Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
172

Ubuntu 23.04 USN-6402-1 Critical: libtommath DoS Threat Details

LibTomMatch could be made to execute arbitrary code or denial of service if it received a specially crafted input.. ========================================================================== Ubuntu Security Notice USN-6402-1 October 02, 2023 libtommath vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.04 - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS (Available with Ubuntu Pro) - Ubuntu 16.04 LTS (Available with Ubuntu Pro) Summary: LibTomMatch could be made to execute arbitrary code or denial of service if it received a specially crafted input. Software Description: - libtommath: multiple-precision integer library [development files] Details: It was discovered that LibTomMath incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code and cause a denial of service (DoS). Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.04: libtommath1 1.2.0-6ubuntu0.23.04.1 Ubuntu 22.04 LTS: libtommath1 1.2.0-6ubuntu0.22.04.1 Ubuntu 20.04 LTS: libtommath1 1.2.0-3ubuntu0.1 Ubuntu 18.04 LTS (Available with Ubuntu Pro): libtommath1 1.0.1-1ubuntu0.1~esm1 Ubuntu 16.04 LTS (Available with Ubuntu Pro): libtommath0 0.42.0-1.2ubuntu0.1~esm1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6402-1 CVE-2023-36328 Package Information: https://launchpad.net/ubuntu/+source/libtommath/1.2.0-6ubuntu0.23.04.1 https://launchpad.net/ubuntu/+source/libtommath/1.2.0-6ubuntu0.22.04.1 https://launchpad.net/ubuntu/+source/libtommath/1.2.0-3ubuntu0.1 . Ubuntu 23.04 Security Advisory USN-6402-1: libtommath Severe Denial of Service vulnerability particulars and remediation guidelines.. libtommath,DoS threat, arbitrary code, Ubuntu security notice. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 02, 2023 Critical Ubuntu
203

Mageia: 2023-0167 High libtommath Memory Corruption Vulnerability Report

libtomath is vulnerable to an Integer Overflow vulnerability that could allow attackers to execute arbitrary code and cause a denial of service (DoS). (CVE-2023-36328) References: . MGASA-2023-0265 - Updated libtommath packages fix security vulnerability Publication date: 24 Sep 2023 URL: https://advisories.mageia.org/MGASA-2023-0265.html Type: security Affected Mageia releases: 8, 9 CVE: CVE-2023-36328 libtomath is vulnerable to an Integer Overflow vulnerability that could allow attackers to execute arbitrary code and cause a denial of service (DoS). (CVE-2023-36328) References: - https://bugs.mageia.org/show_bug.cgi?id=32247 - https://github.com/libtom/libtommath/pull/546 - https://www.cve.org/CVERecord?id=CVE-2023-36328 SRPMS: - 9/core/libtommath-1.2.1-1.mga9 - 8/core/libtommath-1.2.1-1.mga8 . Debian 2023-0453: Urgent openssl patch fixes buffer overflow vulnerabilities permitting remote execution and service disruption.. libtommath, Integer Overflow, Security Update, Mageia 8, Mageia 9. . LinuxSecurity.com Team

Calendar 2 Sep 24, 2023 Mageia
89

Fedora 38: FEDORA-2023-a7c6b2d9c3 Critical: OpenSSL Buffer Overflow

Security fix for CVE-2023-36328. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-f5680e3b4b 2023-09-18 01:37:07.642176 -------------------------------------------------------------------------------- Name : libtommath Product : Fedora 37 Version : 1.2.0 Release : 11.fc37 URL : https://www.libtom.net/ Summary : A portable number theoretic multiple-precision integer library Description : A free open source portable number theoretic multiple-precision integer library written entirely in C. (phew!). The library is designed to provide a simple to work with API that provides fairly efficient routines that build out of the box without configuration. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2023-36328 -------------------------------------------------------------------------------- ChangeLog: * Sat Sep 2 2023 Frantisek Sumsal - 1.2.0-11 - Fix CVE-2023-36328 (#2236877,#2236878) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2236877 - CVE-2023-36328 libtommath: Integer Overflow vulnerability in mp_grow in libtom https://bugzilla.redhat.com/show_bug.cgi?id=2236877 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-f5680e3b4b' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Patch addressing Intel Overflow vulnerability in libtommath for Fedora. Update specifics provided.. libtommath,Fedora,integer overflow,software update,security fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 18, 2023 Critical Fedora
89

Fedora 39: 2023-f357a25877 Critical LibTomMath Integer Overflow Fix

Security fix for CVE-2023-36328. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-f357a25877 2023-09-18 00:15:36.942722 -------------------------------------------------------------------------------- Name : libtommath Product : Fedora 39 Version : 1.2.0 Release : 13.fc39 URL : https://www.libtom.net/ Summary : A portable number theoretic multiple-precision integer library Description : A free open source portable number theoretic multiple-precision integer library written entirely in C. (phew!). The library is designed to provide a simple to work with API that provides fairly efficient routines that build out of the box without configuration. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2023-36328 -------------------------------------------------------------------------------- ChangeLog: * Sat Sep 2 2023 Frantisek Sumsal - 1.2.0-13 - Fix CVE-2023-36328 (#2236877,#2236878) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2236877 - CVE-2023-36328 libtommath: Integer Overflow vulnerability in mp_grow in libtom https://bugzilla.redhat.com/show_bug.cgi?id=2236877 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-f357a25877' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 39's update tackles a major security flaw in libtommath, CVE-2023-36328, linked to an integer overflow, enhancing protection against potential exploits.. Fedora 39, libtommath, integer overflow, software update, security fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 18, 2023 Critical Fedora
89

Fedora 38: Security Advisory 2023-69b85312f0 Critical: Integer Overflow Fix

Security fix for CVE-2023-36328. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-69b85312f0 2023-09-05 00:40:06.815803 -------------------------------------------------------------------------------- Name : libtommath Product : Fedora 38 Version : 1.2.0 Release : 12.fc38 URL : https://www.libtom.net/ Summary : A portable number theoretic multiple-precision integer library Description : A free open source portable number theoretic multiple-precision integer library written entirely in C. (phew!). The library is designed to provide a simple to work with API that provides fairly efficient routines that build out of the box without configuration. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2023-36328 -------------------------------------------------------------------------------- ChangeLog: * Sat Sep 2 2023 Frantisek Sumsal - 1.2.0-12 - Fix CVE-2023-36328 (#2236877,#2236878) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2236877 - CVE-2023-36328 libtommath: Integer Overflow vulnerability in mp_grow in libtom https://bugzilla.redhat.com/show_bug.cgi?id=2236877 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-69b85312f0' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . A security patch for libtommath resolves issue CVE-2023-36328. Upgrade using dnf to bolster the security of Fedora 38.. libtommath update,Fedora security advisory,CVE-2023-36328 fix,critical integer overflow. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 05, 2023 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here