Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
98

OpenShift 4.12 RHSA-2022:7401 Moderate: DoS Risks Fixed

Red Hat OpenShift Container Platform release 4.12 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: OpenShift Container Platform 4.12 security update Advisory ID: RHSA-2022:7401-01 Product: Red Hat OpenShift Enterprise Advisory URL: https://access.redhat.com/errata/RHSA-2022:7401 Issue date: 2023-01-17 CVE Names: CVE-2021-38561 CVE-2022-27191 CVE-2022-32189 ==================================================================== 1. Summary: Red Hat OpenShift Container Platform release 4.12 is now available with updates to packages and images that fix several bugs and add enhancements. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Description: Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. Security Fix(es): * golang: out-of-bounds read in golang.org/x/text/language leads to DoS (CVE-2021-38561) * golang: crash in a golang.org/x/crypto/ssh server (CVE-2022-27191) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 3. Solution: See the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errataupdate: https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html/release_notes/ocp-4-12-release-notes Details on how to access this content are available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html/updating_clusters/updating-cluster-cli 4. Bugs fixed (https://bugzilla.redhat.com/): 2064702 - CVE-2022-27191 golang: crash in a golang.org/x/crypto/ssh server 2100495 - CVE-2021-38561 golang: out-of-bounds read in golang.org/x/text/language leads to DoS 5. JIRA issues fixed (https://redhat.atlassian.net/jira/projects): OCPBUGS-3571 - Placeholder bug for OCP 4.12.0 metadata release 6. References: https://access.redhat.com/security/cve/CVE-2021-38561 https://access.redhat.com/security/cve/CVE-2022-27191 https://access.redhat.com/security/cve/CVE-2022-32189 https://access.redhat.com/security/updates/classification/#moderate 7. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY8cii9zjgjWX9erEAQhCkg/8D54+oIxvSlalX2aBs+HTdz90PtVFliXA 3In3JpvyI0jrSUDxduQ4GKfbPzDblhndj2+Xh7RpE/BQ/sxU6YERs5z9Z7H2uCP7 MXoSmmzh5Us7+EkzHziBvjgDSmO/Tx+h1IWmBAsWYqVybb221Wd4ac466KZr0O8M SpDttb4LlHthS67ELkn76iLl5oOIhhNtdmywLhG4I4gjsfnESakLQDcxs45wwyHR uHz7UdmJAN9i6jmqmzuSJC+j0kQsEVooH/yrKWoxhxqURnIM5FKjQAaWl4PLVpMe nu2E6kZHbxV/JrH0rp4ImkyrsVo6qT1IDotHFdev+0g4DS5wQkzEgSJqk3kDdJ1j 8vJHr0xfVlzve0FcVL/yGFwG4Q+gi+Na931amwlNaVxiCRizvHXJkh/oYVMg5aFF efc85jIZ15wGBp5Csix9+JkAqRCQse6U3UyoJtHMfE/R6qZBhcZMC5zz4ngk5eoR nHs8/UYmhlz0LtQqgAMiWMmlzBbXROz/NutxDtmRAL0hayoRAGXA6gvShHGW9TcJ ijw62RQD+r76BD4UEpMsMJTZElJlQYuIHOzSWYSCAd35Fa2g/kQ7tcG3D+HsdUOy xUVaaiaiQDsh8ViyoPnLaHrNq2dC0A03wf25o5+y2eRYP/KkrbP/x0acTvz20rHD 0VD4+BPfVaQ=PHlL -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Red Hat OpenShift 4.12 security patch addresses issues with moderate severity and brings improvements for secure deploymentpractices.. OpenShift Platform Update, Red Hat Security Advisory, Kubernetes Fixes, Container Security. . LinuxSecurity.com Team

Calendar 2 Jan 17, 2023 Red Hat
98

Red Hat 8: RHSA-2021:2587-01 Moderate: Ruby 2.5 Security Patch

An update for the ruby:2.5 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: ruby:2.5 security, bug fix, and enhancement update Advisory ID: RHSA-2021:2587-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:2587 Issue date: 2021-06-29 CVE Names: CVE-2019-15845 CVE-2019-16201 CVE-2019-16254 CVE-2019-16255 CVE-2020-10663 CVE-2020-10933 CVE-2020-25613 CVE-2021-28965 ==================================================================== 1. Summary: An update for the ruby:2.5 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks. The following packages have been upgraded to a later upstream version: ruby (2.5.9). (BZ#1952626) Security Fix(es): * ruby: NUL injection vulnerability of File.fnmatch and File.fnmatch? (CVE-2019-15845) * ruby: Regular expression denial of service vulnerability of WEBrick's Digest authentication (CVE-2019-16201) * ruby: Code injection via command argument of Shell#test / Shell#[] (CVE-2019-16255) * rubygem-json: Unsafe object creation vulnerability inJSON (CVE-2020-10663) * ruby: BasicSocket#read_nonblock method leads to information disclosure (CVE-2020-10933) * ruby: Potential HTTP request smuggling in WEBrick (CVE-2020-25613) * ruby: XML round-trip vulnerability in REXML (CVE-2021-28965) * ruby: HTTP response splitting in WEBrick (CVE-2019-16254) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1773728 - CVE-2019-16201 ruby: Regular expression denial of service vulnerability of WEBrick's Digest authentication 1789407 - CVE-2019-15845 ruby: NUL injection vulnerability of File.fnmatch and File.fnmatch? 1789556 - CVE-2019-16254 ruby: HTTP response splitting in WEBrick 1793683 - CVE-2019-16255 ruby: Code injection via command argument of Shell#test / Shell#[] 1827500 - CVE-2020-10663 rubygem-json: Unsafe object creation vulnerability in JSON 1833291 - CVE-2020-10933 ruby: BasicSocket#read_nonblock method leads to information disclosure 1883623 - CVE-2020-25613 ruby: Potential HTTP request smuggling in WEBrick 1947526 - CVE-2021-28965 ruby: XML round-trip vulnerability in REXML 1952626 - Rebase to the latest Ruby 2.5 point release [rhel-8] [rhel-8.4.0.z] 1955010 - Resolv::DNS: ruby:2.5/ruby: timeouts if multiple IPv6 name servers are given and address contains leading zero [rhel-8] [rhel-8.4.0.z] 6. Package List: Red Hat Enterprise Linux AppStream (v.8): Source: ruby-2.5.9-107.module+el8.4.0+10822+fe4fffb1.src.rpm rubygem-abrt-0.3.0-4.module+el8.1.0+3656+f80bfa1d.src.rpm rubygem-bson-4.3.0-2.module+el8.1.0+3656+f80bfa1d.src.rpm rubygem-bundler-1.16.1-3.module+el8.1.0+3656+f80bfa1d.src.rpm rubygem-mongo-2.5.1-2.module+el8.1.0+3656+f80bfa1d.src.rpm rubygem-mysql2-0.4.10-4.module+el8.1.0+3656+f80bfa1d.src.rpm rubygem-pg-1.0.0-2.module+el8.1.0+3656+f80bfa1d.src.rpm aarch64: ruby-2.5.9-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm ruby-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm ruby-debugsource-2.5.9-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm ruby-devel-2.5.9-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm ruby-libs-2.5.9-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm ruby-libs-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-bigdecimal-1.3.4-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-bigdecimal-debuginfo-1.3.4-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-bson-4.3.0-2.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-bson-debuginfo-4.3.0-2.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-bson-debugsource-4.3.0-2.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-io-console-0.4.6-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-io-console-debuginfo-0.4.6-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-json-2.1.0-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-json-debuginfo-2.1.0-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-mysql2-0.4.10-4.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-mysql2-debuginfo-0.4.10-4.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-mysql2-debugsource-0.4.10-4.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-openssl-2.1.2-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-openssl-debuginfo-2.1.2-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-pg-1.0.0-2.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-pg-debuginfo-1.0.0-2.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-pg-debugsource-1.0.0-2.module+el8.1.0+3656+f80bfa1d.aarch64.rpm rubygem-psych-3.0.2-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm rubygem-psych-debuginfo-3.0.2-107.module+el8.4.0+10822+fe4fffb1.aarch64.rpm noarch: ruby-doc-2.5.9-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm ruby-irb-2.5.9-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-abrt-0.3.0-4.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-abrt-doc-0.3.0-4.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-bson-doc-4.3.0-2.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-bundler-1.16.1-3.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-bundler-doc-1.16.1-3.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-did_you_mean-1.2.0-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-minitest-5.10.3-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-mongo-2.5.1-2.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-mongo-doc-2.5.1-2.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-mysql2-doc-0.4.10-4.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-net-telnet-0.1.1-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-pg-doc-1.0.0-2.module+el8.1.0+3656+f80bfa1d.noarch.rpm rubygem-power_assert-1.1.1-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-rake-12.3.3-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-rdoc-6.0.1.1-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-test-unit-3.2.7-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygem-xmlrpc-0.3.0-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygems-2.7.6.3-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm rubygems-devel-2.7.6.3-107.module+el8.4.0+10822+fe4fffb1.noarch.rpm ppc64le: ruby-2.5.9-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm ruby-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm ruby-debugsource-2.5.9-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm ruby-devel-2.5.9-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm ruby-libs-2.5.9-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm ruby-libs-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-bigdecimal-1.3.4-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-bigdecimal-debuginfo-1.3.4-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-bson-4.3.0-2.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-bson-debuginfo-4.3.0-2.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-bson-debugsource-4.3.0-2.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-io-console-0.4.6-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-io-console-debuginfo-0.4.6-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-json-2.1.0-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-json-debuginfo-2.1.0-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-mysql2-0.4.10-4.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-mysql2-debuginfo-0.4.10-4.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-mysql2-debugsource-0.4.10-4.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-openssl-2.1.2-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-openssl-debuginfo-2.1.2-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-pg-1.0.0-2.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-pg-debuginfo-1.0.0-2.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-pg-debugsource-1.0.0-2.module+el8.1.0+3656+f80bfa1d.ppc64le.rpm rubygem-psych-3.0.2-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm rubygem-psych-debuginfo-3.0.2-107.module+el8.4.0+10822+fe4fffb1.ppc64le.rpm s390x: ruby-2.5.9-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm ruby-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm ruby-debugsource-2.5.9-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm ruby-devel-2.5.9-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm ruby-libs-2.5.9-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm ruby-libs-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-bigdecimal-1.3.4-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-bigdecimal-debuginfo-1.3.4-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-bson-4.3.0-2.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-bson-debuginfo-4.3.0-2.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-bson-debugsource-4.3.0-2.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-io-console-0.4.6-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-io-console-debuginfo-0.4.6-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-json-2.1.0-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-json-debuginfo-2.1.0-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-mysql2-0.4.10-4.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-mysql2-debuginfo-0.4.10-4.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-mysql2-debugsource-0.4.10-4.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-openssl-2.1.2-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-openssl-debuginfo-2.1.2-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-pg-1.0.0-2.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-pg-debuginfo-1.0.0-2.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-pg-debugsource-1.0.0-2.module+el8.1.0+3656+f80bfa1d.s390x.rpm rubygem-psych-3.0.2-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm rubygem-psych-debuginfo-3.0.2-107.module+el8.4.0+10822+fe4fffb1.s390x.rpm x86_64: ruby-2.5.9-107.module+el8.4.0+10822+fe4fffb1.i686.rpm ruby-2.5.9-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm ruby-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.i686.rpm ruby-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm ruby-debugsource-2.5.9-107.module+el8.4.0+10822+fe4fffb1.i686.rpm ruby-debugsource-2.5.9-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm ruby-devel-2.5.9-107.module+el8.4.0+10822+fe4fffb1.i686.rpm ruby-devel-2.5.9-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm ruby-libs-2.5.9-107.module+el8.4.0+10822+fe4fffb1.i686.rpm ruby-libs-2.5.9-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm ruby-libs-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.i686.rpm ruby-libs-debuginfo-2.5.9-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-bigdecimal-1.3.4-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-bigdecimal-1.3.4-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-bigdecimal-debuginfo-1.3.4-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-bigdecimal-debuginfo-1.3.4-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-bson-4.3.0-2.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-bson-debuginfo-4.3.0-2.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-bson-debugsource-4.3.0-2.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-io-console-0.4.6-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-io-console-0.4.6-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-io-console-debuginfo-0.4.6-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-io-console-debuginfo-0.4.6-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-json-2.1.0-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-json-2.1.0-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-json-debuginfo-2.1.0-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-json-debuginfo-2.1.0-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-mysql2-0.4.10-4.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-mysql2-debuginfo-0.4.10-4.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-mysql2-debugsource-0.4.10-4.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-openssl-2.1.2-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-openssl-2.1.2-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-openssl-debuginfo-2.1.2-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-openssl-debuginfo-2.1.2-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-pg-1.0.0-2.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-pg-debuginfo-1.0.0-2.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-pg-debugsource-1.0.0-2.module+el8.1.0+3656+f80bfa1d.x86_64.rpm rubygem-psych-3.0.2-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-psych-3.0.2-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm rubygem-psych-debuginfo-3.0.2-107.module+el8.4.0+10822+fe4fffb1.i686.rpm rubygem-psych-debuginfo-3.0.2-107.module+el8.4.0+10822+fe4fffb1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7.References: https://access.redhat.com/security/cve/CVE-2019-15845 https://access.redhat.com/security/cve/CVE-2019-16201 https://access.redhat.com/security/cve/CVE-2019-16254 https://access.redhat.com/security/cve/CVE-2019-16255 https://access.redhat.com/security/cve/CVE-2020-10663 https://access.redhat.com/security/cve/CVE-2020-10933 https://access.redhat.com/security/cve/CVE-2020-25613 https://access.redhat.com/security/cve/CVE-2021-28965 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYNtGQNzjgjWX9erEAQi42hAAktYBs62VVOR4PALnooOR6rhTD6DWN2f2 J6TedVP91eulvyy1c9kqqLMHdyVyTQ6QdVtCT6XzHzE1LQOrp01n1m/AEWzy0QLg DcioBn/0j/vcpqDXyeO+crWOg8nzW1g2tfX9ZCGVGgYuf/WQ9CoYqw+u2Kz8741r vbVORv5KdlIqW7NoGJ+rgg4aDQW20YFaylgwUMVwHCBUBIjjKtp+BmvCcRrRxgVb UQJ4WqmDpo3aJGR5tTJrnM3aXsRDiuxK5r3u6wH5+wRXL5m5GLN79Kzv566jCZeS XnxumlmyUsGhpAcZc7iGHVHuxed/GT0QIjMarf1GIXaEunmJksCTxkaI7ET6GFmz 21yhVmJ+VhonVfWLEYMCD7EEWY+70HMHR95ZyWiwrA1smj3nHoI4rnXsg5FoZvO5 Wu4Lr5pR8CiOhTIOcmOiEVu8lgYFJi/zfwQGvIi4BjxmmA1inyxHhGXed8PNzSxC zV702ZYoxUHmmeylWU+Mg/8JgeYdblaXlxTyNdaUd+27Qy2/bO3ZqSFZEwou31/Z +96kdVpgE1RTeb/TTcC3/K+YVSVMwvZuT8JohW009LA4mSVzg53/93GenDHrQM8r tZ+SBicohfvbDQYGzNAkMNcxDcMVir3BTaWr3KMSl2SVSVIYa0eIAqw3b0uLbmfw c0MTOIFGYAg=rwmC -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Minimal security enhancements for ruby:2.5 in Red Hat 8 consist of remedies for NUL injection and service interruption weaknesses.. Ruby 2.5 Updates, Red Hat Security, Moderate Update, Bug Fixes, Security Patch. . LinuxSecurity.com Team

Calendar 2 Jun 29, 2021 Red Hat
98

RedHat: RHSA-2019-0433-01 Moderate: Ansible Bug Fix and Security Update

An update for ansible is now available for Ansible Engine 2.6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: ansible security and bug fix update Advisory ID: RHSA-2019:0433-01 Product: Red Hat Ansible Engine Advisory URL: https://access.redhat.com/errata/RHSA-2019:0433 Issue date: 2019-02-28 CVE Names: CVE-2019-3828 ==================================================================== 1. Summary: An update for ansible is now available for Ansible Engine 2.6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Ansible Engine 2.6 for RHEL 7 Server - noarch 3. Description: Ansible is a simple model-driven configuration management, multi-node deployment, and remote-task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. The following packages have been upgraded to a newer upstream version: ansible (2.6.14) Security fix(es): * ansible: path traversal in the fetch module (CVE-2019-3828) For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): See https://github.com/ansible/ansible/blob/v2.6.14/changelogs/CHANGELOG-v2.6.rst for details on bug fixes inthis release. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1676689 - CVE-2019-3828 Ansible: path traversal in the fetch module 6. Package List: Red Hat Ansible Engine 2.6 for RHEL 7 Server: Source: ansible-2.6.14-1.el7ae.src.rpm noarch: ansible-2.6.14-1.el7ae.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2019-3828 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2019 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBXHeZytzjgjWX9erEAQi6lQ/+IaXvlNPomEaJs/Q5mGLIrsD917dJTOV1 VN5eCvpKPWCjWQAHbC2+7x5KuqfwTi0BzeybOmTNHfTOtD8uONJOQ5d9X8ARh//R xEDs73MEPLCjBKOzuiCjNtdW/zPtu+9LIzjszAwMXd/3eH2aKK86NAwU+mhluaC0 iEIf/jJekAZTLyp93iOhFtMiWyam6yH+csCYxHCQda4uEg8W+NcAgD8mTbf0qJVL V98dWZTcStCJm0xqyEZKcOT2g8wS5DeWblLxSodEHB3/rL+VWfe8Cd4Q9OFe1G/f nbFCq3Y32nDI3LkO0UIubTweD3m4JFAzXHwPA46c4w4Mf2nx2NEgzY0lx2Xz7ev/ EGrerZBis93fE2kLOBJjroCT0KX8gABybmqmRg1PbdCQ6NLPIsCtqbXu9XBukU/B nQG4K5tAPJHhpyVoH9jUcODAS1SSei47NWM5cpfSpBihk+UFHIZV7pbKyCwizEE6 AOSDz4DHxNQ6jtrtbsYzR1X7zHEBWJKJttZkm5VaeVBQRtdY9CeilTUCXglX40vB GOFfTMx1KwXZvzit8Bm96Z1R7YhdzNwGdBiNQj/X894T9GWvSssYlWEtI28J4EXS qLvQK/uM39Ey0qhVV56RUCZS1Y3TbkQxn/60UjmO8aAtNXF1xEMQJ1beJeoAZtJQ 6aZP7k8RlG0=5aJZ -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Critical update notification for Red Hat Ansible Tower remedying potential directory traversal vulnerability and implementing important enhancements.. Red Hat Ansible Update, Security Impact, Moderate Severity, Bug FixUpdate. . LinuxSecurity.com Team

Calendar 2 Feb 28, 2019 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":552,"type":"x","order":1,"pct":78.63,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.27,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.84,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here