Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 39 Advisory 2024-334b3be641 Critical: SELinux Policy Enhancements

New F39 selinux-policy build. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-334b3be641 2024-01-30 04:21:41.500079 -------------------------------------------------------------------------------- Name : selinux-policy Product : Fedora 39 Version : 39.4 Release : 1.fc39 URL : https://github.com/fedora-selinux/selinux-policy Summary : SELinux policy configuration Description : SELinux core policy package. Originally based off of reference policy, the policy has been adjusted to provide support for Fedora. -------------------------------------------------------------------------------- Update Information: New F39 selinux-policy build -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 25 2024 Zdenek Pytela - 39.4-1 - Allow collectd read raw fixed disk device - Allow collectd read udev pid files - Allow httpd work with PrivateTmp - Allow certmonger read network sysctls - Allow systemd-sleep set attributes of efivarfs files - Allow spamd_update_t the sys_ptrace capability in user namespace - Allow alsa get attributes filesystems with extended attributes - Allow systemd-sleep send a message to syslog over a unix dgram socket -------------------------------------------------------------------------------- References: [ 1 ] Bug #2249960 - SELinux is preventing rm from getattr access on the filesystem /. https://bugzilla.redhat.com/show_bug.cgi?id=2249960 [ 2 ] Bug #2252484 - avc denials policykit_auth_t policykit_t spamd_update_t Fedora 39 https://bugzilla.redhat.com/show_bug.cgi?id=2252484 [ 3 ] Bug #2255693 - SELinux is preventing systemd-sleep from setattr access on the file /sys/firmware/efi/efivars/HibernateLocation-8cf2644b-4b0b-428f-9387-6d876050dc67. https://bugzilla.redhat.com/show_bug.cgi?id=2255693 [ 4 ] Bug #2258637 - [selinux] systemd cannot flush the privatetmp cache usedby php-fpm https://bugzilla.redhat.com/show_bug.cgi?id=2258637 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-334b3be641' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The Fedora 39 update brings an upgraded SELinux policy build, boosting both security measures and system capabilities.. Fedora Security Advisory, SELinux Policy Update, Systemd Enhancements. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 30, 2024 Critical Fedora
197

Debian 10 Buster DLA-3357-2: Imagemagick Moderate Regression Fix

The previous Imagemagick security update caused a regression in some perl packages due to overly restrictive hardening in a policy update (reading from /etc/ was forbidden). This hardening patch has been removed. . From: imagemagick To: This email address is being protected from spambots. You need JavaScript enabled to view it. Subject: [SECURITY] [DLA 3357-2] imagemagick regression update - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3357-2 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Bastien Roucariès March 18, 2023 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : imagemagick Version : 8:6.9.10.23+dfsg-2.1+deb10u4 CVE ID : Debian Bug : #1032998 The previous Imagemagick security update caused a regression in some perl packages due to overly restrictive hardening in a policy update (reading from /etc/ was forbidden). This hardening patch has been removed. For Debian 10 buster, this problem has been fixed in version 8:6.9.10.23+dfsg-2.1+deb10u4. We recommend that you upgrade your imagemagick packages. For the detailed security status of imagemagick please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/imagemagick Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS refreshes OpenSSL to address previous vulnerabilities impacting package integrity.. Imagemagick, Debian Updates, Security Fixes, Package Management. . LinuxSecurity.com Team

Calendar 2 Mar 18, 2023 Debian LTS
172

Ubuntu 18.04 LTS USN-3784-1 Moderate: AppArmor Policy Improvements

Use a more restrictive blacklist in several policy abstractions.. =========================================================================Ubuntu Security Notice USN-3784-1 October 04, 2018 AppArmor update ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS Summary: Use a more restrictive blacklist in several policy abstractions. Software Description: - apparmor: Linux security system Details: As a security improvement, this update adjusts the private-files abstraction to disallow writing to thumbnailer configuration files. Additionally adjust the private-files, private-files-strict and user-files abstractions to disallow writes on parent directories of sensitive files. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: apparmor 2.12-4ubuntu5.1 Ubuntu 16.04 LTS: apparmor 2.10.95-0ubuntu2.10 Ubuntu 14.04 LTS: apparmor 2.10.95-0ubuntu2.6~14.04.4 In general, a standard system update will make all the necessary changes. References: https://bugs.launchpad.net/ubuntu/+source/evince/+bug/1788929, https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1794848 Package Information: https://launchpad.net/ubuntu/+source/apparmor/2.12-4ubuntu5.1 https://launchpad.net/ubuntu/+source/apparmor/2.10.95-0ubuntu2.10 https://launchpad.net/ubuntu/+source/apparmor/2.10.95-0ubuntu2.6~14.04.4 . The Ubuntu Security Notice USN-3784-1 outlines a significant AppArmor enhancement aimed at bolstering security in various Ubuntu LTS distributions.. AppArmor Update, Ubuntu Security Notice, Policy Adjustments. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 04, 2018 Important Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here