Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 491
Alerts This Week
Warning Icon 1 491

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 37 articles for you...
100

SUSE: 2022:2771-1 Important: bci/rust Curl Security Flaws Fixed

The container bci/rust was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/rust ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2771-1 Container Tags : bci/rust:1.63 , bci/rust:1.63-3.9 , bci/rust:latest Container Release : 3.9 Severity : important Type : security References : 1194047 1203911 1204383 1204386 CVE-2022-32221 CVE-2022-42916 ----------------------------------------------------------------- The container bci/rust was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3785-1 Released: Wed Oct 26 20:20:19 2022 Summary: Security update for curl Type: security Severity: important References: 1204383,1204386,CVE-2022-32221,CVE-2022-42916 This update for curl fixes the following issues: - CVE-2022-32221: Fixed POST following PUT confusion (bsc#1204383). - CVE-2022-42916: Fixed HSTS bypass via IDN (bsc#1204386). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:3787-1 Released: Thu Oct 27 04:41:09 2022 Summary: Recommended update for permissions Type: recommended Severity: important References: 1194047,1203911 This update for permissions fixes the following issues: - Fix regression introduced by backport of security fix (bsc#1203911) - Add permissions for enlightenment helper on 32bit arches (bsc#1194047) The following package changes have been done: - libcurl4-7.79.1-150400.5.9.1 updated - permissions-20201225-150400.5.16.1 updated - container:sles15-image-15.0.0-27.14.7 updated . The Debian upgrade for bci/python addresses significant vulnerabilities, boosting security and performance with essential fixes and enhancements.. SUSE Update, bci/rust Security, Security Patch, Curl Fixes, Permissions Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 28, 2022 Important SuSE
100

SUSE: 2022:3411-1 Important: bci/nodejs Security Update

The container bci/nodejs was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/nodejs ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2760-1 Container Tags : bci/node:14 , bci/node:14-35.11 , bci/nodejs:14 , bci/nodejs:14-35.11 Container Release : 35.11 Severity : important Type : security References : 1194047 1203911 1204383 1204386 CVE-2022-32221 CVE-2022-42916 ----------------------------------------------------------------- The container bci/nodejs was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3785-1 Released: Wed Oct 26 20:20:19 2022 Summary: Security update for curl Type: security Severity: important References: 1204383,1204386,CVE-2022-32221,CVE-2022-42916 This update for curl fixes the following issues: - CVE-2022-32221: Fixed POST following PUT confusion (bsc#1204383). - CVE-2022-42916: Fixed HSTS bypass via IDN (bsc#1204386). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:3787-1 Released: Thu Oct 27 04:41:09 2022 Summary: Recommended update for permissions Type: recommended Severity: important References: 1194047,1203911 This update for permissions fixes the following issues: - Fix regression introduced by backport of security fix (bsc#1203911) - Add permissions for enlightenment helper on 32bit arches (bsc#1194047) The following package changes have been done: - libcurl4-7.79.1-150400.5.9.1 updated - permissions-20201225-150400.5.16.1 updated - container:sles15-image-15.0.0-27.14.8 updated . Keep up to date with the newest SUSE Container Update Notification regarding bci/nodejs, highlighting essential security fixes and enhancements.. SUSE Container Update,bci/nodejs patches,security updates,container advisories. . Severity: Important.LinuxSecurity.com Team

Calendar%202 Oct 28, 2022 Important SuSE
100

SUSE: 2022:2749-1 Critical: bci/dotnet-sdk Security Update for Curl

The container bci/dotnet-sdk was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/dotnet-sdk ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2748-1 Container Tags : bci/dotnet-sdk:3.1 , bci/dotnet-sdk:3.1-47.11 , bci/dotnet-sdk:3.1.30 , bci/dotnet-sdk:3.1.30-47.11 Container Release : 47.11 Severity : important Type : security References : 1194047 1203911 1204383 1204386 CVE-2022-32221 CVE-2022-42916 ----------------------------------------------------------------- The container bci/dotnet-sdk was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3785-1 Released: Wed Oct 26 20:20:19 2022 Summary: Security update for curl Type: security Severity: important References: 1204383,1204386,CVE-2022-32221,CVE-2022-42916 This update for curl fixes the following issues: - CVE-2022-32221: Fixed POST following PUT confusion (bsc#1204383). - CVE-2022-42916: Fixed HSTS bypass via IDN (bsc#1204386). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:3787-1 Released: Thu Oct 27 04:41:09 2022 Summary: Recommended update for permissions Type: recommended Severity: important References: 1194047,1203911 This update for permissions fixes the following issues: - Fix regression introduced by backport of security fix (bsc#1203911) - Add permissions for enlightenment helper on 32bit arches (bsc#1194047) The following package changes have been done: - libcurl4-7.79.1-150400.5.9.1 updated - permissions-20201225-150400.5.16.1 updated - container:sles15-image-15.0.0-27.14.7 updated . Crucial patch released for bci/dotnet-sdk targeting multiple vulnerabilities and improving the robustness of container security.. bci/dotnet-sdk update, security patches, container security. . Severity:Important. LinuxSecurity.com Team

Calendar%202 Oct 28, 2022 Important SuSE
100

SUSE: 2022:2382-1 Important: bci/rust Security Update with Critical Fixes

The container bci/rust was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/rust ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2382-1 Container Tags : bci/rust:1.61 , bci/rust:1.61-6.36 Container Release : 6.36 Severity : important Type : security References : 1201680 1203018 CVE-2021-46828 CVE-2022-31252 ----------------------------------------------------------------- The container bci/rust was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3305-1 Released: Mon Sep 19 11:45:57 2022 Summary: Security update for libtirpc Type: security Severity: important References: 1201680,CVE-2021-46828 This update for libtirpc fixes the following issues: - CVE-2021-46828: Fixed denial of service vulnerability with lots of connections (bsc#1201680). ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3353-1 Released: Fri Sep 23 15:23:40 2022 Summary: Security update for permissions Type: security Severity: moderate References: 1203018,CVE-2022-31252 This update for permissions fixes the following issues: - CVE-2022-31252: Fixed chkstat group controlled paths (bsc#1203018). The following package changes have been done: - libtirpc-netconfig-1.2.6-150300.3.14.1 updated - libtirpc3-1.2.6-150300.3.14.1 updated - permissions-20201225-150400.5.11.1 updated - container:sles15-image-15.0.0-27.11.27 updated . The latest updates for bci/rust provide essential patches addressing vulnerabilities related to authorization failures and denial of service attacks, reinforcing overall system protection.. Bci/Rust Container Update, SUSE Security Advisory, Service Vulnerability Fixes. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 28, 2022 Important SuSE
100

SUSE: 2022:2373-1 Moderate: bci/nodejs Permissions Vulnerability Fix

The container bci/nodejs was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/nodejs ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2373-1 Container Tags : bci/node:16 , bci/node:16-9.41 , bci/node:latest , bci/nodejs:16 , bci/nodejs:16-9.41 , bci/nodejs:latest Container Release : 9.41 Severity : moderate Type : security References : 1203018 CVE-2022-31252 ----------------------------------------------------------------- The container bci/nodejs was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3353-1 Released: Fri Sep 23 15:23:40 2022 Summary: Security update for permissions Type: security Severity: moderate References: 1203018,CVE-2022-31252 This update for permissions fixes the following issues: - CVE-2022-31252: Fixed chkstat group controlled paths (bsc#1203018). The following package changes have been done: - permissions-20201225-150400.5.11.1 updated - container:sles15-image-15.0.0-27.11.27 updated . SUSE Container Security Notice for bci/python focusing on moderate vulnerabilities and access permission rectifications.. bci/nodejs Update, Container Security, Nodejs Security Update. . LinuxSecurity.com Team

Calendar%202 Sep 28, 2022 SuSE
100

SUSE 2022:2365-1 Moderate: bci/golang Permissions Security Fix

The container bci/golang was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/golang ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2365-1 Container Tags : bci/golang:1.16 , bci/golang:1.16-30.43 Container Release : 30.43 Severity : moderate Type : security References : 1203018 CVE-2022-31252 ----------------------------------------------------------------- The container bci/golang was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3353-1 Released: Fri Sep 23 15:23:40 2022 Summary: Security update for permissions Type: security Severity: moderate References: 1203018,CVE-2022-31252 This update for permissions fixes the following issues: - CVE-2022-31252: Fixed chkstat group controlled paths (bsc#1203018). The following package changes have been done: - permissions-20201225-150400.5.11.1 updated - container:sles15-image-15.0.0-27.11.27 updated . SUSE Container Advisory for bci/python features essential security enhancements related to vulnerabilities and fixes.. SUSE Container Update, bci/golang Security Update, permissions fix. . LinuxSecurity.com Team

Calendar%202 Sep 28, 2022 SuSE
100

SUSE: 2022:2356-1 Moderate: Permissions Fix and SSL Update

The container suse/sle15 was updated. The following patches have been included in this update:. SUSE Container Update Advisory: suse/sle15 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2356-1 Container Tags : suse/sle15:15.2 , suse/sle15:15.2.9.5.202 Container Release : 9.5.202 Severity : moderate Type : security References : 1181994 1188006 1199079 1202868 1203018 CVE-2022-31252 ----------------------------------------------------------------- The container suse/sle15 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3394-1 Released: Mon Sep 26 16:05:19 2022 Summary: Security update for permissions Type: security Severity: moderate References: 1203018,CVE-2022-31252 This update for permissions fixes the following issues: - CVE-2022-31252: Fixed chkstat group controlled paths (bsc#1203018). ----------------------------------------------------------------- Advisory ID: SUSE-RU-2022:3395-1 Released: Mon Sep 26 16:35:18 2022 Summary: Recommended update for ca-certificates-mozilla Type: recommended Severity: moderate References: 1181994,1188006,1199079,1202868 This update for ca-certificates-mozilla fixes the following issues: Updated to 2.56 state of Mozilla SSL root CAs (bsc#1202868) - Added: - Certainly Root E1 - Certainly Root R1 - DigiCert SMIME ECC P384 Root G5 - DigiCert SMIME RSA4096 Root G5 - DigiCert TLS ECC P384 Root G5 - DigiCert TLS RSA4096 Root G5 - E-Tugra Global Root CA ECC v3 - E-Tugra Global Root CA RSA v3 - Removed: - Hellenic Academic and Research Institutions RootCA 2011 Updated to 2.54 state of Mozilla SSL root CAs (bsc#1199079) - Added: - Autoridad de Certificacion Firmaprofesional CIF A62634068 - D-TRUST BR Root CA 1 2020 - D-TRUST EV Root CA 1 2020 - GlobalSign ECC Root CA R4 - GTS Root R1 - GTSRoot R2 - GTS Root R3 - GTS Root R4 - HiPKI Root CA - G1 - ISRG Root X2 - Telia Root CA v2 - vTrus ECC Root CA - vTrus Root CA - Removed: - Cybertrust Global Root - DST Root CA X3 - DigiNotar PKIoverheid CA Organisatie - G2 - GlobalSign ECC Root CA R4 - GlobalSign Root CA R2 - GTS Root R1 - GTS Root R2 - GTS Root R3 - GTS Root R4 Updated to 2.50 state of the Mozilla NSS Certificate store (bsc#1188006) - Added: - HARICA Client ECC Root CA 2021 - HARICA Client RSA Root CA 2021 - HARICA TLS ECC Root CA 2021 - HARICA TLS RSA Root CA 2021 - TunTrust Root CA Updated to 2.46 state of the Mozilla NSS Certificate store (bsc#1181994) - Added new root CAs: - NAVER Global Root Certification Authority - Removed old root CAs: - GeoTrust Global CA - GeoTrust Primary Certification Authority - GeoTrust Primary Certification Authority - G3 - GeoTrust Universal CA - GeoTrust Universal CA 2 - thawte Primary Root CA - thawte Primary Root CA - G2 - thawte Primary Root CA - G3 - VeriSign Class 3 Public Primary Certification Authority - G4 - VeriSign Class 3 Public Primary Certification Authority - G5 The following package changes have been done: - ca-certificates-mozilla-2.56-150200.24.1 updated - permissions-20181225-150200.23.15.1 updated . Recent enhancements to the container suse/sle15 encompass adjustments to permission settings and updates for SSL root certificates to mitigate security vulnerabilities.. container security issues, permissions update, SUSE security patches. . LinuxSecurity.com Team

Calendar%202 Sep 28, 2022 SuSE
100

SUSE: 2022:2350-2 Important: bci/dotnet-sdk Security Update

The container bci/dotnet-runtime was updated. The following patches have been included in this update:. SUSE Container Update Advisory: bci/dotnet-runtime ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2022:2349-1 Container Tags : bci/dotnet-runtime:3.1 , bci/dotnet-runtime:3.1-47.5 , bci/dotnet-runtime:3.1.29 , bci/dotnet-runtime:3.1.29-47.5 Container Release : 47.5 Severity : moderate Type : security References : 1203018 CVE-2022-31252 ----------------------------------------------------------------- The container bci/dotnet-runtime was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2022:3353-1 Released: Fri Sep 23 15:23:40 2022 Summary: Security update for permissions Type: security Severity: moderate References: 1203018,CVE-2022-31252 This update for permissions fixes the following issues: - CVE-2022-31252: Fixed chkstat group controlled paths (bsc#1203018). The following package changes have been done: - permissions-20201225-150400.5.11.1 updated - container:sles15-image-15.0.0-27.11.27 updated . SUSE Container Update Notice: bci/python-runtime patches tackle vulnerabilities, reinforcing security within your environment.. bci/dotnet-runtime updates, SUSE container security, permissions fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 27, 2022 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200