bug #2274448 - CVE-2024-3652 libreswan: IKEv1 default AH/ESP responder can crash and restart https://bugzilla.redhat.com/show_bug.cgi?id=2274448 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-07c9cfd337' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: . The newest Fedora security advisory, FEDORA-2024-07c9cfd337, details essential updates for libreswan due to vulnerability CVE-2024-3652, urging immediate system upgrades for security.. Fedora Libreswan Update, CVE-2024-3652 Patch, Network Security Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 01, 2024 Critical Fedora
217

Oracle Linux 9 Advisory: ELSA-2024-4050 Moderate Update for Libreswan

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-4050 http://linux.oracle.com/errata/ELSA-2024-4050.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: libreswan-4.12-2.0.1.el9_4.1.x86_64.rpm aarch64: libreswan-4.12-2.0.1.el9_4.1.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//libreswan-4.12-2.0.1.el9_4.1.src.rpm Related CVEs: CVE-2024-3652 Description of changes: [4.12-2.0.1.1] - Add libreswan-oracle.patch to detect Oracle Linux distro [4.12-2.1] - Fix CVE-2024-3652 (RHEL-40102) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux ELSA-2024-4050 advisory addresses multiple vulnerabilities in libreswan, providing critical patches to enhance system security and integrity. Oracle Linux Updates, Libreswan Security Patch, Moderate Threat Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 25, 2024 Important Oracle
217

Oracle Linux 9: ELSA-2024-2565 Moderate Libreswan Security Advisory

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-2565 http://linux.oracle.com/errata/ELSA-2024-2565.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: libreswan-4.12-2.0.1.el9_4.x86_64.rpm aarch64: libreswan-4.12-2.0.1.el9_4.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//libreswan-4.12-2.0.1.el9_4.src.rpm Related CVEs: CVE-2024-2357 Description of changes: [4.12-2.0.1] - Add libreswan-oracle.patch to detect Oracle Linux distro [4.12-2] - Fix CVE-2024-2357 (RHEL-32761) - x509: unpack IPv6 general names based on length (RHEL-32718) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 9 has released updates for libreswan that tackle moderate security vulnerabilities. Further details can be found in ELSA-2024-2670 and CVE-2024-2458.. Oracle Linux Updates, Libreswan Security Advisory, Moderate Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 08, 2024 Important Oracle
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here