Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
87

Debian: Critical Advisory for Netscape Remote Exploit Issue

An updated netscape package now exists to fix several remote exploit vulnerabilities.. -----BEGIN PGP SIGNED MESSAGE----- - ---------------------------------------------------------------------------- Debian Security Advisory This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Michael Stone September 1, 2000 - ---------------------------------------------------------------------------- Package: netscape (communicator, navigator) Vulnerability: remote exploit Debian-specific: no Existing Netscape Communicator/Navigator packages contain the following vulnerabilities: 1. Netscape Communicator JPEG-Comment Heap Overwrite Vulnerability - executes arbitrary code in the comment field of a JPEG image - Netscape Communicator/Navigator versions 4.0 through 4.73 are vulnerable 2. Multiple Vendor Java Virtual Machine Listening Socket Vulnerability 3. Netscape Communicator URL Read Vulnerability - items 2 and 3 together are known as the "Brown Orifice" vulnerability - can be exploited to expose the contents of your computer to anyone on the Internet, allowing to read files visible to the user running the browser - Netscape Communicator/Navigator versions 4.0 through 4.74 are vulnerable Netscape Communicator/Navigator is not a part of the Debian distribution, but packages are available for the convenience of our users. We recommend that users who choose to run Netscape Communicator/Navigator upgrade to version 4.75. New packages are available in source form and for Intel ia32 machines running Debian 2.2 (potato). Note that the new packages will not remove your existing Communicator/Navigator packages; you should manually remove any older installed versions of Communicator/Navigator. (More detailed instructions for installing and removing these packages is available in the web version of this report, at wget url will fetch the file for you dpkg -i file.deb will install the referenced file. Sourcearchives: MD5 checksum: 99ab453006b123ade6b62d508052e8aa MD5 checksum: b6c8220d540580c62302e51bd310273c MD5 checksum: 291d418188dd0d859c842b8e511f40dd MD5 checksum: 834ccd2acc61052bf9b01f58c5adb767 MD5 checksum: c9f71e888d9ce42d7317a7a8255a25f4 Intel ia32 architecture: MD5 checksum: 401b63408d1477978fe16a855b9b2a14 MD5 checksum: 763d8c075f0200d77ce1ad91af3d4c27 MD5 checksum: d255e35d8365486b28a6e5c02bdf7e80 MD5 checksum: a8b595e4ba544861109e91cf2f494d67 MD5 checksum: 2c42207d48399b1d9ea757a1ee677414 MD5 checksum: 3b67100464ed0aa6a22bef337c14798f MD5 checksum: f4ed466d94b761b3a5f252c859c1c38d MD5 checksum: 3e671e3bd853557df55915a395f57d39 MD5 checksum: d46984adbf2703f26a5bbd1cff912967 MD5 checksum: 3e7de9bb9c0c8c73519c3b7149de6af4 MD5 checksum: a4f735e76fb26bc46a99edb557e41d43 MD5 checksum: be2014f7b47913fc2d40dd3a2f7dc60f MD5 checksum: 4cae30606eb234d79c0469ad3e430ece MD5 checksum: e594f5e58bfab22b5c4333d6e648b8bc MD5 checksum: 2f5aadfe24499b6ed79d7c1810aedb70 MD5 checksum: 2b1d1abed84ac00eef02de530ad95028 MD5 checksum: b2335dabae4430a69773ba22b3d5100c MD5 checksum: 2397e4c0d8e556ea457b0095ad102d96 MD5 checksum: 45f1df641dc6869f880ee32abc1c8eb2 MD5 checksum: 5cb68c9bf8a895488c4a75145c48c915 - ---------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. -----BEGIN PGP SIGNATURE----- Version: 2.6.3ia Charset:noconv iQCVAwUBObBSrQ0hVr09l8FJAQFv8AP/XBzoDlk+W+rA/Zg7SqAFSGXjDip0hFxb cnIzJ4q0Bvi5zmFOIm+yT4lUBjBqdDaE8bwiTMWn0figbpxwsKoxUf4+EVjVRpXr qLqL2VMgFLSLCgMud8UlmAvZGomYG8FT9cPmGHjGaVaH5/VAtiswCWXZxGvuKKeT +9A4VcLIjic=2Ou9 -----END PGP SIGNATURE----- . An urgent security advisory for Debian users to upgrade Netscape against severe remote exploit risks.. Netscape Communicator, Debian Security, Remote Exploit, Package Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 01, 2000 Critical Debian
98

Red Hat 6.2 RHSA-2000:054-01 Critical: Netscape Java Access Issue

New Netscape packages are available to fix a serious securityproblem with Java. It is recommended that all netscape usersupdate to the new packages. Users of Red Hat Linux 6.0 and 6.1should use the packages for Red Hat Linux 6.2.. ` --------------------------------------------------------------------- Red Hat, Inc. Security Advisory Synopsis: New Netscape packages fix Java security hole Advisory ID: RHSA-2000:054-01 Issue date: 2000-08-18 Updated on: 2000-08-18 Product: Red Hat Linux Keywords: Brown Orifice netscape java Cross references: N/A --------------------------------------------------------------------- 1. Topic: New Netscape packages are available to fix a serious security problem with Java. It is recommended that all netscape usersupdate to the new packages. Users of Red Hat Linux 6.0 and 6.1 should use the packages for Red Hat Linux 6.2. Packages will be made available for Red Hat Linux 5.2 when fixed binaries are available from Netscape. 2. Relevant releases/architectures: Red Hat Linux 6.2 - i386, alpha 3. Problem description: Due to a problem in the Java environment shipped with Netscape, it would be possible for a java applet on a remote site to view files on a local machine, and then provide access to those files for other machines. For more information, please see: 4. Solution: For each RPM for your particular architecture, run: rpm -Fvh [filename] where filename is the name of the RPM. 5. Bug IDs fixed ( for more info): N/A 6. RPMs required: Red Hat Linux 6.2: alpha: i386: sources: 7. Verification: MD5 sum Package Name -------------------------------------------------------------------------- e4901ef360fdf89bc26cb9511210e25e 6.2/SRPMS/netscape-4.75-0.6.2.src.rpm 7868b53573252f231b627b20f11501fd 6.2/SRPMS/netscape-alpha-4.75-0.6.2.src.rpm 2db1ac1eefd26ef37b5e938077fc0a86 6.2/alpha/netscape-common-4.75-0.6.2.alpha.rpm 470b471c4d3575ecfa18bdabdb459389 6.2/alpha/netscape-communicator-4.75-0.6.2.alpha.rpm 981b62eb767ebd405dda3864bbb35d54 6.2/alpha/netscape-navigator-4.75-0.6.2.alpha.rpm 138e80104c7054d2b894fd3a064ab28f 6.2/i386/netscape-common-4.75-0.6.2.i386.rpm 887e48c496d386d82a6d66ce31f6a6cb 6.2/i386/netscape-communicator-4.75-0.6.2.i386.rpm 3e8c1094bbccb8d7783febea6e430549 6.2/i386/netscape-navigator-4.75-0.6.2.i386.rpm These packages are GPG signed by Red Hat, Inc. for security. Our key is available at: You can verify each package with the following command: rpm --checksig If you only wish to verify that each package has not been corrupted or tampered with, examine only the md5sum with the following command: rpm --checksig --nogpg 8. References: N/A Copyright(c) 2000 Red Hat, Inc. `. Recent advancements in Netscape address a significant Java security flaw impacting Red Hat users. Prompt installation is highly recommended.. Netscape Update, Red Hat Java Fix, Security Advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 21, 2000 Critical Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here