Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 2 articles for you...
89

Fedora 31: FEDORA-2019-a1b6fc5274 Critical: ming Security Fixes

Backport security fixes from [PR#145](https://github.com/libming/libming/pull/145) Fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-a1b6fc5274 2019-10-26 17:17:38.267507 --------------------------------------------------------------------------------Name : ming Product : Fedora 31 Version : 0.4.9 Release : 0.4.20181112git5009802.fc31 URL : Summary : A library for generating Macromedia Flash files Description : Ming is a library for generating Macromedia Flash files (.swf), written in C, and includes useful utilities for working with .swf files. --------------------------------------------------------------------------------Update Information: Backport security fixes from [PR#145](https://github.com/libming/libming/pull/145) Fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132 --------------------------------------------------------------------------------ChangeLog: * Wed Oct 2 2019 Dominik Mierzejewski - 0.4.9-0.4.20181112git5009802 - backport security fixes from PR#145 - fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-a1b6fc5274' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. Tounsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . CentOS Update for libpng addresses several CVE vulnerabilities and enhances security for the image processing library. Fedora Update, ming Library, Security Fixes, CVE Resolved, Software Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 26, 2019 Critical Fedora
89

Fedora 29 Ming Security Fixes FEDORA-2019-03aa4f746c Critical DoS

Backport security fixes from [PR#145](https://github.com/libming/libming/pull/145) Fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-03aa4f746c 2019-10-12 01:28:44.976276 --------------------------------------------------------------------------------Name : ming Product : Fedora 29 Version : 0.4.9 Release : 0.2.20181112git5009802.fc29 URL : Summary : A library for generating Macromedia Flash files Description : Ming is a library for generating Macromedia Flash files (.swf), written in C, and includes useful utilities for working with .swf files. --------------------------------------------------------------------------------Update Information: Backport security fixes from [PR#145](https://github.com/libming/libming/pull/145) Fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132 --------------------------------------------------------------------------------ChangeLog: * Wed Oct 2 2019 Dominik Mierzejewski - 0.4.9-0.2.20181112git5009802 - backport security fixes from PR#145 - fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132 * Mon Feb 25 2019 Dominik Mierzejewski - 0.4.9-0.1.20181112git5009802 - sync with upstream git - fixes: CVE-2018-6358, CVE-2018-7867, CVE-2018-7868, CVE-2018-7870, CVE-2018-7871, CVE-2018-7872, CVE-2018-7875, CVE-2018-9165 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-03aa4f746c' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . This Debian update addresses significant vulnerabilities in the glibc package, incorporating essential enhancements to ensure system stability.. Fedora Updates, Ming Library, Security Fixes. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 11, 2019 Critical Fedora
89

Fedora: 2019-5139453028 Moderate: Ming Library Security Fix

Backport security fixes from [PR#145](https://github.com/libming/libming/pull/145) Fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-5139453028 2019-10-12 00:23:35.069652 --------------------------------------------------------------------------------Name : ming Product : Fedora 30 Version : 0.4.9 Release : 0.2.20181112git5009802.fc30 URL : Summary : A library for generating Macromedia Flash files Description : Ming is a library for generating Macromedia Flash files (.swf), written in C, and includes useful utilities for working with .swf files. --------------------------------------------------------------------------------Update Information: Backport security fixes from [PR#145](https://github.com/libming/libming/pull/145) Fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132 --------------------------------------------------------------------------------ChangeLog: * Wed Oct 2 2019 Dominik Mierzejewski - 0.4.9-0.2.20181112git5009802 - backport security fixes from PR#145 - fixes: CVE-2018-7866, CVE-2018-7873, CVE-2018-7876, CVE-2018-9009, CVE-2018-9132 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-5139453028' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. Tounsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . The Ubuntu patch UBUNTU-2020-1234567890 addresses multiple bugs in the libpng framework for improved performance.. Fedora Update, Security Fix, ming Library, Backport Security. . LinuxSecurity.com Team

Calendar 2 Oct 11, 2019 Fedora
91

Gentoo: GLSA-201904-24 Normal: Ming Denial of Service Threat

Multiple vulnerabilities have been found in Ming, the worst of which could result in a Denial of Service condition.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201904-24 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: Ming: Multiple vulnerabilities Date: April 24, 2019 Bugs: #624712, #626498, #646770 ID: 201904-24 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= Multiple vulnerabilities have been found in Ming, the worst of which could result in a Denial of Service condition. Background ========= A library for generating Macromedia Flash files. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-libs/ming < 0.20181112 > = 0.20181112 Description ========== Multiple vulnerabilities have been discovered in Ming. Please review the CVE identifiers referenced below for details. Impact ===== Please review the referenced CVE identifiers for details. Workaround ========= There is no known workaround at this time. Resolution ========= All Ming users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =media-libs/ming-0.20181112" References ========= [ 1 ] CVE-2017-11728 https://nvd.nist.gov/vuln/detail/CVE-2017-11728 [ 2 ] CVE-2017-11729 https://nvd.nist.gov/vuln/detail/CVE-2017-11729 [ 3 ] CVE-2017-11730 https://nvd.nist.gov/vuln/detail/CVE-2017-11730 [ 4 ] CVE-2017-11731 https://nvd.nist.gov/vuln/detail/CVE-2017-11731 [ 5 ] CVE-2017-11732 https://nvd.nist.gov/vuln/detail/CVE-2017-11732 [ 6 ] CVE-2017-11733 https://nvd.nist.gov/vuln/detail/CVE-2017-11733 [ 7 ] CVE-2017-11734 https://nvd.nist.gov/vuln/detail/CVE-2017-11734 [ 8 ] CVE-2017-9988 https://nvd.nist.gov/vuln/detail/CVE-2017-9988 [ 9 ] CVE-2017-9989 https://nvd.nist.gov/vuln/detail/CVE-2017-9989 [ 10 ] CVE-2018-5251 https://nvd.nist.gov/vuln/detail/CVE-2018-5251 [ 11 ] CVE-2018-5294 https://nvd.nist.gov/vuln/detail/CVE-2018-5294 [ 12 ] CVE-2018-6315 https://nvd.nist.gov/vuln/detail/CVE-2018-6315 [ 13 ] CVE-2018-6358 https://nvd.nist.gov/vuln/detail/CVE-2018-6358 [ 14 ] CVE-2018-6359 https://nvd.nist.gov/vuln/detail/CVE-2018-6359 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/201904-24 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org. License ====== Copyright 2019 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.5/ . - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Adviso. vulnerabilities, found, worst, which, denial. . LinuxSecurity.com Team

Calendar 2 Apr 24, 2019 Gentoo
89

Fedora: 2019-4fdf19459d Moderate: Ming Heap Buffer Overflow

Fixes: CVE-2018-6358, CVE-2018-7867, CVE-2018-7868, CVE-2018-7870, CVE-2018-7871, CVE-2018-7872, CVE-2018-7875, CVE-2018-9165.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-4fdf19459d 2019-03-06 15:27:20.805967 --------------------------------------------------------------------------------Name : ming Product : Fedora 28 Version : 0.4.9 Release : 0.1.20181112git5009802.fc28 URL : Summary : A library for generating Macromedia Flash files Description : Ming is a library for generating Macromedia Flash files (.swf), written in C, and includes useful utilities for working with .swf files. --------------------------------------------------------------------------------Update Information: Fixes: CVE-2018-6358, CVE-2018-7867, CVE-2018-7868, CVE-2018-7870, CVE-2018-7871, CVE-2018-7872, CVE-2018-7875, CVE-2018-9165. --------------------------------------------------------------------------------ChangeLog: * Mon Feb 25 2019 Dominik Mierzejewski - 0.4.9-0.1.20181112git5009802 - sync with upstream git - fixes: CVE-2018-6358, CVE-2018-7867, CVE-2018-7868, CVE-2018-7870, CVE-2018-7871, CVE-2018-7872, CVE-2018-7875, CVE-2018-9165 --------------------------------------------------------------------------------References: [ 1 ] Bug #1539898 - CVE-2018-6358 ming: Heap-based buffer overflow in printDefineFont2 function in util/listfdb.c https://bugzilla.redhat.com/show_bug.cgi?id=1539898 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-4fdf19459d' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . This Debian system patch tackles various critical concerns in gnupg, improving overall security and functionality.. Fedora Update, ming Security, Heap Buffer Overflow, Software Update. . LinuxSecurity.com Team

Calendar 2 Mar 06, 2019 Fedora
197

Debian 7 Wheezy DLA-1386-1 Critical Ming Buffer Overflow Threats

Multiple vulnerabilities have been discovered in Ming: CVE-2018-7866 . Package : ming Version : 1:0.4.4-1.1+deb7u9 CVE ID : CVE-2018-7866 CVE-2018-7873 CVE-2018-7876 CVE-2018-9009 CVE-2018-9132 Multiple vulnerabilities have been discovered in Ming: CVE-2018-7866 NULL pointer dereference in the newVar3 function (util/decompile.c). Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7873 Heap-based buffer overflow vulnerability in the getString function (util/decompile.c). Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7876 Integer overflow and resulting memory exhaustion in the parseSWF_ACTIONRECORD function (util/parser.c). Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-9009 Various heap-based buffer overflow vulnerabilites in util/decompiler.c. Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-9132 NULL pointer dereference in the getInt function (util/decompile.c). Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. For Debian 7 "Wheezy", these problems have been fixed in version 1:0.4.4-1.1+deb7u9. We recommend that you upgrade your ming packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance your ming package to address several security flaws and mitigate denial of service threats.. ming Package, Debian LTS, Critical Security Fix, Remote Exploits. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 26, 2018 Critical Debian LTS
197

Debian 7: DLA-1343-1 Critical: Ming Buffer Overflow DoS Fix

Multiple vulnerabilities have been discovered in Ming: CVE-2018-6358 . Package : ming Version : 0.4.4-1.1+deb7u8 CVE ID : CVE-2018-6358 CVE-2018-7867 CVE-2018-7868 CVE-2018-7870 CVE-2018-7871 CVE-2018-7872 CVE-2018-7875 CVE-2018-9165 Multiple vulnerabilities have been discovered in Ming: CVE-2018-6358 Heap-based buffer overflow vulnerability in the printDefineFont2 function (util/listfdb.c). Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7867 Heap-based buffer overflow vulnerability in the getString function (util/decompile.c) during a RegisterNumber sprintf. Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7868 Heap-based buffer over-read vulnerability in the getName function (util/decompile.c) for CONSTANT8 data. Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7870 Invalid memory address dereference in the getString function (util/decompile.c) for CONSTANT16 data. Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7871 Heap-based buffer over-read vulnerability in the getName function (util/decompile.c) for CONSTANT16 data. Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7872 Invalid memory address dereference in the getName function (util/decompile.c) for CONSTANT16 data. Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-7875 Heap-based buffer over-read vulnerability in the getName function (util/decompile.c) for CONSTANT8 data. Remote attackers might leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-9165 The pushdup function (util/decompile.c)performs shallow copy of String elements (instead of deep copy), allowing simultaneous change of multiple elements of the stack, which indirectly makes the library vulnerable to a NULL pointer dereference in getName (util/decompile.c). Remote attackers might leverage this vulnerability to cause dos via a crafted swf file. For Debian 7 "Wheezy", these problems have been fixed in version 0.4.4-1.1+deb7u8. We recommend that you upgrade your ming packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance ming to address several critical flaws, such as memory overflow and service interruption vulnerabilities.. Ming Security Update, Debian LTS Security, Buffer Overflow Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 09, 2018 Critical Debian LTS
197

Ubuntu 16.04 Xenial: USN-3559-1 High: PHP7 Denial Of Service Vulnerability

Multiple vulnerabilities have been discovered in Ming: CVE-2018-5251 . Package : ming Version : 0.4.4-1.1+deb7u7 CVE ID : CVE-2018-5251 CVE-2018-5294 CVE-2018-6315 CVE-2018-6359 Multiple vulnerabilities have been discovered in Ming: CVE-2018-5251 Integer signedness error vulnerability (left shift of a negative value) in the readSBits function (util/read.c). Remote attackers can leverage this vulnerability to cause a denial of service via a crafted swf file. CVE-2018-5294 Integer overflow vulnerability (caused by an out-of-range left shift) in the readUInt32 function (util/read.c). Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted swf file. CVE-2018-6315 Integer overflow and resultant out-of-bounds read in the outputSWF_TEXT_RECORD function (util/outputscript.c). Remote attackers could leverage this vulnerability to cause a denial of service or unspecified other impact via a crafted SWF file. CVE-2018-6359 Use-after-free vulnerability in the decompileIF function (util/decompile.c). Remote attackers could leverage this vulnerability to cause a denial of service or unspecified other impact via a crafted SWF file. For Debian 7 "Wheezy", these problems have been fixed in version 0.4.4-1.1+deb7u7. We recommend that you upgrade your ming packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Several security issues identified in ming; users of Debian 7 Wheezy should consider upgrading to reduce potential threats.. Debian Ming Security, Vulnerability Management, Security Notice. . LinuxSecurity.com Team

Calendar 2 Mar 11, 2018 Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here