Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 494
Alerts This Week
Warning Icon 1 494

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 8 articles for you...
89

Fedora 41 openssh Update: CVE-2025-32728 Critical Logic Error Fix

Fixes CVE-2025-32728. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-8896dcbcd0 2025-05-23 03:55:25.327044+00:00 -------------------------------------------------------------------------------- Name : openssh Product : Fedora 41 Version : 9.9p1 Release : 4.fc41 URL : https://www.openssh.org/portable.html Summary : An open source implementation of SSH protocol version 2 Description : SSH (Secure SHell) is a program for logging into and executing commands on a remote machine. SSH is intended to replace rlogin and rsh, and to provide secure encrypted communications between two untrusted hosts over an insecure network. X11 connections and arbitrary TCP/IP ports can also be forwarded over the secure channel. OpenSSH is OpenBSD's version of the last free version of SSH, bringing it up to date in terms of security and features. This package includes the core files necessary for both the OpenSSH client and server. To make this package useful, you should also install openssh-clients, openssh-server, or both. -------------------------------------------------------------------------------- Update Information: Fixes CVE-2025-32728 -------------------------------------------------------------------------------- ChangeLog: * Mon May 19 2025 Zoltan Fridrich - 9.9p1-4 - CVE-2025-32728: Fix logic error in DisableForwarding option Resolves: rhbz#2358778 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2358778 - CVE-2025-32728 openssh: OpenSSH SSHD Agent Forwarding and X11 Forwarding [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2358778 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-8896dcbcd0' at the command line. For more information, refer to the dnfdocumentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: . Fedora 41 upgrades OpenSSH to resolve CVE-2025-32728, boosting SSH protection for users and infrastructures.. openssh, Fedora 41, CVE-2025-32728, security advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 23, 2025 Critical Fedora
89

Fedora 42: FEDORA-2025-ad76584c00 critical: openssh logic error fix

Fixes CVE-2025-32728. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-ad76584c00 2025-05-21 02:16:05.620453+00:00 -------------------------------------------------------------------------------- Name : openssh Product : Fedora 42 Version : 9.9p1 Release : 11.fc42 URL : https://www.openssh.org/portable.html Summary : An open source implementation of SSH protocol version 2 Description : SSH (Secure SHell) is a program for logging into and executing commands on a remote machine. SSH is intended to replace rlogin and rsh, and to provide secure encrypted communications between two untrusted hosts over an insecure network. X11 connections and arbitrary TCP/IP ports can also be forwarded over the secure channel. OpenSSH is OpenBSD's version of the last free version of SSH, bringing it up to date in terms of security and features. This package includes the core files necessary for both the OpenSSH client and server. To make this package useful, you should also install openssh-clients, openssh-server, or both. -------------------------------------------------------------------------------- Update Information: Fixes CVE-2025-32728 -------------------------------------------------------------------------------- ChangeLog: * Mon May 19 2025 Zoltan Fridrich - 9.9p1-11 - CVE-2025-32728: Fix logic error in DisableForwarding option Resolves: rhbz#2358778 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2358778 - CVE-2025-32728 openssh: OpenSSH SSHD Agent Forwarding and X11 Forwarding [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2358778 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-ad76584c00' at the command line. For more information, refer to the dnfdocumentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: . Ubuntu 22.04 has introduced a patch to fix CVE-2025-88762 in the curl package, strengthening system protection.. openssh update,Fedora 42,CVE fix,SSH protocol,security advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 21, 2025 Critical Fedora
100

SUSE: 2025:1576-1 moderate fix for openssh logic error issue

* bsc#1228634 * bsc#1232533 * bsc#1241012 * bsc#1241045 . # Security update for openssh Announcement ID: SUSE-SU-2025:1576-1 Release Date: 2025-05-19T04:49:29Z Rating: moderate References: * bsc#1228634 * bsc#1232533 * bsc#1241012 * bsc#1241045 Cross-References: * CVE-2025-32728 CVSS scores: * CVE-2025-32728 ( SUSE ): 5.1 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N * CVE-2025-32728 ( SUSE ): 4.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N * CVE-2025-32728 ( NVD ): 4.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N Affected Products: * openSUSE Leap 15.3 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An updatethat solves one vulnerability and has three security fixes can now be installed. ## Description: This update for openssh fixes the following issues: * Security issues fixed: * CVE-2025-32728: Fixed a logic error in DisableForwarding option (bsc#1241012) * Other bugs fixed: * Allow KEX hashes greater than 256 bits (bsc#1241045) * Fixed hostname being left out of the audit output (bsc#1228634) * Fixed failures with very large MOTDs (bsc#1232533) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2025-1576=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-1576=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-1576=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-1576=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-1576=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2025-1576=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-1576=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-1576=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-1576=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2025-1576=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2025-1576=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-1576=1 * SUSELinux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-1576=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2025-1576=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-1576=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2025-1576=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2025-1576=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2025-1576=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2025-1576=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2025-1576=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-1576=1 * SUSE Linux Enterprise Micro 5.1 zypper in -t patch SUSE-SUSE-MicroOS-5.1-2025-1576=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-1576=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-1576=1 ## Package List: * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-cavs-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-cavs-debuginfo-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 *openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 *openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 *openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 *openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 *openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Manager Proxy 4.3 (x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 *openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-helpers-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debugsource-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-helpers-debuginfo-8.4p1-150300.3.49.1 * openssh-askpass-gnome-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro 5.1 (aarch64 s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 *openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64) * openssh-server-debuginfo-8.4p1-150300.3.49.1 * openssh-clients-8.4p1-150300.3.49.1 * openssh-debuginfo-8.4p1-150300.3.49.1 * openssh-8.4p1-150300.3.49.1 * openssh-common-8.4p1-150300.3.49.1 * openssh-common-debuginfo-8.4p1-150300.3.49.1 * openssh-debugsource-8.4p1-150300.3.49.1 * openssh-fips-8.4p1-150300.3.49.1 * openssh-server-8.4p1-150300.3.49.1 * openssh-clients-debuginfo-8.4p1-150300.3.49.1 ## References: * https://www.suse.com/security/cve/CVE-2025-32728.html * https://bugzilla.suse.com/show_bug.cgi?id=1228634 * https://bugzilla.suse.com/show_bug.cgi?id=1232533 * https://bugzilla.suse.com/show_bug.cgi?id=1241012 * https://bugzilla.suse.com/show_bug.cgi?id=1241045 . Update for OpenSSH resolves various security vulnerabilities with moderate risk levels in SUSE environments. Continue reading for further insights.. openssh patch, SUSE security update, security fix openssh, SUSE advisory moderate. . LinuxSecurity.com Team

Calendar%202 May 19, 2025 SuSE
89

Fedora 40: FEDORA-2024-dc89a2e1bf Critical: OpenSSH Logic Issue

Backport fix for CVE-2024-6387 (rhbz#2294879) Backport fix for ObscureKeystrokeTiming logic error from OpenSSH 9.8. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-dc89a2e1bf 2024-07-02 20:14:07.633512 -------------------------------------------------------------------------------- Name : openssh Product : Fedora 40 Version : 9.6p1 Release : 1.fc40.4 URL : https://www.openssh.org/portable.html Summary : An open source implementation of SSH protocol version 2 Description : SSH (Secure SHell) is a program for logging into and executing commands on a remote machine. SSH is intended to replace rlogin and rsh, and to provide secure encrypted communications between two untrusted hosts over an insecure network. X11 connections and arbitrary TCP/IP ports can also be forwarded over the secure channel. OpenSSH is OpenBSD's version of the last free version of SSH, bringing it up to date in terms of security and features. This package includes the core files necessary for both the OpenSSH client and server. To make this package useful, you should also install openssh-clients, openssh-server, or both. -------------------------------------------------------------------------------- Update Information: Backport fix for CVE-2024-6387 (rhbz#2294879) Backport fix for ObscureKeystrokeTiming logic error from OpenSSH 9.8 -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 2 2024 Dmitry Belyavskiy - 9.6p1-1.4 - rebuilt * Mon Jul 1 2024 Daniel Milnes - 9.6p1-1.3 - Backport fix for CVE-2024-6387 (rhbz#2294879) - Backport fix for ObscureKeystrokeTiming logic error from OpenSSH 9.8 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2294904 - CVE-2024-6387 openssh: Possible remote code execution due to a race condition in signal handling [fedora-40] https://bugzilla.redhat.com/show_bug.cgi?id=2294904 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-dc89a2e1bf' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: . Keep informed about Fedora 40 security enhancements for OpenSSH, including recent patches targeting significant logic flaws and security threats.. OpenSSH Security, Fedora 40, Remote Access Fix, Backport Security Fixes. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 02, 2024 Critical Fedora
197

Debian 10 Buster DLA-3286-1 Critical: Tor Logic Issue With SafeSocks

A logic error was discovered in the implementation of the "SafeSocks" option of Tor, a connection-based low-latency anonymous communication system, which did result in allowing unsafe SOCKS4 traffic to pass. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3286-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Thorsten Alteholz January 28, 2023 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : tor Version : 0.3.5.16-1+deb10u1 CVE ID : CVE-2023-23589 A logic error was discovered in the implementation of the "SafeSocks" option of Tor, a connection-based low-latency anonymous communication system, which did result in allowing unsafe SOCKS4 traffic to pass. For Debian 10 buster, this problem has been fixed in version 0.3.5.16-1+deb10u1. We recommend that you upgrade your tor packages. For the detailed security status of tor please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/tor Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-3286-1 addresses a vulnerability in Tor's SafeSocks feature, potentially permitting insecure traffic. Users are recommended to update.. Debian Security, Tor Update, SafeSocks, Logic Issue, Network Safety. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jan 28, 2023 Critical Debian LTS
203

Mageia 8: MGASA-2023-0017 Moderate: Tor SOCKS Logic Error Fix

SafeSocks option in Tor before 0.4.7.13 has a logic error in which the unsafe SOCKS4 protocol can be used but not the safe SOCKS4a protocol, aka TROVE-2022-002. (CVE-2023-23589) References: . MGASA-2023-0017 - Updated tor packages fix security vulnerability Publication date: 24 Jan 2023 URL: https://advisories.mageia.org/MGASA-2023-0017.html Type: security Affected Mageia releases: 8 CVE: CVE-2023-23589 SafeSocks option in Tor before 0.4.7.13 has a logic error in which the unsafe SOCKS4 protocol can be used but not the safe SOCKS4a protocol, aka TROVE-2022-002. (CVE-2023-23589) References: - https://bugs.mageia.org/show_bug.cgi?id=31414 - https://forum.torproject.org/t/stable-release-0-4-5-16-and-0-4-7-13/6216 - https://lists.debian.org/debian-security-announce/2023/msg00009.html - https://www.cve.org/CVERecord?id=CVE-2023-23589 SRPMS: - 8/core/tor-0.4.5.16-1.mga8 . Enhanced security features in Mageia 8 system are provided by updated Tor packages, fixing a logical flaw in the SafeSocks setting.. Tor Security Update,Mageia 8,SOCKS4 Vulnerability,Secure Networking. . LinuxSecurity.com Team

Calendar%202 Jan 24, 2023 Mageia
197

Debian: DLA-3029-1 Critical: CUPS Privilege Escalation Logic Issue

Joshua Mason discovered that a logic error in the validation of the secret key used in the "local" authorisation mode of the CUPS printing system may result in privilege escalation. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3029-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Thorsten Alteholz May 27, 2022 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : cups Version : 2.2.1-8+deb9u8 CVE ID : CVE-2022-26691 Debian Bug : 1011769 Joshua Mason discovered that a logic error in the validation of the secret key used in the "local" authorisation mode of the CUPS printing system may result in privilege escalation. For Debian 9 stretch, this problem has been fixed in version 2.2.1-8+deb9u8. We recommend that you upgrade your cups packages. For the detailed security status of cups please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/cups Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Ubuntu LTS USN-5000-1 resolves a severe vulnerability in Apache, blocking unauthorized access due to a flaw in the authentication mechanism.. Debian LTS,CUPS,Privilege Escalation,Security Update,Logic Error. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 26, 2022 Critical Debian LTS
98

Red Hat Enterprise Linux 7.6 RHSA-2020-3475-01 Important: Bind Update

An update for bind is now available for Red Hat Enterprise Linux 7.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: bind security update Advisory ID: RHSA-2020:3475-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:3475 Issue date: 2020-08-18 CVE Names: CVE-2020-8616 CVE-2020-8617 ==================================================================== 1. Summary: An update for bind is now available for Red Hat Enterprise Linux 7.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux ComputeNode EUS (v. 7.6) - noarch, x86_64 Red Hat Enterprise Linux ComputeNode Optional EUS (v. 7.6) - x86_64 Red Hat Enterprise Linux Server EUS (v. 7.6) - noarch, ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux Server Optional EUS (v. 7.6) - ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7) - aarch64, noarch, ppc64le, s390x Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v. 7) - aarch64, ppc64le, s390x 3. Description: The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly. Security Fix(es): * bind: BIND does notsufficiently limit the number of fetches performed when processing referrals (CVE-2020-8616) * bind: A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c (CVE-2020-8617) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the update, the BIND daemon (named) will be restarted automatically. 5. Bugs fixed (https://bugzilla.redhat.com/): 1836118 - CVE-2020-8616 bind: BIND does not sufficiently limit the number of fetches performed when processing referrals 1836124 - CVE-2020-8617 bind: A logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c 6. Package List: Red Hat Enterprise Linux ComputeNode EUS (v. 7.6): Source: bind-9.9.4-74.el7_6.4.src.rpm noarch: bind-license-9.9.4-74.el7_6.4.noarch.rpm x86_64: bind-debuginfo-9.9.4-74.el7_6.4.i686.rpm bind-debuginfo-9.9.4-74.el7_6.4.x86_64.rpm bind-libs-9.9.4-74.el7_6.4.i686.rpm bind-libs-9.9.4-74.el7_6.4.x86_64.rpm bind-libs-lite-9.9.4-74.el7_6.4.i686.rpm bind-libs-lite-9.9.4-74.el7_6.4.x86_64.rpm bind-utils-9.9.4-74.el7_6.4.x86_64.rpm Red Hat Enterprise Linux ComputeNode Optional EUS (v.7.6): x86_64: bind-9.9.4-74.el7_6.4.x86_64.rpm bind-chroot-9.9.4-74.el7_6.4.x86_64.rpm bind-debuginfo-9.9.4-74.el7_6.4.i686.rpm bind-debuginfo-9.9.4-74.el7_6.4.x86_64.rpm bind-devel-9.9.4-74.el7_6.4.i686.rpm bind-devel-9.9.4-74.el7_6.4.x86_64.rpm bind-lite-devel-9.9.4-74.el7_6.4.i686.rpm bind-lite-devel-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.i686.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.i686.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.x86_64.rpm bind-sdb-9.9.4-74.el7_6.4.x86_64.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.x86_64.rpm Red Hat Enterprise Linux Server EUS (v.7.6): Source: bind-9.9.4-74.el7_6.4.src.rpm noarch: bind-license-9.9.4-74.el7_6.4.noarch.rpm ppc64: bind-9.9.4-74.el7_6.4.ppc64.rpm bind-chroot-9.9.4-74.el7_6.4.ppc64.rpm bind-debuginfo-9.9.4-74.el7_6.4.ppc.rpm bind-debuginfo-9.9.4-74.el7_6.4.ppc64.rpm bind-libs-9.9.4-74.el7_6.4.ppc.rpm bind-libs-9.9.4-74.el7_6.4.ppc64.rpm bind-libs-lite-9.9.4-74.el7_6.4.ppc.rpm bind-libs-lite-9.9.4-74.el7_6.4.ppc64.rpm bind-utils-9.9.4-74.el7_6.4.ppc64.rpm ppc64le: bind-9.9.4-74.el7_6.4.ppc64le.rpm bind-chroot-9.9.4-74.el7_6.4.ppc64le.rpm bind-debuginfo-9.9.4-74.el7_6.4.ppc64le.rpm bind-libs-9.9.4-74.el7_6.4.ppc64le.rpm bind-libs-lite-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.ppc64le.rpm bind-utils-9.9.4-74.el7_6.4.ppc64le.rpm s390x: bind-9.9.4-74.el7_6.4.s390x.rpm bind-chroot-9.9.4-74.el7_6.4.s390x.rpm bind-debuginfo-9.9.4-74.el7_6.4.s390.rpm bind-debuginfo-9.9.4-74.el7_6.4.s390x.rpm bind-libs-9.9.4-74.el7_6.4.s390.rpm bind-libs-9.9.4-74.el7_6.4.s390x.rpm bind-libs-lite-9.9.4-74.el7_6.4.s390.rpm bind-libs-lite-9.9.4-74.el7_6.4.s390x.rpm bind-utils-9.9.4-74.el7_6.4.s390x.rpm x86_64: bind-9.9.4-74.el7_6.4.x86_64.rpm bind-chroot-9.9.4-74.el7_6.4.x86_64.rpm bind-debuginfo-9.9.4-74.el7_6.4.i686.rpm bind-debuginfo-9.9.4-74.el7_6.4.x86_64.rpm bind-libs-9.9.4-74.el7_6.4.i686.rpm bind-libs-9.9.4-74.el7_6.4.x86_64.rpm bind-libs-lite-9.9.4-74.el7_6.4.i686.rpm bind-libs-lite-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.i686.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.x86_64.rpm bind-utils-9.9.4-74.el7_6.4.x86_64.rpm Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v.7): Source: bind-9.9.4-74.el7_6.4.src.rpm aarch64: bind-9.9.4-74.el7_6.4.aarch64.rpm bind-chroot-9.9.4-74.el7_6.4.aarch64.rpm bind-debuginfo-9.9.4-74.el7_6.4.aarch64.rpm bind-libs-9.9.4-74.el7_6.4.aarch64.rpm bind-libs-lite-9.9.4-74.el7_6.4.aarch64.rpm bind-pkcs11-9.9.4-74.el7_6.4.aarch64.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.aarch64.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.aarch64.rpm bind-utils-9.9.4-74.el7_6.4.aarch64.rpm noarch: bind-license-9.9.4-74.el7_6.4.noarch.rpm ppc64le: bind-9.9.4-74.el7_6.4.ppc64le.rpm bind-chroot-9.9.4-74.el7_6.4.ppc64le.rpm bind-debuginfo-9.9.4-74.el7_6.4.ppc64le.rpm bind-libs-9.9.4-74.el7_6.4.ppc64le.rpm bind-libs-lite-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.ppc64le.rpm bind-utils-9.9.4-74.el7_6.4.ppc64le.rpm s390x: bind-9.9.4-74.el7_6.4.s390x.rpm bind-chroot-9.9.4-74.el7_6.4.s390x.rpm bind-debuginfo-9.9.4-74.el7_6.4.s390.rpm bind-debuginfo-9.9.4-74.el7_6.4.s390x.rpm bind-libs-9.9.4-74.el7_6.4.s390.rpm bind-libs-9.9.4-74.el7_6.4.s390x.rpm bind-libs-lite-9.9.4-74.el7_6.4.s390.rpm bind-libs-lite-9.9.4-74.el7_6.4.s390x.rpm bind-utils-9.9.4-74.el7_6.4.s390x.rpm Red Hat Enterprise Linux Server Optional EUS (v.7.6): ppc64: bind-debuginfo-9.9.4-74.el7_6.4.ppc.rpm bind-debuginfo-9.9.4-74.el7_6.4.ppc64.rpm bind-devel-9.9.4-74.el7_6.4.ppc.rpm bind-devel-9.9.4-74.el7_6.4.ppc64.rpm bind-lite-devel-9.9.4-74.el7_6.4.ppc.rpm bind-lite-devel-9.9.4-74.el7_6.4.ppc64.rpm bind-pkcs11-9.9.4-74.el7_6.4.ppc64.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.ppc.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.ppc64.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.ppc.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.ppc64.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.ppc64.rpm bind-sdb-9.9.4-74.el7_6.4.ppc64.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.ppc64.rpm ppc64le: bind-debuginfo-9.9.4-74.el7_6.4.ppc64le.rpm bind-devel-9.9.4-74.el7_6.4.ppc64le.rpm bind-lite-devel-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.ppc64le.rpm bind-sdb-9.9.4-74.el7_6.4.ppc64le.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.ppc64le.rpm s390x: bind-debuginfo-9.9.4-74.el7_6.4.s390.rpm bind-debuginfo-9.9.4-74.el7_6.4.s390x.rpm bind-devel-9.9.4-74.el7_6.4.s390.rpm bind-devel-9.9.4-74.el7_6.4.s390x.rpm bind-lite-devel-9.9.4-74.el7_6.4.s390.rpm bind-lite-devel-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.s390.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.s390.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.s390x.rpm bind-sdb-9.9.4-74.el7_6.4.s390x.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.s390x.rpm x86_64: bind-debuginfo-9.9.4-74.el7_6.4.i686.rpm bind-debuginfo-9.9.4-74.el7_6.4.x86_64.rpm bind-devel-9.9.4-74.el7_6.4.i686.rpm bind-devel-9.9.4-74.el7_6.4.x86_64.rpm bind-lite-devel-9.9.4-74.el7_6.4.i686.rpm bind-lite-devel-9.9.4-74.el7_6.4.x86_64.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.i686.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.x86_64.rpm bind-sdb-9.9.4-74.el7_6.4.x86_64.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.x86_64.rpm Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v.7): aarch64: bind-debuginfo-9.9.4-74.el7_6.4.aarch64.rpm bind-devel-9.9.4-74.el7_6.4.aarch64.rpm bind-lite-devel-9.9.4-74.el7_6.4.aarch64.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.aarch64.rpm bind-sdb-9.9.4-74.el7_6.4.aarch64.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.aarch64.rpm ppc64le: bind-debuginfo-9.9.4-74.el7_6.4.ppc64le.rpm bind-devel-9.9.4-74.el7_6.4.ppc64le.rpm bind-lite-devel-9.9.4-74.el7_6.4.ppc64le.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.ppc64le.rpm bind-sdb-9.9.4-74.el7_6.4.ppc64le.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.ppc64le.rpm s390x: bind-debuginfo-9.9.4-74.el7_6.4.s390.rpm bind-debuginfo-9.9.4-74.el7_6.4.s390x.rpm bind-devel-9.9.4-74.el7_6.4.s390.rpm bind-devel-9.9.4-74.el7_6.4.s390x.rpm bind-lite-devel-9.9.4-74.el7_6.4.s390.rpm bind-lite-devel-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.s390.rpm bind-pkcs11-devel-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.s390.rpm bind-pkcs11-libs-9.9.4-74.el7_6.4.s390x.rpm bind-pkcs11-utils-9.9.4-74.el7_6.4.s390x.rpm bind-sdb-9.9.4-74.el7_6.4.s390x.rpm bind-sdb-chroot-9.9.4-74.el7_6.4.s390x.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2020-8616 https://access.redhat.com/security/cve/CVE-2020-8617 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBXzvPWNzjgjWX9erEAQhQyRAAnxD9PRh6s8M0dr/s5alz3+PhYJImyu2L ACYKqdzb3N+O9vx2CfOkOVh28o87nSE+j6T30OnV2pLtxAKppcgjY4uXT7GR9V0t PqxHhcqN/KoEwpw+KMiVc4reaPzoZATQQqUMI5+syHRPPgYATAQD4qES5+bDgeTS Rd9GeM82zB1lmXCP6+rzzLJKnFSmJODdYS9Clz++0oVEh9OK1P7onHp7UeWbHmeC Ki9ChSSMSRZrSD9sGnwK6rAW3vQ/sAGwUGcQ9YaUhOilK6ZX0LTYJGLGtT3byfo4 X0IJVj3euwFmaYD9A2kRfi5FB6/gy959gLSlFsg0znCooAPXSRH6l78dNixvah9o 5WD0fgmG8uv40u+ogx7dsOf1EOSH5w/dUqEpOLx092CTsv/wYHzCODoytYiBhz43 frQlqPq71DRDLHIDBxu6w+FmjBwfgt7trBMJ8AMJcvbYgOxzDzVGtoNTlL6s2Fm2 OMbi36UrzqCPj08q0Xi2wJZZQk03n0lkLbHR93v4J6n8CdvzS953eHsQCIsGQf00 cvKa8PwneZNOlls56MmMH35aRiwxbzO1wVgcXTIDbzQJEQvylh9DMb7/hjNw4uzZ MKDVEYCxgD9HN2EzPILKudYbR7yD6h3FyyBs4muSOgQPY2MiXbXNfApYBJH7KapV 7Ubhpgbd4Yo=Oe0L -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Canonical unveils a crucial patch for OpenSSH impacting Ubuntu 20.04, tackling severe vulnerabilities related to key validation.. Bind Security Update, Red Hat Advisory, Linux Security Update, RHEL 7.6, Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Aug 18, 2020 Important Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200