Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 431
Alerts This Week
Warning Icon 1 431

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":1,"type":"x","order":1,"pct":16.67,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":50,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
100

SUSE: 2019:2427-1 Critical Fix for IBus DoS Vulnerability Released

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for ibus ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:2427-1 Rating: important References: #1150011 Cross-References: CVE-2019-14822 Affected Products: SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 SUSE Linux Enterprise Module for Desktop Applications 15-SP1 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for ibus fixes the following issues: - CVE-2019-14822: Fixed misconfiguration of the DBus server allows to unprivileged user could monitor and send method calls to the ibus bus of another user (bsc#1150011). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1: zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-SP1-2019-2427=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP1-2019-2427=1 Package List: - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (aarch64 ppc64le s390x x86_64): python-ibus-1.5.19-8.3.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (x86_64): ibus-debugsource-1.5.19-8.3.1 ibus-gtk-32bit-1.5.19-8.3.1 ibus-gtk-32bit-debuginfo-1.5.19-8.3.1 ibus-gtk3-32bit-1.5.19-8.3.1 ibus-gtk3-32bit-debuginfo-1.5.19-8.3.1 libibus-1_0-5-32bit-1.5.19-8.3.1 libibus-1_0-5-32bit-debuginfo-1.5.19-8.3.1 - SUSE Linux Enterprise Module for DesktopApplications 15-SP1 (aarch64 ppc64le s390x x86_64): ibus-1.5.19-8.3.1 ibus-debuginfo-1.5.19-8.3.1 ibus-debugsource-1.5.19-8.3.1 ibus-devel-1.5.19-8.3.1 ibus-gtk-1.5.19-8.3.1 ibus-gtk-debuginfo-1.5.19-8.3.1 ibus-gtk3-1.5.19-8.3.1 ibus-gtk3-debuginfo-1.5.19-8.3.1 libibus-1_0-5-1.5.19-8.3.1 libibus-1_0-5-debuginfo-1.5.19-8.3.1 typelib-1_0-IBus-1_0-1.5.19-8.3.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1 (noarch): ibus-lang-1.5.19-8.3.1 References: https://www.suse.com/security/cve/CVE-2019-14822.html https://bugzilla.suse.com/1150011 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE has rolled out a Security Update for gnome-shell to fix a significant vulnerability impacting various SUSE versions. Update immediately!. SUSE Update, IBus Security, SUSE Security Advisory, Vulnerability Patch, Open Buildservice Development Tools. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 20, 2019 Important SuSE
100

SUSE: 2021:0730-2 Moderate: libxyz Memory Corruption Vulnerability

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for libgxps ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:0720-1 Rating: moderate References: #1092125 Cross-References: CVE-2018-10733 Affected Products: SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Desktop Applications 15 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for libgxps fixes the following issues: - CVE-2018-10733: Fixed a heap-based buffer over-read issue in ft_font_face_hash (bsc#1092125). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15: zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-2019-720=1 - SUSE Linux Enterprise Module for Desktop Applications 15: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-2019-720=1 Package List: - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 (aarch64 ppc64le s390x x86_64): libgxps-debuginfo-0.3.0-4.3.29 libgxps-debugsource-0.3.0-4.3.29 libgxps-tools-0.3.0-4.3.29 libgxps-tools-debuginfo-0.3.0-4.3.29 - SUSE Linux Enterprise Module for Desktop Applications 15 (aarch64 ppc64le s390x x86_64): libgxps-debuginfo-0.3.0-4.3.29 libgxps-debugsource-0.3.0-4.3.29 libgxps-devel-0.3.0-4.3.29 libgxps2-0.3.0-4.3.29 libgxps2-debuginfo-0.3.0-4.3.29 typelib-1_0-GXPS-0_1-0.3.0-4.3.29 References: https://www.suse.com/security/cve/CVE-2018-10733.html https://bugzilla.suse.com/1092125 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . Debian releases a patch for libgxps to resolve moderate vulnerability concerns. Users are advised to follow the provided installation guide.. SUSE Security Update, libgxps Fix, Software Vulnerability, Patch Instructions, Open Buildservice Tools. . LinuxSecurity.com Team

Calendar%202 Mar 22, 2019 SuSE
100

SUSE: 2019:0542-1 Moderate Advisory for SSSD Home Directory Problem

An update that solves one vulnerability and has four fixes is now available. . SUSE Security Update: Security update for sssd ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:0542-1 Rating: moderate References: #1004220 #1087320 #1120852 #1121759 #1125277 Cross-References: CVE-2019-3811 Affected Products: SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Basesystem 15 ______________________________________________________________________________ An update that solves one vulnerability and has four fixes is now available. Description: This update for sssd fixes the following issues: Security vulnerability addresed: - CVE-2019-3811: Fix fallback_homedir returning '/' for empty home directories (bsc#1121759) Other bug fixes and changes: - Install logrotate configuration (bsc#1004220) - Align systemd service file with upstream, run interactive and change service type to notify (bsc#1120852) - Fix sssd not starting in foreground mode (bsc#1125277) - Strip whitespaces in netgroup triples (bsc#1087320) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15: zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-2019-542=1 - SUSE Linux Enterprise Module for Basesystem 15: zypper in -t patch SUSE-SLE-Module-Basesystem-15-2019-542=1 Package List: - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 (aarch64 ppc64le s390x x86_64): libnfsidmap-sss-1.16.1-3.15.1 libnfsidmap-sss-debuginfo-1.16.1-3.15.1 python3-ipa_hbac-1.16.1-3.15.1 python3-ipa_hbac-debuginfo-1.16.1-3.15.1 python3-sss-murmur-1.16.1-3.15.1 python3-sss-murmur-debuginfo-1.16.1-3.15.1 python3-sss_nss_idmap-1.16.1-3.15.1 python3-sss_nss_idmap-debuginfo-1.16.1-3.15.1 sssd-dbus-1.16.1-3.15.1 sssd-dbus-debuginfo-1.16.1-3.15.1 sssd-debuginfo-1.16.1-3.15.1 sssd-debugsource-1.16.1-3.15.1 sssd-winbind-idmap-1.16.1-3.15.1 sssd-winbind-idmap-debuginfo-1.16.1-3.15.1 - SUSE Linux Enterprise Module for Basesystem 15 (aarch64 ppc64le s390x x86_64): libipa_hbac-devel-1.16.1-3.15.1 libipa_hbac0-1.16.1-3.15.1 libipa_hbac0-debuginfo-1.16.1-3.15.1 libsss_certmap-devel-1.16.1-3.15.1 libsss_certmap0-1.16.1-3.15.1 libsss_certmap0-debuginfo-1.16.1-3.15.1 libsss_idmap-devel-1.16.1-3.15.1 libsss_idmap0-1.16.1-3.15.1 libsss_idmap0-debuginfo-1.16.1-3.15.1 libsss_nss_idmap-devel-1.16.1-3.15.1 libsss_nss_idmap0-1.16.1-3.15.1 libsss_nss_idmap0-debuginfo-1.16.1-3.15.1 libsss_simpleifp-devel-1.16.1-3.15.1 libsss_simpleifp0-1.16.1-3.15.1 libsss_simpleifp0-debuginfo-1.16.1-3.15.1 python3-sssd-config-1.16.1-3.15.1 python3-sssd-config-debuginfo-1.16.1-3.15.1 sssd-1.16.1-3.15.1 sssd-ad-1.16.1-3.15.1 sssd-ad-debuginfo-1.16.1-3.15.1 sssd-dbus-1.16.1-3.15.1 sssd-dbus-debuginfo-1.16.1-3.15.1 sssd-debuginfo-1.16.1-3.15.1 sssd-debugsource-1.16.1-3.15.1 sssd-ipa-1.16.1-3.15.1 sssd-ipa-debuginfo-1.16.1-3.15.1 sssd-krb5-1.16.1-3.15.1 sssd-krb5-common-1.16.1-3.15.1 sssd-krb5-common-debuginfo-1.16.1-3.15.1 sssd-krb5-debuginfo-1.16.1-3.15.1 sssd-ldap-1.16.1-3.15.1 sssd-ldap-debuginfo-1.16.1-3.15.1 sssd-proxy-1.16.1-3.15.1 sssd-proxy-debuginfo-1.16.1-3.15.1 sssd-tools-1.16.1-3.15.1 sssd-tools-debuginfo-1.16.1-3.15.1 sssd-wbclient-1.16.1-3.15.1 sssd-wbclient-debuginfo-1.16.1-3.15.1 sssd-wbclient-devel-1.16.1-3.15.1 - SUSE LinuxEnterprise Module for Basesystem 15 (x86_64): sssd-32bit-1.16.1-3.15.1 sssd-32bit-debuginfo-1.16.1-3.15.1 References: https://www.suse.com/security/cve/CVE-2019-3811.html https://bugzilla.suse.com/1004220 https://bugzilla.suse.com/1087320 https://bugzilla.suse.com/1120852 https://bugzilla.suse.com/1121759 https://bugzilla.suse.com/1125277 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE Security Update: Security update for sssd _____________________________________________________. update, solves, vulnerability, fixes, security. . LinuxSecurity.com Team

Calendar%202 Mar 05, 2019 SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":1,"type":"x","order":1,"pct":16.67,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":50,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200