Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
172

Ubuntu 16.04 ESM USN-5645-1 Critical: PostgreSQL SSL Handling Flaws

Several security issues were fixed in PostgreSQL.. =========================================================================Ubuntu Security Notice USN-5645-1 September 28, 2022 postgresql-9.5 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 ESM Summary: Several security issues were fixed in PostgreSQL. Software Description: - postgresql-9.5: Object-relational SQL database Details: Jacob Champion discovered that PostgreSQL incorrectly handled SSL certificate verification and encryption. A remote attacker could possibly use this issue to inject arbitrary SQL queries when a connection is first established. (CVE-2021-23214) Tom Lane discovered that PostgreSQL incorrect handled certain array subscripting calculations. An authenticated attacker could possibly use this issue to overwrite server memory and escalate privileges. (CVE-2021-32027) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 ESM: postgresql-9.5 9.5.25-0ubuntu0.16.04.1+esm1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5645-1 CVE-2021-23214, CVE-2021-32027 . Notice regarding security updates for PostgreSQL vulnerabilities addressed in Ubuntu 16.04 ESM, encompassing severe SSL management issues.. PostgreSQL Security, Ubuntu 16.04, SQL Injection, Remote Access Exploit, Critical Flaws. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 28, 2022 Critical Ubuntu
198

Arch Linux: ASA-201502-8 High: Glibc Exploitable Exploits

The package glibc before version 2.21-1 has multiple issues that could be exploitable. . Arch Linux Security Advisory ASA-201502-8 ======================================== Severity: High Date : 2015-02-09 CVE-ID : CVE-2015-1472 CVE-2015-1473 Package : glibc Type : multiple issues Remote : possible (still under investigation) Link : https://wiki.archlinux.org/title/CVE Summary ====== The package glibc before version 2.21-1 has multiple issues that could be exploitable. Resolution ========= Upgrade to 2.21-1 # pacman -Syu "glibc> =2.21-1" The problems have been fixed upstream in version 2.21. Workaround ========= None. Description ========== glibc has multiple issues including heap- and stack overflows that could be exploitable. The heap- and stack-overflow is possible in the swscanf function. Impact ===== The issue is still under investigation. It's not clear if the issue is exploitable. In case of 'yes' this could result in various exploits in every software that uses glibc. This includes remote-code-execution or local exploits for gaining root access. References ========= https://sourceware.org/bugzilla/show_bug.cgi?id=CVE-2015-1472 https://sourceware.org/bugzilla/show_bug.cgi?id=CVE-2015-1473 https://sourceware.org/legacy-ml/libc-alpha/2015-02/msg00119.html . Debian highlights significant vulnerabilities in OpenSSL that could lead to serious breaches; users strongly encouraged to update to version 1.1.1k immediately.. Arch Linux Exploit, Glibc Security, Remote Code Access, Package Upgrade. . LinuxSecurity.com Team

Calendar 2 Feb 09, 2015 ArchLinux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here