Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 615
Alerts This Week
Warning Icon 1 615

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 70 articles for you...
203

Mageia PostgreSQL 15 Important Memory Exposure Fix MGASA-2026-0151

MGASA-2026-0151 - Updated postgresql15 packages fix security vulnerabilities. MGASA-2026-0151 - Updated postgresql15 packages fix security vulnerabilities Publication date: 19 May 2026 URL: https://advisories.mageia.org/MGASA-2026-0151.html Type: security Affected Mageia releases: 9 CVE: CVE-2026-6472, CVE-2026-6473, CVE-2026-6474, CVE-2026-6475, CVE-2026-6476, CVE-2026-6477, CVE-2026-6478, CVE-2026-6479, CVE-2026-6575, CVE-2026-6637, CVE-2026-6638 Description: PostgreSQL CREATE TYPE does not check multirange schema CREATE privilege. (CVE-2026-6472) PostgreSQL server undersizes allocations, via integer wraparound. (CVE-2026-6473) PostgreSQL timeofday() can disclose portions of server memory. (CVE-2026-6474) PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice. (CVE-2026-6475) PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory. (CVE-2026-6477) PostgreSQL discloses MD5-hashed passwords via covert timing channel. (CVE-2026-6478) PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursion. (CVE-2026-6479) PostgreSQL refint allows stack buffer overflow and SQL injection. (CVE-2026-6637) References: - https://bugs.mageia.org/show_bug.cgi?id=35534 - https://www.postgresql.org/about/news/postgresql-184-1710-1614-1518-and-1423-released-3297/ - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6472 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6473 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6474 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6475 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6476 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6477 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6478 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6479 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6575 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6637 -https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-6638 SRPMS: - 9/core/postgresql15-15.18-1.mga9 . Updated postgresql15 packages for Mageia fix critical security issues to safeguard database data integrity.. PostgreSQL Security, Mageia Update, Database Vulnerabilities, Memory Exploitation. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 19, 2026 Important Mageia
100

SUSE SQLite3 Moderate Threat Integer Overflow CVE-2025-70873

An update that solves two vulnerabilities and has two fixes can now be installed.. # Security update for sqlite3 Announcement ID: SUSE-SU-2026:21173-1 Release Date: 2026-04-10T18:56:55Z Rating: moderate References: * bsc#1248586 * bsc#1252217 * bsc#1254670 * bsc#1259619 Cross-References: * CVE-2025-70873 * CVE-2025-7709 CVSS scores: * CVE-2025-70873 ( SUSE ): 5.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-70873 ( SUSE ): 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N * CVE-2025-70873 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2025-7709 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:A/VC:N/VI:H/VA:L/SC:N/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-7709 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L * CVE-2025-7709 ( NVD ): 6.9 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:A/VC:N/VI:H/VA:L/SC:N/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * SUSE Linux Enterprise Server 16.0 * SUSE Linux Enterprise Server for SAP applications 16.0 An update that solves two vulnerabilities and has two fixes can now be installed. ## Description: This update for sqlite3 fixes the following issues: Update sqlite3 to version 3.51.3: Security issues: * CVE-2025-7709: Integer Overflow in FTS5 Extension (bsc#1254670). * CVE-2025-70873: SQLite zipfile extension may disclose uninitialized heap memory during inflation (bsc#1259619). Non security issue: * sqlite3 won't build when using --with icu (bsc#1248586). Changelog: Update to version 3.51.3: * Fix the WAL-reset database corruption bug: https://sqlite.org/wal.html#walresetbug * Other minor bug fixes. Update to version 3.51.2: * Fix an obscure deadlock in the new broken-posix-lock detection logic. * Fix multiple problems in the EXISTS-to-JOINoptimization. Update to version 3.51.1: * Fix incorrect results from nested EXISTS queries caused by the optimization in item 6b in the 3.51.0 release. * Fix a latent bug in fts5vocab virtual table, exposed by new optimizations in the 3.51.0 release Update to version 3.51.0: * New macros in sqlite3.h: \- SQLITE_SCM_BRANCH -> the name of the branch from which the source code is taken. \- SQLITE_SCM_TAGS -> space-separated list of tags on the source code check-in. \- SQLITE_SCM_DATETIME -> ISO-8601 date and time of the source * Two new JSON functions, jsonb_each() and jsonb_tree() work the same as the existing json_each() and json_tree() functions except that they return JSONB for the "value" column when the "type" is 'array' or 'object'. * The carray and percentile extensions are now built into the amalgamation, though they are disabled by default and must be activated at compile-time using the -DSQLITE_ENABLE_CARRAY and/or -DSQLITE_ENABLE_PERCENTILE options, respectively. * Enhancements to TCL Interface: \- Add the -asdict flag to the eval command to have it set the row data as a dict instead of an array. \- User-defined functions may now break to return an SQL NULL. * CLI enhancements: \- Increase the precision of ".timer" to microseconds. \- Enhance the "box" and "column" formatting modes to deal with double-wide characters. \- The ".imposter" command provides read-only imposter tables that work with VACUUM and do not require the --unsafe-testing option. \- Add the --ifexists option to the CLI command-line option and to the .open command. \- Limit columns widths set by the ".width" command to 30,000 or less, as there is not good reason to have wider columns, but supporting wider columns provides opportunity to malefactors. * Performance enhancements: \- Use fewer CPU cycles to commit a read transaction. \- Early detection of joins that return no rows due to one or more of the tables containing no rows. \- Avoid evaluation of scalar subqueries if the result of the subquery does not change the result of theoverall expression. \- Faster window function queries when using "BETWEEN :x FOLLOWING AND :y FOLLOWING" with a large :y. * Add the PRAGMA wal_checkpoint=NOOP; command and the SQLITE_CHECKPOINT_NOOP argument for sqlite3_wal_checkpoint_v2(). * Add the sqlite3_set_errmsg() API for use by extensions. * Add the sqlite3_db_status64() API, which works just like the existing sqlite3_db_status() API except that it returns 64-bit results. * Add the SQLITE_DBSTATUS_TEMPBUF_SPILL option to the sqlite3_db_status() and sqlite3_db_status64() interfaces. * In the session extension add the sqlite3changeset_apply_v3() interface. * For the built-in printf() and the format() SQL function, omit the leading '-' from negative floating point numbers if the '+' flag is omitted and the "#" flag is present and all displayed digits are '0'. Use '%#f' or similar to avoid outputs like '-0.00' and instead show just '0.00'. * Improved error messages generated by FTS5. * Enforce STRICT typing on computed columns. * Improved support for VxWorks * JavaScript/WASM now supports 64-bit WASM. The canonical builds continue to be 32-bit but creating one's own 64-bit build is now as simple as running "make". * Improved resistance to database corruption caused by an application breaking Posix advisory locks using close(). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 16.0 zypper in -t patch SUSE-SLES-16.0-529=1 * SUSE Linux Enterprise Server for SAP applications 16.0 zypper in -t patch SUSE-SLES-16.0-529=1 ## Package List: * SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64) * sqlite3-debugsource-3.51.3-160000.1.1 * sqlite3-devel-3.51.3-160000.1.1 * libsqlite3-0-debuginfo-3.51.3-160000.1.1 * sqlite3-tcl-debuginfo-3.51.3-160000.1.1 * sqlite3-debuginfo-3.51.3-160000.1.1 * libsqlite3-0-3.51.3-160000.1.1 *sqlite3-3.51.3-160000.1.1 * sqlite3-tcl-3.51.3-160000.1.1 * SUSE Linux Enterprise Server 16.0 (noarch) * sqlite3-doc-3.51.3-160000.1.1 * SUSE Linux Enterprise Server 16.0 (x86_64) * libsqlite3-0-x86-64-v3-3.51.3-160000.1.1 * libsqlite3-0-x86-64-v3-debuginfo-3.51.3-160000.1.1 * SUSE Linux Enterprise Server for SAP applications 16.0 (ppc64le x86_64) * sqlite3-debugsource-3.51.3-160000.1.1 * sqlite3-devel-3.51.3-160000.1.1 * libsqlite3-0-debuginfo-3.51.3-160000.1.1 * sqlite3-tcl-debuginfo-3.51.3-160000.1.1 * sqlite3-debuginfo-3.51.3-160000.1.1 * libsqlite3-0-3.51.3-160000.1.1 * sqlite3-3.51.3-160000.1.1 * sqlite3-tcl-3.51.3-160000.1.1 * SUSE Linux Enterprise Server for SAP applications 16.0 (x86_64) * libsqlite3-0-x86-64-v3-3.51.3-160000.1.1 * libsqlite3-0-x86-64-v3-debuginfo-3.51.3-160000.1.1 * SUSE Linux Enterprise Server for SAP applications 16.0 (noarch) * sqlite3-doc-3.51.3-160000.1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-70873.html * https://www.suse.com/security/cve/CVE-2025-7709.html * https://bugzilla.suse.com/show_bug.cgi?id=1248586 * https://bugzilla.suse.com/show_bug.cgi?id=1252217 * https://bugzilla.suse.com/show_bug.cgi?id=1254670 * https://bugzilla.suse.com/show_bug.cgi?id=1259619 . Update for SQLite 3 addresses moderate vulnerabilities to enhance system security and stability.. SUSE sqlite3 update, moderate security issues, integer overflow fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 21, 2026 Important SuSE
172

Ubuntu 18.04 LTS Linux Kernel Critical Denial of Service Threat USN-8098-9

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-8098-9 March 27, 2026 linux-ibm-5.4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-ibm-5.4: Linux kernel for IBM cloud systems Details: Qualys discovered that several vulnerabilities existed in the AppArmor Linux kernel Security Module (LSM). An unprivileged local attacker could use these issues to load, replace, and remove arbitrary AppArmor profiles causing denial of service, exposure of sensitive information (kernel memory), local privilege escalation, or possibly escape a container. (LP: #2143853) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - x86 architecture; - GPIO subsystem; - GPU drivers; - BTRFS file system; - XFRM subsystem; - IPv4 networking; - IPv6 networking; - MAC80211 subsystem; - SMC sockets; (CVE-2021-47599, CVE-2022-48875, CVE-2022-49072, CVE-2024-49927, CVE-2024-56640, CVE-2025-21780, CVE-2025-40215) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS linux-image-5.4.0-1102-ibm 5.4.0-1102.107~18.04.1 Available with Ubuntu Pro linux-image-ibm 5.4.0.1102.107~18.04.1 Available with Ubuntu Pro linux-image-ibm-5.4 5.4.0.1102.107~18.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given anew version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-8098-9 https://ubuntu.com/security/notices/USN-8098-8 https://ubuntu.com/security/notices/USN-8098-7 https://ubuntu.com/security/notices/USN-8098-6 https://ubuntu.com/security/notices/USN-8098-5 https://ubuntu.com/security/notices/USN-8098-4 https://ubuntu.com/security/notices/USN-8098-3 https://ubuntu.com/security/notices/USN-8098-2 https://ubuntu.com/security/notices/USN-8098-1 https://launchpad.net/bugs/2143853 CVE-2021-47599, CVE-2022-48875, CVE-2022-49072, CVE-2022-49267, CVE-2024-49927, CVE-2024-56640, CVE-2025-21780, CVE-2025-40215, . Fixes for multiple security issues in the Ubuntu 18.04 LTS Linux kernel affecting cloud systems. Immediate updates recommended.. Linux kernel security, Ubuntu updates, system vulnerabilities, memory protection. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 27, 2026 Critical Ubuntu
219

Rocky Linux glibc Update RLSB-2026-4780 Vulnerability Fix

Moderate: glibc security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:4772", "synopsis": "Moderate: glibc security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for glibc.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.\n\nSecurity Fix(es):\n\n* glibc: glibc: Information disclosure via zero-valued network query (CVE-2026-0915)\n\n* glibc: wordexp with WRDE_REUSE and WRDE_APPEND may return uninitialized memory (CVE-2025-15281)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2430201", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2430201", "description": ""}, {"ticket": "2431196", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2431196", "description": ""}], "cves": [{"name": "CVE-2025-15281", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-15281", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.9", "cwe": "CWE-908"}, {"name": "CVE-2026-0915", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-0915", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "cvss3BaseScore": "5.3", "cwe": "CWE-908"}], "references": [], "publishedAt": "2026-03-24T06:03:07.163836Z", "rpms": {"Rocky Linux 8": {"nvras":["compat-libpthread-nonshared-0:2.28-251.el8_10.31.aarch64.rpm", "compat-libpthread-nonshared-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-0:2.28-251.el8_10.31.i686.rpm", "glibc-0:2.28-251.el8_10.31.src.rpm", "glibc-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-all-langpacks-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-all-langpacks-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-all-langpacks-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-all-langpacks-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-benchtests-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-benchtests-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-benchtests-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-benchtests-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-common-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-common-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-common-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-common-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-debuginfo-0:2.28-251.el8_10.31.i686.rpm", "glibc-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-debugsource-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-debugsource-0:2.28-251.el8_10.31.i686.rpm", "glibc-debugsource-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-devel-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-devel-0:2.28-251.el8_10.31.i686.rpm", "glibc-devel-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-doc-0:2.28-251.el8_10.31.noarch.rpm", "glibc-gconv-extra-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-gconv-extra-0:2.28-251.el8_10.31.i686.rpm", "glibc-gconv-extra-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-gconv-extra-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-gconv-extra-debuginfo-0:2.28-251.el8_10.31.i686.rpm", "glibc-gconv-extra-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-headers-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-headers-0:2.28-251.el8_10.31.i686.rpm", "glibc-headers-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-aa-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-aa-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-af-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-af-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-agr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-agr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ak-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ak-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-am-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-am-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-an-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-an-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-anp-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-anp-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ar-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ar-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-as-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-as-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ast-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ast-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ayc-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ayc-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-az-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-az-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-be-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-be-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-bem-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bem-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ber-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ber-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-bg-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bg-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-bhb-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bhb-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-bho-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bho-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-bi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bi-0:2.28-251.el8_10.31.x86_64.rpm","glibc-langpack-bn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-bo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-br-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-br-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-brx-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-brx-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-bs-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-bs-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-byn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-byn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ca-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ca-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ce-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ce-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-chr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-chr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-cmn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-cmn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-crh-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-crh-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-cs-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-cs-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-csb-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-csb-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-cv-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-cv-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-cy-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-cy-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-da-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-da-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-de-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-de-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-doi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-doi-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-dsb-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-dsb-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-dv-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-dv-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-dz-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-dz-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-el-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-el-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-en-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-en-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-eo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-eo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-es-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-es-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-et-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-et-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-eu-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-eu-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-fa-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-fa-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ff-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ff-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-fi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-fi-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-fil-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-fil-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-fo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-fo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-fr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-fr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-fur-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-fur-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-fy-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-fy-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ga-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ga-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-gd-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-gd-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-gez-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-gez-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-gl-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-gl-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-gu-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-gu-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-gv-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-gv-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ha-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ha-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hak-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hak-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-he-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-he-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hi-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hif-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hif-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hne-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hne-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hsb-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hsb-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ht-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ht-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hu-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hu-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-hy-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-hy-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ia-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ia-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-id-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-id-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ig-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ig-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ik-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ik-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-is-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-is-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-it-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-it-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-iu-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-iu-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ja-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ja-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ka-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ka-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-kab-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-kab-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-kk-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-kk-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-kl-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-kl-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-km-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-km-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-kn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-kn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ko-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ko-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-kok-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-kok-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ks-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ks-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ku-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ku-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-kw-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-kw-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ky-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ky-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-lb-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-lb-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-lg-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-lg-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-li-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-li-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-lij-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-lij-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ln-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ln-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-lo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-lo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-lt-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-lt-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-lv-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-lv-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-lzh-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-lzh-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mag-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mag-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mai-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mai-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mfe-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mfe-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mg-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mg-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mhr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mhr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mi-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-miq-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-miq-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mjw-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mjw-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mk-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mk-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ml-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ml-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mni-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mni-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mr-0:2.28-251.el8_10.31.x86_64.rpm","glibc-langpack-ms-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ms-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-mt-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-mt-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-my-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-my-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nan-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nan-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nb-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nb-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nds-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nds-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ne-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ne-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nhn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nhn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-niu-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-niu-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nl-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nl-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-nso-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-nso-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-oc-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-oc-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-om-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-om-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-or-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-or-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-os-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-os-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-pa-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-pa-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-pap-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-pap-0:2.28-251.el8_10.31.x86_64.rpm","glibc-langpack-pl-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-pl-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ps-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ps-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-pt-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-pt-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-quz-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-quz-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-raj-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-raj-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ro-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ro-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ru-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ru-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-rw-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-rw-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sa-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sa-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sah-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sah-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sat-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sat-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sc-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sc-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sd-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sd-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-se-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-se-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sgs-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sgs-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-shn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-shn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-shs-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-shs-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-si-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-si-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sid-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-sid-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sk-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sk-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sl-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sl-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sm-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sm-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-so-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-so-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sq-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sq-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ss-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ss-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-st-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-st-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sv-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sv-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-sw-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-sw-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-szl-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-szl-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ta-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ta-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tcy-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tcy-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-te-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-te-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tg-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tg-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-th-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-th-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-the-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-the-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ti-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ti-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tig-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-tig-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tk-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tk-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tl-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tl-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tn-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tn-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-to-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-to-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tpi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tpi-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tr-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tr-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ts-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ts-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-tt-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-tt-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ug-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ug-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-uk-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-uk-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-unm-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-unm-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ur-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ur-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-uz-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-uz-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-ve-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-ve-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-vi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-vi-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-wa-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-wa-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-wae-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-wae-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-wal-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-wal-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-wo-0:2.28-251.el8_10.31.aarch64.rpm","glibc-langpack-wo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-xh-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-xh-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-yi-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-yi-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-yo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-yo-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-yue-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-yue-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-yuw-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-yuw-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-zh-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-zh-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-langpack-zu-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-langpack-zu-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-locale-source-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-locale-source-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-minimal-langpack-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-minimal-langpack-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-nss-devel-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-nss-devel-0:2.28-251.el8_10.31.i686.rpm", "glibc-nss-devel-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-static-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-static-0:2.28-251.el8_10.31.i686.rpm", "glibc-static-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-utils-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-utils-0:2.28-251.el8_10.31.x86_64.rpm", "glibc-utils-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "glibc-utils-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "libnsl-0:2.28-251.el8_10.31.aarch64.rpm", "libnsl-0:2.28-251.el8_10.31.i686.rpm", "libnsl-0:2.28-251.el8_10.31.x86_64.rpm", "libnsl-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "libnsl-debuginfo-0:2.28-251.el8_10.31.i686.rpm", "libnsl-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "nscd-0:2.28-251.el8_10.31.aarch64.rpm", "nscd-0:2.28-251.el8_10.31.x86_64.rpm", "nscd-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "nscd-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "nss_db-0:2.28-251.el8_10.31.aarch64.rpm","nss_db-0:2.28-251.el8_10.31.i686.rpm", "nss_db-0:2.28-251.el8_10.31.x86_64.rpm", "nss_db-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "nss_db-debuginfo-0:2.28-251.el8_10.31.i686.rpm", "nss_db-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm", "nss_hesiod-0:2.28-251.el8_10.31.aarch64.rpm", "nss_hesiod-0:2.28-251.el8_10.31.i686.rpm", "nss_hesiod-0:2.28-251.el8_10.31.x86_64.rpm", "nss_hesiod-debuginfo-0:2.28-251.el8_10.31.aarch64.rpm", "nss_hesiod-debuginfo-0:2.28-251.el8_10.31.i686.rpm", "nss_hesiod-debuginfo-0:2.28-251.el8_10.31.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Moderate glibc security update for Rocky Linux resolves issues including information disclosure and memory exposure risks.. Rocky Linux glibc security update. . LinuxSecurity.com Team

Calendar%202 Mar 24, 2026 Rocky Linux
172

Ubuntu 23.10 USN-6724-2 Critical: Kernel Denial of Service Issues

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6724-2 April 16, 2024 linux-aws-6.5, linux-raspi vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.10 - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-raspi: Linux kernel for Raspberry Pi systems - linux-aws-6.5: Linux kernel for Amazon Web Services (AWS) systems Details: Pratyush Yadav discovered that the Xen network backend implementation in the Linux kernel did not properly handle zero length data request, leading to a null pointer dereference vulnerability. An attacker in a guest VM could possibly use this to cause a denial of service (host domain crash). (CVE-2023-46838) It was discovered that the Habana's AI Processors driver in the Linux kernel did not properly initialize certain data structures before passing them to user space. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2023-50431) It was discovered that the device mapper driver in the Linux kernel did not properly validate target size during certain memory allocations. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-52429, CVE-2024-23851) It was discovered that the CIFS network file system implementation in the Linux kernel did not properly validate certain SMB messages, leading to an out-of-bounds read vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-6610) Yang Chaoming discovered that the KSMBD implementation in the Linux kernel did not properly validate request buffer sizes, leading to an out-of-bounds read vulnerability. An attacker could use this to cause a denial ofservice (system crash) or possibly expose sensitive information. (CVE-2024-22705) Chenyuan Yang discovered that the btrfs file system in the Linux kernel did not properly handle read operations on newly created subvolumes in certain conditions. A local attacker could use this to cause a denial of service (system crash). (CVE-2024-23850) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Android drivers; - Userspace I/O drivers; - F2FS file system; - SMB network file system; - Networking core; (CVE-2023-52434, CVE-2023-52436, CVE-2023-52435, CVE-2023-52439, CVE-2023-52438) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.10: linux-image-6.5.0-1014-raspi 6.5.0-1014.17 linux-image-raspi 6.5.0.1014.15 linux-image-raspi-nolpae 6.5.0.1014.15 Ubuntu 22.04 LTS: linux-image-6.5.0-1017-aws 6.5.0-1017.17~22.04.2 linux-image-aws 6.5.0.1017.17~22.04.2 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6724-2 https://ubuntu.com/security/notices/USN-6724-1 CVE-2023-46838, CVE-2023-50431, CVE-2023-52429, CVE-2023-52434, CVE-2023-52435, CVE-2023-52436, CVE-2023-52438, CVE-2023-52439, CVE-2023-6610, CVE-2024-22705, CVE-2024-23850, CVE-2024-23851 Package Information: https://launchpad.net/ubuntu/+source/linux-aws-6.5/6.5.0-1017.17~22.04.2 . Multiple vulnerabilities in the Linux kernel impact Ubuntu users and sysadmins, highlighting the need for prompt action to ensure system safety and integrity.. Kernel Patches, Ubuntu Security Updates, Memory Exposure Risks. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 16, 2024 Critical Ubuntu
172

Ubuntu 16.04 LTS USN-6254-1 Critical: Kernel Denial of Service Fix

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6254-1 July 26, 2023 linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS (Available with Ubuntu Pro) - Ubuntu 14.04 LTS (Available with Ubuntu Pro) Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-kvm: Linux kernel for cloud environments - linux-lts-xenial: Linux hardware enablement kernel from Xenial for Trusty Details: Jordy Zomer and Alexandra Sandulescu discovered that syscalls invoking the do_prlimit() function in the Linux kernel did not properly handle speculative execution barriers. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2023-0458) It was discovered that a race condition existed in the btrfs file system implementation in the Linux kernel, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-1611) It was discovered that the XFS file system implementation in the Linux kernel did not properly perform metadata validation when mounting certain images. An attacker could use this to specially craft a file system image that, when mounted, could cause a denial of service (system crash). (CVE-2023-2124) It was discovered that a use-after-free vulnerability existed in the iSCSI TCP implementation in the Linux kernel. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2023-2162) It was discovered that the ext4 file system implementation in the Linux kernel did not properly handle extra inode size forextended attributes, leading to a use-after-free vulnerability. A privileged attacker could possibly use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-2513) It was discovered that the IP-VLAN network driver for the Linux kernel did not properly initialize memory in some situations, leading to an out-of- bounds write vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3090) It was discovered that the Ricoh R5C592 MemoryStick card reader driver in the Linux kernel contained a race condition during module unload, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3141) It was discovered that a use-after-free vulnerability existed in the IEEE 1394 (Firewire) implementation in the Linux kernel. A privileged attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3159) Sanan Hasanov discovered that the framebuffer console driver in the Linux kernel did not properly perform checks for font dimension limits. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-3161) It was discovered that the kernel-> user space relay implementation in the Linux kernel did not properly perform certain buffer calculations, leading to an out-of-bounds read vulnerability. A local attacker could use this to cause a denial of service (system crash) or expose sensitive information (kernel memory). (CVE-2023-3268) It was discovered that the netfilter subsystem in the Linux kernel did not properly handle some error conditions, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3390) Tanguy Dubroca discovered that the netfilter subsystem in the Linux kernel didnot properly handle certain pointer data type, leading to an out-of- bounds write vulnerability. A privileged attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-35001) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS (Available with Ubuntu Pro): linux-image-4.4.0-1122-kvm 4.4.0-1122.132 linux-image-4.4.0-1159-aws 4.4.0-1159.174 linux-image-4.4.0-243-generic 4.4.0-243.277 linux-image-4.4.0-243-lowlatency 4.4.0-243.277 linux-image-aws 4.4.0.1159.163 linux-image-generic 4.4.0.243.249 linux-image-generic-lts-xenial 4.4.0.243.249 linux-image-kvm 4.4.0.1122.119 linux-image-lowlatency 4.4.0.243.249 linux-image-lowlatency-lts-xenial 4.4.0.243.249 linux-image-virtual 4.4.0.243.249 linux-image-virtual-lts-xenial 4.4.0.243.249 Ubuntu 14.04 LTS (Available with Ubuntu Pro): linux-image-4.4.0-1121-aws 4.4.0-1121.127 linux-image-4.4.0-243-generic 4.4.0-243.277~14.04.1 linux-image-4.4.0-243-lowlatency 4.4.0-243.277~14.04.1 linux-image-aws 4.4.0.1121.118 linux-image-generic-lts-xenial 4.4.0.243.211 linux-image-lowlatency-lts-xenial 4.4.0.243.211 linux-image-virtual-lts-xenial 4.4.0.243.211 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6254-1 CVE-2023-0458,CVE-2023-1611, CVE-2023-2124, CVE-2023-2162, CVE-2023-2513, CVE-2023-3090, CVE-2023-3141, CVE-2023-3159, CVE-2023-3161, CVE-2023-3268, CVE-2023-3390, CVE-2023-35001 . Multiple critical security issues in the Linux kernel addressed. Immediate update recommended to safeguard systems.. Ubuntu Kernel Security,Firmware Security,Denial of Service. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 26, 2023 Critical Ubuntu
172

Ubuntu 22.04 LTS USN-6206-1 Moderate: Linux Kernel DoS Threats

Several security issues were fixed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-6206-1 July 06, 2023 linux-oem-5.17 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-oem-5.17: Linux kernel for OEM systems Details: Hangyu Hua discovered that the Flower classifier implementation in the Linux kernel contained an out-of-bounds write vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-35788, LP: #2023577) It was discovered that the NTFS file system implementation in the Linux kernel contained a null pointer dereference in some situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-4842) Seth Jenkins discovered that the CPU data to memory implementation for x86 processors in the Linux kernel did not properly perform address randomization. A local attacker could use this to expose sensitive information (kernel memory) or in conjunction with another kernel vulnerability. (CVE-2023-0597) It was discovered that the XFS file system implementation in the Linux kernel did not properly perform metadata validation when mounting certain images. An attacker could use this to specially craft a file system image that, when mounted, could cause a denial of service (system crash). (CVE-2023-2124) It was discovered that for some Intel processors the INVLPG instruction implementation did not properly flush global TLB entries when PCIDs are enabled. An attacker could use this to expose sensitive information (kernel memory) or possibly cause undesired behaviors. (LP: #2023220) Update instructions: The problem can be corrected by updating your system to thefollowing package versions: Ubuntu 22.04 LTS: linux-image-5.17.0-1034-oem 5.17.0-1034.35 linux-image-oem-22.04 5.17.0.1034.32 linux-image-oem-22.04a 5.17.0.1034.32 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6206-1 https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2023220 https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2023577 CVE-2022-4842, CVE-2023-0597, CVE-2023-2124, CVE-2023-35788 Package Information: https://launchpad.net/ubuntu/+source/linux-oem-5.17/5.17.0-1034.35 . Numerous critical kernel vulnerabilities found in Ubuntu 22.04 LTS necessitating urgent updates to safeguard against possible attacks.. Linux Kernel Update, Ubuntu Security Notice, OEM Kernel Issues. . LinuxSecurity.com Team

Calendar%202 Jul 06, 2023 Ubuntu
172

Ubuntu 20.04 & 18.04 Advisory USN-6094-1 Critical: Kernel Issues

Several security issues were fixed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-6094-1 May 22, 2023 linux, linux-aws, linux-azure, linux-azure-5.4, linux-gcp, linux-gcp-5.4, linux-gke, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems - linux-gke: Linux kernel for Google Container Engine (GKE) systems - linux-gkeop: Linux kernel for Google Container Engine (GKE) systems - linux-ibm: Linux kernel for IBM cloud systems - linux-kvm: Linux kernel for cloud environments - linux-azure-5.4: Linux kernel for Microsoft Azure cloud systems - linux-gcp-5.4: Linux kernel for Google Cloud Platform (GCP) systems - linux-hwe-5.4: Linux hardware enablement (HWE) kernel - linux-ibm-5.4: Linux kernel for IBM cloud systems Details: Zheng Wang discovered that the Intel i915 graphics driver in the Linux kernel did not properly handle certain error conditions, leading to a double-free. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-3707) Jordy Zomer and Alexandra Sandulescu discovered that the Linux kernel did not properly implement speculative execution barriers in usercopy functions in certain situations. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2023-0459) It was discovered that the TLS subsystem in the Linux kernel contained a type confusion vulnerability in some situations. A local attacker coulduse this to cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-1075) It was discovered that the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel contained a type confusion vulnerability in some situations. An attacker could use this to cause a denial of service (system crash). (CVE-2023-1078) Xingyuan Mo discovered that the x86 KVM implementation in the Linux kernel did not properly initialize some data structures. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2023-1513) It was discovered that a use-after-free vulnerability existed in the iSCSI TCP implementation in the Linux kernel. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2023-2162) It was discovered that the NET/ROM protocol implementation in the Linux kernel contained a race condition in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-32269) Duoming Zhou discovered that a race condition existed in the infrared receiver/transceiver driver in the Linux kernel, leading to a use-after-free vulnerability. A privileged attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-1118) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: linux-image-5.4.0-1049-ibm 5.4.0-1049.54 linux-image-5.4.0-1069-gkeop 5.4.0-1069.73 linux-image-5.4.0-1091-kvm 5.4.0-1091.97 linux-image-5.4.0-1099-gke 5.4.0-1099.106 linux-image-5.4.0-1102-aws 5.4.0-1102.110 linux-image-5.4.0-1105-gcp 5.4.0-1105.114 linux-image-5.4.0-1108-azure 5.4.0-1108.114 linux-image-5.4.0-149-generic 5.4.0-149.166 linux-image-5.4.0-149-generic-lpae 5.4.0-149.166 linux-image-5.4.0-149-lowlatency 5.4.0-149.166 linux-image-aws-lts-20.04 5.4.0.1102.99 linux-image-azure-lts-20.04 5.4.0.1108.101 linux-image-gcp-lts-20.04 5.4.0.1105.107 linux-image-generic 5.4.0.149.147 linux-image-generic-lpae 5.4.0.149.147 linux-image-gke 5.4.0.1099.104 linux-image-gke-5.4 5.4.0.1099.104 linux-image-gkeop 5.4.0.1069.67 linux-image-gkeop-5.4 5.4.0.1069.67 linux-image-ibm 5.4.0.1049.75 linux-image-ibm-lts-20.04 5.4.0.1049.75 linux-image-kvm 5.4.0.1091.85 linux-image-lowlatency 5.4.0.149.147 linux-image-oem 5.4.0.149.147 linux-image-oem-osp1 5.4.0.149.147 linux-image-virtual 5.4.0.149.147 Ubuntu 18.04 LTS: linux-image-5.4.0-1049-ibm 5.4.0-1049.54~18.04.1 linux-image-5.4.0-1105-gcp 5.4.0-1105.114~18.04.1 linux-image-5.4.0-1108-azure 5.4.0-1108.114~18.04.1 linux-image-5.4.0-149-generic 5.4.0-149.166~18.04.1 linux-image-5.4.0-149-generic-lpae 5.4.0-149.166~18.04.1 linux-image-5.4.0-149-lowlatency 5.4.0-149.166~18.04.1 linux-image-azure 5.4.0.1108.81 linux-image-gcp 5.4.0.1105.81 linux-image-generic-hwe-18.04 5.4.0.149.166~18.04.120 linux-image-generic-lpae-hwe-18.04 5.4.0.149.166~18.04.120 linux-image-ibm 5.4.0.1049.60 linux-image-lowlatency-hwe-18.04 5.4.0.149.166~18.04.120 linux-image-oem 5.4.0.149.166~18.04.120 linux-image-oem-osp1 5.4.0.149.166~18.04.120 linux-image-snapdragon-hwe-18.04 5.4.0.149.166~18.04.120 linux-image-virtual-hwe-18.04 5.4.0.149.166~18.04.120 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompileand reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6094-1 CVE-2022-3707, CVE-2023-0459, CVE-2023-1075, CVE-2023-1078, CVE-2023-1118, CVE-2023-1513, CVE-2023-2162, CVE-2023-32269 Package Information: https://launchpad.net/ubuntu/+source/linux/5.4.0-149.166 https://launchpad.net/ubuntu/+source/linux-aws/5.4.0-1102.110 https://launchpad.net/ubuntu/+source/linux-azure/5.4.0-1108.114 https://launchpad.net/ubuntu/+source/linux-gcp/5.4.0-1105.114 https://launchpad.net/ubuntu/+source/linux-gke/5.4.0-1099.106 https://launchpad.net/ubuntu/+source/linux-gkeop/5.4.0-1069.73 https://launchpad.net/ubuntu/+source/linux-ibm/5.4.0-1049.54 https://launchpad.net/ubuntu/+source/linux-kvm/5.4.0-1091.97 https://launchpad.net/ubuntu/+source/linux-azure-5.4/5.4.0-1108.114~18.04.1 https://launchpad.net/ubuntu/+source/linux-gcp-5.4/5.4.0-1105.114~18.04.1 https://launchpad.net/ubuntu/+source/linux-hwe-5.4/5.4.0-149.166~18.04.1 https://launchpad.net/ubuntu/+source/linux-ibm-5.4/5.4.0-1049.54~18.04.1 . Attention Ubuntu users: a critical patch is now available for several vulnerabilities in the Linux kernel affecting Long Term Support editions. Act quickly. Ubuntu Kernel Security, Critical Linux Issues, Security Patches. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 22, 2023 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200