Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Ubuntu 16: 2020-1234 Moderate: OpenSSL Encryption Vulnerability Fix

Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: https [More...]. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-9161 2015-05-30 09:31:53 -------------------------------------------------------------------------------- Name : nss-util Product : Fedora 20 Version : 3.19.1 Release : 1.0.fc20 URL : https://firefox-source-docs.mozilla.org/security/nss/index.html Summary : Network Security Services Utilities Library Description : Utilities for Network Security Services and the Softoken module -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: -------------------------------------------------------------------------------- ChangeLog: * Thu May 28 2015 Kai Engert - 3.19.1-1.0 - Update to NSS 3.19.1 * Tue May 19 2015 Kai Engert - 3.19.0-1.0 - Update to NSS 3.19 * Mon Mar 23 2015 Elio Maldonado - 3.18.0-1 - Update to nss-3.18.0 * Sat Dec 6 2014 Elio Maldonado - 3.17.4-1 - Update to nss-3.17.4 * Sat Dec 6 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 * Mon Oct 13 2014 Elio Maldonado - 3.17.2-1 - Update to nss-3.17.2 * Wed Sep 24 2014 Kai Engert - 3.17.1-1 - Update to nss-3.17.1 * Fri Aug 22 2014 ElioMaldonado - 3.16.2-2 - Update to nss-3.17.0 * Mon Jun 30 2014 Elio Maldonado - 3.16.2-1 - Update to nss-3.16.2 * Wed May 7 2014 Elio Maldonado - 3.16.1-1 - Update to nss-3.16.1 - Resolves: Bug 1094702 - nss-3.16.1 is available * Tue Mar 18 2014 Elio Maldonado - 3.16.0-0 - Update to nss-3.16.0 * Fri Feb 28 2014 Elio Maldonado - 3.15.5-1 - Update to nss-3.15.5 - Resolves: Bug 1066877 * Tue Jan 7 2014 Elio Maldonado - 3.15.4-1 - Update to NSS_3_15_4_RTM - Resolves: Bug 1049229 - nss-3.15.4 is available * Sun Dec 1 2013 Elio Maldonado - 3.15.3-1 - Update to NSS_3_15_3_RTM - Related: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1223211 - CVE-2015-4000 LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks https://bugzilla.redhat.com/show_bug.cgi?id=1223211 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update nss-util' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . NSS 3.19.1 release mitigates Logjam vulnerability for Fedora 20 through essential security enhancements and detailed update guidelines.. NSS 3.19.1, Fedora 20, Network Security Services. . LinuxSecurity.com Team

Calendar%202 Jun 14, 2015 Fedora
89

Fedora 20 nss-softokn 3.19.1 Critical: Logjam Attack Mitigation

Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: https [More...]. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-9161 2015-05-30 09:31:53 -------------------------------------------------------------------------------- Name : nss-softokn Product : Fedora 20 Version : 3.19.1 Release : 1.0.fc20 URL : https://firefox-source-docs.mozilla.org/security/nss/index.html Summary : Network Security Services Softoken Module Description : Network Security Services Softoken Cryptographic Module -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: -------------------------------------------------------------------------------- ChangeLog: * Thu May 28 2015 Kai Engert - 3.19.1-1.0 - Update to NSS 3.19.1 * Tue May 19 2015 Kai Engert - 3.19.0-1.0 - Update to NSS 3.19 * Mon Mar 23 2015 Elio Maldonado - 3.18.0-1 - Update to nss-3.18.0 * Wed Jan 28 2015 Elio Maldonado - 3.17.4-1 - Update to nss-3.17.4 - fix dependencies so nss-softokn pulls in nss-softokn-freebl of the same version and release * Sat Dec 6 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 * Fri Nov 21 2014 Elio Maldonado - 3.17.2-2 - Resolves: Bug 1155306- Provide sym key derive mechansm as result of encryption of message * Mon Oct 13 2014 Elio Maldonado - 3.17.2-1 - Update to nss-3.17.2 * Wed Sep 24 2014 Kai Engert - 3.17.1-2 - Update nss-util build dependency - Fix check of test suite result * Wed Sep 24 2014 Kai Engert - 3.17.1-1 - Update to nss-3.17.1 - Add a mechanism to skip test suite execution during development work * Fri Aug 22 2014 Elio Maldonado - 3.16.2-2 - Update to nss-3.17.0 * Mon Jun 30 2014 Elio Maldonado - 3.16.2-1 - Update to nss-3.16.2 * Wed May 7 2014 Elio Maldonado - 3.16.1-1 - Update to nss-3.16.1 - Resolves: Bug 1094702 - nss-3.16.1 is available * Tue Mar 18 2014 Elio Maldonado - 3.16.0-0 - Update to nss-3.16.0 * Sun Mar 2 2014 Elio Maldonado - 3.15.5-2 - Resolves: Bug 1071679 - Define -DMP_USE_UINT_DIGIT in lib/freebl/Makefile for Linux x86 - Patch contributed by Stephan Bergmann - Fixes segmentation fault when signing on i686 that occurs in Rawhide * Fri Feb 28 2014 Elio Maldonado - 3.15.5-1 - Update to nss-3.15.1 - Resolves: Bug 1066877 * Fri Feb 28 2014 Elio Maldonado - 3.15.4-2 - Display processor information as part of the build * Tue Jan 7 2014 Elio Maldonado - 3.15.3-2 - Update to NSS_3_15_4_RTM - Resolves: Bug 1049229 - nss-3.15.4 is available * Fri Nov 1 2013 Elio Maldonado - 3.15.2-3 - Update to NSS_3_15_3_RTM - Related: Bug 1031897 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1223211 - CVE-2015-4000 LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks https://bugzilla.redhat.com/show_bug.cgi?id=1223211 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update nss-softokn' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. Moredetails on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Important Fedora 20 upgrade fixes nss-softokn vulnerabilities and mitigates the severe logjam threat, enhancing your system's safety.. Fedora Update,nss-softokn Security Fix,Logjam Attack,Network Security Services. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 14, 2015 Critical Fedora
89

Fedora 22: 2015-9048 Moderate Security Update for NSS Softokn Logjam

Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: https [More...]. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-9048 2015-05-30 09:25:32 -------------------------------------------------------------------------------- Name : nss-softokn Product : Fedora 22 Version : 3.19.1 Release : 1.0.fc22 URL : https://firefox-source-docs.mozilla.org/security/nss/index.html Summary : Network Security Services Softoken Module Description : Network Security Services Softoken Cryptographic Module -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: -------------------------------------------------------------------------------- ChangeLog: * Thu May 28 2015 Kai Engert - 3.19.1-1.0 - Update to NSS 3.19.1 * Tue May 19 2015 Kai Engert - 3.19.0-1.0 - Update to NSS 3.19 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1223211 - CVE-2015-4000 LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks https://bugzilla.redhat.com/show_bug.cgi?id=1223211 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update nss-softokn' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . -------------------------------------------------------------------------------- Fedora Update Notif. security, cve-2015-4000, update, upstream, release, which. . LinuxSecurity.com Team

Calendar%202 Jun 02, 2015 Fedora
89

Fedora 21: 2015-9130 Critical Severity: NSS Logjam Patch

Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: https [More...]. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-9130 2015-05-30 09:30:13 -------------------------------------------------------------------------------- Name : nss Product : Fedora 21 Version : 3.19.1 Release : 1.0.fc21 URL : https://firefox-source-docs.mozilla.org/security/nss/index.html Summary : Network Security Services Description : Network Security Services (NSS) is a set of libraries designed to support cross-platform development of security-enabled client and server applications. Applications built with NSS can support SSL v2 and v3, TLS, PKCS #5, PKCS #7, PKCS #11, PKCS #12, S/MIME, X.509 v3 certificates, and other security standards. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2015-4000 Update to the upstream NSS 3.19.1 release, which includes a fix for the recently published logjam attack. The previous 3.19 release made several notable changes related to the TLS protocol, one of them was to disable the SSL 3 protocol by default. For the full list of changes in the 3.19 and 3.19.1 releases, please refer to the upstream release notes documents: -------------------------------------------------------------------------------- ChangeLog: * Thu May 28 2015 Kai Engert - 3.19.1-1.0 - Update to NSS 3.19.1 * Tue May 19 2015 Kai Engert - 3.19.0-1.0 - Update to NSS 3.19 * Mon Mar 23 2015 Elio Maldonado - 3.18.0-1 - Update to nss-3.18.0 * Wed Jan 28 2015 Elio Maldonado - 3.17.4-1 - Update tonss-3.17.4 * Sat Jan 24 2015 Ville Skyttä - 3.17.3-4 - Own the %{_datadir}/doc/nss-tools dir * Mon Dec 15 2014 Elio Maldonado - 3.17.3-2 - Resolves: Bug 987189 - nss-tools RPM conflicts with perl-PAR-Packer - Install pp man page in %{_datadir}/doc/nss-tools/pp.1 - Use %{_mandir} instead of /usr/share/man as more generic * Fri Dec 5 2014 Elio Maldonado - 3.17.3-1 - Update to nss-3.17.3 - Resolves: Bug 1171012 - nss-3.17.3 is available * Thu Oct 16 2014 Elio Maldonado - 3.17.2-2 - Resolves: Bug 994599 - Enable TLS 1.2 by default -------------------------------------------------------------------------------- References: [ 1 ] Bug #1223211 - CVE-2015-4000 LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks https://bugzilla.redhat.com/show_bug.cgi?id=1223211 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update nss' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Fedora 21's security bulletin addresses the logjam vulnerability through an NSS version 3.19.1 update, detailing necessary fixes and severity levels for user protection.. Fedora 21 nss update, logjam patch, Network Security Services, software update. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 01, 2015 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200