Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
99

Slackware 12.2: 2009-111-01 Critical: Udev Local Root and DoS Fix

New udev packages are available for Slackware 10.2, 11.0, 12.0, 12.1, 12.2, and -current to fix security issues. The udev packages in Slackware 10.2, 11.0, 12.0, 12.1, 12.2, and -current contained a local root hole vulnerability: . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] udev (SSA:2009-111-01) New udev packages are available for Slackware 10.2, 11.0, 12.0, 12.1, 12.2, and -current to fix security issues. The udev packages in Slackware 10.2, 11.0, 12.0, 12.1, 12.2, and -current contained a local root hole vulnerability: https://www.cve.org/CVERecord?id=CVE-2009-1185 The udev packages in Slackware 12.0, 12.1, 12.2, and -current had an integer overflow which could result in a denial of service: https://www.cve.org/CVERecord?id=CVE-2009-1186 Note that udev is only used with 2.6 kernels, which are not used by default with Slackware 10.2 and 11.0. Here are the details from the Slackware 12.2 ChangeLog: +--------------------------+ patches/packages/udev-141-i486-1_slack12.2.tgz: Upgraded to udev-141. This upgrade fixes a local root hole and a denial of service issue. For more information, see: https://www.cve.org/CVERecord?id=CVE-2009-1185 https://www.cve.org/CVERecord?id=CVE-2009-1186 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ HINT: Getting slow download speeds from ftp.slackware.com? Give slackware.osuosl.org a try. This is another primary FTP site for Slackware that can be considerably faster than downloading directly from ftp.slackware.com. Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating additional FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 10.2: ftp://ftp.slackware.com/pub/slackware/slackware-10.2/patches/packages/udev-064-i486-4_slack10.2.tgz Updated package for Slackware11.0: ftp://ftp.slackware.com/pub/slackware/slackware-11.0/patches/packages/udev-097-i486-11_slack11.0.tgz Updated package for Slackware 12.0: ftp://ftp.slackware.com/pub/slackware/slackware-12.0/patches/packages/udev-111-i486-6_slack12.0.tgz Updated package for Slackware 12.1: ftp://ftp.slackware.com/pub/slackware/slackware-12.1/patches/packages/udev-118-i486-4_slack12.1.tgz Updated package for Slackware 12.2: Updated package for Slackware -current: MD5 signatures: +-------------+ Slackware 10.2 package: 4bfa5de16024b6d5ddfe19aea0794bef udev-064-i486-4_slack10.2.tgz Slackware 11.0 package: 024033959fd5586079de2daacec96eb1 udev-097-i486-11_slack11.0.tgz Slackware 12.0 package: da24ba5c832c38d96ea87fbd4997e20b udev-111-i486-6_slack12.0.tgz Slackware 12.1 package: 7068aab244ff3df7775ba1bc6b75b409 udev-118-i486-4_slack12.1.tgz Slackware 12.2 package: 7be35f9ebfce6c1512f083d57c913ea1 udev-141-i486-1_slack12.2.tgz Slackware -current package: 53b946e0313fda94686e4bde19271072 udev-141-i486-1.tgz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg udev-141-i486-1_slack12.2.tgz Then, restart udev: # sh /etc/rc.d/rc.udev restart +-----+ . Updated udev components for Slackware resolve local privilege escalation vulnerabilities and denial of service concerns, with comprehensive installation guidelines provided.. Slackware Security,Udev Update,Root Hole Fix,Package Upgrade. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 21, 2009 Critical Slackware
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here