Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
203

Mageia 9: MGASA-2025-0082 critical: libcap configuration error

pam_cap: Fix potential configuration parsing error. (CVE-2025-1390) References: - https://bugs.mageia.org/show_bug.cgi?id=34048 - https://ubuntu.com/security/notices/USN-7287-1 . MGASA-2025-0082 - Updated libcap packages fix security vulnerability Publication date: 26 Feb 2025 URL: https://advisories.mageia.org/MGASA-2025-0082.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-1390 pam_cap: Fix potential configuration parsing error. (CVE-2025-1390) References: - https://bugs.mageia.org/show_bug.cgi?id=34048 - https://ubuntu.com/security/notices/USN-7287-1 - https://www.cve.org/CVERecord?id=CVE-2025-1390 SRPMS: - 9/core/libcap-2.52-5.1.mga9 . Newly released libcap updates address vulnerabilities linked to configuration parsing. Ensure your system's safety with the latest Mageia updates.. libcap security,mageia advisory,configuration parsing fix,security patch,updated packages. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 26, 2025 Critical Mageia
197

Debian 10: DLA-3203-1 Moderate: Nginx Denial Of Service Risk

It was discovered that parsing errors in the mp4 module of Nginx, a high-performance web and reverse proxy server, could result in denial of service, memory disclosure or potentially the execution of arbitrary code when processing a malformed mp4 file. . -------------------------------------------------------------------------Debian LTS Advisory DLA-3203-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Markus Koschany November 23, 2022 https://wiki.debian.org/LTS -------------------------------------------------------------------------Package : nginx Version : 1.14.2-2+deb10u5 CVE ID : CVE-2021-3618 CVE-2022-41741 CVE-2022-41742 Debian Bug : 991328 It was discovered that parsing errors in the mp4 module of Nginx, a high-performance web and reverse proxy server, could result in denial of service, memory disclosure or potentially the execution of arbitrary code when processing a malformed mp4 file. This module is only enabled in the nginx-extras binary package. In addition the following vulnerability has been fixed. CVE-2021-3618 ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certificates, such as multi-domain or wildcard certificates. A MiTM attacker having access to victim's traffic at the TCP/IP layer can redirect traffic from one subdomain to another, resulting in a valid TLS session. This breaks the authentication of TLS and cross-protocol attacks may be possible where the behavior of one protocol service may compromise For Debian 10 buster, these problems have been fixed in version 1.14.2-2+deb10u5. We recommend that you upgrade your nginx packages. For the detailed security status of nginx please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/nginx Further information about DebianLTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Ensure that your nginx installations are updated promptly to address the latest parsing vulnerabilities and security concerns highlighted in the recent Debian LTS advisory DLA-3203-1.. Debian Updates, Nginx Security, Denial Of Service, Memory Disclosure. . LinuxSecurity.com Team

Calendar 2 Nov 22, 2022 Debian LTS
87

Debian: DSA-2478-1 Critical: Sudo Command Execution Threat

It was discovered that sudo misparsed network masks used in Host and Host_List stanzas. This allowed the execution of commands on hosts, where the user would not be allowed to run the specified command. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-2478-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff May 23, 2012 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : sudo Vulnerability : parsing error Problem type : remote Debian-specific: no CVE ID : CVE-2012-2337 It was discovered that sudo misparsed network masks used in Host and Host_List stanzas. This allowed the execution of commands on hosts, where the user would not be allowed to run the specified command. For the stable distribution (squeeze), this problem has been fixed in version 1.7.4p4-2.squeeze.3. For the unstable distribution (sid), this problem will be fixed soon. We recommend that you upgrade your sudo packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: http://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Enhancement suggested for sudo to rectify command execution problem caused by network mask misinterpretation in Debian.. Debian Security Advisory, sudo misparse, command execution threat. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 23, 2012 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here