Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -2 articles for you...
172

Ubuntu 22.04 LTS USN-7128-1: pygments denial of service advisory

Pygments could be made to crash if it received specially crafted input.. ========================================================================== Ubuntu Security Notice USN-7128-1 November 26, 2024 pygments vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Pygments could be made to crash if it received specially crafted input. Software Description: - pygments: Generic syntax highlighter Details: Sebastian Chnelik discovered that Pygments had an inefficient regex query for analyzing certain inputs. An attacker could possibly use this issue to cause a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS python3-pygments 2.11.2+dfsg-2ubuntu0.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7128-1 CVE-2022-40896 Package Information: https://launchpad.net/ubuntu/+source/pygments/2.11.2+dfsg-2ubuntu0.1 . A critical flaw in Pygments impacts Ubuntu 22.04 LTS, leading to unexpected terminations when handling maliciously designed inputs.. Pygments Security, Ubuntu Advisory, Denial Of Service, Python Package Issue. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 26, 2024 Important Ubuntu
172

Ubuntu 14.04 LTS USN-4897-2: Severe Pygments Denial of Service Threat

Pygments could be made to hang if it opened a specially crafted file.. ========================================================================== Ubuntu Security Notice USN-4897-2 August 14, 2023 pygments vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 LTS (Available with Ubuntu Pro) Summary: Pygments could be made to hang if it opened a specially crafted file. Software Description: - pygments: Generic syntax highlighter Details: USN-4897-1 fixed several vulnerabilities in Pygments. This update provides the corresponding update for Ubuntu 14.04 LTS. Original advisory details: Ben Caller discovered that Pygments incorrectly handled parsing certain files. If a user or automated system were tricked into parsing a specially crafted file, a remote attacker could cause Pygments to hang or consume resources, resulting in a denial of service. (CVE-2021-27291) It was discovered that Pygments incorrectly handled parsing certain files. An attacker could possibly use this issue to cause a denial of service. (CVE-2021-20270) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 LTS (Available with Ubuntu Pro): python-pygments 1.6+dfsg-1ubuntu1.1+esm1 python3-pygments 1.6+dfsg-1ubuntu1.1+esm1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4897-2 https://ubuntu.com/security/notices/USN-4897-1 CVE-2021-20270, CVE-2021-27291 . Ubuntu 14.04 has received security advisories addressing vulnerabilities in Pygments due to inadequate file handling, potentially permitting Denial of Service (DoS) attacks. Ubuntu Pygments Update, Denial of Service Risks, Security Notices. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Aug 14, 2023 Critical Ubuntu
172

Ubuntu 20.10 USN-4897-1 Pygments Denial Of Service Risk

Pygments could be made to hang if it opened a specially crafted file.. =========================================================================Ubuntu Security Notice USN-4897-1 March 30, 2021 pygments vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.10 - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Pygments could be made to hang if it opened a specially crafted file. Software Description: - pygments: Generic syntax highlighter Details: Ben Caller discovered that Pygments incorrectly handled parsing certain files. If a user or automated system were tricked into parsing a specially crafted file, a remote attacker could cause Pygments to hang or consume resources, resulting in a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.10: python3-pygments 2.3.1+dfsg-4ubuntu0.2 Ubuntu 20.04 LTS: python-pygments 2.3.1+dfsg-1ubuntu2.2 python3-pygments 2.3.1+dfsg-1ubuntu2.2 Ubuntu 18.04 LTS: python-pygments 2.2.0+dfsg-1ubuntu0.2 python3-pygments 2.2.0+dfsg-1ubuntu0.2 Ubuntu 16.04 LTS: python-pygments 2.1+dfsg-1ubuntu0.2 python3-pygments 2.1+dfsg-1ubuntu0.2 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4897-1 CVE-2021-27291 Package Information: https://launchpad.net/ubuntu/+source/pygments/2.3.1+dfsg-4ubuntu0.2 https://launchpad.net/ubuntu/+source/pygments/2.3.1+dfsg-1ubuntu2.2 https://launchpad.net/ubuntu/+source/pygments/2.2.0+dfsg-1ubuntu0.2 https://launchpad.net/ubuntu/+source/pygments/2.1+dfsg-1ubuntu0.2 . The security bulletin USN-4897-1 from Ubuntu points out a flaw in Pygments that may result in possibledenial of service vulnerabilities.. Pygments vulnerability, Ubuntu update, denial of service. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 30, 2021 Critical Ubuntu
87

Debian: DSA-4878-1 Urgent: Pygments Denial of Service Addressed

Ben Caller discovered that Pygments, a syntax highlighting package written in Python 3, used regular expressions which could result in denial of service. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-4878-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Moritz Muehlenhoff March 27, 2021 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : pygments CVE ID : CVE-2021-27291 Debian Bug : 985574 Ben Caller discovered that Pygments, a syntax highlighting package written in Python 3, used regular expressions which could result in denial of service. For the stable distribution (buster), this problem has been fixed in version 2.3.1+dfsg-1+deb10u2. We recommend that you upgrade your pygments packages. For the detailed security status of pygments please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/pygments Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Pygments has been patched to tackle security vulnerabilities related to Denial of Service stemming from regex issues. Users are advised to upgrade.. Pygments Update, Debian Security, Python Security, Denial of Service, Regex Vulnerability. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 27, 2021 Critical Debian
87

Debian: DSA-4870-1 Critical Advisory For Pygments Denial Of Service

It was discovered that Pygments, a syntax highlighting package written in Python, could be forced into an infinite loop, resulting in denial of service. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-4870-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Moritz Muehlenhoff March 12, 2021 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : pygments CVE ID : CVE-2021-20270 It was discovered that Pygments, a syntax highlighting package written in Python, could be forced into an infinite loop, resulting in denial of service. For the stable distribution (buster), this problem has been fixed in version 2.3.1+dfsg-1+deb10u1. We recommend that you upgrade your pygments packages. For the detailed security status of pygments please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/pygments Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian has released a security patch for Pygments that mitigates a denial of service vulnerability, urging users to update to version 2.3.1 promptly.. Pygments Security, Debian Advisory, Denial Of Service, Python Syntax Highlighting. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 12, 2021 Critical Debian
87

Debian: DSA-3445-1 Critical: Pygments Shell Injection Risk

Javantea discovered that pygments, a generic syntax highlighter, is prone to a shell injection vulnerability allowing a remote attacker to execute arbitrary code via shell metacharacters in a font name. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-3445-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Salvatore Bonaccorso January 13, 2016 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : pygments CVE ID : CVE-2015-8557 Debian Bug : 802828 Javantea discovered that pygments, a generic syntax highlighter, is prone to a shell injection vulnerability allowing a remote attacker to execute arbitrary code via shell metacharacters in a font name. For the oldstable distribution (wheezy), this problem has been fixed in version 1.5+dfsg-1+deb7u1. For the stable distribution (jessie), this problem has been fixed in version 2.0.1+dfsg-1.1+deb8u1. For the testing distribution (stretch), this problem has been fixed in version 2.0.1+dfsg-2. For the unstable distribution (sid), this problem has been fixed in version 2.0.1+dfsg-2. We recommend that you upgrade your pygments packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . An important security patch for Pygments fixes a vulnerability that could lead to shell injection, enabling unauthorized remote code execution. Please update immediately.. Pygments Security, Debian Update, Patch Management, Shell Injection Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 13, 2016 Critical Debian
172

Ubuntu 15.10: USN-2862-1 Moderate: Pygments Code Execution Risk

Pygments could be made to crash or run programs if it processed a specially crafted font request.. =========================================================================Ubuntu Security Notice USN-2862-1 January 07, 2016 pygments vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 15.10 - Ubuntu 15.04 - Ubuntu 14.04 LTS - Ubuntu 12.04 LTS Summary: Pygments could be made to crash or run programs if it processed a specially crafted font request. Software Description: - pygments: syntax highlighting package written in Python Details: It was discovered that Pygments incorrectly sanitized strings used to search system fonts. An attacker could possibly use this issue to execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 15.10: python-pygments 2.0.1+dfsg-1.1svn1.1 python3-pygments 2.0.1+dfsg-1.1svn1.1 Ubuntu 15.04: python-pygments 2.0.1+dfsg-1svn1.1 python3-pygments 2.0.1+dfsg-1svn1.1 Ubuntu 14.04 LTS: python-pygments 1.6+dfsg-1ubuntu1.1 python3-pygments 1.6+dfsg-1ubuntu1.1 Ubuntu 12.04 LTS: python-pygments 1.4+dfsg-2ubuntu0.1 python3-pygments 1.4+dfsg-2ubuntu0.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-2862-1 CVE-2015-8557 Package Information: https://launchpad.net/ubuntu/+source/pygments/2.0.1+dfsg-1.1svn1.1 https://launchpad.net/ubuntu/+source/pygments/2.0.1+dfsg-1svn1.1 https://launchpad.net/ubuntu/+source/pygments/1.6+dfsg-1ubuntu1.1 https://launchpad.net/ubuntu/+source/pygments/1.4+dfsg-2ubuntu0.1 . Vulnerabilities in Pygments might be leveraged to trigger failures or permit the running of harmfulscripts through specially designed font queries.. Python Pygments, Security Notice, Program Crash, Font Request. . LinuxSecurity.com Team

Calendar 2 Jan 07, 2016 Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here