Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
87

Debian 2.2 DSA-072-1 Moderate Groff Printf Code Execution Risk

The pic command was vulnerable to a printf format attackwhich made it possible to circumvent the -S option and executearbitrary code.. ------------------------------------------------------------------------ Debian Security Advisory DSA-072-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Wichert Akkerman August 10, 2001 ------------------------------------------------------------------------ Package : groff Problem type : printf format attack Debian-specific: no Zenith Parse found a security problem in groff (the GNU version of troff). The pic command was vulnerable to a printf format attack which made it possible to circumvent the -S option and execute arbitrary code. This has been fixed in version 1.15.2-2. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. Debian GNU/Linux 2.2 alias potato --------------------------------- Potato was released for alpha, arm, i386, m68k, powerpc and sparc. Source archives: MD5 checksum: 80a1f4d1a73206bc39442c59b3298c31 MD5 checksum: 37c101207617f750821362f14c4d70a3 MD5 checksum: 0c87c54b39a71da4ad92a67f13b740a2 Alpha architecture: MD5 checksum: 914c0bd3a63a42f6ad382a83af6809c3 ARM architecture: MD5 checksum: 86e061ec9c65cd138c809ddf4dc2a32d Intel IA-32 architecture: MD5 checksum: cec3f02dd9c9fc020dd93e0437368a25 Motorola 680x0 architecture: MD5 checksum: b06c81a8d23f54eba8e605a5ce9331fc PowerPC architecture: MD5 checksum: b2adb7c67438c511e9d745b87efa1667 Sun Sparc architecture: MD5 checksum: 1e07e5ecbfc7c066397e97bdf23dc014 These packages will be moved into the stable distribution on its next revision. For not yet released architectures please refer to the appropriate directory . -- ---------------------------------------------------------------------------- apt-get: deb Debian -- Security Information stable/updates main dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian Vulnerability Advisory reveals a moderate risk of a printf attack that could lead to arbitrary code execution.. groff vulnerability, Debian security fix, printf attack. . LinuxSecurity.com Team

Calendar 2 Aug 10, 2001 Debian
87

Debian: DSA-059-2 Important: Apache Lua Module Security Update

Megyer Laszlo found a printf format bug in the exim mail transferagent. The code that checks the header syntax of an email logsan error without protecting itself against printf format attacks.. ------------------------------------------------------------------------ Debian Security Advisory DSA-058-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Wichert Akkerman June 10, 2001 ------------------------------------------------------------------------ Package : exim Problem type : remote printf format attack Debian-specific: no Megyer Laszlo found a printf format bug in the exim mail transfer agent. The code that checks the header syntax of an email logs an error without protecting itself against printf format attacks. This problem has been fixed in version 3.12-10.1. Since that code is not turned on by default a standard installation is not vulnerable, but we still recommend to upgrade your exim package. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. Debian GNU/Linux 2.2 alias potato --------------------------------- Potato was released for alpha, arm, i386, m68k, powerpc and sparc. Source archives: MD5 checksum: 959d5e70c78dd0f8daf1bcb470d2851a MD5 checksum: c3ae78797cc1da77b074b91c80f21fc8 MD5 checksum: 336cd605cb121703af4f22a8c34bb333 ARM architecture: MD5 checksum: 8553e97eef733ab850eba6926bead792 MD5 checksum: 2b56110866983b0bc4828bc0e4b0b7bd Alpha architecture: MD5 checksum: 5e304c46581e3a1e6278b6a677b8308d MD5 checksum: b01e0f2d7986475eba02c280f5321cf2 Intel IA-32 architecture: MD5 checksum: d7e4c6e286fae05abfce28841dc0530e MD5 checksum: 9dc3b11692b7047fef58c5a8da7741d8 Motorola 680x0 architecture: MD5 checksum: 56ccf16d58ce07217a12809fca325597 MD5 checksum: 8031e4a9a8a65a63fdc686e81af0b469 PowerPC architecture: MD5 checksum: 925523b2d5cb6aa43d146aec7125d59c MD5 checksum: 9fa51619d73061c7c221bb876bf65047 Sun Sparc architecture: MD5 checksum: b13d02e8d2eb3542c8876f81051e29c7 MD5 checksum: ae8d1ac5b1b228deea25ba8a89c77d21 These packages will be moved into the stable distribution on its next revision. For not yet released architectures please refer to the appropriate directory . -- ---------------------------------------------------------------------------- apt-get: deb Debian -- Security Information stable/updates main dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Critical update for Debian's Exim to fix printf format issues preventing remote attacks. Urgent patch recommended.. Exim Security Advisory, Debian Remote Attack, Mail Transfer Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 12, 2001 Important Debian
87

Debian 2.2 DSA-055-1 Critical: gftp printf Attack Mitigation

The gftp package as distributed with Debian GNU/Linux 2.2 has a problem in its logging code.. ------------------------------------------------------------------------ Debian Security Advisory DSA-055-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Wichert Akkerman May 8, 2001 ------------------------------------------------------------------------ Package : gftp Problem type : printf format attack Debian-specific: no The gftp package as distributed with Debian GNU/Linux 2.2 has a problem in its logging code: it logged data received from the network but it did not protect itself from printf format attacks. An attacker can use this by making a FTP server return special responses that exploit this. This has been fixed in version 2.0.6a-3.1, and we recommend that you upgrade your gftp package. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. Debian GNU/Linux 2.2 alias potato --------------------------------- Potato was released for alpha, arm, i386, m68k, powerpc and sparc. Source archives: MD5 checksum: 23df5107a21eaa36b3dcc50367bd3b46 MD5 checksum: b99704d17c10b1f2bbbb80d430b55d21 MD5 checksum: 8eba39ab947712b46756b4e014b72e8c Alpha architecture: MD5 checksum: 7df9efccb67296eb2df1e070e66add80 ARM architecture: MD5 checksum: 2d701b8c6c4f5e05ca8664a65cf2e8d3 Intel ia32 architecture: MD5 checksum: 71b547eec5c5e24f9dca56882b5fbf8a Motorola 680x0 architecture: MD5 checksum: 4f824249dd40ed70ba3f373cbad1a790 PowerPC architecture: MD5 checksum: 12d5e7b0b433d9eeefef48c31786ee83 Sun Sparc architecture: MD5 checksum: c0de4c7a87d2dbb153bc6a67530ac0cc These packages will be moved into the stable distribution on its next revision. For not yet released architectures please refer to the appropriate directory . -- ---------------------------------------------------------------------------- apt-get: deb Debian -- Security Information stable/updates main dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Mediation against printf format attack in gftp package for Debian 2.2 reported in security advisory DSA-055-1.. Debian gftp security fix, printf attack defense, package update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 08, 2001 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here