Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
100

SUSE Linux Enterprise Server 12-SP5 Advisory SUSE-SU-2022:3384-1 Critical

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for openvswitch ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:3384-1 Rating: important References: #1181742 Cross-References: CVE-2020-35498 CVSS scores: CVE-2020-35498 (NVD) : 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVE-2020-35498 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: SUSE Linux Enterprise Server 12-SP5 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for openvswitch fixes the following issues: - CVE-2020-35498: Fixed packet parsing vulnerability (bsc#1181742). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2022-3384=1 Package List: - SUSE Linux Enterprise Server 12-SP5 (aarch64 ppc64le s390x x86_64): libopenvswitch-2_11-0-2.11.5-3.9.1 libopenvswitch-2_11-0-debuginfo-2.11.5-3.9.1 openvswitch-2.11.5-3.9.1 openvswitch-debuginfo-2.11.5-3.9.1 openvswitch-debugsource-2.11.5-3.9.1 References: https://www.suse.com/security/cve/CVE-2020-35498.html https://bugzilla.suse.com/1181742 . SUSE Security Bulletin: Significant resolution for openvswitch, tackling a severe packet analysis vulnerability to enhance efficiency.. SUSE Linux Update, Openvswitch Security, Critical Fix, Packet Parsing Issue. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 26, 2022 Critical SuSE
89

Fedora 21: Update for pdns to Address DoS Vulnerability CVE-2015-5311

- Update to 3.4.7 - CVE-2015-5311 Release notes: . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-a3965fd800 2015-11-20 19:00:55.798647 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 21 Version : 3.4.7 Release : 1.fc21 URL : https://www.powerdns.com/ Summary : A modern, advanced and high performance authoritative-only nameserver Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only nameserver. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: - Update to 3.4.7 - CVE-2015-5311 Release notes: -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279377 - CVE-2015-5311 pdns: packet parsing bug can lead to crashes (DoS) https://bugzilla.redhat.com/show_bug.cgi?id=1279377 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update pdns' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . The security bulletin for Fedora 21 announces an update for pdns, introducing a critical correction that resolves issues related to packet parsing vulnerabilities.. Fedora21, pdns update, packet parsing fix, pdns DoS, pdns security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 20, 2015 Important Fedora
89

Fedora 22: 2015-1d49176aa1 Critical: pdns DoS Packet Parsing Issue

- Update to 3.4.7 - CVE-2015-5311 Release notes: . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-1d49176aa1 2015-11-17 14:31:29.622451 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 22 Version : 3.4.7 Release : 1.fc22 URL : https://www.powerdns.com/ Summary : A modern, advanced and high performance authoritative-only nameserver Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only nameserver. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: - Update to 3.4.7 - CVE-2015-5311 Release notes: -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279377 - CVE-2015-5311 pdns: packet parsing bug can lead to crashes (DoS) https://bugzilla.redhat.com/show_bug.cgi?id=1279377 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update pdns' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Uncover the most recent security bulletin for Fedora 22 regarding pdns software, including specifics on the patch and the identified threat.. Fedora Security, pdns Update,DNS Nameserver Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 17, 2015 Critical Fedora
89

Fedora 23: 2015-11-17 pdns Security Update Critical: DoS Threat

- Update to 3.4.7 - CVE-2015-5311 Release notes: . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-8b8d94ebbb 2015-11-17 14:29:33.235945 -------------------------------------------------------------------------------- Name : pdns Product : Fedora 23 Version : 3.4.7 Release : 1.fc23 URL : https://www.powerdns.com/ Summary : A modern, advanced and high performance authoritative-only nameserver Description : The PowerDNS Nameserver is a modern, advanced and high performance authoritative-only nameserver. It is written from scratch and conforms to all relevant DNS standards documents. Furthermore, PowerDNS interfaces with almost any database. -------------------------------------------------------------------------------- Update Information: - Update to 3.4.7 - CVE-2015-5311 Release notes: -------------------------------------------------------------------------------- References: [ 1 ] Bug #1279377 - CVE-2015-5311 pdns: packet parsing bug can lead to crashes (DoS) https://bugzilla.redhat.com/show_bug.cgi?id=1279377 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update pdns' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Improve Fedora 23 by applying the pdns update to rectify packet processing problems that could result in system instabilities.. pdns Update, Fedora 23, Packet Parsing Fix,DoS Threat, Security Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 17, 2015 Critical Fedora
89

Fedora Core 4: FEDORA-2006-867 Critical GnuPG Packet Parsing Issue

This update upgrades GnuPG to version 1.4.5 to correct errors in the parsing of certain types of packets.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2006-867 2006-08-02 ---------------------------------------------------------------------Product : Fedora Core 4 Name : gnupg Version : 1.4.5 Release : 1 Summary : A GNU utility for secure communication and data storage. Description : GnuPG (GNU Privacy Guard) is a GNU utility for encrypting data and creating digital signatures. GnuPG has advanced key management capabilities and is compliant with the proposed OpenPGP Internet standard described in RFC2440. Since GnuPG doesn't use any patented algorithm, it is not compatible with any version of PGP2 (PGP2.x uses only IDEA for symmetric-key encryption, which is patented worldwide). ---------------------------------------------------------------------Update Information: This update upgrades GnuPG to version 1.4.5 to correct errors in the parsing of certain types of packets. ---------------------------------------------------------------------* Tue Aug 1 2006 Nalin Dahyabhai - 1.4.5-1 - update to 1.4.5, fixing additional size overflows in packet parsing (#200904, CVE-2006-3746) - temporarily disable curl support again * Fri Jul 28 2006 Nalin Dahyabhai - 1.4.4.90-1 - update to 1.4.5rc1 to check for build problems, but mark it as 1.4.4.90 to avoid looking "newer" than the eventual 1.4.5 - because we call aclocal, buildrequire gettext-devel to get AM_GNU_GETTEXT * Thu Jul 20 2006 Nalin Dahyabhai - 1.4.4-7 - add BuildPrereq on curl-devel to get curl's ipv6 support (#198375) * Wed Jul 12 2006 Nalin Dahyabhai - 1.4.4-6 - fix a cast in gpgkeys_hkp to avoid tripping stack smashing or buffer overflow detection (#198612) * Wed Jul 12 2006 Jesse Keating - 1.4.4-5.1 - rebuild * Wed Jul 5 2006 Nalin Dahyabhai - 1.4.4-5 - try again using per-platform buildprereq (jkeating) * Wed Jul 5 2006Nalin Dahyabhai - 1.4.4-4 - buildprereq libusb-devel, so that we get CCID support back (#197450) ---------------------------------------------------------------------This update can be downloaded from: 26bc9d57735eb1c63ae4e1d55df54f5e5087eca6 SRPMS/gnupg-1.4.5-1.src.rpm 26bc9d57735eb1c63ae4e1d55df54f5e5087eca6 noarch/gnupg-1.4.5-1.src.rpm 4b41734de88e5971df3de2c300cd5b456fdbbb6c ppc/gnupg-1.4.5-1.ppc.rpm a94d164ae439ed9206d5a901ccba4460f54d663a ppc/debug/gnupg-debuginfo-1.4.5-1.ppc.rpm 7b6e44243e938584f2eb156de9d6505016e0bd49 x86_64/gnupg-1.4.5-1.x86_64.rpm 9b4881a351a4f2773ebd646763c704ef9d9dd284 x86_64/debug/gnupg-debuginfo-1.4.5-1.x86_64.rpm 7c91efa6c1c1e69b99058985240a69fb027a1c05 i386/gnupg-1.4.5-1.i386.rpm 81699767c708a5e5fc16fb52a055e91c598b66aa i386/debug/gnupg-debuginfo-1.4.5-1.i386.rpm This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at . ---------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . This modification improves OpenSSL safety by fixing protocol handling flaws in Ubuntu 20.04 to guarantee dependable data protection.. GnuPG Update,Fedora Security,Packet Parsing Issue,Data Encryption. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 02, 2006 Critical Fedora
89

Fedora Core 5: 2006-868 Critical GnuPG Packet Parsing Exploit Fix

This update upgrades GnuPG to version 1.4.5 to correct errors in the parsing of certain types of packets.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2006-868 2006-08-02 ---------------------------------------------------------------------Product : Fedora Core 5 Name : gnupg Version : 1.4.5 Release : 2 Summary : A GNU utility for secure communication and data storage. Description : GnuPG (GNU Privacy Guard) is a GNU utility for encrypting data and creating digital signatures. GnuPG has advanced key management capabilities and is compliant with the proposed OpenPGP Internet standard described in RFC2440. Since GnuPG doesn't use any patented algorithm, it is not compatible with any version of PGP2 (PGP2.x uses only IDEA for symmetric-key encryption, which is patented worldwide). ---------------------------------------------------------------------Update Information: This update upgrades GnuPG to version 1.4.5 to correct errors in the parsing of certain types of packets. ---------------------------------------------------------------------* Tue Aug 1 2006 Nalin Dahyabhai - 1.4.5-2 - rebuild - reenable curl support * Tue Aug 1 2006 Nalin Dahyabhai - 1.4.5-1 - update to 1.4.5, fixing additional size overflows in packet parsing (#200904, CVE-2006-3746) - temporarily disable curl support again * Fri Jul 28 2006 Nalin Dahyabhai - 1.4.4.90-1 - update to 1.4.5rc1 to check for build problems, but mark it as 1.4.4.90 to avoid looking "newer" than the eventual 1.4.5 - because we call aclocal, buildrequire gettext-devel to get AM_GNU_GETTEXT * Thu Jul 20 2006 Nalin Dahyabhai - 1.4.4-7 - add BuildPrereq on curl-devel to get curl's ipv6 support (#198375) * Wed Jul 12 2006 Nalin Dahyabhai - 1.4.4-6 - fix a cast in gpgkeys_hkp to avoid tripping stack smashing or buffer overflow detection (#198612) * Wed Jul 12 2006 Jesse Keating - 1.4.4-5.1 - rebuild * Wed Jul 5 2006 Nalin Dahyabhai -1.4.4-5 - try again using per-platform buildprereq (jkeating) * Wed Jul 5 2006 Nalin Dahyabhai - 1.4.4-4 - buildprereq libusb-devel, so that we get CCID support back (#197450) * Mon Jun 26 2006 Nalin Dahyabhai - 1.4.4-3 - rebuild * Mon Jun 26 2006 Nalin Dahyabhai - 1.4.4-2 - rebuild * Mon Jun 26 2006 Nalin Dahyabhai - 1.4.4-1 - update to 1.4.4 * Tue Jun 20 2006 Nalin Dahyabhai - 1.4.3-5 - rebuild * Tue Jun 20 2006 Nalin Dahyabhai - 1.4.3-4 - add patch from upstream to fix CVE-2006-3082 (#195946) ---------------------------------------------------------------------This update can be downloaded from: dab417f77fefbf6d15ede1e8dcf6fb580d10f444 SRPMS/gnupg-1.4.5-2.src.rpm dab417f77fefbf6d15ede1e8dcf6fb580d10f444 noarch/gnupg-1.4.5-2.src.rpm 581d146dbae9924c3c73259382adb66c2ec1dea3 ppc/debug/gnupg-debuginfo-1.4.5-2.ppc.rpm d0007f76d5e0c52b707ea67ee0de990dd56931c0 ppc/gnupg-1.4.5-2.ppc.rpm 419fc0100d2478ed05b4e1b0d89148fcd1225638 x86_64/gnupg-1.4.5-2.x86_64.rpm e333312919512cf61b7dd80e8420cf9dea5ab183 x86_64/debug/gnupg-debuginfo-1.4.5-2.x86_64.rpm 6bf8b9b0f0bf974aeefd5dcfa9a7df9e4121b275 i386/debug/gnupg-debuginfo-1.4.5-2.i386.rpm 34b154d18c91fc305f824bf71e4151d7bd3f2f64 i386/gnupg-1.4.5-2.i386.rpm This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at . ---------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . A recent GnuPG enhancement for Fedora Core 5 resolves issues related to packet interpretation, bolstering security measures. Don't miss the chance to upgrade to version 1.4.5 today.. GnuPG Update,Fedora Core 5,Packet Parsing Security Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 02, 2006 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here