Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
100

openSUSE 15.4, 15.5: 2023:4647-1 moderate: haproxy path manipulation

* bsc#1217653 Cross-References: * CVE-2023-45539 . # Security update for haproxy Announcement ID: SUSE-SU-2023:4647-1 Rating: moderate References: * bsc#1217653 Cross-References: * CVE-2023-45539 CVSS scores: * CVE-2023-45539 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2023-45539 ( NVD ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N Affected Products: * openSUSE Leap 15.4 * openSUSE Leap 15.5 * openSUSE Leap Micro 5.3 * openSUSE Leap Micro 5.4 * SUSE Linux Enterprise High Availability Extension 15 SP4 * SUSE Linux Enterprise High Availability Extension 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for haproxy fixes the following issues: * CVE-2023-45539: Fixed misinterpretation of a path_end rule with # as part of the URI component (bsc#1217653). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2023-4647=1 openSUSE-SLE-15.4-2023-4647=1 * openSUSE Leap Micro 5.3 zypper in -t patch openSUSE-Leap-Micro-5.3-2023-4647=1 * openSUSE Leap Micro 5.4 zypper in -t patch openSUSE-Leap-Micro-5.4-2023-4647=1 * openSUSE Leap 15.5 zypper in -tpatch openSUSE-SLE-15.5-2023-4647=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2023-4647=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2023-4647=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-4647=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-4647=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2023-4647=1 * SUSE Linux Enterprise High Availability Extension 15 SP4 zypper in -t patch SUSE-SLE-Product-HA-15-SP4-2023-4647=1 * SUSE Linux Enterprise High Availability Extension 15 SP5 zypper in -t patch SUSE-SLE-Product-HA-15-SP5-2023-4647=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * openSUSE Leap Micro 5.3 (aarch64 x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * openSUSE Leap Micro 5.4 (aarch64 s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * SUSE Linux Enterprise High Availability Extension 15 SP4 (aarch64 ppc64le s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 * SUSE Linux Enterprise High Availability Extension 15 SP5 (aarch64 ppc64le s390x x86_64) * haproxy-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debuginfo-2.4.22+git0.f8e3218e2-150400.3.19.1 * haproxy-debugsource-2.4.22+git0.f8e3218e2-150400.3.19.1 ## References: * https://www.suse.com/security/cve/CVE-2023-45539.html * https://bugzilla.suse.com/show_bug.cgi?id=1217653 . This SUSE advisory covers the haproxy update addressing CVE-2023-45539 with moderate severity for openSUSE users.. OpenSUSE Leap, HAProxy Patch, SUSE Security Update, Linux Enterprise, High Availability Extension. . LinuxSecurity.com Team

Calendar 2 Dec 14, 2023 SuSE
89

Fedora 33: 2021-abc123xyz Moderate: Skopeo Path Manipulation Issue

bump podman to v3.0.1, Security fix for CVE-2021-20206 ---- Resolves: #1919391, #1926796 - Security fix for CVE-2021-20206 ---- Autobuilt v1.19.3 ---- Autobuilt v1.19.2 ---- Autobuilt v1.19.1 ---- Autobuilt v1.19.0 ---- harden cgo based golang binaries ---- Autobuilt v0.9.1. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-fb466fb623 2021-02-26 01:07:35.018897 --------------------------------------------------------------------------------Name : skopeo Product : Fedora 33 Version : 1.2.2 Release : 1.fc33 URL : https://github.com/containers/skopeo Summary : Inspect container images and repositories on registries Description : Command line utility to inspect images and repositories directly on Docker registries without the need to pull them --------------------------------------------------------------------------------Update Information: bump podman to v3.0.1, Security fix for CVE-2021-20206 ---- Resolves: #1919391, #1926796 - Security fix for CVE-2021-20206 ---- Autobuilt v1.19.3 ---- Autobuilt v1.19.2 ---- Autobuilt v1.19.1 ---- Autobuilt v1.19.0 ----harden cgo based golang binaries ---- Autobuilt v0.9.1 --------------------------------------------------------------------------------ChangeLog: * Fri Feb 19 2021 Lokesh Mandvekar - 1:1.2.2-1 - bump to v1.2.2 * Fri Feb 12 2021 Lokesh Mandvekar - 1:1.2.1-2 - adjust buildtags for centos and bump release * Thu Feb 11 2021 Lokesh Mandvekar - 1:1.2.1-1 - bump to v1.2.1 - depend on standalone containers-common * Tue Dec 15 2020 Lokesh Mandvekar - 1:1.2.0-15 - handle fcf-protection for fedora and centos8 * Tue Dec 15 2020 Lokesh Mandvekar - 1:1.2.0-14 - no fcf-protection for centos7 --------------------------------------------------------------------------------References: [ 1 ] Bug #1919391 - CVE-2021-20206 containernetworking-cni: Arbitrary path injection via type field in CNI configuration https://bugzilla.redhat.com/show_bug.cgi?id=1919391 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-fb466fb623' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Ubuntu 21.10 Podman vulnerability fix for the CVE-2021-20207. Maintain system integrity with the most current upgrades and resolutions.. Fedora 33 Update, Podman Upgrade, Skopeo Fix, Container Management. . LinuxSecurity.com Team

Calendar 2 Feb 25, 2021 Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here