Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
100

SUSE: 2022:4442-1 Moderate: Fixes for SUSE Manager Server 4.2

An update that contains security fixes can now be installed. . SUSE Security Update: Security update for SUSE Manager Server 4.2 ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:4442-1 Rating: moderate References: #1205339 Affected Products: SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2 SUSE Linux Enterprise Module for SUSE Manager Server 4.2 SUSE Manager Proxy 4.2 SUSE Manager Server 4.2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update fixes the following issues: spacewalk-java: - Version 4.2.44-1 * Do not disclose Proxy password in browser console log. (bsc#1205339) spacewalk-web: - Version 4.2.31-1 * Do not log Proxy password in browser console log. (bsc#1205339) susemanager-sync-data: - Version 4.2.14-1 * Add SUSE Linux Enterprise Server 15 SP3 LTSS How to apply this update: 1. Log in as root user to the SUSE Manager server. 2. Stop the Spacewalk service: `spacewalk-service stop` 3. Apply the patch using either zypper patch or YaST Online Update. 4. Start the Spacewalk service: `spacewalk-service start` Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for SUSE Manager Server 4.2: zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Server-4.2-2022-4442=1 - SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2: zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Proxy-4.2-2022-4442=1 Package List: - SUSE Linux Enterprise Module for SUSE Manager Server 4.2 (noarch): spacewalk-base-4.2.31-150300.3.33.2 spacewalk-base-minimal-4.2.31-150300.3.33.2 spacewalk-base-minimal-config-4.2.31-150300.3.33.2 spacewalk-html-4.2.31-150300.3.33.2 spacewalk-java-4.2.44-150300.3.51.3 spacewalk-java-config-4.2.44-150300.3.51.3 spacewalk-java-lib-4.2.44-150300.3.51.3 spacewalk-java-postgresql-4.2.44-150300.3.51.3 spacewalk-taskomatic-4.2.44-150300.3.51.3 susemanager-sync-data-4.2.14-150300.3.24.1 - SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2 (noarch): spacewalk-base-minimal-4.2.31-150300.3.33.2 spacewalk-base-minimal-config-4.2.31-150300.3.33.2 References: https://bugzilla.suse.com/1205339 . SUSE Security Patch resolves authentication logging vulnerabilities in SUSE Manager Server 4.2. Discover how to implement the updates today.. SUSE Manager Server Updates, Security Fixes, SUSE Linux Management. . LinuxSecurity.com Team

Calendar 2 Dec 13, 2022 SuSE
200

Scientific Linux: SLSA-2021-3177-1 Moderate: Clear-Text Password Logging

cloud-init: randomly generated passwords logged in clear-text to world- readable file (CVE-2021-3429) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE - Scientific Linux Development Team. Synopsis: Moderate: cloud-init security update Advisory ID: SLSA-2021:3177-1 Issue Date: 2021-08-17 CVE Numbers: CVE-2021-3429 -- Security Fix(es): * cloud-init: randomly generated passwords logged in clear-text to world- readable file (CVE-2021-3429) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE -- - Scientific Linux Development Team . Investigate the cloud-init security patch SLSA-2021:3177-1, which tackles moderate threats and the issue of logging passwords in clear text.. cloud-init security, password logging, Scientific Linux update. . LinuxSecurity.com Team

Calendar 2 Aug 17, 2021 Scientific Linux
98

Moderate Update: Cloud-Init Password Logging for Red Hat Enterprise Linux 8

An update for cloud-init is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: cloud-init security update Advisory ID: RHSA-2021:3081-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:3081 Issue date: 2021-08-10 CVE Names: CVE-2021-3429 ==================================================================== 1. Summary: An update for cloud-init is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - noarch 3. Description: The cloud-init packages provide a set of init scripts for cloud instances. Cloud instances need special scripts to run during initialization to retrieve and install SSH keys, and to let the user run various scripts. Security Fix(es): * cloud-init: randomly generated passwords logged in clear-text to world-readable file (CVE-2021-3429) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1940967 - CVE-2021-3429 cloud-init:randomly generated passwords logged in clear-text to world-readable file 6. Package List: Red Hat Enterprise Linux AppStream (v. 8): Source: cloud-init-20.3-10.el8_4.5.src.rpm noarch: cloud-init-20.3-10.el8_4.5.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2021-3429 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYRKHN9zjgjWX9erEAQjXlQ//XbOwz3qHu7uVd05mYc/aWaifmrWsWLHW Askc2LA9kc4b6K5TlzUGCSuTmfEFniWkwt2MBRpwtOxTt/ai56dfs+2JlB166dgu fAs0KWvyJaBC09rJSjlPMIX3kcRbt90GpkfCCY8tN0o69fHhHGLX6SoaGhmj6MDM po/W5L1VDZM0qV0YmG9dDvwe2FswQUovuQAN+BxLC4V3eGrLAVR+kTOjmIG+7Vr0 jFSr9N7BAFs6XwvIFEQHrINhseEl/JgqiuLKKTNWoAOv0b/2WB8Mq+Tq1h+Ntxvc tuPyppCy7LcpqLb4ELtgevXzPrAo6S/pi4vycg+SNu60zdt5PUCxwDeSIUD52/UL gf4HeK5cUIJYPtyfiXuJIuETZGUrhz7l109Dz3t1S2x7JrmONm8V+UivxQeblB8m wqqh0ZNrIvx+dow8WfftO5lRtgPuDUnvTKtDi1DMQa0p0lFm5MyrItHNvFkMXKQK hYMCv3dKjrBxC6WycK/jXTNTuh5rfjkf7BziaTCCAQTzYSCl6O95q8WDr4nN1+Jp kUPABmEbkVvz4ZoZj/ZjMeK1z+GXj9kFcr1MZVLrGn11LdfveKfbACokg/8T3oQ4 SIu4E0wgzGXB3pKUKJ58a9H2VvgfII70AgNeq3s6CE/OXX6XkobVmn88aPbkp7md 6EDNHl8yIZA=muu8 -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A recent update for cloud-init in Red Hat Enterprise Linux 8 resolves a moderate security vulnerability related to the logging of passwords.. Red Hat Cloud-Init Update, Linux Security Advisory, Moderate Security Updates. . LinuxSecurity.com Team

Calendar 2 Aug 10, 2021 Red Hat
202

openSUSE Leap 15.2 Advisory: 2021:0930-1 Moderate: Freeradius-Server Fix

An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for freeradius-server ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:0930-1 Rating: moderate References: #1184016 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for freeradius-server fixes the following issues: - Fixed plaintext password entries in logfiles (bsc#1184016). This update was imported from the SUSE:SLE-15-SP2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2021-930=1 Package List: - openSUSE Leap 15.2 (x86_64): freeradius-server-3.0.21-lp152.2.9.1 freeradius-server-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-debugsource-3.0.21-lp152.2.9.1 freeradius-server-devel-3.0.21-lp152.2.9.1 freeradius-server-doc-3.0.21-lp152.2.9.1 freeradius-server-krb5-3.0.21-lp152.2.9.1 freeradius-server-krb5-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-ldap-3.0.21-lp152.2.9.1 freeradius-server-ldap-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-libs-3.0.21-lp152.2.9.1 freeradius-server-libs-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-mysql-3.0.21-lp152.2.9.1 freeradius-server-mysql-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-perl-3.0.21-lp152.2.9.1 freeradius-server-perl-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-postgresql-3.0.21-lp152.2.9.1 freeradius-server-postgresql-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-python3-3.0.21-lp152.2.9.1 freeradius-server-python3-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-sqlite-3.0.21-lp152.2.9.1 freeradius-server-sqlite-debuginfo-3.0.21-lp152.2.9.1 freeradius-server-utils-3.0.21-lp152.2.9.1 freeradius-server-utils-debuginfo-3.0.21-lp152.2.9.1 References: https://bugzilla.suse.com/1184016 . The latest update for openSUSE mitigates issues with plaintext password storage in freeradius-server. Apply these enhancements promptly to bolster your security posture.. Freeradius Update, openSUSE Security, Server Patch Instructions. . LinuxSecurity.com Team

Calendar 2 Jun 27, 2021 OpenSUSE
100

SUSE: 2021:2147-1 Moderate: Freeradius-Server Password Issue Fix

An update that contains security fixes can now be installed. . SUSE Security Update: Security update for freeradius-server ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:2147-1 Rating: moderate References: #1184016 Affected Products: SUSE Linux Enterprise Module for Server Applications 15-SP3 SUSE Linux Enterprise Module for Server Applications 15-SP2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for freeradius-server fixes the following issues: - Fixed plaintext password entries in logfiles (bsc#1184016). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Server Applications 15-SP3: zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP3-2021-2147=1 - SUSE Linux Enterprise Module for Server Applications 15-SP2: zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP2-2021-2147=1 Package List: - SUSE Linux Enterprise Module for Server Applications 15-SP3 (aarch64 ppc64le s390x x86_64): freeradius-server-3.0.21-3.9.1 freeradius-server-debuginfo-3.0.21-3.9.1 freeradius-server-debugsource-3.0.21-3.9.1 freeradius-server-devel-3.0.21-3.9.1 freeradius-server-krb5-3.0.21-3.9.1 freeradius-server-krb5-debuginfo-3.0.21-3.9.1 freeradius-server-ldap-3.0.21-3.9.1 freeradius-server-ldap-debuginfo-3.0.21-3.9.1 freeradius-server-libs-3.0.21-3.9.1 freeradius-server-libs-debuginfo-3.0.21-3.9.1 freeradius-server-mysql-3.0.21-3.9.1 freeradius-server-mysql-debuginfo-3.0.21-3.9.1 freeradius-server-perl-3.0.21-3.9.1 freeradius-server-perl-debuginfo-3.0.21-3.9.1 freeradius-server-postgresql-3.0.21-3.9.1 freeradius-server-postgresql-debuginfo-3.0.21-3.9.1 freeradius-server-python3-3.0.21-3.9.1 freeradius-server-python3-debuginfo-3.0.21-3.9.1 freeradius-server-sqlite-3.0.21-3.9.1 freeradius-server-sqlite-debuginfo-3.0.21-3.9.1 freeradius-server-utils-3.0.21-3.9.1 freeradius-server-utils-debuginfo-3.0.21-3.9.1 - SUSE Linux Enterprise Module for Server Applications 15-SP2 (aarch64 ppc64le s390x x86_64): freeradius-server-3.0.21-3.9.1 freeradius-server-debuginfo-3.0.21-3.9.1 freeradius-server-debugsource-3.0.21-3.9.1 freeradius-server-devel-3.0.21-3.9.1 freeradius-server-krb5-3.0.21-3.9.1 freeradius-server-krb5-debuginfo-3.0.21-3.9.1 freeradius-server-ldap-3.0.21-3.9.1 freeradius-server-ldap-debuginfo-3.0.21-3.9.1 freeradius-server-libs-3.0.21-3.9.1 freeradius-server-libs-debuginfo-3.0.21-3.9.1 freeradius-server-mysql-3.0.21-3.9.1 freeradius-server-mysql-debuginfo-3.0.21-3.9.1 freeradius-server-perl-3.0.21-3.9.1 freeradius-server-perl-debuginfo-3.0.21-3.9.1 freeradius-server-postgresql-3.0.21-3.9.1 freeradius-server-postgresql-debuginfo-3.0.21-3.9.1 freeradius-server-python3-3.0.21-3.9.1 freeradius-server-python3-debuginfo-3.0.21-3.9.1 freeradius-server-sqlite-3.0.21-3.9.1 freeradius-server-sqlite-debuginfo-3.0.21-3.9.1 freeradius-server-utils-3.0.21-3.9.1 freeradius-server-utils-debuginfo-3.0.21-3.9.1 References: https://bugzilla.suse.com/1184016 . Update on FreeRADIUS server addressing password logging concerns in openSUSE environments. Apply this patch to enhance the security of your installations today.. SUSE, Freeradius-Server, Password Fix, Security Update, Server Security. . LinuxSecurity.com Team

Calendar 2 Jun 23, 2021 SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here