Alerts This Week
Warning Icon 1 914
Alerts This Week
Warning Icon 1 914

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
100

SUSE: 2022:3267-1 Important: SSL Certificate Threat in libzapojit

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for libzapojit ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:3267-1 Rating: important References: #1189844 Cross-References: CVE-2021-39360 CVSS scores: CVE-2021-39360 (NVD) : 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N CVE-2021-39360 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Affected Products: SUSE Linux Enterprise Desktop 15-SP3 SUSE Linux Enterprise High Performance Computing 15-SP3 SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3 SUSE Linux Enterprise Server 15-SP3 SUSE Linux Enterprise Server for SAP Applications 15-SP3 SUSE Linux Enterprise Storage 7.1 SUSE Linux Enterprise Workstation Extension 15-SP3 SUSE Manager Proxy 4.2 SUSE Manager Retail Branch Server 4.2 SUSE Manager Server 4.2 openSUSE Leap 15.3 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for libzapojit fixes the following issues: - CVE-2021-39360: Fixed missing guard against invalid SSL certificates (bsc#1189844). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2022-3267=1 - SUSE Linux Enterprise Workstation Extension 15-SP3: zypper in -t patch SUSE-SLE-Product-WE-15-SP3-2022-3267=1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3: zypper in -t patchSUSE-SLE-Module-Packagehub-Subpackages-15-SP3-2022-3267=1 Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): libzapojit-0_0-0-0.0.3-150000.3.5.1 libzapojit-0_0-0-debuginfo-0.0.3-150000.3.5.1 libzapojit-debugsource-0.0.3-150000.3.5.1 libzapojit-devel-0.0.3-150000.3.5.1 typelib-1_0-Zpj-0_0-0.0.3-150000.3.5.1 - SUSE Linux Enterprise Workstation Extension 15-SP3 (x86_64): libzapojit-0_0-0-0.0.3-150000.3.5.1 libzapojit-0_0-0-debuginfo-0.0.3-150000.3.5.1 libzapojit-debugsource-0.0.3-150000.3.5.1 typelib-1_0-Zpj-0_0-0.0.3-150000.3.5.1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3 (aarch64 ppc64le s390x): libzapojit-0_0-0-0.0.3-150000.3.5.1 libzapojit-0_0-0-debuginfo-0.0.3-150000.3.5.1 libzapojit-debugsource-0.0.3-150000.3.5.1 typelib-1_0-Zpj-0_0-0.0.3-150000.3.5.1 References: https://www.suse.com/security/cve/CVE-2021-39360.html https://bugzilla.suse.com/1189844 . Important SUSE Security Patch for libzapojit tackles CVE-2021-39360, enhancing SSL certificate verification.. SUSE Linux, libzapojit, security patch, SSL threats. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 14, 2022 Important SuSE
100

SUSE 12-SP5: SUSE-SU-2022:3270-1 Severe TLS Vulnerability Alert

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for libzapojit ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:3266-1 Rating: important References: #1189844 Cross-References: CVE-2021-39360 CVSS scores: CVE-2021-39360 (NVD) : 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N CVE-2021-39360 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Affected Products: SUSE Linux Enterprise Desktop 12-SP5 SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server for SAP Applications 12-SP5 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE Linux Enterprise Workstation Extension 12-SP5 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for libzapojit fixes the following issues: - CVE-2021-39360: Fixed missing guard against invalid SSL certificates (bsc#1189844). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Workstation Extension 12-SP5: zypper in -t patch SUSE-SLE-WE-12-SP5-2022-3266=1 - SUSE Linux Enterprise Software Development Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2022-3266=1 Package List: - SUSE Linux Enterprise Workstation Extension 12-SP5 (x86_64): libzapojit-0_0-0-0.0.3-5.3.1 libzapojit-0_0-0-debuginfo-0.0.3-5.3.1 libzapojit-debugsource-0.0.3-5.3.1 typelib-1_0-Zpj-0_0-0.0.3-5.3.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (aarch64 ppc64le s390x x86_64): libzapojit-0_0-0-0.0.3-5.3.1 libzapojit-0_0-0-debuginfo-0.0.3-5.3.1 libzapojit-debugsource-0.0.3-5.3.1 libzapojit-devel-0.0.3-5.3.1 typelib-1_0-Zpj-0_0-0.0.3-5.3.1 References: https://www.suse.com/security/cve/CVE-2021-39360.html https://bugzilla.suse.com/1189844 . SUSE announces a vital security patch for libzapojit addressing a significant SSL certificate vulnerability in its products, thereby reinforcing security measures.. SUSE Linux, libzapojit, security update, SUSE advisory, SSL issue. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 14, 2022 Important SuSE
203

Mageia 8 - 2021-0504 Critical Advisory: libzapojit MITM Risk

In GNOME libzapojit through 0.0.3, zpj-skydrive.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. (CVE-2021-39360) References: . MGASA-2021-0504 - Updated libzapojit packages fix security vulnerability Publication date: 10 Nov 2021 URL: https://advisories.mageia.org/MGASA-2021-0504.html Type: security Affected Mageia releases: 8 CVE: CVE-2021-39360 In GNOME libzapojit through 0.0.3, zpj-skydrive.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. (CVE-2021-39360) References: - https://bugs.mageia.org/show_bug.cgi?id=29585 - https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./thread/IDXCHOCVP3VSAKDBQSLER2DQHFIOUHAT/ - https://www.cve.org/CVERecord?id=CVE-2021-39360 SRPMS: - 8/core/libzapojit-0.0.3-9.1.mga8 . libzapojit enhancement addresses vulnerabilities in Mageia; impacts secure network verification. Urgent notice released for all users.. libzapojit security update, Mageia network attack, critical security advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Nov 10, 2021 Critical Mageia
89

Fedora 35: 2021-77ce69dba6 Moderate: Libzapojit TLS Certificate Fix

Security fix for CVE-2021-39360. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-77ce69dba6 2021-10-29 22:48:33.393032 --------------------------------------------------------------------------------Name : libzapojit Product : Fedora 35 Version : 0.0.3 Release : 21.fc35 URL : https://wiki.gnome.org/Projects/Zapojit Summary : GLib/GObject wrapper for the OneDrive and Hotmail REST APIs Description : GLib/GObject wrapper for the OneDrive and Hotmail REST APIs. It supports OneDrive file and folder objects, and the following OneDrive operations: - Deleting a file, folder or photo. - Listing the contents of a folder. - Reading the properties of a file, folder or photo. - Uploading files and photos. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2021-39360 --------------------------------------------------------------------------------ChangeLog: * Thu Oct 14 2021 Debarshi Ray - 0.0.3-21 - Guard against invalid SSL certificates (CVE-2021-39360) --------------------------------------------------------------------------------References: [ 1 ] Bug #1997152 - CVE-2021-39360 libzapojit: missing TLS certificate verification https://bugzilla.redhat.com/show_bug.cgi?id=1997152 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-77ce69dba6' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . A critical security update for libzapojit in Fedora 35 addresses a TLS verification flaw, preventing potential exploits. Update to the latest version now. libzapojit Security Update, Fedora TLS Issue, Security Alert. . LinuxSecurity.com Team

Calendar%202 Oct 29, 2021 Fedora
89

Fedora 33 Advisory: 2021-7f5a82ef57 Moderate: Fix for Libzapojit SSL Certs

Security fix for CVE-2021-39360. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-7f5a82ef57 2021-10-23 03:24:50.227284 --------------------------------------------------------------------------------Name : libzapojit Product : Fedora 33 Version : 0.0.3 Release : 19.fc33 URL : https://wiki.gnome.org/Projects/Zapojit Summary : GLib/GObject wrapper for the OneDrive and Hotmail REST APIs Description : GLib/GObject wrapper for the OneDrive and Hotmail REST APIs. It supports OneDrive file and folder objects, and the following OneDrive operations: - Deleting a file, folder or photo. - Listing the contents of a folder. - Reading the properties of a file, folder or photo. - Uploading files and photos. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2021-39360 --------------------------------------------------------------------------------ChangeLog: * Fri Oct 15 2021 Debarshi Ray - 0.0.3-19 - Guard against invalid SSL certificates (CVE-2021-39360) --------------------------------------------------------------------------------References: [ 1 ] Bug #1997152 - CVE-2021-39360 libzapojit: missing TLS certificate verification https://bugzilla.redhat.com/show_bug.cgi?id=1997152 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-7f5a82ef57' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Mitigate CVE-2021-39360 vulnerabilities by upgrading libzapojit on Fedora 33 to bolster security and ensure system resilience.. libzapojit Update,Fedora 33 Security Fix,TLS Certificate Check,Open Source Protection. . LinuxSecurity.com Team

Calendar%202 Oct 22, 2021 Fedora
89

Fedora 34 FEDORA-2021-c3395a5df6 Moderate: TLS Cert Verification Issue

Security fix for CVE-2021-39360. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-c3395a5df6 2021-10-23 03:21:10.501485 --------------------------------------------------------------------------------Name : libzapojit Product : Fedora 34 Version : 0.0.3 Release : 20.fc34 URL : https://wiki.gnome.org/Projects/Zapojit Summary : GLib/GObject wrapper for the OneDrive and Hotmail REST APIs Description : GLib/GObject wrapper for the OneDrive and Hotmail REST APIs. It supports OneDrive file and folder objects, and the following OneDrive operations: - Deleting a file, folder or photo. - Listing the contents of a folder. - Reading the properties of a file, folder or photo. - Uploading files and photos. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2021-39360 --------------------------------------------------------------------------------ChangeLog: * Fri Oct 15 2021 Debarshi Ray - 0.0.3-20 - Guard against invalid SSL certificates (CVE-2021-39360) --------------------------------------------------------------------------------References: [ 1 ] Bug #1997152 - CVE-2021-39360 libzapojit: missing TLS certificate verification https://bugzilla.redhat.com/show_bug.cgi?id=1997152 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-c3395a5df6' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . A patch for libzapojit resolves CVE-2021-39360, enhancing TLS certificate validation on Fedora 34.. TLS Certificate Fix, libzapojit Security, Fedora 34 Update. . LinuxSecurity.com Team

Calendar%202 Oct 22, 2021 Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here