Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
172

Ubuntu 20.04 LTS OpenSSL Critical Denial of Service Issues USN-8155-2

Several security issues were fixed in OpenSSL.. ========================================================================== Ubuntu Security Notice USN-8155-2 April 09, 2026 openssl, openssl1.0 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS Summary: Several security issues were fixed in OpenSSL. Software Description: - openssl: Secure Socket Layer (SSL) cryptographic library and tools - openssl1.0: Secure Socket Layer (SSL) cryptographic library and tools Details: USN-8155-1 fixed vulnerabilities in OpenSSL. This update provides the corresponding updates for CVE-2026-28387 for openssl in Ubuntu 20.04 LTS. CVE-2026-28388 for openssl and openssl1.0 in Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS, and CVE-2026-28389 and CVE-2026-28390 for openssl and openssl1.0 for Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. Original advisory details: Viktor Dukhovni discovered that OpenSSL incorrectly negotiated the expected preferred key exchange group when used as a TLS 1.3 server. This could result in a less preferred key exchange being used, contrary to expectations. This issue only affected Ubuntu 25.10. (CVE-2026-2673) Igor Morgenstern discovered that OpenSSL incorrectly handled certain memory operations when used as a DANE client. A remote attacker could use this issue to cause OpenSSL to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2026-28387) Igor Morgenstern discovered that OpenSSL incorrectly handled certain memory operations when processing a delta CRL. A remote attacker could possibly use this issue to cause OpenSSL to crash, resulting in a denial of service. (CVE-2026-28388) Nathan Sportsman, Daniel Rhea, and Jaeho Nam discovered that OpenSSL incorrectly handled certain memory operations when processing a crafted CMSEnvelopedData message with KeyAgreeRecipientInfo. A remote attacker could possibly use this issue to cause OpenSSL to crash, resulting in a denial of service. (CVE-2026-28389) Muhammad Daffa, Joshua Rogers, and Chanho Kim discovered that OpenSSL incorrectly handled processing of a crafted CMS EnvelopedData message with KeyTransportRecipientInfo. A remote attacker could possibly use this issue to cause OpenSSL to crash, resulting in a denial of service. (CVE-2026-28390) Quoc Tran discovered that OpenSSL incorrectly handled hexadecimal conversion on 32-bit platforms. A remote attacker could use this issue to cause OpenSSL to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2026-31789) Simo Sorce discovered that OpenSSL incorrectly handled failures in RSA KEM RSASVE Encapsulation. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2026-31790) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS libssl1.1 1.1.1f-1ubuntu2.24+esm3 Available with Ubuntu Pro openssl 1.1.1f-1ubuntu2.24+esm3 Available with Ubuntu Pro Ubuntu 18.04 LTS libssl1.0.0 1.0.2n-1ubuntu5.13+esm4 Available with Ubuntu Pro libssl1.1 1.1.1-1ubuntu2.1~18.04.23+esm8 Available with Ubuntu Pro openssl 1.1.1-1ubuntu2.1~18.04.23+esm8 Available with Ubuntu Pro openssl1.0 1.0.2n-1ubuntu5.13+esm4 Available with Ubuntu Pro Ubuntu 16.04 LTS libssl1.0.0 1.0.2g-1ubuntu4.20+esm15 Available with Ubuntu Pro openssl 1.0.2g-1ubuntu4.20+esm15 Availablewith Ubuntu Pro Ubuntu 14.04 LTS libssl1.0.0 1.0.1f-1ubuntu2.27+esm13 Available with Ubuntu Pro openssl 1.0.1f-1ubuntu2.27+esm13 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8155-2 https://ubuntu.com/security/notices/USN-8155-1 CVE-2026-28387, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390 . Critical updates for OpenSSL address multiple vulnerabilities in Ubuntu, ensuring secure operations across various releases.. OpenSSL vulnerabilities, Ubuntu LTS security, critical update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 09, 2026 Critical Ubuntu
172

Ubuntu 25.10: X.Org X Server Critical Memory Crash 2025-7846-1

Several security issues were fixed in X.Org X Server.. ========================================================================== Ubuntu Security Notice USN-7846-1 October 29, 2025 xorg-server, xwayland vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.10 - Ubuntu 25.04 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Several security issues were fixed in X.Org X Server. Software Description: - xorg-server: X.Org X11 server - xwayland: X server for running X clients under Wayland Details: Jan-Niklas Sohn discovered that the X.Org X Server incorrectly handled certain memory operations. An attacker could use these issues to cause the X Server to crash, leading to a denial of service, obtain sensitive information, or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 25.10 xserver-xorg-core 2:21.1.18-1ubuntu1.1 xwayland 2:24.1.6-1ubuntu1.1 Ubuntu 25.04 xserver-xorg-core 2:21.1.16-1ubuntu1.2 xwayland 2:24.1.6-1ubuntu0.2 Ubuntu 24.04 LTS xserver-xorg-core 2:21.1.12-1ubuntu1.5 xwayland 2:23.2.6-1ubuntu0.7 Ubuntu 22.04 LTS xserver-xorg-core 2:21.1.4-2ubuntu1.7~22.04.16 xwayland 2:22.1.1-1ubuntu0.20 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7846-1 CVE-2025-62229, CVE-2025-62230, CVE-2025-62231 Package Information: https://launchpad.net/ubuntu/+source/xorg-server/2:21.1.18-1ubuntu1.1 https://launchpad.net/ubuntu/+source/xwayland/2:24.1.6-1ubuntu1.1 https://launchpad.net/ubuntu/+source/xorg-server/2:21.1.16-1ubuntu1.2 https://launchpad.net/ubuntu/+source/xwayland/2:24.1.6-1ubuntu0.2 https://launchpad.net/ubuntu/+source/xorg-server/2:21.1.12-1ubuntu1.5 https://launchpad.net/ubuntu/+source/xwayland/2:23.2.6-1ubuntu0.7 https://launchpad.net/ubuntu/+source/xorg-server/2:21.1.4-2ubuntu1.7~22.04.16 https://launchpad.net/ubuntu/+source/xwayland/2:22.1.1-1ubuntu0.20 . Security updates for X.Org X Server in Ubuntu to fix critical memory handling issues leading to denial of service.. Ubuntu Security Notice, X.Org Server, Denial of Service, Xwayland updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 29, 2025 Critical Ubuntu
172

Ubuntu 23.10: USN-6713-1 medium: qpdf Denial Of Service

QPDF could be made to crash or run programs if it opened a specially crafted file.. ========================================================================== Ubuntu Security Notice USN-6713-1 March 25, 2024 qpdf vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.10 Summary: QPDF could be made to crash or run programs if it opened a specially crafted file. Software Description: - qpdf: tools for transforming and inspecting PDF files Details: It was discovered that QPDF incorrectly handled certain memory operations when decoding JSON files. If a user or automated system were tricked into processing a specially crafted JSON file, QPDF could be made to crash, resulting in a denial of service, or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.10: libqpdf29 11.5.0-1ubuntu1.1 qpdf 11.5.0-1ubuntu1.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6713-1 CVE-2024-24246 Package Information: https://launchpad.net/ubuntu/+source/qpdf/11.5.0-1ubuntu1.1 . A vulnerability impacting Ubuntu 23.10 QPDF could lead to a crash or arbitrary code execution through a specially designed JSON file. It is advised to apply the update promptly.. QPDF Vulnerability, Ubuntu 23.10 Security, Denial of Service Issue. . Severity: Medium. LinuxSecurity.com Team

Calendar 2 Mar 25, 2024 Medium Ubuntu
172

Ubuntu 18.04 LTS: USN-5260-1 High: Libarchive Security Flaw

uriparser could be made to crash if it received specially crafted input.. =========================================================================Ubuntu Security Notice USN-5256-1 July 13, 2022 uriparser vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS Summary: uriparser could be made to crash if it received specially crafted input. Software Description: - uriparser: Strictly RFC 3986 compliant URI parsing library Details: It was discovered that uriparser incorrectly handled certain memory operations. An attacker could use this to cause a denial of service. (CVE-2021-46141, CVE-2021-46142) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: liburiparser-dev 0.8.4-1+deb9u2ubuntu0.1 liburiparser1 0.8.4-1+deb9u2ubuntu0.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5256-1 CVE-2021-46141, CVE-2021-46142 Package Information: https://launchpad.net/ubuntu/+source/uriparser/0.8.4-1+deb9u2ubuntu0.1 . Revise your Ubuntu installation to mitigate uriparser security issues related to its processing of specially designed inputs.. uriparser, Ubuntu Security Update, Denial Of Service Fix. . LinuxSecurity.com Team

Calendar 2 Jul 13, 2022 Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here