Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 8 articles for you...
219

Rocky Linux 8 RLSA-2026-13902 Important Fix for Resource Agents DoS

Important: resource-agents security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:13902", "synopsis": "Important: resource-agents security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for resource-agents.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment.\n\nSecurity Fix(es):\n\n* pyasn1: pyasn1 Vulnerable to Denial of Service via Unbounded Recursion (CVE-2026-30922)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2448553", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2448553", "description": ""}], "cves": [{"name": "CVE-2026-30922", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-30922", "cvss3ScoringVector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-835"}], "references": [], "publishedAt": "2026-05-07T06:01:03.840543Z", "rpms": {"Rocky Linux 8": {"nvras": ["resource-agents-0:4.9.0-54.el8_10.33.aarch64.rpm", "resource-agents-0:4.9.0-54.el8_10.33.src.rpm", "resource-agents-0:4.9.0-54.el8_10.33.x86_64.rpm", "resource-agents-aliyun-0:4.9.0-54.el8_10.33.x86_64.rpm", "resource-agents-aliyun-debuginfo-0:4.9.0-54.el8_10.33.x86_64.rpm", "resource-agents-debuginfo-0:4.9.0-54.el8_10.33.aarch64.rpm", "resource-agents-debuginfo-0:4.9.0-54.el8_10.33.x86_64.rpm", "resource-agents-debugsource-0:4.9.0-54.el8_10.33.aarch64.rpm","resource-agents-debugsource-0:4.9.0-54.el8_10.33.x86_64.rpm", "resource-agents-gcp-0:4.9.0-54.el8_10.33.x86_64.rpm", "resource-agents-paf-0:4.9.0-54.el8_10.33.aarch64.rpm", "resource-agents-paf-0:4.9.0-54.el8_10.33.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Critical security update for Rocky Linux addressing a denial of service threat in resource-agents. Act now!. Rocky Linux 8 security update denial of service resource-agents. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 07, 2026 Important Rocky Linux
100

SUSE: 2022:2335-1 Moderate: Resource Agents Fix Details

An update that contains security fixes can now be installed. . SUSE Security Update: Security update for resource-agents ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:2335-1 Rating: moderate References: #1146691 Affected Products: SUSE Linux Enterprise High Availability 12-SP4 SUSE Linux Enterprise High Availability 12-SP5 SUSE Linux Enterprise High Performance Computing 12-SP4 SUSE Linux Enterprise High Performance Computing 12-SP5 SUSE Linux Enterprise Server 12-SP4 SUSE Linux Enterprise Server 12-SP5 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for resource-agents fixes the following issues: - Fixed redictable log file in /tmp in mariadb.in (bsc#1146691). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise High Availability 12-SP5: zypper in -t patch SUSE-SLE-HA-12-SP5-2022-2335=1 - SUSE Linux Enterprise High Availability 12-SP4: zypper in -t patch SUSE-SLE-HA-12-SP4-2022-2335=1 Package List: - SUSE Linux Enterprise High Availability 12-SP5 (ppc64le s390x x86_64): ldirectord-4.3.018.a7fb5035-3.92.1 resource-agents-4.3.018.a7fb5035-3.92.1 resource-agents-debuginfo-4.3.018.a7fb5035-3.92.1 resource-agents-debugsource-4.3.018.a7fb5035-3.92.1 - SUSE Linux Enterprise High Availability 12-SP5 (noarch): monitoring-plugins-metadata-4.3.018.a7fb5035-3.92.1 - SUSE Linux Enterprise High Availability 12-SP4 (ppc64le s390x x86_64): ldirectord-4.3.018.a7fb5035-3.92.1 resource-agents-4.3.018.a7fb5035-3.92.1 resource-agents-debuginfo-4.3.018.a7fb5035-3.92.1 resource-agents-debugsource-4.3.018.a7fb5035-3.92.1 - SUSE Linux Enterprise High Availability 12-SP4 (noarch): monitoring-plugins-metadata-4.3.018.a7fb5035-3.92.1 References: https://bugzilla.suse.com/1146691 . SUSE Security Update for resource-agents addresses critical vulnerabilities, enhancing agent security. To install, refresh repos and update resource-agents.. SUSE Linux Enterprise, Resource Agents, Security Fix, Installation Instructions. . LinuxSecurity.com Team

Calendar%202 Jul 08, 2022 SuSE
100

SUSE: 2022:2337-1 Important: Resource Agents Security Update Information

An update that contains security fixes can now be installed. . SUSE Security Update: Security update for resource-agents ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:2337-1 Rating: important References: #1021689 #1146687 #1146690 #1146691 #1146692 #1146766 #1146776 #1146784 #1146785 #1146787 #1196164 #1197956 #1199766 Affected Products: SUSE Linux Enterprise High Availability 15-SP2 SUSE Linux Enterprise High Performance Computing 15-SP2 SUSE Linux Enterprise Server 15-SP2 SUSE Linux Enterprise Server for SAP Applications 15-SP2 SUSE Linux Enterprise Storage 7 SUSE Manager Proxy 4.1 SUSE Manager Retail Branch Server 4.1 SUSE Manager Server 4.1 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for resource-agents fixes the following issues: Security: - Fixed unsafe tmp files and tmp files directory. (bsc#1146690, bsc#1146691, bsc#1146692, bsc#1146766, bsc#1146776, bsc#1146784, bsc#1146785, bsc#1146787) - Created ocfmon user no longer has a default password. If no password is set, the user will not be created. (bsc#1021689, bsc#1146687) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise High Availability 15-SP2: zypper in -t patch SUSE-SLE-Product-HA-15-SP2-2022-2337=1 Package List: - SUSE Linux Enterprise High Availability 15-SP2 (aarch64 ppc64le s390x x86_64): ldirectord-4.4.0+git57.70549516-150200.3.53.1 resource-agents-4.4.0+git57.70549516-150200.3.53.1 resource-agents-debuginfo-4.4.0+git57.70549516-150200.3.53.1 resource-agents-debugsource-4.4.0+git57.70549516-150200.3.53.1 - SUSE Linux Enterprise High Availability 15-SP2 (noarch): monitoring-plugins-metadata-4.4.0+git57.70549516-150200.3.53.1 References: https://bugzilla.suse.com/1021689 https://bugzilla.suse.com/1146687 https://bugzilla.suse.com/1146690 https://bugzilla.suse.com/1146691 https://bugzilla.suse.com/1146692 https://bugzilla.suse.com/1146766 https://bugzilla.suse.com/1146776 https://bugzilla.suse.com/1146784 https://bugzilla.suse.com/1146785 https://bugzilla.suse.com/1146787 https://bugzilla.suse.com/1196164 https://bugzilla.suse.com/1197956 https://bugzilla.suse.com/1199766 . An essential patch from SUSE for resource-agents addresses vulnerabilities and enhances overall system security. Check out the installation guidelines.. SUSE Update, Resource Agents, Security Fixes, High Availability, System Protection. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 08, 2022 Important SuSE
100

SUSE: 2022:2326-1 Important: Resource Agents Security Update

An update that contains security fixes can now be installed. . SUSE Security Update: Security update for resource-agents ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:2326-1 Rating: important References: #1146691 #1196164 #1199766 Affected Products: SUSE Linux Enterprise High Availability 15-SP3 SUSE Linux Enterprise High Performance Computing 15-SP3 SUSE Linux Enterprise Server 15-SP3 SUSE Linux Enterprise Server for SAP Applications 15-SP3 SUSE Linux Enterprise Storage 7.1 SUSE Manager Proxy 4.2 SUSE Manager Retail Branch Server 4.2 SUSE Manager Server 4.2 openSUSE Leap 15.3 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for resource-agents fixes the following issues: - Predictable log file in /tmp in mariadb.in (bsc#1146691). - Allow aws-vpc-move-ip to specify an interface label to distinguish the IP address (bsc#1199766) - Implement options to disable DAD and to allow sending NA in the background (bsc#1196164) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2022-2326=1 - SUSE Linux Enterprise High Availability 15-SP3: zypper in -t patch SUSE-SLE-Product-HA-15-SP3-2022-2326=1 Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): ldirectord-4.8.0+git30.d0077df0-150300.8.28.1 resource-agents-4.8.0+git30.d0077df0-150300.8.28.1 resource-agents-debuginfo-4.8.0+git30.d0077df0-150300.8.28.1 resource-agents-debugsource-4.8.0+git30.d0077df0-150300.8.28.1 - openSUSE Leap 15.3 (noarch): monitoring-plugins-metadata-4.8.0+git30.d0077df0-150300.8.28.1 - SUSE Linux Enterprise High Availability 15-SP3 (aarch64 ppc64le s390x x86_64): ldirectord-4.8.0+git30.d0077df0-150300.8.28.1 resource-agents-4.8.0+git30.d0077df0-150300.8.28.1 resource-agents-debuginfo-4.8.0+git30.d0077df0-150300.8.28.1 resource-agents-debugsource-4.8.0+git30.d0077df0-150300.8.28.1 - SUSE Linux Enterprise High Availability 15-SP3 (noarch): monitoring-plugins-metadata-4.8.0+git30.d0077df0-150300.8.28.1 References: https://bugzilla.suse.com/1146691 https://bugzilla.suse.com/1196164 https://bugzilla.suse.com/1199766 . The SUSE Security Patch delivers crucial updates for the resource-manager, boosting performance across multiple SUSE platforms.. SUSE Linux Update, Resource Agents Fixes, High Availability Patches. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 07, 2022 Important SuSE
100

SUSE: 2022:2325-1 Important Security Fix for Resource Agents

An update that contains security fixes can now be installed. . SUSE Security Update: Security update for resource-agents ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:2325-1 Rating: important References: #1146691 #1196164 #1197956 #1199766 Affected Products: SUSE Linux Enterprise High Availability 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap 15.4 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for resource-agents fixes the following issues: - Fixed predictable log file in /tmp in mariadb.in (bsc#1146691). - Allow aws-vpc-move-ip to specify an interface label to distinguish the IP address (bsc#1199766) - Implement options to disable DAD and to allow sending NA in the background (bsc#1196164) - Imporove error message if monpassword was not set (bsc#1197956) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2022-2325=1 - SUSE Linux Enterprise High Availability 15-SP4: zypper in -t patch SUSE-SLE-Product-HA-15-SP4-2022-2325=1 Package List: - openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64): ldirectord-4.10.0+git40.0f4de473-150400.3.7.1 resource-agents-4.10.0+git40.0f4de473-150400.3.7.1 resource-agents-debuginfo-4.10.0+git40.0f4de473-150400.3.7.1 resource-agents-debugsource-4.10.0+git40.0f4de473-150400.3.7.1 - openSUSE Leap 15.4 (noarch): monitoring-plugins-metadata-4.10.0+git40.0f4de473-150400.3.7.1 - SUSE Linux Enterprise High Availability 15-SP4 (aarch64 ppc64le s390x x86_64): ldirectord-4.10.0+git40.0f4de473-150400.3.7.1 resource-agents-4.10.0+git40.0f4de473-150400.3.7.1 resource-agents-debuginfo-4.10.0+git40.0f4de473-150400.3.7.1 resource-agents-debugsource-4.10.0+git40.0f4de473-150400.3.7.1 - SUSE Linux Enterprise High Availability 15-SP4 (noarch): monitoring-plugins-metadata-4.10.0+git40.0f4de473-150400.3.7.1 References: https://bugzilla.suse.com/1146691 https://bugzilla.suse.com/1196164 https://bugzilla.suse.com/1197956 https://bugzilla.suse.com/1199766 . SUSE announces a crucial Security Update for resource-agents addressing severe vulnerabilities; refer to the provided instructions for the installation process.. SUSE Linux Enterprise, Resource Agents, Security Update, Patch Instructions. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 07, 2022 Important SuSE
98

Red Hat Enterprise Linux 8: RHSA-2021-4139 Moderate Resource Agents Bug Fix

An update for resource-agents is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: resource-agents security, bug fix, and enhancement update Advisory ID: RHSA-2021:4139-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:4139 Issue date: 2021-11-09 CVE Names: CVE-2021-20270 CVE-2021-27291 ==================================================================== 1. Summary: An update for resource-agents is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux HighAvailability (v. 8) - aarch64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux ResilientStorage (v. 8) - ppc64le, s390x, x86_64 3. Description: The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment. Security Fix(es): * python-pygments: Infinite loop in SML lexer may lead to DoS (CVE-2021-20270) * python-pygments: ReDoS in multiple lexers (CVE-2021-27291) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.5 Release Noteslinked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1872754 - Add pgsqlms resource agent 1891883 - ethmonitor: fix to be able to use with vlan interfaces 1902045 - ocf:heartbeat:iface-vlan does not allow multiple vlans by interface nor multiple VLANs 1920698 - podman resource agent logs spurious failed resource actions 1922136 - CVE-2021-20270 python-pygments: Infinite loop in SML lexer may lead to DoS 1924363 - nfsserver: Failure to unmount /var/lib/nfs doesn't cause stop failure 1928238 - Support for other filesystems on top of crypt devices on RHEL HA (ext4/xfs) 1932863 - VirtualDomain: fix pid_status() on RHEL8 1934651 - DB2: promote fails with HADR state PRIMARY/REMOTE_CATCHUP_PENDING/CONNECTED 1939281 - aws-vpc-move-ip: Enable eni lookup for AWS shared networks via RAM [RHEL 8] 1939992 - awsvip: dont match similar IPs 1940094 - AWS agents: dont spam logs when getting token 1940603 - CVE-2021-27291 python-pygments: ReDoS in multiple lexers1957765 - gcp-vpc-move-vip: add retries functionality to avoid failing on first failed request 1969968 - lvmlockd: Remove the option `with_cmirrord` since cmirror is incompatible with lvmlockd 1972035 - LVM-activate: Start operation always recreates drop-in file and runs systemctl daemon-reload 1972743 - resource agent bails out when podman fails to start container under heavy load 6. Package List: Red Hat Enterprise Linux HighAvailability (v.8): Source: resource-agents-4.1.1-98.el8.src.rpm aarch64: resource-agents-4.1.1-98.el8.aarch64.rpm resource-agents-debuginfo-4.1.1-98.el8.aarch64.rpm resource-agents-debugsource-4.1.1-98.el8.aarch64.rpm resource-agents-paf-4.1.1-98.el8.aarch64.rpm ppc64le: resource-agents-4.1.1-98.el8.ppc64le.rpm resource-agents-debuginfo-4.1.1-98.el8.ppc64le.rpm resource-agents-debugsource-4.1.1-98.el8.ppc64le.rpm resource-agents-paf-4.1.1-98.el8.ppc64le.rpm s390x: resource-agents-4.1.1-98.el8.s390x.rpm resource-agents-debuginfo-4.1.1-98.el8.s390x.rpm resource-agents-debugsource-4.1.1-98.el8.s390x.rpm resource-agents-paf-4.1.1-98.el8.s390x.rpm x86_64: resource-agents-4.1.1-98.el8.x86_64.rpm resource-agents-aliyun-4.1.1-98.el8.x86_64.rpm resource-agents-aliyun-debuginfo-4.1.1-98.el8.x86_64.rpm resource-agents-debuginfo-4.1.1-98.el8.x86_64.rpm resource-agents-debugsource-4.1.1-98.el8.x86_64.rpm resource-agents-gcp-4.1.1-98.el8.x86_64.rpm resource-agents-paf-4.1.1-98.el8.x86_64.rpm Red Hat Enterprise Linux ResilientStorage (v. 8): Source: resource-agents-4.1.1-98.el8.src.rpm ppc64le: resource-agents-4.1.1-98.el8.ppc64le.rpm resource-agents-debuginfo-4.1.1-98.el8.ppc64le.rpm resource-agents-debugsource-4.1.1-98.el8.ppc64le.rpm resource-agents-paf-4.1.1-98.el8.ppc64le.rpm s390x: resource-agents-4.1.1-98.el8.s390x.rpm resource-agents-debuginfo-4.1.1-98.el8.s390x.rpm resource-agents-debugsource-4.1.1-98.el8.s390x.rpm resource-agents-paf-4.1.1-98.el8.s390x.rpm x86_64: resource-agents-4.1.1-98.el8.x86_64.rpm resource-agents-aliyun-4.1.1-98.el8.x86_64.rpm resource-agents-aliyun-debuginfo-4.1.1-98.el8.x86_64.rpm resource-agents-debuginfo-4.1.1-98.el8.x86_64.rpm resource-agents-debugsource-4.1.1-98.el8.x86_64.rpm resource-agents-gcp-4.1.1-98.el8.x86_64.rpm resource-agents-paf-4.1.1-98.el8.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7.References: https://access.redhat.com/security/cve/CVE-2021-20270 https://access.redhat.com/security/cve/CVE-2021-27291 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/8/html/8.5_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYYre6NzjgjWX9erEAQgeQw/+PjJ81dqLMiOuEd/buWdiiDbrOfBeszWh LxUkmu4wWyMD1TPlgLxUdcD+3ipWJNZDHk/jJTgjr8PQO8bg5dAPCAgn9WqHrA1m rsfmoqqKw19pbOjcAhWIsRi425dZg0HouSpalVMK4t2wU6GbI2rbd14cHtwi03i3 BXxQKehOQI+Pyeq5c+o13M6/o5sVxf6bZyavz9RH321CwDt5EatO5LA6seEbjklU oXiKl3JcSwh6ahVW3hyumjCNsJHH+2XD0pw5pc2xZx3iyuhTxnPjhs413qvWxXy2 s1zcxPekeCbIKzWkoAH7depy1o+J6WwQCBiYkqFZyIUnd6+pXeIfltujvWBumnBn mkLLOhonU1uvlKKVcRLxb9awv60S6ai0YYHJ728YPyDDtEHFThvdK5Ctm/fn2ibM OU8awQNfzB4tge/S9XFsrnKVcH5VZSvmIWch3np2oV6JP6R6P2nX35a9k7s4sRn+ /eMIZ56zEowO9d4ievt8TLF87aR3cdjIaK9fafjVRBrCfjwy/BF9xuNf1dQBlKn/ Tk8nBbQVFUNXTOsZBHRWmJDx5AjBZgH2fxTxHlkbGB/qksqRb47aW2U8P99+rw/K Mvm4TQn8HMjxmMjHypOKjencfnxiek1maoqlGS6oxnkYBdOwtTvAHn2uSfEtJdy7 o7yf5vDfoiw=lrGC -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A cautious security notice has been issued for Red Hat Enterprise Linux 8 concerning resource agents, highlighting essential updates and improvements.. Red Hat Advisory, Resource Agents Update, Security Impact. . LinuxSecurity.com Team

Calendar%202 Nov 09, 2021 Red Hat
203

Mageia 7 Security Advisory: MGASA-2021-0045 Critical Resource Agents Issue

Multiple vulnerabilities related to unsafe tempfile usage (bsc#1146690, bsc#1146691, bsc#1146692, bsc#1146766, bsc#1146776, bsc#1146784, bsc#1146785, bsc#1146787). Issues where the ocfmon user was created with a default password (bsc#1021689, . MGASA-2021-0045 - Updated resource-agents packages fix security vulnerabilities Publication date: 19 Jan 2021 URL: https://advisories.mageia.org/MGASA-2021-0045.html Type: security Affected Mageia releases: 7 Multiple vulnerabilities related to unsafe tempfile usage (bsc#1146690, bsc#1146691, bsc#1146692, bsc#1146766, bsc#1146776, bsc#1146784, bsc#1146785, bsc#1146787). Issues where the ocfmon user was created with a default password (bsc#1021689, bsc#1146687). The resource-agents package has been updated to version 4.7.0, fixing these issues and several other bugs. References: - https://bugs.mageia.org/show_bug.cgi?id=26538 - SRPMS: - 7/core/resource-agents-4.7.0-1.mga7 . Mageia 2021-0050 enhances resource-management agents, tackling vulnerabilities related to insecure temporary file handling and preset credentials.. Resource Agents Security,Mageia Security Fix,Software Security Update,Critical Security Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jan 19, 2021 Critical Mageia
199

CentOS 7 CESA-2020-5004 Low: Resource Agents Update Available

Upstream details at : https://access.redhat.com/errata/RHSA-2020:5004. CentOS Errata and Security Advisory 2020:5004 Low Upstream details at : https://access.redhat.com/errata/RHSA-2020:5004 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) x86_64: 898a07f35eaa8781f7f96ee6666297c5864472115945d11efcee3bfabc801e33 resource-agents-4.1.1-61.el7_9.4.x86_64.rpm 3ef3e8c076f637b1c91f85480d4df87d7fe63a0aee8b42f8fc774dd84b683aa2 resource-agents-aliyun-4.1.1-61.el7_9.4.x86_64.rpm d03be814a86828be3841393ebfa51e9a8c3907a53dbae5960d470f20fd79d04c resource-agents-gcp-4.1.1-61.el7_9.4.x86_64.rpm Source: 36b9d6dbe36f28dcadad89d9fd85e12c67fc8187a4376a477d3ba7efea6a581e resource-agents-4.1.1-61.el7_9.4.src.rpm -- Johnny Hughes CentOS Project { https://www.centos.org/ } irc: hughesjr, #This email address is being protected from spambots. You need JavaScript enabled to view it. Twitter: @JohnnyCentOS _______________________________________________ CentOS-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . CentOS Security Update Advisory 2020:5004 Low Revisions for Resource Agents Summary. CentOS Security, Resource Agents Update, CentOS Advisory. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Nov 18, 2020 Low CentOS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200