Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 1 articles for you...
89

Fedora 42: libnbd Important Security Fix NBD Issue FEDORA-2025-2e23403e23

New upstream stable version 1.22.5. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-2e23403e23 2025-11-08 01:27:10.727042+00:00 -------------------------------------------------------------------------------- Name : libnbd Product : Fedora 42 Version : 1.22.5 Release : 1.fc42 URL : https://gitlab.com/nbdkit/libnbd Summary : NBD client library in userspace Description : NBD \u2014 Network Block Device \u2014 is a protocol for accessing Block Devices (hard disks and disk-like things) over a Network. This is the NBD client library in userspace, a simple library for writing NBD clients. The key features are: * Synchronous and asynchronous APIs, both for ease of use and for writing non-blocking, multithreaded clients. * High performance. * Minimal dependencies for the basic library. * Well-documented, stable API. * Bindings in several programming languages. -------------------------------------------------------------------------------- Update Information: New upstream stable version 1.22.5 -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 23 2025 Richard W.M. Jones - 1.22.5-1 - New upstream stable version 1.22.5 - Fixes security issue with nbd+ssh URIs https://lists.libguestfs.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./thread/YZMBF3SJRWTRVT5L3KWSNHITFTRMQNTT/ -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-2e23403e23' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Fedora 42 libnbd update addresses security issues; enhances functionality of network block device support.. Fedora 42, libnbd, network block device, NBD client, security update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 08, 2025 Important Fedora
91

Gentoo: GLSA 202402-10 Normal: NBD Tools Multiple Threats

Multiple vulnerabilities have been found in NBD Tools, the worst of which could result in arbitary code execution.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 202402-10 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: NBD Tools: Multiple Vulnerabilities Date: February 04, 2024 Bugs: #834678 ID: 202402-10 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======== Multiple vulnerabilities have been found in NBD Tools, the worst of which could result in arbitary code execution. Background ========== The NBD Tools are the Network Block Device utilities allowing one to use remote block devices over a TCP/IP network. It includes a userland NBD server. Affected packages ================= Package Vulnerable Unaffected ------------- ------------ ------------ sys-block/nbd < 3.24 > = 3.24 Description =========== Multiple vulnerabilities have been discovered in NBD Tools. Please review the CVE identifiers referenced below for details. Impact ====== Please review the referenced CVE identifiers for details. Workaround ========== There is no known workaround at this time. Resolution ========== All NBD Tools users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =sys-block/nbd-3.24" References ========== [ 1 ] CVE-2022-26495 https://nvd.nist.gov/vuln/detail/CVE-2022-26495 [ 2 ] CVE-2022-26496 https://nvd.nist.gov/vuln/detail/CVE-2022-26496 Availability ============ This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/202402-10 Concerns? ========= Security is a primary focus of Gentoo Linux and ensuring the confidentiality andsecurity of our users' machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org. License ======= Copyright 2024 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.5/ . Explore the various security flaws identified in NBD Tools, which may enable remote attackers to execute arbitrary commands on Gentoo installations.. NBD Tools vulnerabilities,Gentoo Linux advisory,network block device security,code execution threat. . LinuxSecurity.com Team

Calendar 2 Feb 04, 2024 Gentoo
89

Fedora 34: FEDORA-2022-62adf9a1e0 Moderate: nbd Buffer Overflow Fix

Update to 3.24: fix CVE-2022-26495, CVE-2022-26496. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-62adf9a1e0 2022-03-16 15:57:05.636809 --------------------------------------------------------------------------------Name : nbd Product : Fedora 34 Version : 3.24 Release : 1.fc34 URL : https://nbd.sourceforge.io/ Summary : Network Block Device user-space tools (TCP version) Description : Tools for the Linux Kernel's network block device, allowing you to use remote block devices over a TCP/IP network. --------------------------------------------------------------------------------Update Information: Update to 3.24: fix CVE-2022-26495, CVE-2022-26496 --------------------------------------------------------------------------------ChangeLog: * Tue Mar 8 2022 Robin Lee 3.24-1 - Update to 3.24: fix CVE-2022-26495(RHBZ#2061541), CVE-2022-26496(RHBZ#2061542) * Thu Jan 20 2022 Fedora Release Engineering 3.23-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild * Fri Nov 26 2021 Robin Lee 3.23-1 - New release 3.23 * Tue Oct 12 2021 Robin Lee 3.22-3 - Fix test failure on armv7hl, another try * Mon Oct 11 2021 Robin Lee 3.22-2 - Fix test failure on armv7hl * Mon Oct 11 2021 Robin Lee 3.22-1 - New release 3.22 * Thu Jul 22 2021 Fedora Release Engineering - 3.21-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2061541 - CVE-2022-26495 nbd: heap-based buffer overflow in nbd-server.c https://bugzilla.redhat.com/show_bug.cgi?id=2061541 [ 2 ] Bug #2061542 - CVE-2022-26496 nbd: stack-based buffer overflow during name parsing in nbd-server.c https://bugzilla.redhat.com/show_bug.cgi?id=2061542 --------------------------------------------------------------------------------This update can be installed with the"dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-62adf9a1e0' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Upgrade to Fedora 34 nbd: Resolves memory overflow vulnerabilities, providing improved protection alongside release 3.24 utilities.. Fedora 34,ninja block device tools,security advisory,buffer overflow fix,network tools update. . LinuxSecurity.com Team

Calendar 2 Mar 16, 2022 Fedora
89

Fedora 34: FEDORA-2021-9c2ba2fcfc Critical: NBDKit 1.26.5 Security Fix

New upstream stable version 1.26.5; fixes CVE-2021-3716.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-9c2ba2fcfc 2021-08-29 01:08:55.716220 --------------------------------------------------------------------------------Name : nbdkit Product : Fedora 34 Version : 1.26.5 Release : 1.fc34 URL : https://gitlab.com/nbdkit/nbdkit Summary : NBD server Description : NBD is a protocol for accessing block devices (hard disks and disk-like things) over the network. nbdkit is a toolkit for creating NBD servers. The key features are: * Multithreaded NBD server written in C with good performance. * Minimal dependencies for the basic server. * Liberal license (BSD) allows nbdkit to be linked to proprietary libraries or included in proprietary code. * Well-documented, simple plugin API with a stable ABI guarantee. Lets you to export "unconventional" block devices easily. * You can write plugins in C or many other languages. * Filters can be stacked in front of plugins to transform the output. 'nbdkit' is a meta-package which pulls in the core server and a useful subset of plugins and filters with minimal dependencies. If you want just the server, install 'nbdkit-server'. To develop plugins, install the 'nbdkit-devel' package and start by reading the nbdkit(1) and nbdkit-plugin(3) manual pages. --------------------------------------------------------------------------------Update Information: New upstream stable version 1.26.5; fixes CVE-2021-3716. --------------------------------------------------------------------------------ChangeLog: * Fri Aug 20 2021 Eric Blake - 1.26.5-1 - New upstream stable version 1.26.5; fixes CVE-2021-3716. --------------------------------------------------------------------------------References: [ 1 ] Bug #1994695 - CVE-2021-3716 nbdkit: NBD_OPT_STRUCTURED_REPLY injection on STARTTLS https://bugzilla.redhat.com/show_bug.cgi?id=1994695 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-9c2ba2fcfc' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . The recent update for Fedora 34 nbdkit tackles the security vulnerability CVE-2021-3716. It is crucial to update your systems without delay.. NBDKit Update,Fedora 34 Security,CVE-2021-3716 Fix,Network Block Device,Software Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 28, 2021 Critical Fedora
202

openSUSE Leap 15.2: openSUSE-SU-2020:1108-1 Important: Qemu DoS Fix

An update that fixes 5 vulnerabilities is now available.. openSUSE Security Update: Security update for qemu ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:1108-1 Rating: important References: #1172383 #1172384 #1172386 #1172495 #1172710 Cross-References: CVE-2020-10761 CVE-2020-13361 CVE-2020-13362 CVE-2020-13659 CVE-2020-13800 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that fixes 5 vulnerabilities is now available. Description: This update for qemu to version 4.2.1 fixes the following issues: - CVE-2020-10761: Fixed a denial of service in Network Block Device (nbd) support infrastructure (bsc#1172710). - CVE-2020-13800: Fixed a denial of service possibility in ati-vga emulation (bsc#1172495). - CVE-2020-13659: Fixed a null pointer dereference possibility in MegaRAID SAS 8708EM2 emulation (bsc#1172386). - CVE-2020-13362: Fixed an OOB access possibility in MegaRAID SAS 8708EM2 emulation (bsc#1172383). - CVE-2020-13361: Fixed an OOB access possibility in ES1370 audio device emulation (bsc#1172384). This update was imported from the SUSE:SLE-15-SP2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2020-1108=1 Package List: - openSUSE Leap 15.2 (noarch): qemu-ipxe-1.0.0+-lp152.9.3.1 qemu-microvm-4.2.1-lp152.9.3.1 qemu-seabios-1.12.1+-lp152.9.3.1 qemu-sgabios-8-lp152.9.3.1 qemu-vgabios-1.12.1+-lp152.9.3.1 - openSUSE Leap 15.2 (x86_64): qemu-4.2.1-lp152.9.3.1 qemu-arm-4.2.1-lp152.9.3.1 qemu-arm-debuginfo-4.2.1-lp152.9.3.1 qemu-audio-alsa-4.2.1-lp152.9.3.1 qemu-audio-alsa-debuginfo-4.2.1-lp152.9.3.1 qemu-audio-pa-4.2.1-lp152.9.3.1 qemu-audio-pa-debuginfo-4.2.1-lp152.9.3.1 qemu-audio-sdl-4.2.1-lp152.9.3.1 qemu-audio-sdl-debuginfo-4.2.1-lp152.9.3.1 qemu-block-curl-4.2.1-lp152.9.3.1 qemu-block-curl-debuginfo-4.2.1-lp152.9.3.1 qemu-block-dmg-4.2.1-lp152.9.3.1 qemu-block-dmg-debuginfo-4.2.1-lp152.9.3.1 qemu-block-gluster-4.2.1-lp152.9.3.1 qemu-block-gluster-debuginfo-4.2.1-lp152.9.3.1 qemu-block-iscsi-4.2.1-lp152.9.3.1 qemu-block-iscsi-debuginfo-4.2.1-lp152.9.3.1 qemu-block-nfs-4.2.1-lp152.9.3.1 qemu-block-nfs-debuginfo-4.2.1-lp152.9.3.1 qemu-block-rbd-4.2.1-lp152.9.3.1 qemu-block-rbd-debuginfo-4.2.1-lp152.9.3.1 qemu-block-ssh-4.2.1-lp152.9.3.1 qemu-block-ssh-debuginfo-4.2.1-lp152.9.3.1 qemu-debuginfo-4.2.1-lp152.9.3.1 qemu-debugsource-4.2.1-lp152.9.3.1 qemu-extra-4.2.1-lp152.9.3.1 qemu-extra-debuginfo-4.2.1-lp152.9.3.1 qemu-guest-agent-4.2.1-lp152.9.3.1 qemu-guest-agent-debuginfo-4.2.1-lp152.9.3.1 qemu-ksm-4.2.1-lp152.9.3.1 qemu-kvm-4.2.1-lp152.9.3.1 qemu-lang-4.2.1-lp152.9.3.1 qemu-linux-user-4.2.1-lp152.9.3.1 qemu-linux-user-debuginfo-4.2.1-lp152.9.3.1 qemu-linux-user-debugsource-4.2.1-lp152.9.3.1 qemu-ppc-4.2.1-lp152.9.3.1 qemu-ppc-debuginfo-4.2.1-lp152.9.3.1 qemu-s390-4.2.1-lp152.9.3.1 qemu-s390-debuginfo-4.2.1-lp152.9.3.1 qemu-testsuite-4.2.1-lp152.9.3.1 qemu-tools-4.2.1-lp152.9.3.1 qemu-tools-debuginfo-4.2.1-lp152.9.3.1 qemu-ui-curses-4.2.1-lp152.9.3.1 qemu-ui-curses-debuginfo-4.2.1-lp152.9.3.1 qemu-ui-gtk-4.2.1-lp152.9.3.1 qemu-ui-gtk-debuginfo-4.2.1-lp152.9.3.1 qemu-ui-sdl-4.2.1-lp152.9.3.1 qemu-ui-sdl-debuginfo-4.2.1-lp152.9.3.1 qemu-ui-spice-app-4.2.1-lp152.9.3.1 qemu-ui-spice-app-debuginfo-4.2.1-lp152.9.3.1 qemu-vhost-user-gpu-4.2.1-lp152.9.3.1 qemu-vhost-user-gpu-debuginfo-4.2.1-lp152.9.3.1 qemu-x86-4.2.1-lp152.9.3.1 qemu-x86-debuginfo-4.2.1-lp152.9.3.1 References: https://www.suse.com/security/cve/CVE-2020-10761.html https://www.suse.com/security/cve/CVE-2020-13361.html https://www.suse.com/security/cve/CVE-2020-13362.html https://www.suse.com/security/cve/CVE-2020-13659.html https://www.suse.com/security/cve/CVE-2020-13800.html https://bugzilla.suse.com/1172383 https://bugzilla.suse.com/1172384 https://bugzilla.suse.com/1172386 https://bugzilla.suse.com/1172495 https://bugzilla.suse.com/1172710 -- . Significant openSUSE patch for qemu resolves severe vulnerabilities such as denial of service and improper memory access.. openSUSE, qemu, security update, denial of service, out of bounds. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jul 28, 2020 Important OpenSUSE
89

Fedora 31: FEDORA-2019-bd19067cb4 Moderate: nbdkit Denial of Service

New upstream version 1.14.2. Fixes second Denial of Service attack: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-bd19067cb4 2019-09-29 00:00:30.332772 --------------------------------------------------------------------------------Name : nbdkit Product : Fedora 31 Version : 1.14.2 Release : 1.fc31 URL : https://github.com/libguestfs/nbdkit Summary : NBD server Description : NBD is a protocol for accessing block devices (hard disks and disk-like things) over the network. nbdkit is a toolkit for creating NBD servers. The key features are: * Multithreaded NBD server written in C with good performance. * Minimal dependencies for the basic server. * Liberal license (BSD) allows nbdkit to be linked to proprietary libraries or included in proprietary code. * Well-documented, simple plugin API with a stable ABI guarantee. Lets you to export "unconventional" block devices easily. * You can write plugins in C or many other languages. * Filters can be stacked in front of plugins to transform the output. In Fedora, 'nbdkit' is a meta-package which pulls in the core server and a useful subset of plugins and filters. If you want just the server, install 'nbdkit-server'. To develop plugins, install the 'nbdkit-devel' package and start by reading the nbdkit(1) and nbdkit-plugin(3) manual pages. --------------------------------------------------------------------------------Update Information: New upstream version 1.14.2. Fixes second Denial of Service attack: --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-bd19067cb4' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. Moredetails on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Critical Fedora Enhancement for nbdkit Tackles Denial of Service Threats Through Latest Upstream Release Remediating Weaknesses.. Fedora nbdkit Denial of Service Network Access Block Device. . LinuxSecurity.com Team

Calendar 2 Sep 28, 2019 Fedora
89

Fedora 29: Latest Nbdkit Security Patch Released for TLS Vulnerability

New upstream version 1.8.2. Fix low priority security issue with TLS: ---- New upstream version 1.8.1. ---- Rebase to new stable version 1.8.0. ---- nbdkit metapackage should depend on versioned -server subpackage etc. ---- New upstream version 1.6.3.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-c42a144c65 2018-12-16 04:21:41.421252 --------------------------------------------------------------------------------Name : nbdkit Product : Fedora 29 Version : 1.8.2 Release : 1.fc29 URL : https://github.com/libguestfs/nbdkit Summary : NBD server Description : NBD is a protocol for accessing block devices (hard disks and disk-like things) over the network. nbdkit is a toolkit for creating NBD servers. The key features are: * Multithreaded NBD server written in C with good performance. * Minimal dependencies for the basic server. * Liberal license (BSD) allows nbdkit to be linked to proprietary libraries or included in proprietary code. * Well-documented, simple plugin API with a stable ABI guarantee. Lets you to export "unconventional" block devices easily. * You can write plugins in C or many other languages. * Filters can be stacked in front of plugins to transform the output. In Fedora, 'nbdkit' is a meta-package which pulls in the core server and a useful subset of plugins and filters. If you want just the server, install 'nbdkit-server'. To develop plugins, install the 'nbdkit-devel' package and start by reading the nbdkit(1) and nbdkit-plugin(3) manual pages. --------------------------------------------------------------------------------Update Information: New upstream version 1.8.2. Fix low priority security issue with TLS: ----New upstream version 1.8.1. ---- Rebase to new stable version 1.8.0. ----nbdkit metapackage should depend on versioned -server subpackage etc. ---- New upstream version1.6.3. --------------------------------------------------------------------------------ChangeLog: * Tue Dec 4 2018 Richard W.M. Jones - 1.8.2-1 - New upstream version 1.8.2. - Fix low priority security issue with TLS: * Sun Nov 18 2018 Richard W.M. Jones - 1.8.1-1 - New upstream version 1.8.1. * Mon Nov 12 2018 Richard W.M. Jones - 1.8.0-1 - Rebase to new stable version 1.8.0. * Tue Nov 6 2018 Richard W.M. Jones - 1.6.3-2 - nbdkit metapackage should depend on versioned -server subpackage etc. * Tue Nov 6 2018 Richard W.M. Jones - 1.6.3-1 - New upstream version 1.6.3. --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-c42a144c65' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . --------------------------------------------------------------------------------Fedora Update Notifi. upstream, version, priority, security. . Severity: Low. LinuxSecurity.com Team

Calendar 2 Dec 16, 2018 Low Fedora
89

Fedora 23: FEDORA-2016-78901 Important - nbd Exploit Mitigation Update

* Fix unsafe signal handlers to avoid DoS attack [CVE-2015-0847].. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-12703 2015-08-04 03:14:33 -------------------------------------------------------------------------------- Name : nbd Product : Fedora 21 Version : 3.11Release : 1.fc21 URL : Summary : Network Block Device user-space tools (TCP version) Description : Tools for the Linux Kernel's network block device, allowing you to use remote block devices over a TCP/IP network. -------------------------------------------------------------------------------- Update Information: * Fix unsafe signal handlers to avoid DoS attack [CVE-2015-0847]. -------------------------------------------------------------------------------- ChangeLog: * Sat Jul 11 2015 Christopher Meng - 3.11-1 - Update to 3.11-------------------------------------------------------------------------------- References: [ 1 ] Bug #1222027 - CVE-2015-0847 nbd: nbd-server denial of service due to unsafe signal handlers https://bugzilla.redhat.com/show_bug.cgi?id=1222027 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update nbd' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . This patch addresses vulnerable signal processes to thwart Denial of Service threats in Fedora 21's nbd application.. Fedora Security Update, nbd Tool,Denial of Service, Safe Signal Handling. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 13, 2015 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here