Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -1 articles for you...
89

Fedora 44: python-spotipy Revision 2.26.0 Notice 2025-21db516647

update to version 2.25.2. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-20ca419536 2025-12-02 00:48:12.507353+00:00 -------------------------------------------------------------------------------- Name : python-spotipy Product : Fedora 43 Version : 2.25.2 Release : 1.fc43 URL : https://github.com/spotipy-dev/spotipy Summary : A light weight Python library for the Spotify Web API Description : A light weight Python library for the Spotify Web API -------------------------------------------------------------------------------- Update Information: update to version 2.25.2 -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 26 2025 Bill Pemberton - 2.25.2-1 - update to version 2.25.2 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-20ca419536' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue .New Fedora 43 update for python-spotipy to version 2.25.2 improves library performance and compliance. Get details here!. Fedora 43 python-spotipy update API. . LinuxSecurity.com Team

Calendar 2 Dec 02, 2025 Fedora
89

Fedora 37: FEDORA-2022-1dd9dc5140 Moderate: Mbed TLS Policy Bypass

Update to 2.28.1. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-1dd9dc5140 2022-11-10 22:04:44.632877 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 37 Version : 2.28.1 Release : 1.fc37 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: Update to 2.28.1 --------------------------------------------------------------------------------ChangeLog: * Sat Oct 22 2022 Morten Stevens - 2.28.1-1 - Update to 2.28.1 --------------------------------------------------------------------------------References: [ 1 ] Bug #2037309 - CVE-2021-45450 mbedtls: policy bypass or oracle-based decryption [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2037309 [ 2 ] Bug #2037320 - CVE-2021-45451 mbedtls: policy bypass/oracle-based decryption in psa_aead_generate_nonce [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2037320 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-1dd9dc5140' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The Mbed TLS framework has been enhanced to release version 2.28.1, which tackles possible security vulnerabilities and enhances encryption standards within the Fedora 37 environment.. Fedora Update,MbedTLS Security,Open Source Cryptography,Linux Update. . LinuxSecurity.com Team

Calendar 2 Nov 10, 2022 Fedora
89

Fedora 32 mbedtls: FEDORA-2020-8b0d59bac6 Moderate Local Attack Risk

- Update to 2.16.8. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-8b0d59bac6 2020-09-23 17:11:23.561290 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 32 Version : 2.16.8 Release : 1.fc32 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.16.8 --------------------------------------------------------------------------------ChangeLog: * Tue Sep 8 2020 Morten Stevens - 2.16.8-1 - Update to 2.16.8 * Thu Aug 20 2020 Morten Stevens - 2.16.7-4 - Switch to cmake_build, cmake_install and ctest - FTBFS in Fedora rawhide/f33 (#1864124) * Sat Aug 1 2020 Fedora Release Engineering - 2.16.7-3 - Second attempt - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild * Tue Jul 28 2020 Fedora Release Engineering - 2.16.7-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1875047 - CVE-2020-16150 mbedtls: local side channel attack on classical CBC decryption in (D)TLS https://bugzilla.redhat.com/show_bug.cgi?id=1875047 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-8b0d59bac6' at the command line. For more information, refer to thednf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Fedora 32 has rolled out a crucial update addressing vulnerabilities in mbedtls 2.16.8, bolstering security measures against potential local exploitation.. Fedora 32 mbedtls update, cryptographic library upgrade, security fixes. . LinuxSecurity.com Team

Calendar 2 Sep 23, 2020 Fedora
89

Fedora 31 mbedtls Update 2.16.7: Critical Cache Attack Notice

- Update to 2.16.7 Security advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-5b60029fe2 2020-07-23 01:17:08.656086 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 31 Version : 2.16.7 Release : 1.fc31 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.16.7 Security advisory: --------------------------------------------------------------------------------ChangeLog: * Tue Jul 14 2020 Morten Stevens - 2.16.7-1 - Update to 2.16.7 - Security Advisory 2020-07 --------------------------------------------------------------------------------References: [ 1 ] Bug #1851867 - CVE-2020-10941 mbedtls: cache attack against RSA key import in SGX https://bugzilla.redhat.com/show_bug.cgi?id=1851867 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-5b60029fe2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . The recent update to Fedora's mbedtls tackles a significant vulnerability in RSA key importation, effectively addressing a severe cache attack in version 2.16.7.. Mbedtls Update, Fedora 31, Security Fix, RSA Cache Attack, Lightweight Cryptography. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 22, 2020 Critical Fedora
89

Fedora 30: mbedtls Update FEDORA-2020-8d3ea0fe8d Critical: DoS Overflow

- Update to 2.16.4 - CVE-2019-18222 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-8d3ea0fe8d 2020-02-19 01:27:49.629837 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 30 Version : 2.16.4 Release : 1.fc30 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.16.4 - CVE-2019-18222 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: --------------------------------------------------------------------------------ChangeLog: * Mon Feb 10 2020 Morten Stevens - 2.16.4-1 - Update to 2.16.4 * Wed Jan 29 2020 Fedora Release Engineering - 2.16.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild * Sat Sep 28 2019 Morten Stevens - 2.16.3-1 - Update to 2.16.3 - Side channel attack on deterministic ECDSA (CVE-2019-16910) * Tue Sep 3 2019 Morten Stevens - 2.16.2-4 - devel package needs pkcs11-helper-devel (#1748468) * Sat Aug 3 2019 Morten Stevens - 2.16.2-3 - Fix building on RHEL8 * Thu Jul 25 2019 Fedora Release Engineering - 2.16.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Sat Jul 20 2019 Morten Stevens - 2.16.2-1 - Update to 2.16.2 --------------------------------------------------------------------------------This update can be installedwith the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-8d3ea0fe8d' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . OpenSSL released an upgrade for users on Ubuntu 20.04 that mitigates CVE-2020-12345, introducing robust updates and improvements for security protocols.. Fedora, mbedtls, security advisory, cryptographic library, CVE-2019-18222. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 18, 2020 Critical Fedora
89

Fedora 26: 2.6.0 Moderate Update: Mbedtls SSL/TLS Problem

- Update to 2.6.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-382c240580 2017-09-02 19:24:01.578663 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 26 Version : 2.6.0 Release : 1.fc26 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.6.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: --------------------------------------------------------------------------------References: [ 1 ] Bug #1487120 - CVE-2017-14032 mbedtls: Bypass peer authentication https://bugzilla.redhat.com/show_bug.cgi?id=1487120 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade mbedtls' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. Tounsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Mbed TLS upgraded to version 2.6.0 in Fedora 26 addresses vulnerabilities and enhances encryption features.. mbedtls Update,Fedora Security,Light-weight Cryptography,SSL/TLS Library. . LinuxSecurity.com Team

Calendar 2 Sep 02, 2017 Fedora
89

Fedora 24 mbedtls Update 2.4.2 Critical: CVE-2017-2784 Fix

- Update to 2.4.2 - CVE-2017-2784 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security notes: . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-922652dd9c 2017-03-24 12:41:24.087100 -------------------------------------------------------------------------------- Name : mbedtls Product : Fedora 24 Version : 2.4.2 Release : 1.fc24 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ -------------------------------------------------------------------------------- Update Information: - Update to 2.4.2 - CVE-2017-2784 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security notes: -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade mbedtls' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . A recent Mbed TLS upgrade for Fedora 24 tackles CVE-2017-2784 by introducing enhancements in version 2.4.2 along with crucial security advisories.. Fedora24 mbedtls update, CVE-2017-2784, cryptography security update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 24, 2017 Critical Fedora
89

Fedora 23 mbedtls 2.2.1 Critical Update: SSL/TLS Library Update

- Update to 2.2.1 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ ---- - Update to 2.2.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-b3784096ef 2016-01-19 19:15:35.971264 -------------------------------------------------------------------------------- Name : mbedtls Product : Fedora 23 Version : 2.2.1 Release : 1.fc23 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ -------------------------------------------------------------------------------- Update Information: - Update to 2.2.1 Release notes: ---- - Update to 2.2.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ -------------------------------------------------------------------------------- References: [ 1 ] Bug #1297437 - mbedtls, polarssl: potential double free during certificate generation https://bugzilla.redhat.com/show_bug.cgi?id=1297437 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update mbedtls' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailinglist This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . The recent mbedtls update on Fedora 23 resolves security vulnerabilities and improves both cryptographic functions and SSL/TLS performance.. MbedTls Update,Fedora 23 Security,Open Source Cryptography,Lightweight SSL Library. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 19, 2016 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here