Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
203

Mageia 9: 2025-0184 moderate: golang information leak and handling issues

Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin redirects potentially leaking sensitive information. CVE-2025-4673. os: inconsistent handling of O_CREATE|O_EXCL on Unix and Windows os.OpenFile(path, os.O_CREATE|O_EXCL) behaved differently on Unix and . MGASA-2025-0184 - Updated golang packages fix security vulnerabilities Publication date: 09 Jun 2025 URL: https://advisories.mageia.org/MGASA-2025-0184.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-4673, CVE-2025-0913, CVE-2025-22874 Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin redirects potentially leaking sensitive information. CVE-2025-4673. os: inconsistent handling of O_CREATE|O_EXCL on Unix and Windows os.OpenFile(path, os.O_CREATE|O_EXCL) behaved differently on Unix and Windows systems when the target path was a dangling symlink. On Unix systems, OpenFile with O_CREATE and O_EXCL flags never follows symlinks. On Windows, when the target path was a symlink to a nonexistent location, OpenFile would create a file in that location - CVE-2025-0913. crypto/x509: usage of ExtKeyUsageAny disables policy validation. Calling Verify with a VerifyOptions.KeyUsages that contains ExtKeyUsageAny unintentionally disabledpolicy validation. This only affected certificate chains which contain policy graphs, which are rather uncommon - CVE-2025-22874. OpenFile now always returns an error when the O_CREATE and O_EXCL flags are both set and the target path is a symlink. References: - https://bugs.mageia.org/show_bug.cgi?id=34353 - https://www.openwall.com/lists/oss-security/2025/06/05/5 - https://www.cve.org/CVERecord?id=CVE-2025-4673 - https://www.cve.org/CVERecord?id=CVE-2025-0913 - https://www.cve.org/CVERecord?id=CVE-2025-22874 SRPMS: - 9/core/golang-1.24.4-1.mga9 . Recent updates to Golang packages mitigate serious data leakage and management concerns impacting Mageia systems. Discover essential resolutions and their implications.. Mageia security, golang update, informationleak, proxy vulnerabilities, cross-origin issues. . LinuxSecurity.com Team

Calendar 2 Jun 09, 2025 Mageia
89

Ubuntu 16.04: UBN-2021-112 High: OpenSSL Security Patch

Updated package.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-162 2005-03-17 ---------------------------------------------------------------------Product : Fedora Core 3 Name : libsoup Version : 2.2.2 Release : 1.FC3 Summary : Soup, an HTTP library implementation Description : Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it). ---------------------------------------------------------------------Update Information: Changes in libsoup from 2.2.1 to 2.2.2: * The SSL validation fix from 2.2.1 [64414] is now completely fixed. (Part of the fix didn't actually make it into 2.2.1) * HTTPS certificate validation now works when using an HTTP proxy. [68583] * HTTP proxy code deals better with proxies that try to make the user do HTML-form-based authentication. [68531] * 64-bit fixes for NTLM auth code. [70323, from Michael Zucchi] ---------------------------------------------------------------------* Mon Feb 21 2005 David Malcolm - 2.2.2-1.FC3 - update from 2.2.1 to 2.2.2 ---------------------------------------------------------------------This update can be downloaded from: fb73de21f6132a8e400fc7e898ecc0ec SRPMS/libsoup-2.2.2-1.FC3.src.rpm 21c68360fc0a8dbfc04fb460f513a2fb x86_64/libsoup-2.2.2-1.FC3.x86_64.rpm 4a2058515b6a418f0b74d8f0b2f497ad x86_64/libsoup-devel-2.2.2-1.FC3.x86_64.rpm 4f53720e5385fbf232eadd44d2e06935 x86_64/debug/libsoup-debuginfo-2.2.2-1.FC3.x86_64.rpm 65821624199289f1e0fec03b4a4c476f x86_64/libsoup-2.2.2-1.FC3.i386.rpm 65821624199289f1e0fec03b4a4c476f i386/libsoup-2.2.2-1.FC3.i386.rpm 6d06bc53927ef018b27394d88cb29705 i386/libsoup-devel-2.2.2-1.FC3.i386.rpm e7b565743ce4e9784e4e475b1f89a268 i386/debug/libsoup-debuginfo-2.2.2-1.FC3.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . An upgrade to Libsoup enhances proxy management and SSL verification for users of Fedora Core 3. Download the new version for improved functionality.. libsoup Update,Fedora Security,HTTP Library Update. . LinuxSecurity.com Team

Calendar 2 Mar 17, 2005 Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here