Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 0 articles for you...
202

openSUSE Leap 42.2: 2017:1633-1 Critical: Kernel Local Issues

An update that solves four vulnerabilities and has 35 fixes An update that solves four vulnerabilities and has 35 fixes An update that solves four vulnerabilities and has 35 fixes is now available. is now available.. openSUSE Security Update: Security update for the Linux Kernel ______________________________________________________________________________ Announcement ID: openSUSE-SU-2017:1633-1 Rating: important References: #1012060 #1012382 #1012422 #1012829 #1015452 #1022595 #1031796 #1032339 #1036638 #1037840 #1038085 #1039348 #1039900 #1040855 #1041242 #1041431 #1041810 #1042286 #1042356 #1042421 #1042517 #1042535 #1042536 #1042886 #1043014 #1043231 #1043236 #1043371 #1043467 #1043598 #1043935 #1044015 #1044125 #1044532 #863764 #966321 #966339 #971975 #995542 Cross-References: CVE-2017-1000364 CVE-2017-1000380 CVE-2017-7346 CVE-2017-9242 Affected Products: openSUSE Leap 42.2 ______________________________________________________________________________ An update that solves four vulnerabilities and has 35 fixes is now available. Description: The openSUSE Leap 42.2 kernel was updated to 4.4.72 to receive various security and bugfixes. The following security bugs were fixed: - CVE-2017-1000364: An issue was discovered in the size of the stack guard page on Linux, specifically a 4k stack guard page is not sufficiently large and can be "jumped" over (the stack guard page is bypassed), this affects Linux Kernel versions 4.11.5 and earlier (the stackguard page was introduced in 2010) (bnc#1039348). - CVE-2017-1000380: sound/core/timer.c in the Linux kernel is vulnerable to a data race in the ALSA /dev/snd/timer driver resulting in local users being able to read information belonging to other users, i.e., uninitialized memory contentsmay be disclosed when a read and an ioctl happen at the same time (bnc#1044125). - CVE-2017-7346: The vmw_gb_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel did not validate certain levels data, which allowed local users to cause a denial of service (system hang) via a crafted ioctl call for a /dev/dri/renderD* device (bnc#1031796). - CVE-2017-9242: The __ip6_append_data function in net/ipv6/ip6_output.c in the Linux kernel is too late in checking whether an overwrite of an skb data structure may occur, which allowed local users to cause a denial of service (system crash) via crafted system calls (bnc#1041431). The following non-security bugs were fixed: - ASoC: Intel: Skylake: Uninitialized variable in probe_codec() (bsc#1043231). - IB/core: Fix kernel crash during fail to initialize device (bsc#1022595 FATE#322350). - IB/core: For multicast functions, verify that LIDs are multicast LIDs (bsc#1022595 FATE#322350). - IB/core: If the MGID/MLID pair is not on the list return an error (bsc#1022595 FATE#322350). - IB/ipoib: Fix deadlock between ipoib_stop and mcast join flow (bsc#1022595 FATE#322350). - Make __xfs_xattr_put_listen preperly report errors (bsc#1041242). - NFS: Fix an LOCK/OPEN race when unlinking an open file (git-fixes). - NFSv4: Fix the underestimation of delegation XDR space reservation (git-fixes). - NFSv4: fix a reference leak caused WARNING messages (git-fixes). - PM / QoS: Fix memory leak on resume_latency.notifiers (bsc#1043231). - SUNRPC: Silence WARN_ON when NFSv4.1 over RDMA is in use (git-fixes). - SUNRPC: ensure correct error is reported by xs_tcp_setup_socket() (git-fixes). - Update patches.fixes/xen-silence-efi-error-messge.patch (bnc#1039900). - [media] vb2: Fix an off by one error in 'vb2_plane_vaddr' (bsc#1043231). - bcache: fix calling ida_simple_remove() with incorrect minor (bsc#1038085). - bna: addmissing per queue ethtool stat (bsc#966321 FATE#320156). - bna: integer overflow bug in debugfs (bsc#966321 FATE#320156). - bonding: avoid defaulting hard_header_len to ETH_HLEN on slave removal (bsc#1042286). - bonding: do not use stale speed and duplex information (bsc#1042286). - bonding: prevent out of bound accesses (bsc#1042286). - brcmfmac: add fallback for devices that do not report per-chain values (bsc#1043231). - brcmfmac: avoid writing channel out of allocated array (bsc#1043231). - ceph: fix potential use-after-free (bsc#1043371). - ceph: memory leak in ceph_direct_read_write callback (bsc#1041810). - cfq-iosched: fix the delay of cfq_group's vdisktime under iops mode (bsc#1012829). - cgroup: remove redundant cleanup in css_create (bsc#1012829). - cifs: small underflow in cnvrtDosUnixTm() (bnc#1043935). - drm/mgag200: Fix to always set HiPri for G200e4 (bsc#1015452, bsc#995542). - drm/nouveau/tmr: fully separate alarm execution/pending lists (bsc#1043467). - efi: Do not issue error message when booted under Xen (bnc#1036638). - ext4: fix data corruption for mmap writes (bsc#1012829). - ext4: fix data corruption with EXT4_GET_BLOCKS_ZERO (bsc#1012829). - fuse: fix clearing suid, sgid for chown() (bsc#1012829). - ibmvnic: Check adapter state during ibmvnic_poll (fate#322021, bsc#1040855). - ibmvnic: Deactivate RX pool buffer replenishment on H_CLOSED (fate#322021, bsc#1040855). - ibmvnic: Fix cleanup of SKB's on driver close (fate#322021, bsc#1040855). - ibmvnic: Halt TX and report carrier off on H_CLOSED return code (fate#322021, bsc#1040855). - ibmvnic: Handle failover after failed init crq (fate#322021, bsc#1040855). - ibmvnic: Non-fatal error handling (fate#322021, bsc#1040855). - ibmvnic: Reset sub-crqs during driver reset (fate#322021, bsc#1040855). - ibmvnic: Reset the CRQ queue during driver reset (fate#322021, bsc#1040855). - ibmvnic: Reset tx/rx pools on driverreset (fate#322021, bsc#1040855). - ibmvnic: Return failure on attempted mtu change (bsc#1043236). - ibmvnic: Send gratuitous arp on reset (fate#322021, bsc#1040855). - ibmvnic: Track state of adapter napis (fate#322021, bsc#1040855). - ipv6: Do not use ufo handling on later transformed packets (bsc#1042286). - ipv6: fix endianness error in icmpv6_err (bsc#1042286). - kABI: protect struct fib_info (kabi). - kABI: protect struct pglist_data (kabi). - kABI: protect struct xlog (bsc#1043598). - kernel-binary.spec: Propagate MAKE_ARGS to %build (bsc#1012422) - l2tp: fix race in l2tp_recv_common() (bsc#1042286). - libceph: NULL deref on crush_decode() error path (bsc#1044015). - md: allow creation of mdNNN arrays via md_mod/parameters/new_array (bsc#1032339). - md: support disabling of create-on-open semantics (bsc#1032339). - mm/hugetlb: check for reserved hugepages during memory offline (bnc#971975 VM -- git fixes). - mm/hugetlb: fix incorrect hugepages count during mem hotplug (bnc#971975 VM -- git fixes). - mmc: Downgrade error level (bsc#1042536). - module: fix memory leak on early load_module() failures (bsc#1043014). - net: bridge: start hello timer only if device is up (bnc#1012382). - net: fix compile error in skb_orphan_partial() (bnc#1012382). - net: ipv6: set route type for anycast routes (bsc#1042286). - netfilter: nf_conntrack_sip: extend request line validation (bsc#1042286). - netfilter: nf_ct_expect: remove the redundant slash when policy name is empty (bsc#1042286). - netfilter: nf_dup_ipv6: set again FLOWI_FLAG_KNOWN_NH at flowi6_flags (bsc#1042286). - netfilter: nf_nat_snmp: Fix panic when snmp_trap_helper fails to register (bsc#1042286). - netfilter: nfnetlink_queue: reject verdict request from different portid (bsc#1042286). - netfilter: restart search if moved to other chain (bsc#1042286). - netfilter: use fwmark_reflect in nf_send_reset (bsc#1042286). - netxen_nic: setrcode to the return status from the call to netxen_issue_cmd (bsc#966339 FATE#320150). - nfs: Fix "Do not increment lock sequence ID after NFS4ERR_MOVED" (git-fixes). - nsfs: mark dentry with DCACHE_RCUACCESS (bsc#1012829). - nvme: submit nvme_admin_activate_fw to admin queue (bsc#1044532). - percpu: remove unused chunk_alloc parameter from pcpu_get_pages() (bnc#971975 VM -- git fixes). - perf/x86/intel/rapl: Make Knights Landings support functional (bsc#1042517). - powerpc/64: Fix flush_(d|i)cache_range() called from modules (bnc#863764 fate#315275, LTC#103998). - quota: fill in Q_XGETQSTAT inode information for inactive quotas (bsc#1042356). - radix-tree: fix radix_tree_iter_retry() for tagged iterators (bsc#1012829). - rpm/kernel-binary.spec: remove superfluous flags This should make build logs more readable and people adding more flags should have easier time finding a place to add them in the spec file. - rpm/kernel-spec-macros: Fix the check if there is no rebuild counter (bsc#1012060) - rtnl: reset calcit fptr in rtnl_unregister() (bsc#1042286). - series.conf: remove silly comment - tcp: account for ts offset only if tsecr not zero (bsc#1042286). - tcp: fastopen: accept data/FIN present in SYNACK message (bsc#1042286). - tcp: fastopen: avoid negative sk_forward_alloc (bsc#1042286). - tcp: fastopen: call tcp_fin() if FIN present in SYNACK (bsc#1042286). - tcp: fastopen: fix rcv_wup initialization for TFO server on SYN/data (bsc#1042286). - tpm: Downgrade error level (bsc#1042535). - udp: avoid ufo handling on IP payload compression packets (bsc#1042286). - udplite: call proper backlog handlers (bsc#1042286). - x86/PCI: Mark Broadwell-EP Home Agent 1 as having non-compliant BARs (bsc#9048891). - xen/mce: do not issue error message for failed /dev/mcelog registration (bnc#1036638). - xen: add sysfs node for guest type (bnc#1037840). - xfrm: Fix memory leak of aead algorithmname (bsc#1042286). - xfs: add missing include dependencies to xfs_dir2.h (bsc#1042421). - xfs: do not warn on buffers not being recovered due to LSN (bsc#1043598). - xfs: fix xfs_mode_to_ftype() prototype (bsc#1043598). - xfs: log recovery tracepoints to track current lsn and buffer submission (bsc#1043598). - xfs: pass current lsn to log recovery buffer validation (bsc#1043598). - xfs: refactor log record unpack and data processing (bsc#1043598). - xfs: replace xfs_mode_to_ftype table with switch statement (bsc#1042421). - xfs: rework log recovery to submit buffers on LSN boundaries (bsc#1043598). - xfs: rework the inline directory verifiers (bsc#1042421). - xfs: sanity check directory inode di_size (bsc#1042421). - xfs: sanity check inode di_mode (bsc#1042421). - xfs: update metadata LSN in buffers during log recovery (bsc#1043598). - xfs: verify inline directory data forks (bsc#1042421). - zswap: do not param_set_charp while holding spinlock (VM Functionality, bsc#1042886). Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.2: zypper in -t patch openSUSE-2017-716=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE Leap 42.2 (noarch): kernel-devel-4.4.72-18.12.1 kernel-docs-4.4.72-18.12.3 kernel-docs-html-4.4.72-18.12.3 kernel-docs-pdf-4.4.72-18.12.3 kernel-macros-4.4.72-18.12.1 kernel-source-4.4.72-18.12.1 kernel-source-vanilla-4.4.72-18.12.1 - openSUSE Leap 42.2 (x86_64): kernel-debug-4.4.72-18.12.2 kernel-debug-base-4.4.72-18.12.2 kernel-debug-base-debuginfo-4.4.72-18.12.2 kernel-debug-debuginfo-4.4.72-18.12.2 kernel-debug-debugsource-4.4.72-18.12.2 kernel-debug-devel-4.4.72-18.12.2 kernel-debug-devel-debuginfo-4.4.72-18.12.2 kernel-default-4.4.72-18.12.2 kernel-default-base-4.4.72-18.12.2 kernel-default-base-debuginfo-4.4.72-18.12.2 kernel-default-debuginfo-4.4.72-18.12.2 kernel-default-debugsource-4.4.72-18.12.2 kernel-default-devel-4.4.72-18.12.2 kernel-obs-build-4.4.72-18.12.2 kernel-obs-build-debugsource-4.4.72-18.12.2 kernel-obs-qa-4.4.72-18.12.1 kernel-syms-4.4.72-18.12.1 kernel-vanilla-4.4.72-18.12.2 kernel-vanilla-base-4.4.72-18.12.2 kernel-vanilla-base-debuginfo-4.4.72-18.12.2 kernel-vanilla-debuginfo-4.4.72-18.12.2 kernel-vanilla-debugsource-4.4.72-18.12.2 kernel-vanilla-devel-4.4.72-18.12.2 References: https://www.suse.com/security/cve/CVE-2017-1000364.html https://www.suse.com/security/cve/CVE-2017-1000380.html https://www.suse.com/security/cve/CVE-2017-7346.html https://www.suse.com/security/cve/CVE-2017-9242.html https://bugzilla.suse.com/1012060 https://bugzilla.suse.com/1012382 https://bugzilla.suse.com/1012422 https://bugzilla.suse.com/1012829 https://bugzilla.suse.com/1015452 https://bugzilla.suse.com/1022595 https://bugzilla.suse.com/1031796 https://bugzilla.suse.com/1032339 https://bugzilla.suse.com/1036638 https://bugzilla.suse.com/1037840 https://bugzilla.suse.com/1038085 https://bugzilla.suse.com/1039348 https://bugzilla.suse.com/1039900 https://bugzilla.suse.com/1040855 https://bugzilla.suse.com/1041242 https://bugzilla.suse.com/1041431 https://bugzilla.suse.com/1041810 https://bugzilla.suse.com/1042286 https://bugzilla.suse.com/1042356 https://bugzilla.suse.com/1042421 https://bugzilla.suse.com/1042517 https://bugzilla.suse.com/1042535 https://bugzilla.suse.com/1042536 https://bugzilla.suse.com/1042886 https://bugzilla.suse.com/1043014 https://bugzilla.suse.com/1043231 https://bugzilla.suse.com/1043236 https://bugzilla.suse.com/1043371 https://bugzilla.suse.com/1043467 https://bugzilla.suse.com/1043598 https://bugzilla.suse.com/1043935 https://bugzilla.suse.com/1044015 https://bugzilla.suse.com/1044125 https://bugzilla.suse.com/1044532 https://bugzilla.suse.com/863764 https://bugzilla.suse.com/966321 https://bugzilla.suse.com/966339 https://bugzilla.suse.com/971975 https://bugzilla.suse.com/995542 . An important patch for Fedora rectifies multiple vulnerabilities in the Linux Kernel that affect both the safety and performance of the system.. openSUSE Kernel Update, Linux System Fixes, Critical Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 21, 2017 Important OpenSUSE
98

Red Hat 7 Advisory RHSA-2015:0383-01 Moderate: Ppc64-Diag Local Threats

Updated ppc64-diag packages that fix two security issues, several bugs, and add various enhancements are now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having Moderate security [More...]. ==================================================================== Red Hat Security Advisory Synopsis: Moderate: ppc64-diag security, bug fix, and enhancement update Advisory ID: RHSA-2015:0383-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2015:0383.html Issue date: 2015-03-05 CVE Names: CVE-2014-4038 CVE-2014-4039 ==================================================================== 1. Summary: Updated ppc64-diag packages that fix two security issues, several bugs, and add various enhancements are now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having Moderate security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Server (v. 7) - ppc64 3. Description: The ppc64-diag packages provide diagnostic tools for Linux on the 64-bit PowerPC platforms. The platform diagnostics write events reported by the firmware to the service log, provide automated responses to urgent events, and notify system administrators or connected service frameworks about the reported events. Multiple insecure temporary file use flaws were found in the way the ppc64-diag utility created certain temporary files. A local attacker could possibly use either of these flaws to perform a symbolic link attack and overwrite arbitrary files with the privileges of the user running ppc64-diag, or obtain sensitive information from the temporary files. (CVE-2014-4038, CVE-2014-4039) The ppc64-diag packages have been upgraded to upstream version 2.6.7, which providesa number of bug fixes and enhancements over the previous version including support for hot plugging of QEMU PCI devices. (BZ#1088493, BZ#1084062) This update also fixes the following bugs: * Prior to this update, the rtas_errd daemon was not started by default on system boot. With this update, rtas_errd has been modified to start automatically by default. (BZ#1170146) * Previously, the /var/log/dump file was not automatically created when installing the ppc64-diag package. This bug has been fixed, and /var/log/dump is now created at package install time as expected. (BZ#1175808) In addition, this update adds the following enhancement: * This update adds support for building the ppc64-diag packages on the little-endian variant of IBM Power Systems platform architecture. (BZ#1124007) Users of ppc64-diag are advised to upgrade to these updated packages, which correct these issues and add these enhancements. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1109371 - CVE-2014-4038 CVE-2014-4039 ppc64-diag: multiple temporary file races 6. Package List: Red Hat Enterprise Linux Server (v. 7): Source: ppc64-diag-2.6.7-6.el7.src.rpm ppc64: ppc64-diag-2.6.7-6.el7.ppc64.rpm ppc64-diag-debuginfo-2.6.7-6.el7.ppc64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2014-4038 https://access.redhat.com/security/cve/CVE-2014-4039 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2015 Red Hat, Inc. . Revised ppc64-diag software boosts safety and efficiency throughcorrections and upgrades specific to Red Hat 7.. ppc64-diag, Red Hat Enterprise, bug fixes, security update. . LinuxSecurity.com Team

Calendar 2 Mar 05, 2015 Red Hat
87

Debian 5.0: DSA-2028-1 Moderate: Xpdf Remote Code Issues

Several vulnerabilities have been identified in xpdf, a suite of tools for viewing and converting Portable Document Format (PDF) files. The Common Vulnerabilities and Exposures project identifies the following . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - -------------------------------------------------------------------------- Debian Security Advisory DSA-2028-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Luciano Bello April 5th, 2010 http://www.debian.org/security/faq - -------------------------------------------------------------------------- Package : xpdf Vulnerability : multiple Problem type : local (remote) Debian-specific: no Debian bug : 551287 CVE ID : CVE-2009-1188 CVE-2009-3603 CVE-2009-3604 CVE-2009-3606 CVE-2009-3608 CVE-2009-3609 Several vulnerabilities have been identified in xpdf, a suite of tools for viewing and converting Portable Document Format (PDF) files. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-1188 and CVE-2009-3603 Integer overflow in SplashBitmap::SplashBitmap which might allow remote attackers to execute arbitrary code or an application crash via a crafted PDF document. CVE-2009-3604 NULL pointer dereference or heap-based buffer overflow in Splash::drawImage which might allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. CVE-2009-3606 Integer overflow in the PSOutputDev::doImageL1Sep which might allow remote attackers to execute arbitrary code via a crafted PDF document. CVE-2009-3608 Integer overflow in the ObjectStream::ObjectStream which might allow remote attackers to execute arbitrary code via a crafted PDF document. CVE-2009-3609 Integer overflow in the ImageStream::ImageStream which might allow remote attackers to cause a denial of service via a craftedPDF document. For the stable distribution (lenny), this problem has been fixed in version 3.02-1.4+lenny2. For the testing distribution (squeeze), this problem will be fixed soon. For the unstable distribution (sid), this problem has been fixed in version 3.02-2. Upgrade instructions - --------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 5.0 alias lenny - -------------------------------- Debian (stable) - --------------- Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 674912 599dc4cc65a07ee868cf92a667a913d2 Size/MD5 checksum: 44597 d25be5fd97c9d9171db95025b7c32c5a Size/MD5 checksum: 1274 6cffe3ed50825b5a2746b71c4bd073ac Architecture independent packages: Size/MD5 checksum: 1270 6a4da9738ca93522b57cafadb598ca65 Size/MD5 checksum: 66414 24f28ede9dcaeeb2b7aa24b9603496be alpha architecture (DEC Alpha) Size/MD5 checksum: 1019484 8d91cca64026c90667b2d29a94190892 Size/MD5 checksum: 1895246 cf7dc335f3e5987577ad3559a44f0666 amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 922594 1ce29c4e15fe4600f557e8d055f5b203 Size/MD5 checksum: 1709600 989f4f4a09b07c4d08d4b69456e6e8bd arm architecture (ARM) Size/MD5 checksum: 907674 b058407dae72e49939662466b3e3d139 Size/MD5 checksum: 1667592 ebd3ae168496645940066041e51c0e32 armel architecture (ARM EABI) Size/MD5 checksum: 1603124 4f79ec52afae68ee081ee2073180878e Size/MD5 checksum: 886136 38594fe36b0a657a3d91ba2ec7fd74ac hppa architecture (HP PA RISC) Size/MD5 checksum: 1076874 054d6b1dee7af918c16a4d30e6a8edf1 Size/MD5 checksum: 1986502 e895007daa18a3aecb13d84b832799e0 i386 architecture (Intel ia32) Size/MD5 checksum: 1611516 c73e47d9c96298940bd458c7e8879209 Size/MD5 checksum: 876446 c6e9ebb6d5873552e886e33d92aa4f49 ia64 architecture (Intel ia64) Size/MD5 checksum: 1379452 9534f82bd859fe271a7013a9bc5a3502 Size/MD5 checksum: 2518368 a79b724d1f0624272cdd991ea24a5123 powerpc architecture (PowerPC) Size/MD5 checksum: 969642 e30c3db71091c2e541bfd6d59716e83e Size/MD5 checksum: 1789344 a2211808b5cb72323794021645a86219 s390 architecture (IBM S/390) Size/MD5 checksum: 1599976 4e80942805965de01fc5e55a80d56fdd Size/MD5 checksum: 872780 d0a544f22acb33fe4736722b57099200 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 1586464 6dfc41a2556f6b7f040fc0fd4e302906 Size/MD5 checksum: 864188 7e473a78134f7209dd729cf5471a5463 These files will probably be moved into the stable distribution on its next update. - --------------------------------------------------------------------------------- For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Debian DSA-2030-2 addresses vulnerabilities in Ghostscript, remedying various local and remote weaknesses to thwart exploitation via malicious PostScript files.. Debian Security,xpdf issues,remote execution,local flaws,package updates. . LinuxSecurity.com Team

Calendar 2 Apr 05, 2010 Debian
87

Debian: DSA-1868-1 Moderate: kde4libs Code Issues Affecting Stability

Several security issues have been discovered in kde4libs, core libraries for all KDE 4 applications. The Common Vulnerabilities and Exposures project identifies the following problems: . - ------------------------------------------------------------------------ Debian Security Advisory DSA-1868-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Steffen Joeris August 19, 2009 http://www.debian.org/security/faq - ------------------------------------------------------------------------ Package : kde4libs Vulnerability : several vulnerabilities Problem type : local (remote) Debian-specific: no CVE Ids : CVE-2009-1690 CVE-2009-1698 CVE-2009-1687 Debian Bugs : 534949 Several security issues have been discovered in kde4libs, core libraries for all KDE 4 applications. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-1690 It was discovered that there is a use-after-free flaw in handling certain DOM event handlers. This could lead to the execution of arbitrary code, when visiting a malicious website. CVE-2009-1698 It was discovered that there could be an uninitialised pointer when handling a Cascading Style Sheets (CSS) attr function call. This could lead to the execution of arbitrary code, when visiting a malicious website. CVE-2009-1687 It was discovered that the JavaScript garbage collector does not handle allocation failures properly, which could lead to the execution of arbitrary code when visiting a malicious website. For the stable distribution (lenny), these problems have been fixed in version 4:4.1.0-3+lenny1. The oldstable distribution (etch) does not contain kde4libs. For the testing distribution (squeeze), these problems will be fixed soon. For the unstable distribution (sid), these problems have been fixed in version 4:4.3.0-1. We recommend that you upgrade your kde4libs packages. Upgradeinstructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 5.0 alias lenny - -------------------------------- Debian (stable) - --------------- Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc. Source archives: Size/MD5 checksum: 2149 7bc7675c4aa9e7afd4fa3f83b3f95810 Size/MD5 checksum: 91423 ecc50e9bedff96a3285a031141ea15d6 Size/MD5 checksum: 11264345 05487ff0cbc3da093f19e59184b259c7 Architecture independent packages: Size/MD5 checksum: 3140792 47debc16cde2c9a927252ef09d89c1a3 alpha architecture (DEC Alpha) Size/MD5 checksum: 485854 b888554c3d2658b0af3abfa842c58588 Size/MD5 checksum: 67441346 e6d761db09e246d88139e3416de56611 Size/MD5 checksum: 1468330 b8c3ce39505d2532f2c5d7fc83de01d8 Size/MD5 checksum: 11132464 6b307db1dd606a5fbbad60745cf51236 amd64 architecture (AMD x86_64 (AMD64)) Size/MD5 checksum: 450758 dc184603a57dc4bbcedde957086463c3 Size/MD5 checksum: 65872658 3bc3de5af3ff3722bd7817b6c4a4c4d4 Size/MD5 checksum: 10078022 aec949a2390e430248089ebb3790ed78 Size/MD5 checksum: 1454348 51a11bc442e5155ee37bc276c2cb025e arm architecture (ARM) Size/MD5 checksum: 445060 4c9f86c771e9d24459fc1a1369b19d1c Size/MD5 checksum: 67062788 8ead631de22e777ac573400dc7829728 Size/MD5 checksum: 1501464 e90a472bd53283512dda2c5522b1e779 Size/MD5 checksum: 10159066 44dc0551f1664e6775cca2fc2e9568c8 hppa architecture (HP PA RISC) Size/MD5 checksum: 468294 71da7f31e8f21706831abfb597d6c161 Size/MD5 checksum: 11272148eae478aac58c1e84cb57c9244bc6e633 Size/MD5 checksum: 66023980 bc0eeed2957433fdf38f227d464c4dac Size/MD5 checksum: 1501146 55ebcb8acd0e29c84dad063f030d4b32 i386 architecture (Intel ia32) Size/MD5 checksum: 9495028 0486badbc6a675555500eac834e66770 Size/MD5 checksum: 1494680 7caef230087548ae9fafc4c9cbfa51a6 Size/MD5 checksum: 428258 a2154b9e6f111e00d9fafee2e44950d3 Size/MD5 checksum: 65050706 cc57db2601c136b0ea25aa2aafc9ada4 ia64 architecture (Intel ia64) Size/MD5 checksum: 636012 8835da7f0554073419c9bb1ea699be2f Size/MD5 checksum: 69462428 1a34d47746eb45a014c6a18d7711437e Size/MD5 checksum: 1490832 1731fe69a65e2aaeecbc7c31ba594ea3 Size/MD5 checksum: 14283690 92e7eaeeb3288d64aad305c1f7b46ace mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 411002 fc291f1f164002ffa25f21ab4413d418 Size/MD5 checksum: 1491562 5ad177aedcac523d4414c1b33590a8aa Size/MD5 checksum: 67214842 6bf4782cae7a4bb07600a8c4622d2ba8 Size/MD5 checksum: 8922858 e2081fa92bc60067bf3fab1d9553d9f0 mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 1445728 0e93a06b9c99da3e19fe9ed57effc2af Size/MD5 checksum: 64601046 76bcf6fa57c4c9fe4146996227fd483e Size/MD5 checksum: 410088 c1a038807d9bfd9ec21b3d3fb9b4ad3b Size/MD5 checksum: 8776788 a4e68c739bc64700c8cba42746337051 powerpc architecture (PowerPC) Size/MD5 checksum: 10152880 7c3caef790d31e75030798ff255860f0 Size/MD5 checksum: 1504080 2a6f91b2f9d251f7c948db16b26b74e6 Size/MD5 checksum: 488426 f82580483fe29a15a635df5b130889f0 Size/MD5 checksum: 69005164 b5142561ef43d8f394f69723ecfa101e s390 architecture (IBM S/390) Size/MD5 checksum: 1454438 7f6117ffd81b9a759544a84b129451d2 Size/MD5 checksum: 69791606 b67cba5028161769d9227e551ce1e3ce Size/MD5 checksum: 476722 3871456f5fad8399f14f6711bd483635 Size/MD5 checksum: 10410196 3a1c94adbe9d2cdf3aab21e684a2ee09 These files will probably be moved into the stabledistribution on its next update. - --------------------------------------------------------------------------------- For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Debian DSA-1869-1 details vulnerabilities in qtbase, providing guidance on updates and information regarding their severity.. Debian Advisory,kde4libs issues,security upgrade. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 19, 2009 Important Debian
87

Debian 4.0 DSA-1378-2 Critical: Kernel Issues and Updates

Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code.. - --------------------------------------------------------------------------Debian Security Advisory DSA 1378-2 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Dann Frazier September 28th, 2007 http://www.debian.org/security/faq - --------------------------------------------------------------------------Package : linux-2.6 Vulnerability : several Problem-Type : local Debian-specific: no CVE ID : CVE-2007-3731 CVE-2007-3739 CVE-2007-3740 CVE-2007-4573 CVE-2007-4849 Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-3731 Evan Teran discovered a potential local denial of service (oops) in the handling of PTRACE_SETREGS and PTRACE_SINGLESTEP requests. CVE-2007-3739 Adam Litke reported a potential local denial of service (oops) on powerpc platforms resulting from unchecked VMA expansion into address space reserved for hugetlb pages. CVE-2007-3740 Steve French reported that CIFS filesystems with CAP_UNIX enabled were not honoring a process' umask which may lead to unintentinally relaxed permissions. CVE-2007-4573 Wojciech Purczynski discovered a vulnerability that can be exploitd by a local user to obtain superuser privileges on x86_64 systems. This resulted from improper clearing of the high bits of registers during ia32 system call emulation. This vulnerability is relevant to the Debian amd64 port as well as users of the i386 port who run the amd64 linux-image flavour. CVE-2007-4849 Michael Stone reported an issue with the JFFS2 filesystem.Legacy modes for inodes that were created with POSIX ACL support enabled were not being written out to the medium, resulting in incorrect permissions upon remount. These problems have been fixed in the stable distribution in version 2.6.18.dfsg.1-13etch3. This advisory has been updated to include a build for the arm architecture, which was not yet available at the time of DSA-1378-1. The following matrix lists additional packages that were rebuilt for compatibility with or to take advantage of this update: Debian 4.0 (etch) fai-kernels 1.17+etch.13etch3 user-mode-linux 2.6.18-1um-2etch.13etch3 We recommend that you upgrade your kernel package immediately and reboot the machine. If you have built a custom kernel from the kernel source package, you will need to rebuild to take advantage of these fixes. Upgrade Instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 4.0 alias etch - -------------------------------- Source archives: Size/MD5 checksum: 5672 c1bd844f7cda4fbe195633ca2f10e1ed Size/MD5 checksum: 5318081 24ff4c8f5d53eb3b7c9fe8a080827045 Size/MD5 checksum: 52225460 6a1ab0948d6b5b453ea0fce0fcc29060 Size/MD5 checksum: 740 ae1bf8aadf49ec47235774fac7f5cb06 Size/MD5 checksum: 54342 9c94bc12cef25ab30b5a66035c7588a2 Size/MD5 checksum: 892 76ffc1795c64ab756e04659d71b448f7 Size/MD5 checksum: 14307 80979b335d9db66a3994b5c0f9f6136b Size/MD5 checksum: 144354d10c30313e11a24621f7218c31f3582 Architecture independent components: Size/MD5 checksum: 3586464 642f8635f26aa477585eede9fb3e3a8e Size/MD5 checksum: 1084976 f7012142b8ecde3b20e859ffdbafa76a Size/MD5 checksum: 1493922 79ef3fd2042d76d90ffc8ea77317b4a4 Size/MD5 checksum: 41419430 9bf2852f380c1a29b0068654960e6e01 Size/MD5 checksum: 3738764 f072fb67d41664c4e57df70a8ac22fdb Size/MD5 checksum: 51772 a46496ef69dfef51a10a7a9368eb7c37 Alpha architecture: Size/MD5 checksum: 3024850 7261d6636358ad82a5f6610d115b887c Size/MD5 checksum: 51154 5467b5cce245c40150a4cec4ad593f2d Size/MD5 checksum: 51198 4101e258cd154eee62224b9b4ecd7b6c Size/MD5 checksum: 264108 1bb481319062774290337f72846e158d Size/MD5 checksum: 264510 61a762950becbdd713f90a85f0a7a8f9 Size/MD5 checksum: 263466 40b0e2b1e295c75c08d2b0e2778837bc Size/MD5 checksum: 3048826 8e25666c1b25a816d1b0d606ed4ca4b5 Size/MD5 checksum: 264818 226e6f277f37252d140cc7d47ebb77a9 Size/MD5 checksum: 23486594 c8c9cb18e436da5c33546e9b6543320f Size/MD5 checksum: 23465590 515cf24ccbb4b54138e8cc7574d70099 Size/MD5 checksum: 23839570 689c36aff6df07819fa51b1ad38b903e Size/MD5 checksum: 23530136 2e19973862f5af549a5e66e0747990a6 AMD64 architecture: Size/MD5 checksum: 3165060 754cc08cae8f216999d0024c93750e82 Size/MD5 checksum: 51312 cde8270f1364c37ad549636895712ecb Size/MD5 checksum: 51336 ef87759d8919c48dcfe3c736d5efbc2d Size/MD5 checksum: 268844 d8a38476b009df23ebab04cb3610fe9d Size/MD5 checksum: 3188360 6d1ed40c08af5f1585593019d50631d4 Size/MD5 checksum: 269232 32d28994c896ad6ad4091233552ce30f Size/MD5 checksum: 3331540 03b13b7957bc0ccd11de8c3510af2d27 Size/MD5 checksum: 269588 ec44153ca4019201034b3ab662c7744c Size/MD5 checksum: 33543020c0382fb2e1a33cf2799b302eccf41a9 Size/MD5 checksum: 269900 19eaf721177cdee26c5b5d9a70bda756 Size/MD5 checksum: 16801104 8da4f4152b3e8a9d450407562b219dc5 Size/MD5 checksum: 16839902 5a5a2cbc2cf4ac581b3fb75c45097195 Size/MD5 checksum: 1648332 3aad8384129443377f2704f64c6b1223 Size/MD5 checksum: 1679452 acc0edb1dff87dfae6cfbeeea37db2ef Size/MD5 checksum: 15239962 fd6afef74b1a3d1b7bbe47a5ed748d2d Size/MD5 checksum: 15255752 352e7a342954778582a43f1922378f1b Size/MD5 checksum: 51290 b583c1ae3ac4ace3202e9ccce0fdd2f7 Size/MD5 checksum: 51304 a28abd544c1c1bc0f433ba8d1dac5352 Size/MD5 checksum: 5953464 df6352225b4e5f2c833deb50af41f90e ARM architecture: Size/MD5 checksum: 3407574 711316bd4ba0784184ef5ee55b0c1383 Size/MD5 checksum: 51166 a4a3eb02834826052e3f687ea907b8fc Size/MD5 checksum: 51210 05a58fc0b3914fc4ac37347292e134f5 Size/MD5 checksum: 230124 2fb1526102d6164ba732d823f8f492f3 Size/MD5 checksum: 231056 3fc42c5be86aa153e8523dab37fe16ff Size/MD5 checksum: 237110 5a3fa1deb02fbc2497fea19001a006bd Size/MD5 checksum: 195222 ba8efd3ef9e8eba5db1507480333ab49 Size/MD5 checksum: 200386 4e0ee223692b1079c65b932e5504c46d Size/MD5 checksum: 7560672 4152bfddc6fbe71d9889cf2dfba4a7ae Size/MD5 checksum: 7921808 fae8c36efae0e833c3d7360018c7c6eb Size/MD5 checksum: 8865606 735b2fce4087371f261bc5a5706d5129 Size/MD5 checksum: 4584206 d1a80fac47136d852d2b00087e5bee44 Size/MD5 checksum: 5006262 a0670890b07db68bf3775883a9c8e745 HP Precision architecture: Size/MD5 checksum: 2964790 3c233b78beb82854ad8f8c59631a7e6c Size/MD5 checksum: 51316 2c392828bd8ebc0cc5b0b6353be03cce Size/MD5 checksum: 51344 e029ac492fff7f773b6fb90ab107886b Size/MD5 checksum: 188994 c53efd1e9dc852119c038df966b81c8f Size/MD5 checksum: 189850 a3680826df708c323be55c5cc27df7be Size/MD5 checksum: 189656 b94053ce54fa8684ecf8f02daedf993b Size/MD5 checksum: 190270 af48e06dc0fa96a42c0666ff69b80e97 Size/MD5 checksum: 10499010 f7f84f9e3f5e66939e252decd4f29ef5 Size/MD5 checksum: 10940878 315807a60264d4a1dc21e44facd1020d Size/MD5 checksum: 11346866 bf53c4333bb56091a023d164783ecc3c Size/MD5 checksum: 11752870 ef592928a2b7f091ecbc6faa99ffd285 Intel IA-32 architecture: Size/MD5 checksum: 3165112 b2d2cb3335fe4e2403a98c5cd63b2eba Size/MD5 checksum: 281794 126092eb229e71eaad3e7d7a36d17754 Size/MD5 checksum: 275890 46cfd21b443148ec6b98e3d87a12d1b4 Size/MD5 checksum: 278048 4516ed33a3cf4c6459a33b8afc19eb4e Size/MD5 checksum: 51314 7caae89649c7f1ea095b47c5ee769009 Size/MD5 checksum: 51368 f755bac5a16c119df79fbe0ba3426b8d Size/MD5 checksum: 268892 b4e0de1ef417c81185bb5a6c5fb8cbf5 Size/MD5 checksum: 276022 7aad97d5809e61fc834c8d5f558a6641 Size/MD5 checksum: 3051414 291ffaf42d16086bb6dfdece985ebfc8 Size/MD5 checksum: 274608 15661c5661d068fc690093e33e0cbc0a Size/MD5 checksum: 274806 47961f1c9ed5b8688e684eb24a97d412 Size/MD5 checksum: 3145706 0bc912cea0cfc3d9253fa2603b70a3ee Size/MD5 checksum: 270306 8737b4e07e69c342829a27f07efc2b92 Size/MD5 checksum: 3167860 30b0868030123e876d2de289d4aafce7 Size/MD5 checksum: 271424 476e6173c42cecfafbd8eabdb10bf2c4 Size/MD5 checksum: 16171498 2fc3cc92b2684189e70ec1f95e698249 Size/MD5 checksum: 16320492 afa8ee6475d66ff43fa198957b2a195f Size/MD5 checksum: 16385944 c1b6026c6f2c9308653a17c13970f296 Size/MD5 checksum: 16816648 3d67f492a56ebb2ae1fb772c34c56d3b Size/MD5 checksum: 16451748 5f1b94073a38edded3317d970e0ee1e7 Size/MD5 checksum: 16360874 ba55829047abc6a8b0193e81a3924f2f Size/MD5 checksum: 16489572 9a805b2b9a65809bfe69f242dcabb876 Size/MD5 checksum: 1296892 b06fe054abbcb6c4d4da61b98c740fd8 Size/MD5 checksum: 1324034 4980e4399abb7b8ee972c188805bfa97 Size/MD5 checksum: 14259144 d4a68bc1ad72f7e01f700f5debfad105 Size/MD5 checksum: 14272858 7321f4ff1569565ef56e00b895b74d00 Size/MD5 checksum: 51298 6b55500ea040ffb7952fdfcf39718d9a Size/MD5 checksum: 51306 3717938af3a89530021e346ed00e7b89 Size/MD5 checksum: 5500914 83786305ce1b91a606159a664067ada0 Size/MD5 checksum: 25581668 52cae7bf537d4606dd2c81ad2fecdab2 Intel IA-64 architecture: Size/MD5 checksum: 3079074 d0b1d1fc8febf7fa3a20a0d13d54c033 Size/MD5 checksum: 51314 22f7787904f28607e9a92865c2db987f Size/MD5 checksum: 51334 cbbda564c0228bd81fca91313ef2dcc6 Size/MD5 checksum: 252332 c3462831353568373f9ed3aad28edd9a Size/MD5 checksum: 252270 f99300b25f3c641b044cc4001c745f4e Size/MD5 checksum: 28008066 e20321da89e84839dbc9b34105142f73 Size/MD5 checksum: 28178386 de6dff8f8bd0af1fa13d0e5922ba9fc5 Big endian MIPS architecture: Size/MD5 checksum: 3347004 661503f72c812d3d5bbdce79f8026156 Size/MD5 checksum: 51318 65d73a0b42f5028fecc0aee106056e5f Size/MD5 checksum: 51366 7ec7830eed092088ee0307666438a9cc Size/MD5 checksum: 146740 17804bdcbf7b24325c71eb11bed03473 Size/MD5 checksum: 157206 722bc60f3e95d4a5eba81c5f6d8a91c9 Size/MD5 checksum: 161534 09f5d89241bf3ffc01be091d82f6c838 Size/MD5 checksum: 180138 8db782b13039068245f06b219215b626 Size/MD5 checksum: 179874 01b1283374f39236fa30b1a279f968fb Size/MD5 checksum: 6091102 611be0ed59451669af3b2f49a00931d5 Size/MD5 checksum: 8271796 58827e1bff9c67019873476dde52e599 Size/MD5 checksum: 9039394 87ea04759e6eedf59af41e5ef58f101a Size/MD5 checksum: 156372904356a27d94e6f671b5b89a8d6e7c3bd2 Size/MD5 checksum: 15608044 65fac0e4b0fd097ad53133a22d785338 Little endian MIPS architecture: Size/MD5 checksum: 3347160 ab1a9801444fab092b4a72b38f6e1191 Size/MD5 checksum: 51318 1c71ae4a0ac07c18629daa8126daf2e2 Size/MD5 checksum: 51374 239a15a27b9c091476e325526be0c1c8 Size/MD5 checksum: 146794 04e2de28cff60d105919037d2766eba4 Size/MD5 checksum: 152996 1c2714318d0a1f85248584ef1a0aa30f Size/MD5 checksum: 153022 32eb281559632426cc5d3ed4953eb502 Size/MD5 checksum: 175682 a0778a6edb9125096d82947f3a34df5e Size/MD5 checksum: 180020 a8c8c8ad8a61359b309574fb7161b1af Size/MD5 checksum: 179814 3e0264b16eddbb14717c9206b398c347 Size/MD5 checksum: 6025496 1922a6c7b016a25976a9281386e38bcc Size/MD5 checksum: 5937918 995be142fcc6b13a8cba108926ff4afe Size/MD5 checksum: 5922386 c1576f9427a7d229099248836f89dfc1 Size/MD5 checksum: 9858332 117f438f7776686f7c957e437e2682b6 Size/MD5 checksum: 15053214 2e0e0eb5ec63f2e3f9d6913014b8406f Size/MD5 checksum: 15021190 eef8c748cbf274ed01c7f33e33fa3561 PowerPC architecture: Size/MD5 checksum: 3389468 b0a4e7b558e710635227fb995a42071b Size/MD5 checksum: 51326 910bfa327d7d11edc8a16f7d2d002266 Size/MD5 checksum: 51370 bfbae6c08efb7a806bac110df89471d1 Size/MD5 checksum: 248408 d77337459f8d18cd894aff3f8a955b1d Size/MD5 checksum: 226044 219668bc358fd6c33b01f0b4b7956928 Size/MD5 checksum: 249032 d355d451e754245ea360739f2d9adf89 Size/MD5 checksum: 248976 1729ca9adba3ef6df3745fca0581cbf2 Size/MD5 checksum: 244222 651d856ad6d3130861e14bb418aa2d5e Size/MD5 checksum: 3411748 d8ced91b10eb1b26afd0f020d7e19e38 Size/MD5 checksum: 248818 43e808366f043639a1f038b3fd5d3e5b Size/MD5 checksum: 249624 df1e63f8426e685cc7e5c4a5338055bb Size/MD5 checksum: 16624106 375b897f7945c4ec018616ddc23f73e5 Size/MD5 checksum: 15150978 8bc90791256b41fdd2178cc82f6d1f31 Size/MD5 checksum: 16961086 78ed10e9534d9a613aa5cfa164cb0a48 Size/MD5 checksum: 18291760 96113bb560c56e60b68fd610953068ce Size/MD5 checksum: 16397436 313dc264e19ab541810e4d16a7aa9bdc Size/MD5 checksum: 17009336 72a8d965ee8309fe30a3a4b386fb83fb Size/MD5 checksum: 18341888 a5a85b8e5aaa0856679ff5e931d1a745 Size/MD5 checksum: 3363958 271639310c0473d23a036895b11f8238 IBM S/390 architecture: Size/MD5 checksum: 2940262 5a079420d24314727e5cc4679ce7ee4e Size/MD5 checksum: 51312 23b5979839026f27172b8081da2fb258 Size/MD5 checksum: 51334 c1976ee681e5ded52041bf0309196522 Size/MD5 checksum: 139726 a91901c63afdfeb36e36fae64b7ccb8d Size/MD5 checksum: 140218 00835fe3d6fa44b48df914029f4c8af9 Size/MD5 checksum: 2963274 2f664783dad1619383a160f55218e18d Size/MD5 checksum: 141182 fbea8082ab79eae9a8d8e28f1724fb74 Size/MD5 checksum: 5399074 e1d1777b81019b22d984403b783c8152 Size/MD5 checksum: 1435770 244464ce9a421a430356e8879f8c07c7 Size/MD5 checksum: 5614696 bb6ef7f25a2fc2b5bbcb8e2ec0333fb0 Size/MD5 checksum: 5659740 5b38a2ee19d3e664a27abdd40556cebb Sun Sparc architecture: Size/MD5 checksum: 3165234 cac78d535b50cc5acc1716b1ea477897 Size/MD5 checksum: 51314 89a1e842b8e1a6f598f2eec8b5eb0a80 Size/MD5 checksum: 51344 c910cf122c8c8eede0b2a4413169cd4b Size/MD5 checksum: 162712 3a77b24ed6cc44d0e56b594c662da56c Size/MD5 checksum: 191704 e4395e6af89fde53b36bf41effa2aa0a Size/MD5 checksum: 192608 a5d1998511c374713392e3981bc3fa10 Size/MD5 checksum: 3187614 c67dff0e72bd960c4b6042cb8bec397d Size/MD5 checksum: 192882 8e8a8d09f8a6c07bb6129dab0933f724 Size/MD5 checksum: 6406506e9be24946f8f44fc71ce2d91b39cc92a Size/MD5 checksum: 10353392 f63486d1ae8cd01722c5952b3caf89d6 Size/MD5 checksum: 10610920 206d871acd6c7db2f9ec51bd1eef2faa Size/MD5 checksum: 10656398 013b73fcb610445e707dec4713eb7ff1 These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ etch/updates main For dpkg-ftp: dists/etch/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu released notice USN 1234-5 regarding several kernel vulnerabilities. Upgrade immediately to maintain system safety and stability.. Debian Advisory, Kernel Security, Software Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 28, 2007 Critical Debian
87

Debian: DSA 1112-1 Major: mysql-dfsg-4.1 Denial Of Service Attack

Updated package.. - --------------------------------------------------------------------------Debian Security Advisory DSA 1112-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff July 18th, 2006 http://www.debian.org/security/faq - --------------------------------------------------------------------------Package : mysql-dfsg-4.1 Vulnerability : several Problem-Type : local Debian-specific: no CVE ID : CVE-2006-3081 CVE-2006-3469 Debian Bug : 373913 375694 Several local vulnerabilities have been discovered in the MySQL database server, which may lead to denial of service. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2006-3081 "Kanatoko" discovered that the server can be crashed with feeding NULL values to the str_to_date() function. CVE-2006-3469 Jean-David Maillefer discovered that the server can be crashed with specially crafted date_format() function calls. For the stable distribution (sarge) these problems have been fixed in version 4.1.11a-4sarge5. For the unstable distribution (sid) does no longer contain MySQL 4.1 packages. MySQL 5.0 from sid is not affected. We recommend that you upgrade your mysql-dfsg-4.1 packages. Upgrade Instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.1 alias sarge - -------------------------------- Source archives: Size/MD5 checksum: 1021 9cd4f7df9345856d06846e0ddb50b9ee Size/MD5 checksum: 168442e45db0b01b3adaf09500d54090f3a1e1 Size/MD5 checksum: 15771855 3c0582606a8903e758c2014c2481c7c3 Architecture independent components: Size/MD5 checksum: 36520 e8115191126dc0b373a53024e5c78733 Alpha architecture: Size/MD5 checksum: 1590788 297b4444903885a19c76a1217e83477d Size/MD5 checksum: 7965184 8df4e20d157517541228fa52e4c60dbc Size/MD5 checksum: 1000952 4d62bca949f80c09f043a78b9e701ca5 Size/MD5 checksum: 17487070 b357fcab1b57764e1ee8a341dd30def3 AMD64 architecture: Size/MD5 checksum: 1452034 a22b66b8e00b2409bf1428834af1073b Size/MD5 checksum: 5551704 731f50735026de2b95d9e9d9e19a7717 Size/MD5 checksum: 849526 a0a5d944db8261044bcdddbe55ab03d6 Size/MD5 checksum: 14711282 bf471f8b19fe0aa14bf04209c0eac975 ARM architecture: Size/MD5 checksum: 1388864 1ed00eac905063c7caa7702bb6a4dcda Size/MD5 checksum: 5558854 46fac3302d6e4677bb1dbce5f5aa1387 Size/MD5 checksum: 836766 5487191a4af54786066ac720456b5b68 Size/MD5 checksum: 14557630 1369e1f83fad8dfcbea1618e0acd821e Intel IA-32 architecture: Size/MD5 checksum: 1418036 ab5768abe67a1d21c714a078f2ec86f0 Size/MD5 checksum: 5643732 bf891e68e488947fd28a940a367d722f Size/MD5 checksum: 830724 f5d4a9e5b289d895ba021190f907829f Size/MD5 checksum: 14558034 b580eeaf7a3806b95a07435acbe48e27 Intel IA-64 architecture: Size/MD5 checksum: 1713308 0067b2b9c41a412defde52f366e3c897 Size/MD5 checksum: 7782486 3aabc5d9cf4bd642de338d58bdaf06f5 Size/MD5 checksum: 1050616 d23aac0cd8ee2af56e54dfb5bac2f330 Size/MD5 checksum: 18475936 9ddfe01a4b31abfed11b9bde23fac76f HP Precision architecture: Size/MD5 checksum: 1551202 77244af3e0edbeaf716764fe9ac81e6f Size/MD5 checksum: 6250286 fd9cb45d760605ee2a89f70af5cb9af3 Size/MD5 checksum: 91004638698cebd4b9f438fd09d9bbb9dcd92c Size/MD5 checksum: 15791130 8517866821789c2ac7343f9db6f59d3f Motorola 680x0 architecture: Size/MD5 checksum: 1397964 e5166b54d56236e0bcbd677ae0b0612f Size/MD5 checksum: 5284080 48f187b76145ed53de71074d1e19bd6a Size/MD5 checksum: 803870 699c9078240853a353fbd70504285d51 Size/MD5 checksum: 14072018 f2837081c2ff82f8510234e174db38b4 Big endian MIPS architecture: Size/MD5 checksum: 1478938 f6865d5d185ecc5b20dac7d0d7e129da Size/MD5 checksum: 6053046 43b3f77618248df20870c85301465095 Size/MD5 checksum: 904490 351bde467510be873c1a2cdc57048523 Size/MD5 checksum: 15409966 a0332059581d3de6922e9313d6eef676 Little endian MIPS architecture: Size/MD5 checksum: 1446348 46a4c7d996016a4adcf56440b05fef21 Size/MD5 checksum: 5971326 6467ab19215d4e0e45084d3530929683 Size/MD5 checksum: 890130 52b93510c81b7d296074fc4c36a6d847 Size/MD5 checksum: 15105474 1ffe09b6dc5b370067bf337109188a25 PowerPC architecture: Size/MD5 checksum: 1476860 3b5a3a41dcb3744a289e78e3310d1df1 Size/MD5 checksum: 6027448 99a562b660721bc4dacd8997de8aab1f Size/MD5 checksum: 907410 9893e547ddfe66215e6bc3da4bf69724 Size/MD5 checksum: 15403210 25c8ae97be006ad171df2f3bdedc72a2 IBM S/390 architecture: Size/MD5 checksum: 1538550 b105d416c3bcd7875984cecac926d076 Size/MD5 checksum: 5461556 00100b922054d9b9c3fc22b3a92b60c7 Size/MD5 checksum: 884294 37fe2778f39871852f9fa53677cffe2c Size/MD5 checksum: 15055516 c22496ba5559e2fbb1f0a37cd889ee0b Sun Sparc architecture: Size/MD5 checksum: 1460576 f4a2d46769a708b1ef70aa85e2b09277 Size/MD5 checksum: 6208040 3dc2de911cc6cbcb4f637bfccbce988a Size/MD5 checksum: 868258 1671384fa14d81404e3af7ffb555073e Size/MD5 checksum: 15392304 6d9b9d762aa6088e416c1b987f853e96 These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian releases mysql-dfsg-4.1 patches that resolve denial of service threats for improved protection.. mysql-dfsg-4.1 Security, Debian Upgrade, Denial Of Service Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jul 17, 2006 Important Debian
87

Debian 3.0 DSA 563-2 Moderate: cyrus-sasl Code Execution Risk

This advisory corrects DSA 563-1 which contained a library that caused other programs to fail unindented.. -------------------------------------------------------------------------- Debian Security Advisory DSA 563-2 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze October 12th, 2004 Debian -- Debian security FAQ -------------------------------------------------------------------------- Package : cyrus-sasl Vulnerability : unsanitised input Problem-Type : local Debian-specific: no CVE ID : CAN-2004-0884 Debian Bug : 275498 This advisory corrects DSA 563-1 which contained a library that caused other programs to fail unindented. For the stable distribution (woody) this problem has been fixed in version 1.5.27-3woody3. For reference the advisory text follows: A vulnerability has been discovered in the Cyrus implementation of the SASL library, the Simple Authentication and Security Layer, a method for adding authentication support to connection-based protocols. The library honors the environment variable SASL_PATH blindly, which allows a local user to link against a malicious library to run arbitrary code with the privileges of a setuid or setgid application. For the unstable distribution (sid) this problem has been fixed in version 1.5.28-6.2 of cyrus-sasl and in version 2.1.19-1.3 of cyrus-sasl2. We recommend that you upgrade your libsasl packages. Upgrade Instructions -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody -------------------------------- Source archives: Size/MD5 checksum: 711 91b4d0c36b104620ec5d67a95908da5a Size/MD5 checksum: 40428 56130ac3dde75943d2f5d594881d4f31 Size/MD5 checksum: 528252 76ea426e2e2da3b8d2e3a43af5488f3b Alpha architecture: Size/MD5 checksum: 76226 7450c31b1634f789234dcd045c72ba1c Size/MD5 checksum: 19100 80dff5ceced2b6902557e2f2753b2c10 Size/MD5 checksum: 14944 1ebe9da02e5fa969591472fc1d7d86a2 Size/MD5 checksum: 172332 d4c236501921a441e5bdbe97f18e3818 Size/MD5 checksum: 13422 43012f7ffc98161bf238d1eccd124c1b ARM architecture: Size/MD5 checksum: 70170 d4cdf775981a8f4bb41f4aec28562862 Size/MD5 checksum: 15038 c34c52e62a3ecd1099daca1146a2c325 Size/MD5 checksum: 12450 8cc784fd0e7a9f6c3fc8c85440f5d0da Size/MD5 checksum: 165914 32d2be1e5f58283b36d65904857c38d7 Size/MD5 checksum: 10850 bba9b1694a4ea2bbbc533a029b589b26 Intel IA-32 architecture: Size/MD5 checksum: 65292 91c7e706fbc6d6bf211960d8e4811eb2 Size/MD5 checksum: 13298 433d2d981444495e6ca5e216543c8943 Size/MD5 checksum: 11754 c97a58448542f29a1067291b52b94780 Size/MD5 checksum: 162896 3b0e73e6f1425d9c5fad18377961d84b Size/MD5 checksum: 11078 ab906f86340a0b5c5f0bb3df8cdd5c9b Intel IA-64 architecture: Size/MD5 checksum: 83792 05302af9b91315c201c9c92cd5fe61ff Size/MD5 checksum: 23252 c86b8f1bc3b75a25e05c5c63738c3e4e Size/MD5 checksum: 19964 75a969bda18dbd3b6d9b8a5a257ed71e Size/MD5 checksum: 180990 d03f4ab68d2e9934561ed1852671df3d Size/MD5 checksum: 14238 133ec7ac7d983036bd0b098856239272 HP Precision architecture: Size/MD5 checksum: 75324 0b802ea7f227d06d0de2b1d6c255d3ba Size/MD5 checksum: 18286 2ee50c0ea3d8d2904d737edbf6f51736 Size/MD5 checksum: 15470ab652ce834c1a1946009402886a940bb Size/MD5 checksum: 171242 d83593d56f74ee92998a804dbb2cf67c Size/MD5 checksum: 11904 9484fe5429cda40dc6083537dd17426b Motorola 680x0 architecture: Size/MD5 checksum: 64738 a4b399d98655e6ee77241227ee86c2e2 Size/MD5 checksum: 13102 1c3e8fa88d42d621420fb9d8e1607573 Size/MD5 checksum: 11804 0608eb94698ee5fc87159f686f34d039 Size/MD5 checksum: 162838 ba3d43e64daec7da2a2eeb47c394db8a Size/MD5 checksum: 10908 8f70e837ed7167d96b5ca9e4fd55c9e9 Big endian MIPS architecture: Size/MD5 checksum: 72916 8c174e6a6e519114662ee701f4200936 Size/MD5 checksum: 15946 b18ecabdb2e35db13beffca809e23487 Size/MD5 checksum: 13346 d1764e156b4ed3c1e5f7eaf2a559bcf0 Size/MD5 checksum: 165812 960d06d45f9740419f9c0b73b593c3bd Size/MD5 checksum: 11318 11682f55a6c99e156d6314f92dd4aa0b Little endian MIPS architecture: Size/MD5 checksum: 72966 c9b7a298d89d3c7d9c7e36ee7f463ad9 Size/MD5 checksum: 16262 fd4ca17e75656bfe0e49686fc746ca54 Size/MD5 checksum: 13292 3bf13fa11ea13520fda7491ec27948df Size/MD5 checksum: 165918 76d312c85fb2393fe6c2d0ffbf6689e3 Size/MD5 checksum: 11280 3e3bda9496b303fc6e1e053b9fb723de PowerPC architecture: Size/MD5 checksum: 70918 6eee1277a09b70eb561aec3eff80111a Size/MD5 checksum: 16076 592393749a7d6475d8cb5cf5d5d901cf Size/MD5 checksum: 13468 83bc3efbfd45d77fdd7a6d93c9417a90 Size/MD5 checksum: 166594 ecb898c16ad7b6350ac0aadb369320d6 Size/MD5 checksum: 11002 402a89f71a142ba2ccb5189211d8a12e IBM S/390 architecture: Size/MD5 checksum: 67026 9b21bb28b3a4c8cee9de0b35da4f7cf0 Size/MD5 checksum: 14410 72ab4e29865eb17710ec25189c5f535d Size/MD5 checksum: 12392 a5a3dc484a9733e0b3e404d2589f8915 Size/MD5 checksum: 165406 3f8dec1387c80bfeaf8d2878f3f8acbc Size/MD5 checksum: 11626 d08b68882e58c36950a998a081a3b5d5 Sun Sparc architecture: Size/MD5 checksum: 68252 52186d78b3ad3fb76c5fe707d77d9b75 Size/MD5 checksum: 14802 d2b0a39fa2e4dac6836ff1cc4b179838 Size/MD5 checksum: 11908 3e58d976ae3867e9e8829b5956f2271a Size/MD5 checksum: 164874 9632f56622cd4cb1f0489b8188da45dd Size/MD5 checksum: 13556 fb4002c8597e495fef0c3ff410442534 These files will probably be moved into the stable distribution on its next update. --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Postfix mail server enhancement addresses vulnerability in input processing for Debian systems. Update to secure against potential threats.. Cyrus-SASL Update, Debian Security Fix, Arbitrary Code Execution, Input Handling, Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 12, 2004 Important Debian
98

Red Hat Linux 7.3 RHSA-2002:206-12 Critical: Kernel Local Issues

Updated kernel fixes local security issues and provides several updated drivers to support newer hardware and fix bugs under Red Hat Linux 7.3.. ` --------------------------------------------------------------------- Red Hat, Inc. Red Hat Security Advisory Synopsis: New kernel fixes local security issues Advisory ID: RHSA-2002:206-12 Issue date: 2002-09-23 Updated on: 2002-10-15 Product: Red Hat Linux Keywords: Cross references: Obsoletes: RHBA-2002:110 --------------------------------------------------------------------- 1. Topic: Updated kernel fixes local security issues and provides several updated drivers to support newer hardware and fix bugs under Red Hat Linux 7.3. 2. Relevant releases/architectures: Red Hat Linux 7.3 - athlon, i386, i586, i686, noarch Red Hat Linux 8.0 - athlon, i386, i586, i686, noarch 3. Problem description: The Linux kernel handles the basic functions of the operating system. A security code audit of the 2.4 kernel found a number of possible local security vulnerabilities which could allow a local user to obtain elevated (root) privileges. The vulnerabilities were found in the ixj telephony card driver, the pcilynx firewire driver, and the bttv video capture card driver. In addition, several drivers (e100, e1000, tg3n and IDE) have been updated to support newer hardware for Red Hat Linux 7.3, and a number of bugs have been fixed in IDE tapestreamer driver. All Red Hat Linux 7.3 and 8.0 users should upgrade to this errata kernel which is not vulnerable to these security issues. NOTE: As with the 8.0 release, IDE DMA on CD-ROM drives is disabled by default. If you are sure that your CD-ROM drive is capable of IDE DMA, place the following line in the /etc/modules.conf file: options ide-cd dma=1 Thanks to Silvio Cesare for finding the local security issues. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. Theprocedure for upgrading the kernel manually is documented at: Support Please read the directions for your architecture carefully before proceeding with the kernel upgrade. Please note that this update is also available via Red Hat Network. Many people find this to be an easier way to apply updates. To use Red Hat Network, launch the Red Hat Update Agent with the following command: up2date This will start an interactive process that will result in the appropriate RPMs being upgraded on your system. Note that you need to select the kernel explicitly on default configurations of up2date. 5. Bug IDs fixed ( for more info): 73339 - apm locks up Asus A7N266VM (nForce chipset) 74879 - aha152x driver broken 71622 - cs4232 module is not auto-loaded on use 75107 - boot time in /proc/stat is incorrect 75113 - /proc/uptime shows wrong uptime (slightly) and idle time (totally) 74589 - speedstep doesn't work on IBM ThinkPad T30 (pentium 4) 6. RPMs required: Red Hat Linux 7.3: SRPMS: athlon: i386: i586: i686: noarch: Red Hat Linux 8.0: SRPMS: athlon: i386: i586: i686: i686: noarch: 7. Verification: MD5 sum Package Name -------------------------------------------------------------------------- 5c742d695efa74cce26a070a018561b6 7.3/en/os/SRPMS/hwdata-0.14.1-1.src.rpm d0cf8ef64412c78c9d32da9d0cb9850d 7.3/en/os/SRPMS/kernel-2.4.18-17.7.x.src.rpm 0414620fa83d72ffd9f128be2e4bf430 7.3/en/os/SRPMS/modutils-2.4.18-3.7x.src.rpm 082114a540f7bd692476584e38c6cd5c 7.3/en/os/athlon/kernel-2.4.18-17.7.x.athlon.rpm bd2fa5b6b721caf12dcea357304c008b 7.3/en/os/athlon/kernel-smp-2.4.18-17.7.x.athlon.rpm cfdef58820f5d7701f4221c80a7c821b 7.3/en/os/i386/kernel-2.4.18-17.7.x.i386.rpm 145d063537e3a34723d50e611cbd37a8 7.3/en/os/i386/kernel-BOOT-2.4.18-17.7.x.i386.rpm 8d9a20e2f4d82cc262cab928910377fa 7.3/en/os/i386/kernel-doc-2.4.18-17.7.x.i386.rpm 0344cc1d42651916fb91ed7a700f3f907.3/en/os/i386/kernel-source-2.4.18-17.7.x.i386.rpm cddd8196a38dbff1a8e34429415670fb 7.3/en/os/i386/modutils-2.4.18-3.7x.i386.rpm 576ceca80b035a10b942e6feb217c055 7.3/en/os/i586/kernel-2.4.18-17.7.x.i586.rpm d9d2b3fa23ee4733b35fd730e9553625 7.3/en/os/i586/kernel-smp-2.4.18-17.7.x.i586.rpm 3a3afd67620fc36de17876629398dceb 7.3/en/os/i686/kernel-2.4.18-17.7.x.i686.rpm fe9a658e1e22defc3cf5e2134646a6eb 7.3/en/os/i686/kernel-bigmem-2.4.18-17.7.x.i686.rpm 158c941a9b430581a7bcd23ec1398052 7.3/en/os/i686/kernel-debug-2.4.18-17.7.x.i686.rpm f9e11d26c2ca35ef403656be882fb592 7.3/en/os/i686/kernel-smp-2.4.18-17.7.x.i686.rpm 100b8e47ecde440cca8122a08fb59b81 7.3/en/os/noarch/hwdata-0.14.1-1.noarch.rpm eb9d565f55332264a15afadfc2e2b1a6 8.0/en/os/SRPMS/hwdata-0.48-1.src.rpm 11c9a0e4224f20712b24805fd4e5f0be 8.0/en/os/SRPMS/kernel-2.4.18-17.8.0.src.rpm 0ccc7295596f093121f4e2ae9767ebd1 8.0/en/os/athlon/kernel-2.4.18-17.8.0.athlon.rpm e0e77e845a0b2e491150cf4e892d6c24 8.0/en/os/athlon/kernel-smp-2.4.18-17.8.0.athlon.rpm 47870d4e2b646a59c8ade167f38575e6 8.0/en/os/i386/kernel-2.4.18-17.8.0.i386.rpm 9e38f1aeebbc862dcf050b936dcc781e 8.0/en/os/i386/kernel-BOOT-2.4.18-17.8.0.i386.rpm 78734f41ea1ba399f0a7d60f7d46bb8f 8.0/en/os/i386/kernel-doc-2.4.18-17.8.0.i386.rpm c869e31fdd68ae7b1beae942282717b4 8.0/en/os/i386/kernel-source-2.4.18-17.8.0.i386.rpm 49a2d9c5add3431c395574c7456f5596 8.0/en/os/i586/kernel-2.4.18-17.8.0.i586.rpm 69ece85c6df4002f7e071c4b210c204f 8.0/en/os/i586/kernel-smp-2.4.18-17.8.0.i586.rpm f05ebe7ff48fea54ed013018f1133b5e 8.0/en/os/i686/kernel-2.4.18-17.8.0.i686.rpm 9b9a868c08b100dbd5c1f7458fd5331d 8.0/en/os/i686/kernel-bigmem-2.4.18-17.8.0.i686.rpm c8e06fe44752510d49ad227ab01f323c 8.0/en/os/i686/kernel-debug-2.4.18-17.8.0.i686.rpm 9b9a868c08b100dbd5c1f7458fd5331d 8.0/en/os/i686/kernel-bigmem-2.4.18-17.8.0.i686.rpm c8e06fe44752510d49ad227ab01f323c 8.0/en/os/i686/kernel-debug-2.4.18-17.8.0.i686.rpm f5efa4f4d8db58a413a41bc66c13c3da 8.0/en/os/i686/kernel-smp-2.4.18-17.8.0.i686.rpm d160a0e0aa78e76b5c9a7c229d516eb88.0/en/os/noarch/hwdata-0.48-1.noarch.rpm These packages are GPG signed by Red Hat, Inc. for security. Our key is available at: About You can verify each package with the following command: rpm --checksig If you only wish to verify that each package has not been corrupted or tampered with, examine only the md5sum with the following command: rpm --checksig --nogpg 8. References: kernel Copyright(c) 2000, 2001, 2002 Red Hat, Inc. `. The latest kernel update enhances security protocols and increases support for hardware drivers in CentOS versions 7.3 and 8.0.. Red Hat Linux,Kernel Update,Local Security Issues,Driver Support,Security Fixes. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 17, 2002 Critical Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here