Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
89

Fedora 29: 2018-a1f37d2f08 Moderate: Webkit2gtk3 Memory Leak Resolution

This update addresses the following vulnerability: * [CVE-2018-4345](https://www.cve.org/CVERecord?id=CVE-2018-4345) This update brings the following changes: * Many improvements and fixes for video playback with media source extensions (MSE), which improve the user experience across the board, and in particular for playback of WebM videos. *. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-a1f37d2f08 2018-11-04 05:49:41.589645 --------------------------------------------------------------------------------Name : webkit2gtk3 Product : Fedora 29 Version : 2.22.3 Release : 1.fc29 URL : https://www.webkitgtk.org/ Summary : GTK+ Web content engine library Description : WebKitGTK+ is the port of the portable web rendering engine WebKit to the GTK+ platform. This package contains WebKit2 based WebKitGTK+ for GTK+ 3. --------------------------------------------------------------------------------Update Information: This update addresses the following vulnerability: * [CVE-2018-4345](https://www.cve.org/CVERecord?id=CVE-2018-4345) This update brings the following changes: * Many improvements and fixes for video playback with media source extensions (MSE), which improve the user experience across the board, and in particular for playback of WebM videos. * Fix a memory leak during media playback when using playbin3. * Fix portions of Web views not being rendered after resizing. * Fix Resource Timing reporting for iframe elements. * Fix the build with the remote Web Inspector disabled. * Fix the build on ARMv7 with NEON extensions. * Fix several crashes and rendering issues. --------------------------------------------------------------------------------ChangeLog: * Mon Oct 29 2018 Tomas Popela - 2.22.3-1 - Update to 2.22.3 * Fri Oct 19 2018 Tomas Popela - 2.22.2-2 - Fix WebProcess crash while printing - Resolves:rhbz#1639754 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-a1f37d2f08' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . This Ubuntu release resolves a vulnerability in libjpeg-turbo, improving image processing and eliminating data corruption.. Fedora Webkit2gtk3 Update, Security Patch, Media Playback Fixes, Memory Leak Resolution. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 04, 2018 Important Fedora
98

Red Hat: RHSA-2009:0270-01 Important: GStreamer Buffer Overflow Issue

Updated gstreamer-plugins packages that fix one security issue are now available for Red Hat Enterprise Linux 4. This update has been rated as having important security impact by the Red Hat Security Response Team.. ==================================================================== Red Hat Security Advisory Synopsis: Important: gstreamer-plugins security update Advisory ID: RHSA-2009:0270-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2009:0270.html Issue date: 2009-02-06 CVE Names: CVE-2009-0397 ==================================================================== 1. Summary: Updated gstreamer-plugins packages that fix one security issue are now available for Red Hat Enterprise Linux 4. This update has been rated as having important security impact by the Red Hat Security Response Team. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux Desktop version 4 - i386, x86_64 Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64 3. Description: The gstreamer-plugins package contains plugins used by the GStreamer streaming-media framework to support a wide variety of media types. A heap buffer overflow was found in the GStreamer's QuickTime media file format decoding plug-in. An attacker could create a carefully-crafted QuickTime media .mov file that would cause an application using GStreamer to crash or, potentially, execute arbitrary code if played by a victim. (CVE-2009-0397) All users of gstreamer-plugins are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. After installing the update, all applications using GStreamer (such as rhythmbox) must be restarted for the changes to take effect. 4. Solution: Before applying this update, make sure that allpreviously-released errata relevant to your system have been applied. This update is available via Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at 5. Bugs fixed (http://bugzilla.redhat.com/): 481267 - CVE-2009-0397 gstreamer-plugins, gstreamer-plugins-good: heap-based buffer overflow while parsing malformed QuickTime media files via crafted Time-to-sample (stss) atom data 6. Package List: Red Hat Enterprise Linux AS version 4: Source: i386: gstreamer-plugins-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.i386.rpm ia64: gstreamer-plugins-0.8.5-1.EL.2.ia64.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.ia64.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.ia64.rpm ppc: gstreamer-plugins-0.8.5-1.EL.2.ppc.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.ppc.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.ppc.rpm s390: gstreamer-plugins-0.8.5-1.EL.2.s390.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.s390.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.s390.rpm s390x: gstreamer-plugins-0.8.5-1.EL.2.s390x.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.s390x.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.s390x.rpm x86_64: gstreamer-plugins-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.x86_64.rpm Red Hat Enterprise Linux Desktop version 4: Source: i386: gstreamer-plugins-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.i386.rpm x86_64: gstreamer-plugins-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.x86_64.rpm Red Hat Enterprise Linux ES version4: Source: i386: gstreamer-plugins-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.i386.rpm ia64: gstreamer-plugins-0.8.5-1.EL.2.ia64.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.ia64.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.ia64.rpm x86_64: gstreamer-plugins-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.x86_64.rpm Red Hat Enterprise Linux WS version 4: Source: i386: gstreamer-plugins-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.i386.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.i386.rpm ia64: gstreamer-plugins-0.8.5-1.EL.2.ia64.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.ia64.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.ia64.rpm x86_64: gstreamer-plugins-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-debuginfo-0.8.5-1.EL.2.x86_64.rpm gstreamer-plugins-devel-0.8.5-1.EL.2.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://www.cve.org/CVERecord?id=CVE-2009-0397 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2009 Red Hat, Inc. . Important patch for gstreamer-plugins in Red Hat Enterprise Linux addresses a security vulnerability related to buffer overflow that impacts multimedia streaming.. gstreamer-plugins Update, Red Hat Enterprise Linux, Security Patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 06, 2009 Important Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here