Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
172

Ubuntu 6.06 LTS USN-890-4 Critical: PyXML Denial Of Service Issues

USN-890-1 fixed vulnerabilities in Expat. This update provides the corresponding updates for PyXML.. ==========================================================Ubuntu Security Notice USN-890-4 January 26, 2010 python-xml vulnerabilities CVE-2009-3560, CVE-2009-3720 ========================================================== A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The problem can be corrected by upgrading your system to the following package versions: Ubuntu 6.06 LTS: python2.4-xml 0.8.4-1ubuntu3.1 After a standard system upgrade you need to restart any applications that use PyXML to effect the necessary changes. Details follow: USN-890-1 fixed vulnerabilities in Expat. This update provides the corresponding updates for PyXML. Original advisory details: Jukka Taimisto, Tero Rontti and Rauli Kaksonen discovered that Expat did not properly process malformed XML. If a user or application linked against Expat were tricked into opening a crafted XML file, an attacker could cause a denial of service via application crash. (CVE-2009-2625, CVE-2009-3720) It was discovered that Expat did not properly process malformed UTF-8 sequences. If a user or application linked against Expat were tricked into opening a crafted XML file, an attacker could cause a denial of service via application crash. (CVE-2009-3560) Updated packages for Ubuntu 6.06 LTS: Source archives: Size/MD5: 26092 7b735067d5b8494bfa9479a38b1f971f Size/MD5: 663 064ad0d03d81132088df42f78850bfd7 Size/MD5: 734751 04fc1685542b32c1948c2936dfb6ba0e Architecture independent packages: Size/MD5: 11568 253250bca793d626d3f651a116259b00 Size/MD5: 25206 e73978eb774cf39690739f0908fb32dc Size/MD5: 24392 e4bab68a86bd7fb0dd85d39268716a64 amd64 architecture (Athlon64,Opteron, EM64T Xeon): Size/MD5: 717460 763ab0e82cbd3767958753060145c5ab i386 architecture (x86 compatible Intel/AMD): Size/MD5: 708074 e34c9a1bdaaef83eb885104360d9e94f powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 716638 8ee8326bb735b20b18f0335c4485aadb sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 706208 11751f3c1654c648dd145c88afc3002c . Explore the essential Python XML security risks present in Ubuntu and follow the guidelines to effectively update your system.. Python XML, Ubuntu Security, Denial of Service, PyXML Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 26, 2010 Critical Ubuntu
200

Scientific Linux: CVE-2009-3720 Moderate: PyXML Buffer Over-read Issue

Moderate: PyXML security update. Date: Tue, 5 Jan 2010 13:20:40 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: PyXML on SL4.x, SL5.x i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Moderate: PyXML security update Issue date: 2010-01-04 CVE Names: CVE-2009-3720 A buffer over-read flaw was found in the way PyXML's Expat parser handled malformed UTF-8 sequences when processing XML files. A specially-crafted XML file could cause Python applications using PyXML's Expat parser to crash while parsing the file. (CVE-2009-3720) This update makes PyXML use the system Expat library rather than its own internal copy; therefore, users must install the December 2009 expat security update, together with this PyXML update to resolve the CVE-2009-3720 issue. After installing this update along with the December 2009 expat security update, applications using the PyXML library must be restarted for the update to take effect. SL 4.x SRPMS: PyXML-0.8.3-6.el4_8.2.src.rpm i386: PyXML-0.8.3-6.el4_8.2.i386.rpm x86_64: PyXML-0.8.3-6.el4_8.2.x86_64.rpm SL 5.x SRPMS: PyXML-0.8.4-4.el5_4.2.src.rpm i386: PyXML-0.8.4-4.el5_4.2.i386.rpm x86_64: PyXML-0.8.4-4.el5_4.2.x86_64.rpm -Connie Sieh -Troy Dawson . Comprehensive PyXML patch addressing buffer overflow vulnerabilities in Fedora variations.. PyXML Security, Moderate Update, Scientific Linux Advisory, Buffer Over-read Fix, System Expat Update. . LinuxSecurity.com Team

Calendar 2 Jan 05, 2010 Scientific Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here