Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -2 articles for you...
89

Fedora 44 stgit Moderate Permission Update CVE-2026-33056

Rebuilt with rust-tar 0.4.45 for CVE-2026-33056. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-25285d56e4 2026-03-31 00:16:35.926034+00:00 -------------------------------------------------------------------------------- Name : stgit Product : Fedora 44 Version : 2.5.5 Release : 5.fc44 URL : https://stacked-git.github.io/ Summary : Stack-based patch management for Git Description : Stacked Git, StGit for short, is an application for managing Git commits as a stack of patches. With a patch stack workflow, multiple patches can be developed concurrently and efficiently, with each patch focused on a single concern, resulting in both a clean Git commit history and improved productivity. -------------------------------------------------------------------------------- Update Information: Rebuilt with rust-tar 0.4.45 for CVE-2026-33056 -------------------------------------------------------------------------------- ChangeLog: * Sun Mar 22 2026 Benjamin A. Beasley - 2.5.5-5 - Rebuilt with rust-tar 0.4.45 for CVE-2026-33056 - Fixes RHBZ#2449690 - Updated the License expression and wrote it one-term-per-line -------------------------------------------------------------------------------- References: [ 1 ] Bug #2449690 - CVE-2026-33056 stgit: tar-rs: Arbitrary directory permission modification via crafted tar archive [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2449690 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-25285d56e4' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can befound at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Critical fix for CVE-2026-33056 in Fedora 44 - update stgit with rust-tar 0.4.45 to address permission issues.. Fedora 44, CVE-2026-33056, rust-tar, stgit, security fix. . LinuxSecurity.com Team

Calendar 2 Mar 31, 2026 Fedora
89

Fedora 42 uv Important Archive Permission Issues Fixed 2026-23bb71ea52

Update rust-astral-tokio-tar to 0.6.0, fixing CVE-2026-32766. Update rust-tar to 0.4.45, fixing CVE-2026-33056. Update rust-nix to 0.31.2. Update uv and python- uv-build to 0.10.2, rebuilding them with the latest rust-astral-tokio-tar and rust-tar. Update python-fastar to 0.9.0, rebuilding it with the lastest rust- tar. Rebuild maturin with the latest rust-tar.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-23bb71ea52 2026-03-29 01:07:01.422539+00:00 -------------------------------------------------------------------------------- Name : uv Product : Fedora 42 Version : 0.10.12 Release : 1.fc42 URL : https://github.com/astral-sh/uv Summary : An extremely fast Python package installer and resolver, written in Rust Description : An extremely fast Python package and project manager, written in Rust. Highlights: \u2022 A single tool to replace pip, pip-tools, pipx, poetry, pyenv, twine, virtualenv, and more. \u2022 10-100x faster than pip. \u2022 Provides comprehensive project management, with a universal lockfile. \u2022 Runs scripts, with support for inline dependency metadata. \u2022 Installs and manages Python versions. \u2022 Runs and installs tools published as Python packages. \u2022 Includes a pip-compatible interface for a performance boost with a familiar CLI. \u2022 Supports Cargo-style workspaces for scalable projects. \u2022 Disk-space efficient, with a global cache for dependency deduplication. -------------------------------------------------------------------------------- Update Information: Update rust-astral-tokio-tar to 0.6.0, fixing CVE-2026-32766. Update rust-tar to 0.4.45, fixing CVE-2026-33056. Update rust-nix to 0.31.2. Update uv and python- uv-build to 0.10.2, rebuilding them with the latest rust-astral-tokio-tar and rust-tar. Update python-fastar to 0.9.0, rebuilding it with the lastest rust- tar. Rebuild maturin with the latestrust-tar. -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 20 2026 Benjamin A. Beasley - 0.10.12-1 - Update to 0.10.12 (close RHBZ#2449243) * Tue Mar 17 2026 Benjamin A. Beasley - 0.10.11-1 - Update to 0.10.11 (close RHBZ#2448300) * Sun Mar 15 2026 Benjamin A. Beasley - 0.10.10-1 - Update to 0.10.10 (close RHBZ#2447540) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2448054 - rust-astral-tokio-tar-0.6.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2448054 [ 2 ] Bug #2449243 - uv-0.10.12 is available https://bugzilla.redhat.com/show_bug.cgi?id=2449243 [ 3 ] Bug #2449274 - rust-tar-0.4.45 is available https://bugzilla.redhat.com/show_bug.cgi?id=2449274 [ 4 ] Bug #2449338 - python-uv-build-0.10.12 is available https://bugzilla.redhat.com/show_bug.cgi?id=2449338 [ 5 ] Bug #2449547 - CVE-2026-32766 python-uv-build: astral-tokio-tar: Potential archive misinterpretation via malformed PAX extensions [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2449547 [ 6 ] Bug #2449549 - CVE-2026-32766 uv: astral-tokio-tar: Potential archive misinterpretation via malformed PAX extensions [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2449549 [ 7 ] Bug #2449645 - python-fastar-0.9.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2449645 [ 8 ] Bug #2449681 - CVE-2026-33056 maturin: tar-rs: Arbitrary directory permission modification via crafted tar archive [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2449681 [ 9 ] Bug #2449683 - CVE-2026-33056 python-fastar: tar-rs: Arbitrary directory permission modification via crafted tar archive [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2449683 [ 10 ] Bug #2449684 - CVE-2026-33056 python-uv-build: tar-rs: Arbitrary directory permission modification via crafted tar archive [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2449684 [ 11 ] Bug #2449694 - CVE-2026-33056 uv: tar-rs: Arbitrary directory permission modification via crafted tar archive [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2449694 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-23bb71ea52' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Fixes for critical issues in uv and related Python packages on Fedora 42. Stay secure with these updates now!. Fedora updates, Rust applications, Python package security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Mar 29, 2026 Important Fedora
89

Fedora 36: 2022-abc1e8cd3f Serious: Containerd Access Restrictions

Security fixes for moby-engine and containerd containerd: - fixes CVE-2021-41103 - Fix insufficiently restricted permissions on container root and plugin directories - update to upstream 1.5.7 moby-engine: - fixes CVE-2021-41092, CVE-2021-41089 and CVE-2021-41091 - patches seccomp policy to fix clone3() issue - update to upstream 20.10.9. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-b5a9a481a2 2021-10-29 22:48:33.391790 --------------------------------------------------------------------------------Name : containerd Product : Fedora 35 Version : 1.5.7 Release : 1.fc35 URL : https://github.com/containerd/containerd Summary : Open and reliable container runtime Description : Containerd is an industry-standard container runtime with an emphasis on simplicity, robustness and portability. It is available as a daemon for Linux and Windows, which can manage the complete container lifecycle of its host system: image transfer and storage, container execution and supervision, low-level storage and network attachments, etc. --------------------------------------------------------------------------------Update Information: Security fixes for moby-engine and containerd containerd: - fixes CVE-2021-41103 - Fix insufficiently restricted permissions on container root and plugin directories - update to upstream 1.5.7 moby-engine: - fixes CVE-2021-41092, CVE-2021-41089 and CVE-2021-41091 - patches seccomp policy to fix clone3() issue - update to upstream 20.10.9 --------------------------------------------------------------------------------ChangeLog: * Sun Oct 10 2021 Olivier Lemasle - 1.5.7-1 - Update to upstream 1.5.7 (fixes rhbz#2009149) - Fixes CVE-2021-41103 (fixes rhbz#2011014, rhbz#2011007) --------------------------------------------------------------------------------References: [ 1 ] Bug #2011007 - CVE-2021-41103 containerd: insufficiently restricted permissions oncontainer root and plugin directories https://bugzilla.redhat.com/show_bug.cgi?id=2011007 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-b5a9a481a2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Fedora 35 security updates include essential fixes for moby-engine and containerd, tackling critical vulnerabilities.. Container Fixes, Security Patches, Fedora 35. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Oct 29, 2021 Critical Fedora
89

Fedora 32 pxz Security Advisory: Race Condition and Performance Update

- Update to GIT 20200421 - Added patch against race condition in setting permissions on output file (#1182024) - Added patch to revert environment redirect allowing `export XZ_OPT="-9"` or similar. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-8b89d5b9eb 2020-05-01 04:04:10.484407 --------------------------------------------------------------------------------Name : pxz Product : Fedora 32 Version : 4.999.9 Release : 19.beta.20200421git.fc32 URL : https://jnovy.fedorapeople.org/pxz/ Summary : Parallel LZMA compressor using XZ Description : Parallel XZ is a compression utility that takes advantage of running XZ compression simultaneously on different parts of an input file on multiple cores and processors. This significantly speeds up compression time. --------------------------------------------------------------------------------Update Information: - Update to GIT 20200421 - Added patch against race condition in setting permissions on output file (#1182024) - Added patch to revert environment redirect allowing `export XZ_OPT="-9"` or similar --------------------------------------------------------------------------------ChangeLog: * Tue Apr 21 2020 Robert Scheck 4.999.9-19.beta.20200421git - Update to GIT 20200421 - Added patch against race condition in setting permissions on output file (#1182024) - Added patch to revert environment redirect allowing 'export XZ_OPT="-9"' or similar --------------------------------------------------------------------------------References: [ 1 ] Bug #1182024 - CVE-2015-1200 pxz: race condition in setting permissions on output file https://bugzilla.redhat.com/show_bug.cgi?id=1182024 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-8b89d5b9eb' at the command line. For more information, refer tothe dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Elevate pxz in Fedora 32 to address concurrency issues and boost functionality for improved efficacy.. Fedora 32, pxz update, race condition fix, compression utility. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 01, 2020 Critical Fedora
200

Scientific Linux 5.x: Moderate PostgreSQL Security Update CVE-2010-1169

Moderate: postgresql84 security update. Date: Thu, 20 May 2010 15:05:34 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: postgresql84 on SL5.x i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Moderate: postgresql84 security update Issue date: 2010-05-19 CVE Names: CVE-2010-1169 CVE-2010-1170 A flaw was found in the way PostgreSQL enforced permission checks on scripts written in PL/Perl. If the PL/Perl procedural language was registered on a particular database, an authenticated database user running a specially-crafted PL/Perl script could use this flaw to bypass intended PL/Perl trusted mode restrictions, allowing them to run arbitrary Perl scripts with the privileges of the database server. (CVE-2010-1169) A flaw was found in the way PostgreSQL enforced permission checks on scripts written in PL/Tcl. If the PL/Tcl procedural language was registered on a particular database, an authenticated database user running aspecially-crafted PL/Tcl script could use this flaw to bypass intended PL/Tcl trusted mode restrictions, allowing them to run arbitrary Tcl scripts with the privileges of the database server. (CVE-2010-1170) If the postgresql service is running, it will be automatically restarted after installing this update. NOTE1: postgresql84 and postgresql packages cannot be installed concurrently on the same system, with the exception that the postgresql-libs package can remain in place in parallel with postgresql84. The postgresql-libs package contains client-side library code to which existing applications may be linked. These libraries will still work with the newer server. NOTE2: As 8.4.x also has on-disk data format differences from 8.1.x, it is not possible to upgrade an existing 8.1.x PostgreSQL database to 8.4.x merely by replacing the packages. Instead, first dump the contents of the existing database using the pg_dumpall command, then shut down the old server and remove the database files(under /var/lib/pgsql/data). Next, remove the old packages and install the new ones; start the new server; and finally restore the data from the pg_dumpall output. SL 5.x SRPMS: postgresql84-8.4.4-1.el5_5.1.src.rpm i386: postgresql84-8.4.4-1.el5_5.1.i386.rpm postgresql84-contrib-8.4.4-1.el5_5.1.i386.rpm postgresql84-devel-8.4.4-1.el5_5.1.i386.rpm postgresql84-docs-8.4.4-1.el5_5.1.i386.rpm postgresql84-libs-8.4.4-1.el5_5.1.i386.rpm postgresql84-plperl-8.4.4-1.el5_5.1.i386.rpm postgresql84-plpython-8.4.4-1.el5_5.1.i386.rpm postgresql84-pltcl-8.4.4-1.el5_5.1.i386.rpm postgresql84-python-8.4.4-1.el5_5.1.i386.rpm postgresql84-server-8.4.4-1.el5_5.1.i386.rpm postgresql84-tcl-8.4.4-1.el5_5.1.i386.rpm postgresql84-test-8.4.4-1.el5_5.1.i386.rpm x86_64: postgresql84-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-contrib-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-devel-8.4.4-1.el5_5.1.i386.rpm postgresql84-devel-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-docs-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-libs-8.4.4-1.el5_5.1.i386.rpm postgresql84-libs-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-plperl-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-plpython-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-pltcl-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-python-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-server-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-tcl-8.4.4-1.el5_5.1.x86_64.rpm postgresql84-test-8.4.4-1.el5_5.1.x86_64.rpm -Connie Sieh -Troy Dawson . A critical patch for MySQL on CentOS 6.x addresses major access problems, ensuring improved security and functionality for users.. PostgreSQL Security Update, Scientific Linux Update, Permission Flaws, Database Security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 20, 2010 Important Scientific Linux
91

Gentoo: GLSA-200407-17 High: Systemd DoS and Permission Issues

Multiple permission vulnerabilities have been found in the Linux kernel, allowing an attacker to change the group IDs of files mounted on a remote filesystem (CAN-2004-0497), as well as an issue in 2.6 series kernels which allows /proc permissions to be bypassed. [More...]. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200407-16 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: High Title: Linux Kernel: Multiple DoS and permission vulnerabilities Date: July 22, 2004 Bugs: #56171, #56479 ID: 200407-16 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= Multiple permission vulnerabilities have been found in the Linux kernel, allowing an attacker to change the group IDs of files mounted on a remote filesystem (CAN-2004-0497), as well as an issue in 2.6 series kernels which allows /proc permissions to be bypassed. A context sharing vulnerability in vserver-sources is also handled by this advisory as well as CAN-2004-0447, CAN-2004-0496 and CAN-2004-0565. Patched, or updated versions of these kernels have been released and details are included along with this advisory. Background ========= The Linux kernel is responsible for managing the core aspects of a GNU/Linux system, providing an interface for core system applications as well as providing the essential structure and capability to access hardware that is needed for a running system. Affected packages ================ ------------------------------------------------------------------- Kernel / Unaffected / Remerge ------------------------------------------------------------------- 1 aa-sources ................. *> = 2.4.23-r2 .................. YES ............................. > = 2.6.5-r5 ................... YES 2 alpha-sources .............. > = 2.4.21-r9 ....................... 3 ck-sources ................. *> = 2.4.26-r1 .................. YES ............................. > = 2.6.7-r5 ................... YES 4 compaq-sources ........... > = 2.4.9.32.7-r8 ..................... 5 development-sources ........ > = 2.6.8_rc1 ....................... 6 gentoo-dev-sources .......... > = 2.6.7-r8 ....................... 7 gentoo-sources ............ *> = 2.4.19-r18 ...................... ........................... *> = 2.4.20-r21 ...................... ........................... *> = 2.4.22-r13 ...................... ............................ *> = 2.4.25-r6 ...................... ............................ > = 2.4.26-r5 ....................... 8 grsec-sources ............ > = 2.4.26.2.0-r6 ..................... 9 gs-sources ............... > = 2.4.25_pre7-r8 .................... 10 hardened-dev-sources ........ > = 2.6.7-r2 ....................... 11 hardened-sources ........... > = 2.4.26-r3 ....................... 12 hppa-dev-sources .......... > = 2.6.7_p1-r2 ...................... 13 hppa-sources .............. > = 2.4.26_p6-r1 ..................... 14 ia64-sources ............... > = 2.4.24-r7 ....................... 15 mm-sources .................. > = 2.6.7-r6 ....................... 16 openmosix-sources .......... > = 2.4.22-r11 ...................... 17 pac-sources ................ > = 2.4.23-r9 ....................... 18 planet-ccrma-sources ....... > = 2.4.21-r11 ...................... 19 pegasos-dev-sources ......... > = 2.6.7-r2 ....................... 20 pegasos-sources ............ > = 2.4.26-r3 ....................... 21 ppc-sources ................ > = 2.4.26-r3 ....................... 22 rsbac-sources .............. > = 2.4.26-r3 ....................... 23 rsbac-dev-sources ........... > = 2.6.7-r2 ....................... 24 selinux-sources ............ > = 2.4.26-r2 ................... YES 25 sparc-sources .............. > = 2.4.26-r3 ....................... 26 uclinux-sources .......... *> = 2.4.26_p0-r3 ..................... ........................... > = 2.6.7_p0-r2 ...................... 27 usermode-sources ........... *> = 2.4.24-r6 ...................... ............................ *> = 2.4.26-r3 ...................... ............................. > = 2.6.6-r4 ....................... 28 vserver-sources .......... > = 2.4.26.1.28-r1 .................... 29 win4lin-sources ............ *> = 2.4.26-r3 ...................... ............................. > = 2.6.7-r2 ....................... 30 wolk-sources ................ *> = 4.9-r10 ....................... ............................. *> = 4.11-r7 ....................... ............................. > = 4.14-r4 ........................ 31 xbox-sources ............... *> = 2.4.26-r3 ...................... ............................. > = 2.6.7-r2 ....................... 32 mips-sources ................ Vulnerable! ....................... 33 vanilla-sources ............. Vulnerable! ....................... ------------------------------------------------------------------- NOTE: Some kernels are still vulnerable. Users should migrate to another kernel if one is available or seek another solution such as patching their existing kernel. ------------------------------------------------------------------- NOTE: Packages marked with "Remerge" as "YES" require a re-merge even though Portage does not indicate a newer version! ------------------------------------------------------------------- 33 affected packages on all of their supported architectures. ------------------------------------------------------------------- Description ========== The Linux kernel allows a local attacker to mount a remote file system on a vulnerable Linux hostand modify files' group IDs. On 2.4 series kernels this vulnerability only affects shared NFS file systems. This vulnerability has been assigned CAN-2004-0497 by the Common Vulnerabilities and Exposures project. Also, a flaw in the handling of /proc attributes has been found in 2.6 series kernels; allowing the unauthorized modification of /proc entries, especially those which rely solely on file permissions for security to vital kernel parameters. An issue specific to the VServer Linux sources has been found, by which /proc related changes in one virtual context are applied to other contexts as well, including the host system. CAN-2004-0447 resolves a local DoS vulnerability on IA64 platforms which can cause unknown behavior and CAN-2004-0565 resolves a floating point information leak on IA64 platforms by which registers of other processes can be read by a local user. Finally, CAN-2004-0496 addresses some more unknown vulnerabilities in 2.6 series Linux kernels older than 2.6.7 which were found by the Sparse source code checking tool. Impact ===== Bad Group IDs can possibly cause a Denial of Service on parts of a host if the changed files normally require a special GID to properly operate. By exploiting this vulnerability, users in the original file group would also be blocked from accessing the changed files. The /proc attribute vulnerability allows local users with previously no permissions to certain /proc entries to exploit the vulnerability and then gain read, write and execute access to entries. These new privileges can be used to cause unknown behaviour ranging from reduced system performance to a Denial of Service by manipulating various kernel options which are usually reserved for the superuser. This flaw might also be used for opening restrictions set through /proc entries, allowing further attacks to take place through another possibly unexpected attack vector. The VServer issue can also be used to induce similar unexpected behaviour to other VServer contexts, including the host. Bysuccessful exploitation, a Denial of Service for other contexts can be caused allowing only root to read certain /proc entries. Such a change would also be replicated to other contexts, forbidding normal users on those contexts to read /proc entries which could contain details needed by daemons running as a non-root user, for example. Additionally, this vulnerability allows an attacker to read information from another context, possibly hosting a different server, gaining critical information such as what processes are running. This may be used for furthering the exploitation of either context. CAN-2004-0447 and CAN-2004-0496 permit various local unknown Denial of Service vulnerabilities with unknown impacts - these vulnerabilities can be used to possibly elevate privileges or access reserved kernel memory which can be used for further exploitation of the system. CAN-2004-0565 allows FPU register values of other processes to be read by a local user setting the MFH bit during a floating point operation - since no check was in place to ensure that the FPH bit was owned by the requesting process, but only an MFH bit check, an attacker can simply set the MFH bit and access FPU registers of processes running as other users, possibly those running as root. Workaround ========= 2.4 users may not be affected by CAN-2004-0497 if they do not use remote network filesystems and do not have support for any such filesystems in their kernel configuration. All 2.6 users are affected by the /proc attribute issue and the only known workaround is to disable /proc support. The VServer flaw applies only to vserver-sources, and no workaround is currently known for the issue. There is no known fix to CAN-2004-0447, CAN-2004-0496 or CAN-2004-0565 other than to upgrade the kernel to a patched version. As a result, all users affected by any of these vulnerabilities should upgrade their kernels to ensure the integrity of their systems. Resolution ========= Users are encouraged to upgrade to the latest available sourcesfor their system: # emerge sync # emerge -pv your-favorite-sources # emerge your-favorite-sources # # Follow usual procedure for compiling and installing a kernel. # # If you use genkernel, run genkernel as you would do normally. References ========= [ 1 ] CAN-2004-0447 https://www.cve.org/CVERecord?id=CVE-CAN-2004-0447 [ 2 ] CAN-2004-0496 https://www.cve.org/CVERecord?id=CVE-CAN-2004-0496 [ 3 ] CAN-2004-0497 https://www.cve.org/CVERecord?id=CVE-CAN-2004-0497 [ 4 ] CAN-2004-0565 https://www.cve.org/CVERecord?id=CVE-CAN-2004-0565 [ 5 ] VServer /proc Context Vulnerability Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/200407-16 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org/. License ====== Copyright 2004 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/1.0/ . Various privileges problems within the Gentoo Linux kernel could result in Denial of Service (DoS) when group IDs and permissions are exploited.. Gentoo Linux, Systemd Exploit, Kernel Update, Permission Vulnerability. . LinuxSecurity.com Team

Calendar 2 Jul 22, 2004 Gentoo
100

SuSE: xf86-3.3.3-5 Critical: Directory Permission Exploit

XFree86 creates a directory in /tmp with the name .X11-unix for the X sockets and sets the directory to mode 1777. If an attacker creates a symlink with that filename and points it to another directory (e.g. /root), the permissions of the target directory is set to 1777. . ______________________________________________________________________________ SuSE Security Announcement Package: xf86-3.3.3-5 Date: Sun Mar 28 12:26:39 CEST 1999 Affected: unix operating systems using xfree86 ______________________________________________________________________________ A security hole was discovered in the package mentioned above. Please update as soon as possible or disable the service if you are using this software on your SuSE Linux installation(s). Other Linux distributions or operating systems might be affected as well, please contact your vendor for information about this issue. Thanks to the people from bugtraq for providing the details of this vulnerability and especially the XFree86 programmers who made a fix ready over the weekend. Please note, that we provide this information on as "as-is" basis only. There is no warranty whatsoever and no liability for any direct, indirect or incidental damage arising from this information or the installation of the update package. ______________________________________________________________________________ 1. Problem Description XFree86 creates a directory in /tmp with the name .X11-unix for the X sockets and sets the directory to mode 1777. If an attacker creates a symlink with that filename and points it to another directory (e.g. /root), the permissions of the target directory is set to 1777. 2. Impact A local attacker may create files with any contents in any directory. 3. Solution Upgrade your XF86. As a temporary fix you can put these commands into /sbin/init.d/boot.local: /bin/rm -rf /tmp/.X11-unix mkdir -p -m 1777/tmp/.X11-unix ______________________________________________________________________________ Here are the md5 checksums of the upgrade packages, please verify these before installing the new packages: glibc archives (SuSE 6.0): d2bb4132bc487debea45288f8199e1e7 x8514-3.3.3.1-13.i386.rpm 5f5b6a53027d54cb9df4cafcb284d720 xagx-3.3.3.1-13.i386.rpm 0c651985aa39750ed787df42c9dc49f7 xfbdev-3.3.3.1-13.i386.rpm 7353be5812375a350c7499e4bb4f7781 xglint-3.3.3.1-13.i386.rpm 88182f0e22ed3f4f564d0f678dc37ffe xi128-3.3.3.1-13.i386.rpm 492ddd01dd10dcb83d2cbf5995b7396b xlkit-3.3.3.1-13.i386.rpm 5779042312519b30e214d8aa4b9c2313 xmach32-3.3.3.1-13.i386.rpm 9fee0e2a4bcf4fbaa91759bc004faf88 xmach64-3.3.3.1-13.i386.rpm 338041da9001b5e36c55f9ffa6209613 xmach8-3.3.3.1-13.i386.rpm 68124d6e36cc48396aad4e395cb9567b xmono-3.3.3.1-13.i386.rpm ea4c0301ee8f33339f5908d82a4b271d xp9k-3.3.3.1-13.i386.rpm d219a182a79723b258b28f87bc22ee68 xs3-3.3.3.1-13.i386.rpm d8ad0f9b0d57f887cc076e794a749738 xs3v-3.3.3.1-13.i386.rpm ff0c37343e5bd30261ab7f05604ea6e7 xsvga-3.3.3.1-13.i386.rpm e151bf1ed2d6c9824b2c521dcf2f7141 xvga16-3.3.3.1-13.i386.rpm 9099ebe5428098f8ffacd1ab691b5937 xw32-3.3.3.1-13.i386.rpm 5627fc4da2eab1f56a9e636374982ede xxprt-3.3.3.1-13.i386.rpm libc5 archives (SuSE

Calendar 2 Dec 07, 1999 Critical SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here