Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
203

Mageia 7: 2019-0383 Moderate: OpenAFS Server Security Fixes

Update to security-release 1.8.5, adresses: * OPENAFS-SA-2019-001: Skip server OUT args on error * OPENAFS-SA-2019-002: Zero all server RPC args * OPENAFS-SA-2019-003: ubik: Avoid unlocked ubik_currentTrans deref . MGASA-2019-0383 - Updated openafs packages fix security vulnerabilities Publication date: 13 Dec 2019 URL: https://advisories.mageia.org/MGASA-2019-0383.html Type: security Affected Mageia releases: 7 Update to security-release 1.8.5, adresses: * OPENAFS-SA-2019-001: Skip server OUT args on error * OPENAFS-SA-2019-002: Zero all server RPC args * OPENAFS-SA-2019-003: ubik: Avoid unlocked ubik_currentTrans deref Update to official version 1.8.4: * support Linux-kernel 5.3 * Avoid non-dir ENOENT errors in afs_lookup * fix parsing of fileservers with -vlruthresh, etc. * other bugfixes References: - https://bugs.mageia.org/show_bug.cgi?id=25816 - https://openafs.org/pages/security/OPENAFS-SA-2019-001.txt - https://openafs.org/pages/security/OPENAFS-SA-2019-002.txt - https://openafs.org/pages/security/OPENAFS-SA-2019-003.txt - - http://openafs.org/dl/openafs/1.8.4/RELNOTES-1.8.4 - http://openafs.org/dl/openafs/1.8.5/RELNOTES-1.8.5 SRPMS: - 7/core/openafs-1.8.5-1.mga7 . OpenAFS security enhancements address vulnerabilities involving RPC configurations and server malfunctions on Mageia 7. Discover more details here.. Mageia Security Updates, OpenAFS Vulnerabilities, Mageia 7 Security. . LinuxSecurity.com Team

Calendar 2 Dec 13, 2019 Mageia
200

Scientific Linux SL 40-45: Low Severity OpenAFS Security Advisory

Low: openafs security update. Date: Tue, 18 Mar 2008 14:36:50 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for openafs on SL41-45 i386/x86_64 Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it." Synopsis: Low: openafs security update Issue date: 21-Dec-2007 CVE Names: OpenAFS Security Advisory 2007-003 In pthread-aware fileservers, the "host_glock" pthread lock, accessed via the H_LOCK and H_UNLOCK macros, is used to provide safe access to host structures. This lock is required to be held when updating information pertaining to a host. The RPC handler for the GiveUpAllCallBacks RPC did not hold this lock while performing its work. This errata is already in SL 4.6. So it only applies to SL 40-45 SL 4.x SRPMS: openafs.SLx-1.4.6-58.src.rpm i386: openafs-1.4.6-58.SL4.i386.rpm openafs-authlibs-1.4.6-58.SL4.i386.rpm openafs-authlibs-devel-1.4.6-58.SL4.i386.rpm openafs-client-1.4.6-58.SL4.i386.rpm openafs-compat-1.4.6-58.SL4.i386.rpm openafs-debug-1.4.6-58.SL4.i386.rpm openafs-devel-1.4.6-58.SL4.i386.rpm openafs-kernel-source-1.4.6-58.SL4.i386.rpm openafs-kpasswd-1.4.6-58.SL4.i386.rpm openafs-krb5-1.4.6-58.SL4.i386.rpm openafs-server-1.4.6-58.SL4.i386.rpm x86_64: openafs-1.4.6-58.SL4.x86_64.rpm openafs-authlibs-1.4.6-58.SL4.x86_64.rpm openafs-authlibs-devel-1.4.6-58.SL4.x86_64.rpm openafs-client-1.4.6-58.SL4.x86_64.rpm openafs-compat-1.4.6-58.SL4.x86_64.rpm openafs-debug-1.4.6-58.SL4.x86_64.rpm openafs-devel-1.4.6-58.SL4.x86_64.rpm openafs-kernel-source-1.4.6-58.SL4.x86_64.rpm openafs-kpasswd-1.4.6-58.SL4.x86_64.rpm openafs-krb5-1.4.6-58.SL4.x86_64.rpm openafs-server-1.4.6-58.SL4.x86_64.rpm -Connie Sieh -Troy Dawson . The latest OpenAFS release tackles minor security vulnerabilities; essential for Scientific Linux users. Remain updated on security fixes.. openafs update, Scientific Linux security, Linux errata, OpenAFS security advisory. . Severity: Low. LinuxSecurity.com Team

Calendar 2 Mar 18, 2008 Low Scientific Linux
200

SciLinux: Critical Security Update for krb5 Addressing CVE-2007-2442

Critical: krb5 security update. Date: Wed, 27 Jun 2007 14:56:15 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for krb5 on SL3,x i386/x86_64 Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it. Synopsis: Critical: krb5 security update Issue date: 2007-06-26 CVE Names: CVE-2007-2442 CVE-2007-2443 CVE-2007-2798 David Coffey discovered an uninitialized pointer free flaw in the RPC library used by kadmind. A remote unauthenticated attacker who can access kadmind could trigger this flaw and cause kadmind to crash or potentially execute arbitrary code as root. (CVE-2007-2442) David Coffey also discovered an overflow flaw in the RPC library used by kadmind. On Scientific Linux, exploitation of this flaw is limited to a denial of service. A remote unauthenticated attacker who can access kadmind could trigger this flaw and cause kadmind to crash. (CVE-2007-2443) A stack buffer overflow flaw was found in kadmind. An authenticated attacker who can access kadmind could trigger this flaw and potentially execute arbitrary code on the Kerberos server. (CVE-2007-2798) SL 3.0.x SRPMS: krb5-1.2.7-66.src.rpm i386: krb5-devel-1.2.7-66.i386.rpm krb5-libs-1.2.7-66.i386.rpm krb5-server-1.2.7-66.i386.rpm krb5-workstation-1.2.7-66.i386.rpm x86_64: krb5-devel-1.2.7-66.x86_64.rpm krb5-libs-1.2.7-66.i386.rpm krb5-libs-1.2.7-66.x86_64.rpm krb5-server-1.2.7-66.x86_64.rpm krb5-workstation-1.2.7-66.x86_64.rpm -Connie Sieh -Troy Dawson . Urgent security patch for krb5 affects Scientific Linux clients, resolving remote code execution vulnerabilities and service disruption risks.. Krb5 Security Update, Critical Advisory, Remote Access Flaw, Denial of Service Exploit. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 27, 2007 Critical Scientific Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here