Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
87

Debian Wheezy: DSA-3008-2 Moderate: PHP5 Sessionclean Error Correction

This update corrects a packaging error for the packages released in DSA-3008-1. The new sessionclean script used in the updated cronjob in /etc/cron.d/php5 was not installed into the php5-common package. No other changes are introduced. For reference, the original advisory text . - ------------------------------------------------------------------------- Debian Security Advisory DSA-3008-2 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Salvatore Bonaccorso August 21, 2014 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : php5 CVE ID : CVE-2014-3538 CVE-2014-3587 CVE-2014-3597 CVE-2014-4670 This update corrects a packaging error for the packages released in DSA-3008-1. The new sessionclean script used in the updated cronjob in /etc/cron.d/php5 was not installed into the php5-common package. No other changes are introduced. For reference, the original advisory text follows. Several vulnerabilities were found in PHP, a general-purpose scripting language commonly used for web application development. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2014-3538 It was discovered that the original fix for CVE-2013-7345 did not sufficiently address the problem. A remote attacker could still cause a denial of service (CPU consumption) via a specially-crafted input file that triggers backtracking during processing of an awk regular expression rule. CVE-2014-3587 It was discovered that the CDF parser of the fileinfo module does not properly process malformed files in the Composite Document File (CDF) format, leading to crashes. CVE-2014-3597 It was discovered that the original fix for CVE-2014-4049 did not completely address the issue. A malicious server or man-in-the-middle attacker could cause a denial of service (crash) and possibly execute arbitrary code via a crafted DNSTXT record. CVE-2014-4670 It was discovered that PHP incorrectly handled certain SPL Iterators. A local attacker could use this flaw to cause PHP to crash, resulting in a denial of service. For the stable distribution (wheezy), these problems have been fixed in version 5.4.4-14+deb7u13. In addition, this update contains several bugfixes originally targeted for the upcoming Wheezy point release. For the unstable distribution (sid), these problems will be fied soon. We recommend that you upgrade your php5 packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian patches resolve nodejs versioning flaw highlighted in DSA-3009-1, addressing key vulnerabilities recognized for reliability.. debian dsa-3008-2, php5 update, security patch. . LinuxSecurity.com Team

Calendar 2 Aug 21, 2014 Debian
89

Fedora Core 3: FEDORA-2005-194 Moderate: IPsec-Tools Configuration Update

This update fixes some packaging errors: - the /var/racoon directory is shipped, for use with the admin port - racoon correctly looks for its config file in /etc/racoon now. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-194 2005-03-07 ---------------------------------------------------------------------Product : Fedora Core 3 Name : ipsec-tools Version : 0.5 Release : 1.fc3 Summary : Tools for configuring and using IPSEC Description : This is the IPsec-Tools package. You need this package in order to really use the IPsec functionality in the linux-2.5+ kernels. This package builds: - setkey, a program to directly manipulate policies and SAs - racoon, an IKEv1 keying daemon ---------------------------------------------------------------------Update Information: This update fixes some packaging errors: - the /var/racoon directory is shipped, for use with the admin port - racoon correctly looks for its config file in /etc/racoon now ---------------------------------------------------------------------* Mon Mar 7 2005 Bill Nottingham 0.5-1.fc3 - package /var/racoon for the admin socket, fix sysconfdir ( ) ---------------------------------------------------------------------This update can be downloaded from: b4c7b3acd6887aa589370436a088c19f SRPMS/ipsec-tools-0.5-1.fc3.src.rpm ee9c6706a9c27e087baa2f85f0199ab3 x86_64/ipsec-tools-0.5-1.fc3.x86_64.rpm 1b3d7868e6869e4350835b09817cda15 x86_64/debug/ipsec-tools-debuginfo-0.5-1.fc3.x86_64.rpm 2e1a0b94e3e346de018849bd6ac6b3b5 i386/ipsec-tools-0.5-1.fc3.i386.rpm db77200714d338df58f8b86bec45943c i386/debug/ipsec-tools-debuginfo-0.5-1.fc3.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailinglist This email address is being protected from spambots. You need JavaScript enabled to view it. . This revision corrects packaging mistakes found in Fedora Core 3's ipsec-tools, rectifying configuration paths and folder discrepancies.. Fedora Core 3, Ipsec Tools, Packaging Fixes, Network Security. . Severity: Medium. LinuxSecurity.com Team

Calendar 2 Mar 07, 2005 Medium Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here