Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 41 articles for you...
217

Oracle Linux 8 ELSA-2024-4499 Moderate: Ruby Buffer Overread Fix

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-4499 http://linux.oracle.com/errata/ELSA-2024-4499.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: ruby-2.5.9-112.module+el8.10.0+90367+ae9e8511.i686.rpm ruby-2.5.9-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm ruby-devel-2.5.9-112.module+el8.10.0+90367+ae9e8511.i686.rpm ruby-devel-2.5.9-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm ruby-doc-2.5.9-112.module+el8.10.0+90367+ae9e8511.noarch.rpm ruby-irb-2.5.9-112.module+el8.10.0+90367+ae9e8511.noarch.rpm ruby-libs-2.5.9-112.module+el8.10.0+90367+ae9e8511.i686.rpm ruby-libs-2.5.9-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm rubygem-abrt-0.3.0-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-abrt-doc-0.3.0-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-bigdecimal-1.3.4-112.module+el8.10.0+90367+ae9e8511.i686.rpm rubygem-bigdecimal-1.3.4-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm rubygem-bson-4.3.0-2.module+el8.9.0+90042+a65659a6.x86_64.rpm rubygem-bson-doc-4.3.0-2.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-bundler-1.16.1-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-bundler-doc-1.16.1-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-did_you_mean-1.2.0-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-io-console-0.4.6-112.module+el8.10.0+90367+ae9e8511.i686.rpm rubygem-io-console-0.4.6-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm rubygem-json-2.1.0-112.module+el8.10.0+90367+ae9e8511.i686.rpm rubygem-json-2.1.0-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm rubygem-minitest-5.10.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-mongo-2.5.1-2.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-mongo-doc-2.5.1-2.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-mysql2-0.4.10-4.module+el8.9.0+90042+a65659a6.x86_64.rpm rubygem-mysql2-doc-0.4.10-4.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-net-telnet-0.1.1-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-openssl-2.1.2-112.module+el8.10.0+90367+ae9e8511.i686.rpm rubygem-openssl-2.1.2-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm rubygem-pg-1.0.0-3.module+el8.9.0+90042+a65659a6.x86_64.rpm rubygem-pg-doc-1.0.0-3.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-power_assert-1.1.1-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-psych-3.0.2-112.module+el8.10.0+90367+ae9e8511.i686.rpm rubygem-psych-3.0.2-112.module+el8.10.0+90367+ae9e8511.x86_64.rpm rubygem-rake-12.3.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-rdoc-6.0.1.1-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-test-unit-3.2.7-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-xmlrpc-0.3.0-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygems-2.7.6.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygems-devel-2.7.6.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm aarch64: ruby-doc-2.5.9-112.module+el8.10.0+90367+ae9e8511.noarch.rpm ruby-irb-2.5.9-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-abrt-0.3.0-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-abrt-doc-0.3.0-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-bson-doc-4.3.0-2.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-bundler-1.16.1-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-bundler-doc-1.16.1-4.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-did_you_mean-1.2.0-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-minitest-5.10.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-mongo-2.5.1-2.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-mongo-doc-2.5.1-2.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-mysql2-doc-0.4.10-4.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-net-telnet-0.1.1-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-pg-doc-1.0.0-3.module+el8.9.0+90042+a65659a6.noarch.rpm rubygem-power_assert-1.1.1-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-rake-12.3.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-rdoc-6.0.1.1-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-test-unit-3.2.7-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygem-xmlrpc-0.3.0-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygems-2.7.6.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm rubygems-devel-2.7.6.3-112.module+el8.10.0+90367+ae9e8511.noarch.rpm ruby-2.5.9-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm ruby-devel-2.5.9-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm ruby-libs-2.5.9-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm rubygem-bigdecimal-1.3.4-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm rubygem-bson-4.3.0-2.module+el8.9.0+90042+a65659a6.aarch64.rpm rubygem-io-console-0.4.6-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm rubygem-json-2.1.0-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm rubygem-mysql2-0.4.10-4.module+el8.9.0+90042+a65659a6.aarch64.rpm rubygem-openssl-2.1.2-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm rubygem-pg-1.0.0-3.module+el8.9.0+90042+a65659a6.aarch64.rpm rubygem-psych-3.0.2-112.module+el8.10.0+90367+ae9e8511.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates//ruby-2.5.9-112.module+el8.10.0+90367+ae9e8511.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//rubygem-abrt-0.3.0-4.module+el8.10.0+90367+ae9e8511.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//rubygem-bson-4.3.0-2.module+el8.9.0+90042+a65659a6.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//rubygem-bundler-1.16.1-4.module+el8.10.0+90367+ae9e8511.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//rubygem-mongo-2.5.1-2.module+el8.9.0+90042+a65659a6.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//rubygem-mysql2-0.4.10-4.module+el8.9.0+90042+a65659a6.src.rpm http://oss.oracle.com/ol8/SRPMS-updates//rubygem-pg-1.0.0-3.module+el8.9.0+90042+a65659a6.src.rpm Related CVEs: CVE-2023-36617 CVE-2024-27280 CVE-2024-27281 CVE-2024-27282 CVE-2024-35176 Description of changes: ruby [2.5.9-112] - Fix ReDoS vulnerability - upstream's incomplete fix for CVE-2023-28755. (CVE-2023-36617) Resolves: RHEL-5614 - Fix Buffer overread vulnerability in StringIO. (CVE-2024-27280) Resolves: RHEL-34125 - Fix RCE vulnerability with .rdoc_options in RDoc. (CVE-2024-27281) Resolves: RHEL-34117 - Fix Arbitrary memory address read vulnerability with Regex search. (CVE-2024-27282) Resolves: RHEL-33867 - Fix REXML DoS parsing an XML with many

Calendar%202 Jul 19, 2024 Important Oracle
217

Oracle Linux 8 ELSA-2024-3275 Moderate: Python3-DNS Security Fix

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-3275 http://linux.oracle.com/errata/ELSA-2024-3275.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: python3-dns-1.15.0-12.el8_10.noarch.rpm aarch64: python3-dns-1.15.0-12.el8_10.noarch.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates//python-dns-1.15.0-12.el8_10.src.rpm Related CVEs: CVE-2023-29483 Description of changes: [1.15.0-12] - Security fix for CVE-2023-29483 Resolves: RHEL-32630 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . New Python3-DNS RPM packages are available for Oracle Linux 8 to fix the security vulnerability identified as CVE-2023-29483. For further information, please refer to the details provided.. Oracle Linux, Python DNS Update, RPM Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 30, 2024 Important Oracle
217

Oracle Linux 9 ELSA-2024-0387 moderate: php-8.1 security update

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-0387 https://linux.oracle.com/errata/ELSA-2024-0387.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable LinuxNetwork: x86_64: apcu-panel-5.1.21-1.module+el9.1.0+20776+c1b960c0.noarch.rpm php-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-bcmath-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-cli-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-common-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-dba-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-dbg-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-devel-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-embedded-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-enchant-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-ffi-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-fpm-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-gd-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-gmp-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-intl-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-ldap-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-mbstring-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-mysqlnd-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-odbc-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-opcache-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-pdo-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-pecl-apcu-5.1.21-1.module+el9.1.0+20776+c1b960c0.x86_64.rpm php-pecl-apcu-devel-5.1.21-1.module+el9.1.0+20776+c1b960c0.x86_64.rpm php-pecl-rrd-2.0.3-4.module+el9.1.0+20776+c1b960c0.x86_64.rpm php-pecl-xdebug3-3.1.4-1.module+el9.1.0+20776+c1b960c0.x86_64.rpm php-pecl-zip-1.20.1-1.module+el9.1.0+20776+c1b960c0.x86_64.rpm php-pgsql-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-process-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-snmp-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-soap-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm php-xml-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.x86_64.rpm aarch64: apcu-panel-5.1.21-1.module+el9.1.0+20776+c1b960c0.noarch.rpm php-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-bcmath-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-cli-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-common-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-dba-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-dbg-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-devel-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-embedded-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-enchant-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-ffi-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-fpm-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-gd-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-gmp-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-intl-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-ldap-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-mbstring-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-mysqlnd-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-odbc-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-opcache-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-pdo-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-pecl-apcu-5.1.21-1.module+el9.1.0+20776+c1b960c0.aarch64.rpm php-pecl-apcu-devel-5.1.21-1.module+el9.1.0+20776+c1b960c0.aarch64.rpm php-pecl-rrd-2.0.3-4.module+el9.1.0+20776+c1b960c0.aarch64.rpm php-pecl-xdebug3-3.1.4-1.module+el9.1.0+20776+c1b960c0.aarch64.rpm php-pecl-zip-1.20.1-1.module+el9.1.0+20776+c1b960c0.aarch64.rpm php-pgsql-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-process-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-snmp-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-soap-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm php-xml-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol9/SRPMS-updates//php-8.1.27-1.module+el9.3.0+90130+7e4e1ce0.src.rpm https://oss.oracle.com:443/ol9/SRPMS-updates//php-pecl-apcu-5.1.21-1.module+el9.1.0+20776+c1b960c0.src.rpm https://oss.oracle.com:443/ol9/SRPMS-updates//php-pecl-rrd-2.0.3-4.module+el9.1.0+20776+c1b960c0.src.rpm https://oss.oracle.com:443/ol9/SRPMS-updates//php-pecl-xdebug3-3.1.4-1.module+el9.1.0+20776+c1b960c0.src.rpm https://oss.oracle.com:443/ol9/SRPMS-updates//php-pecl-zip-1.20.1-1.module+el9.1.0+20776+c1b960c0.src.rpm Related CVEs: CVE-2023-0567 CVE-2023-0568 CVE-2023-0662 CVE-2023-3247 CVE-2023-3823 CVE-2023-3824 Description of changes: php [8.1.27-1] - rebase to 8.1.27 RHEL-19093 [8.1.14-1] - rebase to 8.1.14 [8.1.8-1] - update to 8.1.8 #2070040 [8.1.7-2] - clean unneeded dependency on useradd command [8.1.7-1] - update to 8.1.7 #2070040 [8.1.6-2] - add upstream patch to initialize pcre before mbstring - add upstream patch to use more sha256 in openssl tests [8.1.6-1] - update to 8.1.6 #2070040 php-pecl-apcu [5.1.21-1] - update to 5.1.21 for PHP 8.1 #2070040 php-pecl-rrd [2.0.3-4] - build for PHP 8.1 #2070040 php-pecl-xdebug3 [3.1.4-1] - update to 3.1.4 for PHP 8.1 #2070040 php-pecl-zip [1.20.1-1] - update to 1.20.1 for PHP 8.1 #2070040 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 9 ELSA-2024-0387 presents crucial php updates for security enhancements against potential threats.. Oracle Linux, PHP Update, Security Advisory, Threat Mitigation. . LinuxSecurity.com Team

Calendar%202 Jan 26, 2024 Oracle
89

Fedora 37: FEDORA-2023-edb993aeaf Moderate: DotNet 6.0 Security Update

This is the June 2023 monthly update for .NET 6. It includes fixes for several CVEs. Release Notes: - Runtime: https://github.com/dotnet/core/blob/main/release-notes/6.0/6.0.18/6.0.18.md - SDK: https://github.com/dotnet/core/blob/main/release-notes/6.0/6.0.18/6.0.118.md. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-edb993aeaf 2023-06-24 01:20:29.311655 --------------------------------------------------------------------------------Name : dotnet6.0 Product : Fedora 37 Version : 6.0.118 Release : 1.fc37 URL : https://github.com/dotnet/ Summary : .NET Runtime and SDK Description : .NET is a fast, lightweight and modular platform for creating cross platform applications that work on Linux, macOS and Windows. It particularly focuses on creating console applications, web applications and micro-services. .NET contains a runtime conforming to .NET Standards a set of framework libraries, an SDK containing compilers and a 'dotnet' application to drive everything. --------------------------------------------------------------------------------Update Information: This is the June 2023 monthly update for .NET 6. It includes fixes for several CVEs. Release Notes: - Runtime: https://github.com/dotnet/core/blob/main/release-notes/6.0/6.0.18/6.0.18.md -SDK: https://github.com/dotnet/core/blob/main/release-notes/6.0/6.0.18/6.0.118.md --------------------------------------------------------------------------------ChangeLog: * Wed Jun 14 2023 Omair Majid - 6.0.118-1 - Update to .NET SDK 6.0.118 and Runtime 6.0.18 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-edb993aeaf' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the FedoraProject GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . In July 2023, Ubuntu 22.04 receives a major update for python3.10, resolving significant bugs along with comprehensive release documentation.. Fedora 37 DotNet Update, Security Fixes, Runtime Compliance, SDK Enhancements. . LinuxSecurity.com Team

Calendar%202 Jun 24, 2023 Fedora
98

RedHat OpenShift 4.13.1 Moderate: RHSA-2023-3303-01 Security Fix

Red Hat OpenShift Container Platform release 4.13.1 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13.. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: OpenShift Container Platform 4.13.1 packages and security update Advisory ID: RHSA-2023:3303-01 Product: Red Hat OpenShift Enterprise Advisory URL: https://access.redhat.com/errata/RHSA-2023:3303 Issue date: 2023-05-30 CVE Names: CVE-2022-41724 ==================================================================== 1. Summary: Red Hat OpenShift Container Platform release 4.13.1 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Hat OpenShift Container Platform 4.13. Red Hat Product Security has rated this update as having a security impact of [impact]. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenShift Container Platform 4.13 - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages for Red Hat OpenShift Container Platform 4.13.1. See the following advisory for the container images for this release: https://access.redhat.com/errata/RHSA-2023:3304 Security Fix(es): * golang: crypto/tls: large handshake records may cause panics (CVE-2022-41724) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information,refer to the CVE page(s) listed in the References section. All OpenShift Container Platform 4.13 users are advised to upgrade to these updated packages and images when they are available in the appropriate release channel. To check for available updates, use the OpenShift CLI (oc) or web console. Instructions for upgrading a cluster are available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/updating_clusters/updating-cluster-cli 4. Solution: For OpenShift Container Platform 4.13 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/release_notes/ocp-4-13-release-notes 5. Bugs fixed (https://bugzilla.redhat.com/): 2178492 - CVE-2022-41724 golang: crypto/tls: large handshake records may cause panics 6. Package List: Red Hat OpenShift Container Platform4.13: Source: cri-o-1.26.3-6.rhaos4.13.gitb3475fb.el8.src.rpm openshift-ansible-4.13.0-202305180130.p0.g89eab30.assembly.stream.el8.src.rpm openshift-kuryr-4.13.0-202305171615.p0.g3055dbe.assembly.stream.el8.src.rpm aarch64: cri-o-1.26.3-6.rhaos4.13.gitb3475fb.el8.aarch64.rpm cri-o-debuginfo-1.26.3-6.rhaos4.13.gitb3475fb.el8.aarch64.rpm cri-o-debugsource-1.26.3-6.rhaos4.13.gitb3475fb.el8.aarch64.rpm noarch: openshift-ansible-4.13.0-202305180130.p0.g89eab30.assembly.stream.el8.noarch.rpm openshift-ansible-test-4.13.0-202305180130.p0.g89eab30.assembly.stream.el8.noarch.rpm openshift-kuryr-cni-4.13.0-202305171615.p0.g3055dbe.assembly.stream.el8.noarch.rpm openshift-kuryr-common-4.13.0-202305171615.p0.g3055dbe.assembly.stream.el8.noarch.rpm openshift-kuryr-controller-4.13.0-202305171615.p0.g3055dbe.assembly.stream.el8.noarch.rpm python3-kuryr-kubernetes-4.13.0-202305171615.p0.g3055dbe.assembly.stream.el8.noarch.rpm ppc64le: cri-o-1.26.3-6.rhaos4.13.gitb3475fb.el8.ppc64le.rpm cri-o-debuginfo-1.26.3-6.rhaos4.13.gitb3475fb.el8.ppc64le.rpm cri-o-debugsource-1.26.3-6.rhaos4.13.gitb3475fb.el8.ppc64le.rpm s390x: cri-o-1.26.3-6.rhaos4.13.gitb3475fb.el8.s390x.rpm cri-o-debuginfo-1.26.3-6.rhaos4.13.gitb3475fb.el8.s390x.rpm cri-o-debugsource-1.26.3-6.rhaos4.13.gitb3475fb.el8.s390x.rpm x86_64: cri-o-1.26.3-6.rhaos4.13.gitb3475fb.el8.x86_64.rpm cri-o-debuginfo-1.26.3-6.rhaos4.13.gitb3475fb.el8.x86_64.rpm cri-o-debugsource-1.26.3-6.rhaos4.13.gitb3475fb.el8.x86_64.rpm Red Hat OpenShift Container Platform4.13: Source: cri-o-1.26.3-7.rhaos4.13.gitb3475fb.el9.src.rpm kata-containers-3.0.2-6.el9.src.rpm openshift-ansible-4.13.0-202305180130.p0.g89eab30.assembly.stream.el9.src.rpm podman-4.4.1-4.rhaos4.13.el9.src.rpm rpm-ostree-2023.3-1.el9_2.src.rpm aarch64: cri-o-1.26.3-7.rhaos4.13.gitb3475fb.el9.aarch64.rpm cri-o-debuginfo-1.26.3-7.rhaos4.13.gitb3475fb.el9.aarch64.rpm cri-o-debugsource-1.26.3-7.rhaos4.13.gitb3475fb.el9.aarch64.rpm kata-containers-3.0.2-6.el9.aarch64.rpm podman-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-debuginfo-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-debugsource-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-gvproxy-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-gvproxy-debuginfo-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-plugins-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-plugins-debuginfo-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-remote-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-remote-debuginfo-4.4.1-4.rhaos4.13.el9.aarch64.rpm podman-tests-4.4.1-4.rhaos4.13.el9.aarch64.rpm rpm-ostree-2023.3-1.el9_2.aarch64.rpm rpm-ostree-debuginfo-2023.3-1.el9_2.aarch64.rpm rpm-ostree-debugsource-2023.3-1.el9_2.aarch64.rpm rpm-ostree-devel-2023.3-1.el9_2.aarch64.rpm rpm-ostree-libs-2023.3-1.el9_2.aarch64.rpm rpm-ostree-libs-debuginfo-2023.3-1.el9_2.aarch64.rpm noarch: openshift-ansible-4.13.0-202305180130.p0.g89eab30.assembly.stream.el9.noarch.rpm openshift-ansible-test-4.13.0-202305180130.p0.g89eab30.assembly.stream.el9.noarch.rpm podman-docker-4.4.1-4.rhaos4.13.el9.noarch.rpm ppc64le: cri-o-1.26.3-7.rhaos4.13.gitb3475fb.el9.ppc64le.rpm cri-o-debuginfo-1.26.3-7.rhaos4.13.gitb3475fb.el9.ppc64le.rpm cri-o-debugsource-1.26.3-7.rhaos4.13.gitb3475fb.el9.ppc64le.rpm kata-containers-3.0.2-6.el9.ppc64le.rpm podman-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-debuginfo-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-debugsource-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-gvproxy-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-gvproxy-debuginfo-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-plugins-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-plugins-debuginfo-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-remote-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-remote-debuginfo-4.4.1-4.rhaos4.13.el9.ppc64le.rpm podman-tests-4.4.1-4.rhaos4.13.el9.ppc64le.rpm rpm-ostree-2023.3-1.el9_2.ppc64le.rpm rpm-ostree-debuginfo-2023.3-1.el9_2.ppc64le.rpm rpm-ostree-debugsource-2023.3-1.el9_2.ppc64le.rpm rpm-ostree-devel-2023.3-1.el9_2.ppc64le.rpm rpm-ostree-libs-2023.3-1.el9_2.ppc64le.rpm rpm-ostree-libs-debuginfo-2023.3-1.el9_2.ppc64le.rpm s390x: cri-o-1.26.3-7.rhaos4.13.gitb3475fb.el9.s390x.rpm cri-o-debuginfo-1.26.3-7.rhaos4.13.gitb3475fb.el9.s390x.rpm cri-o-debugsource-1.26.3-7.rhaos4.13.gitb3475fb.el9.s390x.rpm kata-containers-3.0.2-6.el9.s390x.rpm podman-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-debuginfo-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-debugsource-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-gvproxy-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-gvproxy-debuginfo-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-plugins-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-plugins-debuginfo-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-remote-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-remote-debuginfo-4.4.1-4.rhaos4.13.el9.s390x.rpm podman-tests-4.4.1-4.rhaos4.13.el9.s390x.rpm rpm-ostree-2023.3-1.el9_2.s390x.rpm rpm-ostree-debuginfo-2023.3-1.el9_2.s390x.rpm rpm-ostree-debugsource-2023.3-1.el9_2.s390x.rpm rpm-ostree-devel-2023.3-1.el9_2.s390x.rpm rpm-ostree-libs-2023.3-1.el9_2.s390x.rpm rpm-ostree-libs-debuginfo-2023.3-1.el9_2.s390x.rpm x86_64: cri-o-1.26.3-7.rhaos4.13.gitb3475fb.el9.x86_64.rpm cri-o-debuginfo-1.26.3-7.rhaos4.13.gitb3475fb.el9.x86_64.rpm cri-o-debugsource-1.26.3-7.rhaos4.13.gitb3475fb.el9.x86_64.rpm kata-containers-3.0.2-6.el9.x86_64.rpm podman-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-debuginfo-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-debugsource-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-gvproxy-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-gvproxy-debuginfo-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-plugins-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-plugins-debuginfo-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-remote-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-remote-debuginfo-4.4.1-4.rhaos4.13.el9.x86_64.rpm podman-tests-4.4.1-4.rhaos4.13.el9.x86_64.rpm rpm-ostree-2023.3-1.el9_2.x86_64.rpm rpm-ostree-debuginfo-2023.3-1.el9_2.x86_64.rpm rpm-ostree-debugsource-2023.3-1.el9_2.x86_64.rpm rpm-ostree-devel-2023.3-1.el9_2.x86_64.rpm rpm-ostree-libs-2023.3-1.el9_2.x86_64.rpm rpm-ostree-libs-debuginfo-2023.3-1.el9_2.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-41724 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/release_notes/ocp-4-13-release-notes 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBZHsDtNzjgjWX9erEAQgEzA//bmsrt+XHGnLq3r4ECYF0VsWPcH5puPNe 1X+C9Ztu2nU6Yf0KdDgo4XuGoFvIFPixUQvUcBEASLRIMPtC/DYEolvlOUz6LhfW GlpA+/ZcQ9P15n/jpt/yY18Dlqi0Yke4nFpiy61O6fvW7DHREWn2q0IM1M8LQc+u 37YKO16hQB0AGWTB1Cjm1YN1CVChV70SHhKCDfs2ddAswcENgegFxncg4mtTJxLP xNCM4KdR7jM+QOHGltIHXRPE6UnJSAJj0B1V6UbUQdzW6faRbnnHx0EiCH4UAhnC nc5VzKrdu+ALYaGTdcXf5ey7+e0O86MSj2209cQ+EDxqmw5jk0hwJtoM+mJ6nKZ0 idQe70ney0jQliuxyNs/b1mE8TCyJi8X9HN6m5L7W+RUHBPc7qcq+3gcCQxWoaIs oVIrHhs/Af219kVlMhwce4H61uaea4YEwHyCrnBlTqFlzb5ib1EflCJapOEO5GCo dnQ5x3UUb7rRtACT3xll4pSwlZuRsTn23qcq0RgP3RNwB+HVeLsKlHnngtaTpIPa KkyeR/MGEm9ZjRseDY8KN6b+s90lo+YCkpnpEFJXLyuN0WdvPQ+nXStL+SzhNyM4 7/q4xd5u3upEFVrJvnboacb4ocC3eSoUl63Pf8+8I9nHiH/aPSmO0vzoY+66QB80 ZK3i0CRt6+Y=UbB/ -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Improvements in OpenShift Container Platform 4.13.1 feature essential security patches along with numerous upgrades aimed at enhancing overall reliability.. OpenShift Security, Container Security, Red Hat Updates. .LinuxSecurity.com Team

Calendar%202 Jun 03, 2023 Red Hat
98

Red Hat Enterprise Linux 9 Moderate: Toolbox Security Update RHSA-2022-8098

An update for toolbox is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: toolbox security and bug fix update Advisory ID: RHSA-2022:8098-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:8098 Issue date: 2022-11-15 CVE Names: CVE-2022-1705 CVE-2022-30630 CVE-2022-30631 CVE-2022-30632 ==================================================================== 1. Summary: An update for toolbox is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 9) - aarch64, ppc64le, s390x, x86_64 3. Description: Toolbox is a tool for Linux operating systems, which allows the use of containerized command line environments. It is built on top of Podman and other standard container technologies from OCI. Security Fix(es): * golang: net/http: improper sanitization of Transfer-Encoding header (CVE-2022-1705) * golang: io/fs: stack exhaustion in Glob (CVE-2022-30630) * golang: compress/gzip: stack exhaustion in Reader.Read (CVE-2022-30631) * golang: path/filepath: stack exhaustion in Glob (CVE-2022-30632) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the Referencessection. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.1 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2089194 - Bump the minimum required golang version to > = 1.17.7 2107342 - CVE-2022-30631 golang: compress/gzip: stack exhaustion in Reader.Read 2107371 - CVE-2022-30630 golang: io/fs: stack exhaustion in Glob 2107374 - CVE-2022-1705 golang: net/http: improper sanitization of Transfer-Encoding header 2107386 - CVE-2022-30632 golang: path/filepath: stack exhaustion in Glob 6. Package List: Red Hat Enterprise Linux AppStream (v. 9): Source: toolbox-0.0.99.3-5.el9.src.rpm aarch64: toolbox-0.0.99.3-5.el9.aarch64.rpm toolbox-debuginfo-0.0.99.3-5.el9.aarch64.rpm toolbox-debugsource-0.0.99.3-5.el9.aarch64.rpm toolbox-tests-0.0.99.3-5.el9.aarch64.rpm ppc64le: toolbox-0.0.99.3-5.el9.ppc64le.rpm toolbox-debuginfo-0.0.99.3-5.el9.ppc64le.rpm toolbox-debugsource-0.0.99.3-5.el9.ppc64le.rpm toolbox-tests-0.0.99.3-5.el9.ppc64le.rpm s390x: toolbox-0.0.99.3-5.el9.s390x.rpm toolbox-debuginfo-0.0.99.3-5.el9.s390x.rpm toolbox-debugsource-0.0.99.3-5.el9.s390x.rpm toolbox-tests-0.0.99.3-5.el9.s390x.rpm x86_64: toolbox-0.0.99.3-5.el9.x86_64.rpm toolbox-debuginfo-0.0.99.3-5.el9.x86_64.rpm toolbox-debugsource-0.0.99.3-5.el9.x86_64.rpm toolbox-tests-0.0.99.3-5.el9.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7.References: https://access.redhat.com/security/cve/CVE-2022-1705 https://access.redhat.com/security/cve/CVE-2022-30630 https://access.redhat.com/security/cve/CVE-2022-30631 https://access.redhat.com/security/cve/CVE-2022-30632 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.1_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY3Pgq9zjgjWX9erEAQjj5hAAqCDsxUqXw9MxioxE+bJB5z+fU0BuZC+S wzdywnCL41PC1Sr6C1AuhtIvYWyOtyPrftUQ+YBMvuvlFmjpLGHPraJb7Z4Cz/b8 v+H1YfYoVKDEClKQe0qYmG9CNErUtpT2pVcbL8pyFbZ32DRK8sTljy6J0c+PNnp3 PK/4sxK/hFvcLwrFNSI48ZQdvEVZFJ5vChTYVBeH+lk1cljlWVbr5IfsL2cvfWiF mvdawag3rqrGnCfccv9cTHDKdk+M6s0S4mOcv+j2g4SFAZoSCwL9C/Yatj3TdY2C Ggiy/0+RZPovj/5E/5mlpkS2zjcaBjVFpasekQqlD0TUdzdupVxXOi4tgISG/sdi eczyR27s6INXRFSjEAPB8vQUyvI5txUuJaWhLSvmSZKCFGGnjZFQOfHcP2To0elX J4QbJ28Xt/9jlF55eRDtbe7cT4ycqEQ8ST6bsfc/8dmIH3sW9b2nZMVMiJ3mFvTl YwLBBfyMddb0qdoSKC8c+1jrhcmPISkTHSwTNpxnRfWVq8Eu1obZLHi5gKNwcecU XnpBb0w55JnVbjetk2K4jWfJ599miNQZqmG/z+apTUo3/y+SU7mNVxk5Mhh+e38M UapTAG7H82+dZ2EJ+lcheonbrCmHzRTlTlFd8Gl35j7LlI15nEhh1r5+VPPz9NAv P0UIrhkqit0=Qqov -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . An enhancement for toolbox within Red Hat Enterprise Linux 9 bolsters security measures. Specific CVE identifiers and corresponding resolutions provided.. Red Hat Toolbox Update, Security Advisory RHSA-2022-8098, Moderate Security Impact, Enterprise Linux Security. . LinuxSecurity.com Team

Calendar%202 Nov 15, 2022 Red Hat
98

Red Hat Enterprise Linux 8 RHSA-2022:7482-01 Moderate: Qt5 Security Update

An update for qt5 is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: qt5 security, bug fix, and enhancement update Advisory ID: RHSA-2022:7482-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:7482 Issue date: 2022-11-08 CVE Names: CVE-2022-25255 ==================================================================== 1. Summary: An update for qt5 is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat CodeReady Linux Builder (v. 8) - noarch Red Hat Enterprise Linux AppStream (v. 8) - noarch 3. Description: The Qt5 libraries packages provide Qt 5, version 5 of the Qt cross-platform application framework. The following packages have been upgraded to a later upstream version: qt5 (5.15.3). (BZ#2061377) Security Fix(es): * qt: QProcess could execute a binary from the current working directory when not found in the PATH (CVE-2022-25255) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.7 Release Notes linked from the References section. 4. Solution: For details on how toapply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2055505 - CVE-2022-25255 qt: QProcess could execute a binary from the current working directory when not found in the PATH 2061377 - Rebase qt5 to 5.15.3 6. Package List: Red Hat Enterprise Linux AppStream (v. 8): Source: qt5-5.15.3-1.el8.src.rpm noarch: qt5-rpm-macros-5.15.3-1.el8.noarch.rpm qt5-srpm-macros-5.15.3-1.el8.noarch.rpm Red Hat CodeReady Linux Builder (v. 8): noarch: qt5-devel-5.15.3-1.el8.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-25255 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/8/html/8.7_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY2pSmtzjgjWX9erEAQgrcQ//eVMsW7Etr77MiSdBUW8UXX0Ulf6eHfiF nv4sMi5I5zBE/za7Tpwmp96VNaGWkCqMb4GmQ8J2hYzL345hNDezcNAvugWAP/Og oljhOA4IDBQSBLCYAbcBZrxYRZxv/Jbq9F5XWGO7Sp7KhIKV8zIfx29S66E7bXP/ 2gEJQXBSQWqRSSigt2TEImqOjqP8QwaOwfSWQ0Op3r6kn+mLfv8w7mLzOYBWHqZa EmxBAq+YGvrZbxlEBmyOgfsJqrMO4QhzGGhEbFZ96tbtVazpQqdqm+KjnvrJyxt1 wEwopVQFjb5N/POj540R3zTc7XehIKKbSUihPuGfzjgISIOFSQkc2XjYWXbJWGkJ Ix1tp4PVrVKZSASwo6jyxm15qwzJcN3T1i/RZWUBaGB14cr1KXfdQKpX8qCr4Eno 94Zh5XxqvaXL1gIfLBk5X/L3OXFRXE2AqwCgRWwoyHhEhwiHBUv/mCYOVOGfqvhl vFVv15Cb+/yexq9f97W+SKQd379MJfJSjGXEGa4PMMVVRSQciC7pqPPt02XSq2p9 fqv5u8l5vNb3Vu7Go4CUJhsv0P8jWMFdy8LCi8n2yXqaimzOQTt9n5jSVd3w2lT4 ohoQG6UP0Bp0eCr5yV/Iiw+3V0ufN+77jeG3ZLcatCl8C/4AwLWsjqTgD6rAi56E sPHQSDFga+k=ZZ14 -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Red Hat's advisory on theqt5 upgrade details various moderate security vulnerabilities, providing essential insights into corrective actions and enhancements made. Qt5 Security Update, Red Hat Advisory, Bug Fix Red Hat, Linux Security Advisory. . LinuxSecurity.com Team

Calendar%202 Nov 08, 2022 Red Hat
98

RHEL 8 RHSA-2022-7790-01 Moderate: BIND Cache Poisoning Update

An update for bind is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: bind security update Advisory ID: RHSA-2022:7790-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:7790 Issue date: 2022-11-08 CVE Names: CVE-2021-25220 ==================================================================== 1. Summary: An update for bind is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 Red Hat Enterprise Linux BaseOS (v. 8) - aarch64, ppc64le, s390x, x86_64 3. Description: The Berkeley Internet Name Domain (BIND) is an implementation of the Domain Name System (DNS) protocols. BIND includes a DNS server (named); a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating correctly. Security Fix(es): * bind: DNS forwarders - cache poisoning vulnerability (CVE-2021-25220) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.7 ReleaseNotes linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the update, the BIND daemon (named) will be restarted automatically. 5. Bugs fixed (https://bugzilla.redhat.com/): 2064512 - CVE-2021-25220 bind: DNS forwarders - cache poisoning vulnerability 6. Package List: Red Hat Enterprise Linux AppStream (v.8): aarch64: bind-9.11.36-5.el8.aarch64.rpm bind-chroot-9.11.36-5.el8.aarch64.rpm bind-debuginfo-9.11.36-5.el8.aarch64.rpm bind-debugsource-9.11.36-5.el8.aarch64.rpm bind-devel-9.11.36-5.el8.aarch64.rpm bind-export-libs-debuginfo-9.11.36-5.el8.aarch64.rpm bind-libs-9.11.36-5.el8.aarch64.rpm bind-libs-debuginfo-9.11.36-5.el8.aarch64.rpm bind-libs-lite-9.11.36-5.el8.aarch64.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.aarch64.rpm bind-lite-devel-9.11.36-5.el8.aarch64.rpm bind-pkcs11-9.11.36-5.el8.aarch64.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.aarch64.rpm bind-pkcs11-devel-9.11.36-5.el8.aarch64.rpm bind-pkcs11-libs-9.11.36-5.el8.aarch64.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.aarch64.rpm bind-pkcs11-utils-9.11.36-5.el8.aarch64.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.aarch64.rpm bind-sdb-9.11.36-5.el8.aarch64.rpm bind-sdb-chroot-9.11.36-5.el8.aarch64.rpm bind-sdb-debuginfo-9.11.36-5.el8.aarch64.rpm bind-utils-9.11.36-5.el8.aarch64.rpm bind-utils-debuginfo-9.11.36-5.el8.aarch64.rpm noarch: bind-license-9.11.36-5.el8.noarch.rpm python3-bind-9.11.36-5.el8.noarch.rpm ppc64le: bind-9.11.36-5.el8.ppc64le.rpm bind-chroot-9.11.36-5.el8.ppc64le.rpm bind-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-debugsource-9.11.36-5.el8.ppc64le.rpm bind-devel-9.11.36-5.el8.ppc64le.rpm bind-export-libs-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-libs-9.11.36-5.el8.ppc64le.rpm bind-libs-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-libs-lite-9.11.36-5.el8.ppc64le.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-lite-devel-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-devel-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-libs-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-utils-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-sdb-9.11.36-5.el8.ppc64le.rpm bind-sdb-chroot-9.11.36-5.el8.ppc64le.rpm bind-sdb-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-utils-9.11.36-5.el8.ppc64le.rpm bind-utils-debuginfo-9.11.36-5.el8.ppc64le.rpm s390x: bind-9.11.36-5.el8.s390x.rpm bind-chroot-9.11.36-5.el8.s390x.rpm bind-debuginfo-9.11.36-5.el8.s390x.rpm bind-debugsource-9.11.36-5.el8.s390x.rpm bind-devel-9.11.36-5.el8.s390x.rpm bind-export-libs-debuginfo-9.11.36-5.el8.s390x.rpm bind-libs-9.11.36-5.el8.s390x.rpm bind-libs-debuginfo-9.11.36-5.el8.s390x.rpm bind-libs-lite-9.11.36-5.el8.s390x.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.s390x.rpm bind-lite-devel-9.11.36-5.el8.s390x.rpm bind-pkcs11-9.11.36-5.el8.s390x.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.s390x.rpm bind-pkcs11-devel-9.11.36-5.el8.s390x.rpm bind-pkcs11-libs-9.11.36-5.el8.s390x.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.s390x.rpm bind-pkcs11-utils-9.11.36-5.el8.s390x.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.s390x.rpm bind-sdb-9.11.36-5.el8.s390x.rpm bind-sdb-chroot-9.11.36-5.el8.s390x.rpm bind-sdb-debuginfo-9.11.36-5.el8.s390x.rpm bind-utils-9.11.36-5.el8.s390x.rpm bind-utils-debuginfo-9.11.36-5.el8.s390x.rpm x86_64: bind-9.11.36-5.el8.x86_64.rpm bind-chroot-9.11.36-5.el8.x86_64.rpm bind-debuginfo-9.11.36-5.el8.i686.rpm bind-debuginfo-9.11.36-5.el8.x86_64.rpm bind-debugsource-9.11.36-5.el8.i686.rpm bind-debugsource-9.11.36-5.el8.x86_64.rpm bind-devel-9.11.36-5.el8.i686.rpm bind-devel-9.11.36-5.el8.x86_64.rpm bind-export-libs-debuginfo-9.11.36-5.el8.i686.rpm bind-export-libs-debuginfo-9.11.36-5.el8.x86_64.rpm bind-libs-9.11.36-5.el8.i686.rpm bind-libs-9.11.36-5.el8.x86_64.rpm bind-libs-debuginfo-9.11.36-5.el8.i686.rpm bind-libs-debuginfo-9.11.36-5.el8.x86_64.rpm bind-libs-lite-9.11.36-5.el8.i686.rpm bind-libs-lite-9.11.36-5.el8.x86_64.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.i686.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.x86_64.rpm bind-lite-devel-9.11.36-5.el8.i686.rpm bind-lite-devel-9.11.36-5.el8.x86_64.rpm bind-pkcs11-9.11.36-5.el8.x86_64.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.i686.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.x86_64.rpm bind-pkcs11-devel-9.11.36-5.el8.i686.rpm bind-pkcs11-devel-9.11.36-5.el8.x86_64.rpm bind-pkcs11-libs-9.11.36-5.el8.i686.rpm bind-pkcs11-libs-9.11.36-5.el8.x86_64.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.i686.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.x86_64.rpm bind-pkcs11-utils-9.11.36-5.el8.x86_64.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.i686.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.x86_64.rpm bind-sdb-9.11.36-5.el8.x86_64.rpm bind-sdb-chroot-9.11.36-5.el8.x86_64.rpm bind-sdb-debuginfo-9.11.36-5.el8.i686.rpm bind-sdb-debuginfo-9.11.36-5.el8.x86_64.rpm bind-utils-9.11.36-5.el8.x86_64.rpm bind-utils-debuginfo-9.11.36-5.el8.i686.rpm bind-utils-debuginfo-9.11.36-5.el8.x86_64.rpm Red Hat Enterprise Linux BaseOS (v.8): Source: bind-9.11.36-5.el8.src.rpm aarch64: bind-debuginfo-9.11.36-5.el8.aarch64.rpm bind-debugsource-9.11.36-5.el8.aarch64.rpm bind-export-devel-9.11.36-5.el8.aarch64.rpm bind-export-libs-9.11.36-5.el8.aarch64.rpm bind-export-libs-debuginfo-9.11.36-5.el8.aarch64.rpm bind-libs-debuginfo-9.11.36-5.el8.aarch64.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.aarch64.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.aarch64.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.aarch64.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.aarch64.rpm bind-sdb-debuginfo-9.11.36-5.el8.aarch64.rpm bind-utils-debuginfo-9.11.36-5.el8.aarch64.rpm ppc64le: bind-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-debugsource-9.11.36-5.el8.ppc64le.rpm bind-export-devel-9.11.36-5.el8.ppc64le.rpm bind-export-libs-9.11.36-5.el8.ppc64le.rpm bind-export-libs-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-libs-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-sdb-debuginfo-9.11.36-5.el8.ppc64le.rpm bind-utils-debuginfo-9.11.36-5.el8.ppc64le.rpm s390x: bind-debuginfo-9.11.36-5.el8.s390x.rpm bind-debugsource-9.11.36-5.el8.s390x.rpm bind-export-devel-9.11.36-5.el8.s390x.rpm bind-export-libs-9.11.36-5.el8.s390x.rpm bind-export-libs-debuginfo-9.11.36-5.el8.s390x.rpm bind-libs-debuginfo-9.11.36-5.el8.s390x.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.s390x.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.s390x.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.s390x.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.s390x.rpm bind-sdb-debuginfo-9.11.36-5.el8.s390x.rpm bind-utils-debuginfo-9.11.36-5.el8.s390x.rpm x86_64: bind-debuginfo-9.11.36-5.el8.i686.rpm bind-debuginfo-9.11.36-5.el8.x86_64.rpm bind-debugsource-9.11.36-5.el8.i686.rpm bind-debugsource-9.11.36-5.el8.x86_64.rpm bind-export-devel-9.11.36-5.el8.i686.rpm bind-export-devel-9.11.36-5.el8.x86_64.rpm bind-export-libs-9.11.36-5.el8.i686.rpm bind-export-libs-9.11.36-5.el8.x86_64.rpm bind-export-libs-debuginfo-9.11.36-5.el8.i686.rpm bind-export-libs-debuginfo-9.11.36-5.el8.x86_64.rpm bind-libs-debuginfo-9.11.36-5.el8.i686.rpm bind-libs-debuginfo-9.11.36-5.el8.x86_64.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.i686.rpm bind-libs-lite-debuginfo-9.11.36-5.el8.x86_64.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.i686.rpm bind-pkcs11-debuginfo-9.11.36-5.el8.x86_64.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.i686.rpm bind-pkcs11-libs-debuginfo-9.11.36-5.el8.x86_64.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.i686.rpm bind-pkcs11-utils-debuginfo-9.11.36-5.el8.x86_64.rpm bind-sdb-debuginfo-9.11.36-5.el8.i686.rpm bind-sdb-debuginfo-9.11.36-5.el8.x86_64.rpm bind-utils-debuginfo-9.11.36-5.el8.i686.rpm bind-utils-debuginfo-9.11.36-5.el8.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2021-25220 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/8/html/8.7_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBY2pSOtzjgjWX9erEAQi/EBAAgHatJ8eJZYQ0LPJd4BK7VXTq7kwthxFX FX+21/U0RPPLX/7OBAh3MosX8Pwl29OIo8ZDWYzbNH9hb8S3j88fJyVQOq0Q9aIN 438xBROPR83MuHO4wvaaQsy0d+ydOZuOr81rIZYEOon3+2SgFHUn5mq0zAmNvToR cmUclst9QWw2nDGgD4nOdm3wBeKCulKgeLuJCjONE4fTclWMJKjVzw9SCxAo6V3q ye27kg5M/hnFmToMHIUWi4gTtUVfxAaX/kqNni3G/BS7H0ZMneMUVtSEm8FI0iiO QAH+UbczrvDkqHIBjsdi4QaYlkVhzmG1qjG8J8O2mngokyEF2lrKs+nA+YlkTUmY 8pvptphUv3nPAml9koCVuNJRUsFWVuGdwxbir8BBW/YyyuaWaeIPL7KFmTEzwDsE kbe/OY7yVVCLQX7prOj2hTETYVJIHJ2AXlLr0wYIl72W0S1zidv8Wu0DM0fDdl/J dNaUhnChyauNi78VaVdV4AqL2QDZ/FjJomd7+IuqNqPM0888FKsUC4+lTTZxv3/r seb6iSRXQX/7uJOjosvKiHz1u+nI5Wj7uqCB6BOOfABraGz1AmepDPPK94f/kl/u VSLOjVpseILrw4oLrxNoxfWZqXMU+M6LCob+cZ2ZI1hA7XTzIPbJkYnMDV5n8hTa 9rY/JxXD3Bs=HeAe -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Important stability enhancement for BIND in Red Hat Enterprise Linux 8. Information on implications and resolutions provided.. Red Hat Enterprise Linux, BIND Cache Poisoning, DNS Security Update. . LinuxSecurity.com Team

Calendar%202 Nov 08, 2022 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200