Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 38: FEDORA-2023-a5e10b188a Moderate: QMMP Critical Flaws

FFmpeg 6.0 upgrade. ---- update to 111.0.5563.64. Fixes the following security issues: CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-a5e10b188a 2023-03-14 00:16:44.047436 --------------------------------------------------------------------------------Name : qmmp Product : Fedora 38 Version : 2.1.2 Release : 4.fc38 URL : http://qmmp.ylsoftware.com/ Summary : Qt-based multimedia player Description : This program is an audio-player, written with help of Qt library. The user interface is similar to winamp or xmms. Main opportunities: * Winamp and xmms skins support * plugins support * MPEG1 layer 2/3 support * Ogg Vorbis support * native FLAC support * WavePack support * ModPlug support * PCM WAVE support * CD Audio support * CUE sheet support * ALSA sound output * JACK sound output * OSS sound output * PipeWire output * Last.fm/Libre.fm scrobbler * D-Bus support * Spectrum Analyzer * projectM visualization * sample rate conversion * bs2b dsp effect * streaming support * removable device detection * MPRIS support * global hotkey support * lyrics support --------------------------------------------------------------------------------Update Information: FFmpeg 6.0 upgrade. ---- update to 111.0.5563.64. Fixes the following security issues: CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226CVE-2023-1227 --------------------------------------------------------------------------------ChangeLog: * Sun Mar 12 2023 Neal Gompa - 2.1.2-4 - Rebuild for ffmpeg 6.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1944122 - notcurses-2.3.17 is available https://bugzilla.redhat.com/show_bug.cgi?id=1944122 [ 2 ] Bug #2022640 - notcurses-2.4.9 is available https://bugzilla.redhat.com/show_bug.cgi?id=2022640 [ 3 ] Bug #2028587 - notcurses-3.0.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2028587 [ 4 ] Bug #2045133 - notcurses: FTBFS in Fedora rawhide/f36 https://bugzilla.redhat.com/show_bug.cgi?id=2045133 [ 5 ] Bug #2053373 - notcurses-3.0.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=2053373 [ 6 ] Bug #2172934 - CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2172934 [ 7 ] Bug #2173846 - ffmpeg-6.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2173846 [ 8 ] Bug #2174875 - k3b-22.12.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=2174875 [ 9 ] Bug #2176135 - mlt-7.14.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2176135 [ 10 ] Bug #2176519 - CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 ... chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2176519 [ 11 ] Bug #2176520 - CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 ... chromium: various flaws [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2176520 [ 12 ] Bug #2177300 - retroarch-1.15.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2177300 [ 13 ] Bug #2177550 - nv-codec-headers-12.0.16.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2177550 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-a5e10b188a' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Ubuntu's patch brings essential updates addressing vulnerabilities found in the vlc media player alongside the ffmpeg 6.0 enhancements information.. qmmp Update, Fedora Security Fix, FFmpeg Upgrade, Multimedia Player. . LinuxSecurity.com Team

Calendar 2 Mar 14, 2023 Fedora
87

Debian: DSA-2454-2 High: FFmpeg Vulnerability Advisory for Remote Exploit

Several vulnerabilities have been discovered in ffmpeg, a multimedia player, server and encoder. Multiple input validations in the decoders for QDM2, VP5, VP6, VMD and SVQ1 files could lead to the execution of arbitrary code. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2378-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff January 03, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : ffmpeg Vulnerability : several Problem type : remote Debian-specific: no CVE ID : CVE-2011-4351 CVE-2011-4353 CVE-2011-4364 CVE-2011-4579 Several vulnerabilities have been discovered in ffmpeg, a multimedia player, server and encoder. Multiple input validations in the decodersfor QDM2, VP5, VP6, VMD and SVQ1 files could lead to the execution of arbitrary code. For the stable distribution (squeeze), this problem has been fixed in version 4:0.5.6-3. For the unstable distribution (sid), this problem has been fixed in version 4:0.7.3-1 of the libav source package. We recommend that you upgrade your ffmpeg packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Potential vulnerabilities discovered in ffmpeg; it is advisable to upgrade for improved security measures.. FFmpeg Security, Debian Security Update, Multimedia Server. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 03, 2012 Important Debian
91

Gentoo: GLSA-200510-07 Advisory: Issue with RealPlayer Format

RealPlayer and Helix Player are vulnerable to a format string vulnerability resulting in the execution of arbitrary code.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200510-07 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: RealPlayer, Helix Player: Format string vulnerability Date: October 07, 2005 Bugs: #107309 ID: 200510-07 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= RealPlayer and Helix Player are vulnerable to a format string vulnerability resulting in the execution of arbitrary code. Background ========= RealPlayer is a multimedia player capable of handling multiple multimedia file formats. Helix Player is an open source media player for Linux. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-video/realplayer < 10.0.6 > = 10.0.6 2 media-video/helixplayer < 1.0.6 > = 1.0.6 ------------------------------------------------------------------- 2 affected packages on all of their supported architectures. ------------------------------------------------------------------- Description ========== "c0ntex" reported that RealPlayer and Helix Player suffer from a heap overflow. Impact ===== By enticing a user to play a specially crafted realpix (.rp) or realtext (.rt) file, an attacker could execute arbitrary code with the permissions of the user running the application. Workaround ========= There is no known workaround at this time. Resolution ========= All RealPlayer users shouldupgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =media-video/realplayer-10.0.6" All Helix Player users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =media-video/helixplayer-1.0.6" References ========= [ 1 ] CAN-2005-2710 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/200510-07 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org/. License ====== Copyright 2005 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.0/ . A format string flaw in RealPlayer and Helix Player could enable unauthorized code execution. Users are advised to update for enhanced protection.. RealPlayer Security, Helix Player, Gentoo Advisory. . LinuxSecurity.com Team

Calendar 2 Oct 07, 2005 Gentoo
89

Fedora Core 2: Important W3M Update for Enhanced Multimedia Features

The w3m program is a pager (or text file viewer) that can also be usedas a text-mode Web browser.. --------------------------------------------------------------------- Fedora Update Notification FEDORA-2004-329 2004-10-15 --------------------------------------------------------------------- Product : Fedora Core 2 Name : w3m Version : 0.5.1 Release : 3.1 Summary : A pager with Web browsing abilities. Description : The w3m program is a pager (or text file viewer) that can also be used as a text-mode Web browser. W3m features include the following: when reading an HTML document, you can follow links and view images using an external image viewer; its internet message mode determines the type of document from the header; if the Content-Type field of the document is text/html, the document is displayed as an HTML document; you can change a URL description like ' ' in plain text into a link to that URL. If you want to display the inline images on w3m, you need to install w3m-img package as well. --------------------------------------------------------------------- * Tue Oct 05 2004 Akira TAGOH 0.5.1-3.1 - rebuilt * Thu Aug 05 2004 Akira TAGOH 0.5.1-3 - converted Japanese man page to UTF-8. (#129028) * Wed Jun 16 2004 Elliot Lee - rebuilt * Fri May 07 2004 Akira TAGOH 0.5.1-1 - New upstream release. --------------------------------------------------------------------- This update can be downloaded from: 8ff9046189fa645a086afc420490a350 SRPMS/w3m-0.5.1-3.1.src.rpm bdd7b155b072d04db06edfc0f02a156c x86_64/w3m-img-0.5.1-3.1.x86_64.rpm b07c140f849eee948c7c3f51403959a1 x86_64/w3m-0.5.1-3.1.x86_64.rpm f779a6c5cd49b7d1eba90a195c1ec470 x86_64/debug/w3m-debuginfo-0.5.1-3.1.x86_64.rpm f8b321fb8afc687e99bdbf7fc3318142 i386/debug/w3m-debuginfo-0.5.1-3.1.i386.rpm e28c5c7bfed1c318081abdd37705f06e i386/w3m-0.5.1-3.1.i386.rpm aea4e47e33bfa4efb980fa100608fe4b i386/w3m-img-0.5.1-3.1.i386.rpm This update can also be installed with the Update Agent; you can launch the UpdateAgent with the 'up2date' command. --------------------------------------------------------------------- -- fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. fedora-announce-list Info Page . Enhance text file navigation and HTML rendering by upgrading to w3m on Fedora Core 2.. w3m Text Mode, Fedora Upgrade, Multimedia Player Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 14, 2004 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here