Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 499
Alerts This Week
Warning Icon 1 499

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 2 articles for you...
219

Rocky Linux Y 11 RLSA-2026-13918 storage-tools Critical Vulnerability Fixed

Important: fence-agents security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:13916", "synopsis": "Important: fence-agents security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for fence-agents.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. \n\nSecurity Fix(es):\n\n* pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) (CVE-2026-32597)\n\n* pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2448553", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2448553", "description": ""}, {"ticket": "2447194", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2447194", "description": ""}], "cves": [{"name": "CVE-2026-30922", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-30922", "cvss3ScoringVector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-835"}, {"name": "CVE-2026-32597", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32597", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-347"}], "references": [], "publishedAt": "2026-05-07T12:06:53.645622Z", "rpms": {"Rocky Linux 10": {"nvras":["fence-agents-common-debuginfo-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-debugsource-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-virtd-libvirt-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-lpar-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-virt-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-ipmilan-0:4.16.0-13.el10_1.4.noarch.rpm", "ha-cloud-support-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-ibmblade-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-rsa-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-aws-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-virtd-serial-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-debuginfo-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-bladecenter-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-vmware-rest-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-common-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-ilo-ssh-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-kdump-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-agents-mpath-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-eps-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-debuginfo-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-virtd-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-apc-snmp-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-azure-arm-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-virtd-tcp-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-common-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-agents-heuristics-ping-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-ilo2-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-virtd-serial-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-kubevirt-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-all-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-aliyun-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-virtd-multicast-0:4.16.0-13.el10_1.4.x86_64.rpm","fence-agents-ibm-powervs-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-redfish-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-all-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-common-debuginfo-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-redfish-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-ilo-moonshot-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-wti-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-ilo-mp-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-all-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-virtd-cpg-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-ibm-vpc-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-brocade-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-rhevm-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-eaton-snmp-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-common-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-kubevirt-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-kubevirt-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-agents-debugsource-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-common-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-vmware-soap-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-rsb-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-apc-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-drac5-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-kdump-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-debugsource-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-emerson-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-gce-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-redfish-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-virt-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-common-debuginfo-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-agents-debugsource-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-agents-intelmodular-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-openstack-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-virsh-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-kdump-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm","fence-virtd-tcp-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-virtd-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-all-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-agents-kdump-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-ipdu-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-cisco-ucs-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-kdump-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-kubevirt-0:4.16.0-13.el10_1.4.ppc64le.rpm", "fence-agents-cisco-mds-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-virtd-multicast-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-debuginfo-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-zvm-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-ifmib-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-virtd-cpg-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.16.0-13.el10_1.4.aarch64.rpm", "fence-agents-0:4.16.0-13.el10_1.4.src.rpm", "fence-agents-amt-ws-0:4.16.0-13.el10_1.4.noarch.rpm", "ha-cloud-support-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-openstack-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-common-0:4.16.0-13.el10_1.4.s390x.rpm", "fence-agents-hpblade-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-scsi-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-virtd-libvirt-debuginfo-0:4.16.0-13.el10_1.4.x86_64.rpm", "fence-agents-sbd-0:4.16.0-13.el10_1.4.noarch.rpm", "fence-agents-redfish-0:4.16.0-13.el10_1.4.aarch64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Security update for fence-agents available on Rocky Linux 10 addressing important issues including denial of service risks.. fence-agents security update, important vulnerability, Rocky Linux fix, denial of service. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 07, 2026 Important Rocky Linux
219

Linux Dune 9 Security Updates Immediate Action YWLS-2026-39485

Important: fence-agents security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:13672", "synopsis": "Important: fence-agents security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for fence-agents.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. \n\nSecurity Fix(es):\n\n* cryptography: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves (CVE-2026-26007)\n\n* pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 ?4.1.11 MUST violation) (CVE-2026-32597)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2438762", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2438762", "description": ""}, {"ticket": "2447194", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2447194", "description": ""}], "cves": [{"name": "CVE-2026-26007", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26007", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N", "cvss3BaseScore": "7.4", "cwe": "CWE-354"}, {"name": "CVE-2026-32597", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-32597", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N", "cvss3BaseScore": "7.5", "cwe": "CWE-347"}], "references": [], "publishedAt": "2026-05-06T06:02:14.811706Z", "rpms": {"Rocky Linux 9": {"nvras":["fence-agents-0:4.10.0-98.el9_7.12.src.rpm", "fence-agents-aliyun-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-all-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-all-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-all-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-all-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-amt-ws-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-apc-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-apc-snmp-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-aws-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-azure-arm-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-bladecenter-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-brocade-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-cisco-mds-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-cisco-ucs-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-common-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-compute-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-compute-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-debuginfo-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-debuginfo-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-debuginfo-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-debugsource-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-debugsource-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-debugsource-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-debugsource-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-drac5-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-eaton-snmp-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-emerson-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-eps-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-gce-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-heuristics-ping-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-hpblade-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ibmblade-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ibm-powervs-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ibm-vpc-0:4.10.0-98.el9_7.12.noarch.rpm","fence-agents-ifmib-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ilo2-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ilo-moonshot-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ilo-mp-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ilo-ssh-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-intelmodular-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ipdu-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-ipmilan-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-kdump-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-kdump-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-kdump-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-kdump-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-kubevirt-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-kubevirt-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-kubevirt-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-kubevirt-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-lpar-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-mpath-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-nutanix-ahv-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-openstack-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-openstack-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-redfish-0:4.10.0-98.el9_7.12.aarch64.rpm", "fence-agents-redfish-0:4.10.0-98.el9_7.12.ppc64le.rpm", "fence-agents-redfish-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-agents-redfish-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-agents-rhevm-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-rsa-0:4.10.0-98.el9_7.12.noarch.rpm","fence-agents-rsb-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-sbd-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-scsi-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-virsh-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-vmware-rest-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-vmware-soap-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-wti-0:4.10.0-98.el9_7.12.noarch.rpm", "fence-agents-zvm-0:4.10.0-98.el9_7.12.s390x.rpm", "fence-virt-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-cpg-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-cpg-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virt-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-libvirt-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-libvirt-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-multicast-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-multicast-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-serial-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-serial-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-tcp-0:4.10.0-98.el9_7.12.x86_64.rpm", "fence-virtd-tcp-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm", "ha-cloud-support-0:4.10.0-98.el9_7.12.ppc64le.rpm", "ha-cloud-support-0:4.10.0-98.el9_7.12.x86_64.rpm", "ha-cloud-support-debuginfo-0:4.10.0-98.el9_7.12.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Stay updated with the latest important fence-agents security fix for Rocky Linux 9 and its potential impacts.. fence-agents update, Rocky Linux security, important security updates. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 06, 2026 Important Rocky Linux
219

Rocky Linux 9 RLSA-2025:3113 Important Fence-Agents Security Issue

Important: fence-agents security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2025:3113", "synopsis": "Important: fence-agents security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for fence-agents.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. \n\nSecurity Fix(es):\n\n* jinja2: Jinja sandbox breakout through attr filter selecting format method (CVE-2025-27516)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2350190", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2350190", "description": ""}], "cves": [{"name": "CVE-2025-27516", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-27516", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-1336"}], "references": [], "publishedAt": "2025-07-29T13:40:19.644888Z", "rpms": {"Rocky Linux 9": {"nvras": ["fence-agents-0:4.10.0-76.el9_5.6.src.rpm", "fence-agents-aliyun-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-all-0:4.10.0-76.el9_5.6.aarch64.rpm", "fence-agents-all-0:4.10.0-76.el9_5.6.ppc64le.rpm", "fence-agents-all-0:4.10.0-76.el9_5.6.s390x.rpm", "fence-agents-all-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-amt-ws-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-apc-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-apc-snmp-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-aws-0:4.10.0-76.el9_5.6.x86_64.rpm","fence-agents-azure-arm-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-bladecenter-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-brocade-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-cisco-mds-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-cisco-ucs-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-common-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-compute-0:4.10.0-76.el9_5.6.ppc64le.rpm", "fence-agents-compute-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-drac5-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-eaton-snmp-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-emerson-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-eps-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-gce-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-heuristics-ping-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-hpblade-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ibmblade-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ibm-powervs-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ibm-vpc-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ifmib-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ilo2-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ilo-moonshot-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ilo-mp-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ilo-ssh-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-intelmodular-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ipdu-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-ipmilan-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-kdump-0:4.10.0-76.el9_5.6.aarch64.rpm", "fence-agents-kdump-0:4.10.0-76.el9_5.6.ppc64le.rpm", "fence-agents-kdump-0:4.10.0-76.el9_5.6.s390x.rpm", "fence-agents-kdump-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-76.el9_5.6.aarch64.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-76.el9_5.6.ppc64le.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-76.el9_5.6.s390x.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-kubevirt-0:4.10.0-76.el9_5.6.aarch64.rpm", "fence-agents-kubevirt-0:4.10.0-76.el9_5.6.ppc64le.rpm","fence-agents-kubevirt-0:4.10.0-76.el9_5.6.s390x.rpm", "fence-agents-kubevirt-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-76.el9_5.6.aarch64.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-76.el9_5.6.ppc64le.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-76.el9_5.6.s390x.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-lpar-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-mpath-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-openstack-0:4.10.0-76.el9_5.6.ppc64le.rpm", "fence-agents-openstack-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-redfish-0:4.10.0-76.el9_5.6.aarch64.rpm", "fence-agents-redfish-0:4.10.0-76.el9_5.6.ppc64le.rpm", "fence-agents-redfish-0:4.10.0-76.el9_5.6.s390x.rpm", "fence-agents-redfish-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-agents-rhevm-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-rsa-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-rsb-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-sbd-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-scsi-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-virsh-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-vmware-rest-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-vmware-soap-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-wti-0:4.10.0-76.el9_5.6.noarch.rpm", "fence-agents-zvm-0:4.10.0-76.el9_5.6.s390x.rpm", "fence-virt-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-cpg-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-cpg-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virt-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-libvirt-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-libvirt-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-multicast-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-multicast-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-serial-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-serial-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm","fence-virtd-tcp-0:4.10.0-76.el9_5.6.x86_64.rpm", "fence-virtd-tcp-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm", "ha-cloud-support-0:4.10.0-76.el9_5.6.x86_64.rpm", "ha-cloud-support-debuginfo-0:4.10.0-76.el9_5.6.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. A critical update for fence-agents in Rocky Linux 9 resolves a Jinja sandbox vulnerability. Ensure your systems are secure!. Rocky Linux fence-agents update security important remote management. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 29, 2025 Important Rocky Linux
219

Rocky Linux 9 RLSA-2024:3820 Moderate: Fence-Agents Security Fix

Moderate: fence-agents security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2024:3820", "synopsis": "Moderate: fence-agents security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for fence-agents.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. \n\nSecurity Fix(es):\n\n* jinja2: accepts keys containing non-attribute characters (CVE-2024-34064)", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2279476", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2279476", "description": ""}], "cves": [{"name": "CVE-2024-34064", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-34064", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2024-06-14T14:00:40.182624Z", "rpms": {"Rocky Linux 9": {"nvras": ["fence-agents-0:4.10.0-62.el9_4.3.src.rpm", "fence-agents-aliyun-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-all-0:4.10.0-62.el9_4.3.aarch64.rpm", "fence-agents-all-0:4.10.0-62.el9_4.3.ppc64le.rpm", "fence-agents-all-0:4.10.0-62.el9_4.3.s390x.rpm", "fence-agents-all-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-amt-ws-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-apc-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-apc-snmp-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-aws-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-azure-arm-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-bladecenter-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-brocade-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-cisco-mds-0:4.10.0-62.el9_4.3.noarch.rpm","fence-agents-cisco-ucs-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-common-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-compute-0:4.10.0-62.el9_4.3.ppc64le.rpm", "fence-agents-compute-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-drac5-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-eaton-snmp-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-emerson-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-eps-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-gce-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-heuristics-ping-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-hpblade-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ibmblade-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ibm-powervs-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ibm-vpc-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ifmib-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ilo2-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ilo-moonshot-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ilo-mp-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ilo-ssh-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-intelmodular-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ipdu-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-ipmilan-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-kdump-0:4.10.0-62.el9_4.3.aarch64.rpm", "fence-agents-kdump-0:4.10.0-62.el9_4.3.ppc64le.rpm", "fence-agents-kdump-0:4.10.0-62.el9_4.3.s390x.rpm", "fence-agents-kdump-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-62.el9_4.3.aarch64.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-62.el9_4.3.ppc64le.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-62.el9_4.3.s390x.rpm", "fence-agents-kdump-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-kubevirt-0:4.10.0-62.el9_4.3.aarch64.rpm", "fence-agents-kubevirt-0:4.10.0-62.el9_4.3.ppc64le.rpm", "fence-agents-kubevirt-0:4.10.0-62.el9_4.3.s390x.rpm", "fence-agents-kubevirt-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-62.el9_4.3.aarch64.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-62.el9_4.3.ppc64le.rpm","fence-agents-kubevirt-debuginfo-0:4.10.0-62.el9_4.3.s390x.rpm", "fence-agents-kubevirt-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-lpar-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-mpath-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-openstack-0:4.10.0-62.el9_4.3.ppc64le.rpm", "fence-agents-openstack-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-redfish-0:4.10.0-62.el9_4.3.aarch64.rpm", "fence-agents-redfish-0:4.10.0-62.el9_4.3.ppc64le.rpm", "fence-agents-redfish-0:4.10.0-62.el9_4.3.s390x.rpm", "fence-agents-redfish-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-agents-rhevm-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-rsa-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-rsb-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-sbd-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-scsi-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-virsh-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-vmware-rest-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-vmware-soap-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-wti-0:4.10.0-62.el9_4.3.noarch.rpm", "fence-agents-zvm-0:4.10.0-62.el9_4.3.s390x.rpm", "fence-virt-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-cpg-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-cpg-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virt-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-libvirt-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-libvirt-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-multicast-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-multicast-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-serial-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-serial-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-tcp-0:4.10.0-62.el9_4.3.x86_64.rpm", "fence-virtd-tcp-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm", "ha-cloud-support-0:4.10.0-62.el9_4.3.x86_64.rpm", "ha-cloud-support-debuginfo-0:4.10.0-62.el9_4.3.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}.This notice outlines a significant security enhancement for fence-agents on Rocky Linux aimed at addressing remote control concerns.. fence agents update, Rocky Linux security, moderate security fix. . LinuxSecurity.com Team

Calendar%202 Jun 14, 2024 Rocky Linux
219

Rocky Linux 8 RLEA-2021:3067 Unknown Severity: Fence-Agents Bug Fix

fence-agents bug fix and enhancement update. \{'type': 'Enhancement', 'shortCode': 'RL', 'name': 'RLEA-2021:3067', 'synopsis': 'fence-agents bug fix and enhancement update', 'severity': 'UnknownSeverity', 'topic': 'An update for fence-agents is now available for Rocky Linux 8.', 'description': 'The fence-agents packages provide a collection of scripts for handling\nremote power management for cluster devices. They allow failed or\nunreachable nodes to be forcibly restarted and removed from the cluster.\nlisted (BZ#1977819)', 'solution': None, 'affectedProducts': ['Rocky Linux 8'], 'fixes': ['1977819'], 'cves': ['Red Hat:::https://access.redhat.com/errata/RHEA-2021:3067:::RHEA-2021:3067'], 'references': [], 'publishedAt': '2021-08-12T21:10:23.507967Z', 'rpms': ['fence-agents-4.2.1-65.el8_4.1.src.rpm', 'fence-agents-aliyun-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-aliyun-debuginfo-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-all-4.2.1-65.el8_4.1.aarch64.rpm', 'fence-agents-all-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-amt-ws-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-apc-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-apc-snmp-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-aws-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-azure-arm-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-bladecenter-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-brocade-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-cisco-mds-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-cisco-ucs-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-common-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-compute-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-debuginfo-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-debugsource-4.2.1-65.el8_4.1.aarch64.rpm', 'fence-agents-debugsource-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-drac5-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-eaton-snmp-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-emerson-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-eps-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-gce-4.2.1-65.el8_4.1.noarch.rpm','fence-agents-heuristics-ping-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-hpblade-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ibmblade-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ifmib-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ilo2-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ilo-moonshot-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ilo-mp-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ilo-ssh-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-intelmodular-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ipdu-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-ipmilan-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-kdump-4.2.1-65.el8_4.1.aarch64.rpm', 'fence-agents-kdump-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-kdump-debuginfo-4.2.1-65.el8_4.1.aarch64.rpm', 'fence-agents-kdump-debuginfo-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-lpar-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-mpath-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-redfish-4.2.1-65.el8_4.1.aarch64.rpm', 'fence-agents-redfish-4.2.1-65.el8_4.1.x86_64.rpm', 'fence-agents-rhevm-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-rsa-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-rsb-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-sbd-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-scsi-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-virsh-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-vmware-rest-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-vmware-soap-4.2.1-65.el8_4.1.noarch.rpm', 'fence-agents-wti-4.2.1-65.el8_4.1.noarch.rpm']}\. Rocky Linux 8's recent fence-agents enhancement brings critical bug fixes and boosts cluster management functionalities.. Rocky Linux 8,Fence Agents,Cluster Management,Security Advisory,Bug Fix. . LinuxSecurity.com Team

Calendar%202 Sep 02, 2022 Rocky Linux
217

Oracle Linux 8 ELSA-2022-2143 Critical: Podman Remote Management Issue

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2022-2143 https://linux.oracle.com/errata/ELSA-2022-2143.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: buildah-1.19.9-3.module+el8.6.0+20668+bfa6216f.x86_64.rpm buildah-tests-1.19.9-3.module+el8.6.0+20668+bfa6216f.x86_64.rpm cockpit-podman-29-2.module+el8.6.0+20668+bfa6216f.noarch.rpm conmon-2.0.26-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm containernetworking-plugins-0.9.1-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm containers-common-1.2.4-1.0.1.module+el8.6.0+20668+bfa6216f.x86_64.rpm container-selinux-2.178.0-2.module+el8.6.0+20668+bfa6216f.noarch.rpm crit-3.15-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm criu-3.15-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm crun-0.18-3.module+el8.6.0+20668+bfa6216f.x86_64.rpm fuse-overlayfs-1.4.0-2.module+el8.6.0+20668+bfa6216f.x86_64.rpm libslirp-4.3.1-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm libslirp-devel-4.3.1-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm oci-seccomp-bpf-hook-1.2.0-3.module+el8.6.0+20668+bfa6216f.x86_64.rpm podman-3.0.1-9.module+el8.6.0+20668+bfa6216f.x86_64.rpm podman-catatonit-3.0.1-9.module+el8.6.0+20668+bfa6216f.x86_64.rpm podman-docker-3.0.1-9.module+el8.6.0+20668+bfa6216f.noarch.rpm podman-plugins-3.0.1-9.module+el8.6.0+20668+bfa6216f.x86_64.rpm podman-remote-3.0.1-9.module+el8.6.0+20668+bfa6216f.x86_64.rpm podman-tests-3.0.1-9.module+el8.6.0+20668+bfa6216f.x86_64.rpm python3-criu-3.15-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm runc-1.0.0-73.rc95.module+el8.6.0+20668+bfa6216f.x86_64.rpm skopeo-1.2.4-1.0.1.module+el8.6.0+20668+bfa6216f.x86_64.rpm skopeo-tests-1.2.4-1.0.1.module+el8.6.0+20668+bfa6216f.x86_64.rpm slirp4netns-1.1.8-1.module+el8.6.0+20668+bfa6216f.x86_64.rpm udica-0.2.4-1.module+el8.6.0+20668+bfa6216f.noarch.rpm aarch64: buildah-1.19.9-3.module+el8.6.0+20668+bfa6216f.aarch64.rpm buildah-tests-1.19.9-3.module+el8.6.0+20668+bfa6216f.aarch64.rpm cockpit-podman-29-2.module+el8.6.0+20668+bfa6216f.noarch.rpm conmon-2.0.26-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm containernetworking-plugins-0.9.1-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm containers-common-1.2.4-1.0.1.module+el8.6.0+20668+bfa6216f.aarch64.rpm container-selinux-2.178.0-2.module+el8.6.0+20668+bfa6216f.noarch.rpm crit-3.15-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm criu-3.15-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm crun-0.18-3.module+el8.6.0+20668+bfa6216f.aarch64.rpm fuse-overlayfs-1.4.0-2.module+el8.6.0+20668+bfa6216f.aarch64.rpm libslirp-4.3.1-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm libslirp-devel-4.3.1-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm oci-seccomp-bpf-hook-1.2.0-3.module+el8.6.0+20668+bfa6216f.aarch64.rpm podman-3.0.1-9.module+el8.6.0+20668+bfa6216f.aarch64.rpm podman-catatonit-3.0.1-9.module+el8.6.0+20668+bfa6216f.aarch64.rpm podman-docker-3.0.1-9.module+el8.6.0+20668+bfa6216f.noarch.rpm podman-plugins-3.0.1-9.module+el8.6.0+20668+bfa6216f.aarch64.rpm podman-remote-3.0.1-9.module+el8.6.0+20668+bfa6216f.aarch64.rpm podman-tests-3.0.1-9.module+el8.6.0+20668+bfa6216f.aarch64.rpm python3-criu-3.15-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm runc-1.0.0-73.rc95.module+el8.6.0+20668+bfa6216f.aarch64.rpm skopeo-1.2.4-1.0.1.module+el8.6.0+20668+bfa6216f.aarch64.rpm skopeo-tests-1.2.4-1.0.1.module+el8.6.0+20668+bfa6216f.aarch64.rpm slirp4netns-1.1.8-1.module+el8.6.0+20668+bfa6216f.aarch64.rpm udica-0.2.4-1.module+el8.6.0+20668+bfa6216f.noarch.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates/buildah-1.19.9-3.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/cockpit-podman-29-2.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/conmon-2.0.26-1.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/containernetworking-plugins-0.9.1-1.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/container-selinux-2.178.0-2.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/criu-3.15-1.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/crun-0.18-3.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/fuse-overlayfs-1.4.0-2.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/libslirp-4.3.1-1.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/oci-seccomp-bpf-hook-1.2.0-3.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/podman-3.0.1-9.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/runc-1.0.0-73.rc95.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/skopeo-1.2.4-1.0.1.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/slirp4netns-1.1.8-1.module+el8.6.0+20668+bfa6216f.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates/udica-0.2.4-1.module+el8.6.0+20668+bfa6216f.src.rpm Related CVEs: CVE-2022-1227 Description of changes: podman [3.0.1-9] - update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel (https://github.com/containers/podman/commit/801b7e8) - Resolves: #2074143 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Bulletin ELSA-2022-2143 features critical improvements aimed at enhancing container security as well as updates for the podman tool.. Oracle Linux, Podman, Container Security, Security Advisory, Critical Update. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 19, 2022 Critical Oracle
89

Fedora 34 gnome-boxes 2021-303f6623fa Moderate: Security Update

GNOME 40.rc. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-303f6623fa 2021-03-20 00:16:30.596999 --------------------------------------------------------------------------------Name : gnome-boxes Product : Fedora 34 Version : 40~rc Release : 1.fc34 URL : https://wiki.gnome.org/Apps/Boxes Summary : A simple GNOME 3 application to access remote or virtual systems Description : gnome-boxes lets you easily create, setup, access, and use: * remote machines * remote virtual machines * local virtual machines * When technology permits, set up access for applications on local virtual machines --------------------------------------------------------------------------------Update Information: GNOME 40.rc --------------------------------------------------------------------------------ChangeLog: * Mon Mar 15 2021 Kalev Lember - 40~rc-1 - Update to 40.rc --------------------------------------------------------------------------------References: [ 1 ] Bug #1925640 - CVE-2020-36241 gnome-autoar: directory traversal via a malicious archive that contains a file whose parent is a symbolic link which points outside of the destination directory https://bugzilla.redhat.com/show_bug.cgi?id=1925640 [ 2 ] Bug #1940026 - CVE-2021-28650 gnome-autoar: directory traversal during extraction because it lacks a check of whether a file's parent is a symlink in certain complex situations https://bugzilla.redhat.com/show_bug.cgi?id=1940026 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-303f6623fa' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by theFedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . The recent GNOME 40.rc update for gnome-boxes on Fedora 34 enhances virtual machine management, boosting security features and functionality for local and remote tasks. Fedora Update,Gnome Boxes,VM Management,Security Update. . LinuxSecurity.com Team

Calendar%202 Mar 19, 2021 Fedora
98

Red Hat: RHSA-2019-1194-01 Important: libvirt Data Leak Threat

An update for libvirt is now available for Red Hat Enterprise Linux 6.6 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: libvirt security update Advisory ID: RHSA-2019:1194-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2019:1194 Issue date: 2019-05-14 CVE Names: CVE-2018-12126 CVE-2018-12127 CVE-2018-12130 CVE-2019-11091 ==================================================================== 1. Summary: An update for libvirt is now available for Red Hat Enterprise Linux 6.6 Advanced Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Server AUS (v. 6.6) - x86_64 Red Hat Enterprise Linux Server Optional AUS (v. 6.6) - x86_64 3. Description: The libvirt library contains a C API for managing and interacting with the virtualization capabilities of Linux and other operating systems. In addition, libvirt provides tools for remote management of virtualized systems. Security Fix(es): * A flaw was found in the implementation of the "fill buffer", a mechanism used by modern CPUs when a cache-miss is made on L1 CPU cache. If an attacker can generate a load operation that would create a page fault, the execution will continue speculatively with incorrect data from the fill buffer while the data is fetched from higher level caches. This response time can be measured to infer data in the fill buffer. (CVE-2018-12130) *Modern Intel microprocessors implement hardware-level micro-optimizations to improve the performance of writing data back to CPU caches. The write operation is split into STA (STore Address) and STD (STore Data) sub-operations. These sub-operations allow the processor to hand-off address generation logic into these sub-operations for optimized writes. Both of these sub-operations write to a shared distributed processor structure called the 'processor store buffer'. As a result, an unprivileged attacker could use this flaw to read private data resident within the CPU's processor store buffer. (CVE-2018-12126) * Microprocessors use a ‘load port’ subcomponent to perform load operations from memory or IO. During a load operation, the load port receives data from the memory or IO subsystem and then provides the data to the CPU registers and operations in the CPU’s pipelines. Stale load operations results are stored in the 'load port' table until overwritten by newer operations. Certain load-port operations triggered by an attacker can be used to reveal data about previous stale requests leaking data back to the attacker via a timing side-channel. (CVE-2018-12127) * Uncacheable memory on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. (CVE-2019-11091) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the updated packages, libvirtd will be restarted automatically. 5. Bugs fixed (https://bugzilla.redhat.com/): 1646781 - CVE-2018-12126 hardware: Microarchitectural Store Buffer Data Sampling (MSBDS) 1646784 - CVE-2018-12130 hardware: Microarchitectural Fill Buffer Data Sampling(MFBDS) 1667782 - CVE-2018-12127 hardware: Micro-architectural Load Port Data Sampling - Information Leak (MLPDS) 1705312 - CVE-2019-11091 hardware: Microarchitectural Data Sampling Uncacheable Memory (MDSUM) 6. Package List: Red Hat Enterprise Linux Server AUS (v. 6.6): Source: libvirt-0.10.2-46.el6_6.10.src.rpm x86_64: libvirt-0.10.2-46.el6_6.10.x86_64.rpm libvirt-client-0.10.2-46.el6_6.10.i686.rpm libvirt-client-0.10.2-46.el6_6.10.x86_64.rpm libvirt-debuginfo-0.10.2-46.el6_6.10.i686.rpm libvirt-debuginfo-0.10.2-46.el6_6.10.x86_64.rpm libvirt-devel-0.10.2-46.el6_6.10.i686.rpm libvirt-devel-0.10.2-46.el6_6.10.x86_64.rpm libvirt-python-0.10.2-46.el6_6.10.x86_64.rpm Red Hat Enterprise Linux Server Optional AUS (v. 6.6): x86_64: libvirt-debuginfo-0.10.2-46.el6_6.10.x86_64.rpm libvirt-lock-sanlock-0.10.2-46.el6_6.10.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2018-12126 https://access.redhat.com/security/cve/CVE-2018-12127 https://access.redhat.com/security/cve/CVE-2018-12130 https://access.redhat.com/security/cve/CVE-2019-11091 https://access.redhat.com/security/vulnerabilities/mds https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2019 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBXNsljdzjgjWX9erEAQjIfxAAlkLnYIwrxyxCPnk8bapOFdtpjEdPEQ3A gsyJmHHv+cTNICum1me4007p3pJHGyKBaTGhAPiN+xWk2mlDOuqCjWFhPWC9Vznv c417kydVTJ/NoYWXFL8tbLg10msHvkF4Rilz7F5ufL4BL+0WYbuk9VCOS7kMvI6p 2kufxWQTgvhKn22wUXUkmFGahdFfqLMy2GX4l7lr39HmHAVfXRgU4mDNuchSDDgC LDCrRkX8sBSN5X7/y1vBZwDUHgX4L6O9d/juzGzK+mCBkwR0XroN6i91UQWEMmwj 7t/ImtS7EJuz2n4jleQ7BQV55T9hirt7mWMFEj54Qngir/ds2gmajSzUUw6EGysQ B//gCUtsIFXpHyRkY4wb7zgnBmP4PC6rZhSIxF8GR3ZC/ZPa3rRuKjc4zagLVC0h nO9J+8IIjknOmlqZwL/ktaHkPNQbzIXTMhoU0WN3aZzlha+V/giE5AX+zHEQ5/4X kSM76hj/hTYDCyOeMyFcT6StA0ZBpsZLlzDIFNtzTqIvL0w51y3xEmB/tWb9HvZn jF5rhdNLLfIR83GYvo9Zh4Tqnjns5ZzwiewTp6V6XkqRt3zoz6uGRrwOPR55iGyC w4NY7N7aKqFBBhPquZYcSOzwCim7hMgiA/HVkE8+kSedCDzey63fuRor+OsVrTQv O9GGXLDNaHQ=El8/ -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Canonical has issued a significant security patch for OpenStack to resolve major vulnerabilities that might enable unauthorized data access.. Red Hat Security Advisory, libvirt update, important security warning. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 14, 2019 Important Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200