Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-9472 http://linux.oracle.com/errata/ELSA-2024-9472.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: grafana-pcp-5.1.1-9.el9_5.x86_64.rpm aarch64: grafana-pcp-5.1.1-9.el9_5.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//grafana-pcp-5.1.1-9.el9_5.src.rpm Related CVEs: CVE-2024-34156 Description of changes: [5.1.1-9] - Resolves: RHEL-57932 [5.1.1-8] - Add a premade uwsgi dashboard for the vector datasource _______________________________________________ El-errata mailing list
The container suse/sle15 was updated. The following patches have been included in this update:. SUSE Container Update Advisory: suse/sle15 ----------------------------------------------------------------- Container Advisory ID : SUSE-CU-2021:411-1 Container Tags : suse/sle15:15.2 , suse/sle15:15.2.9.5.30 Container Release : 9.5.30 Severity : important Type : security References : 1179416 1183543 1183545 1183632 1183659 1185299 1187670 1188548 CVE-2021-20266 CVE-2021-20271 CVE-2021-3421 ----------------------------------------------------------------- The container suse/sle15 was updated. The following patches have been included in this update: ----------------------------------------------------------------- Advisory ID: SUSE-SU-2021:3444-1 Released: Fri Oct 15 09:03:07 2021 Summary: Security update for rpm Type: security Severity: important References: 1179416,1183543,1183545,1183632,1183659,1185299,1187670,1188548,CVE-2021-20266,CVE-2021-20271,CVE-2021-3421 This update for rpm fixes the following issues: Security issues fixed: - CVE-2021-3421, CVE-2021-20271, CVE-2021-20266: Multiple header check improvements (bsc#1183543, bsc#1183545, bsc#1183632) - PGP hardening changes (bsc#1185299) - Fixed potential access of freed mem in ndb's glue code (bsc#1179416) Maintaince issues fixed: - Fixed zstd detection (bsc#1187670) - Added ndb rofs support (bsc#1188548) - Fixed deadlock when multiple rpm processes try tp acquire the database lock (bsc#1183659) . Critical patch deployment for SUSE Container suse/sle15 addressing significant vulnerabilities and resolving rpm-related bugs.. SUSE Container,suse/sle15,security update,important patches. . Severity: Important. LinuxSecurity.com Team
* Fix sigsegv in stringFormat() (rhbz:1316903) * Fix reading rpmtd behind its size in formatValue() (rhbz:1316896). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-c3d9a9c0c4 2016-04-26 16:44:53.188544 -------------------------------------------------------------------------------- Name : rpm Product : Fedora 23 Version : 4.13.0 Release : 0.rc1.13.fc23 URL : http://rpm.org/ Summary : The RPM package management system Description : The RPM Package Manager (RPM) is a powerful command line driven package management system capable of installing, uninstalling, verifying, querying, and updating software packages. Each software package consists of an archive of files along with information about the package like its version, a description, etc. -------------------------------------------------------------------------------- Update Information: * Fix sigsegv in stringFormat() (rhbz:1316903) * Fix reading rpmtd behind its size in formatValue() (rhbz:1316896) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1316903 - rpm: Null pointer dereference in rstrdup https://bugzilla.redhat.com/show_bug.cgi?id=1316903 [ 2 ] Bug #1316896 - rpm: Out-of-bounds heap read triggered by crafted RPM file https://bugzilla.redhat.com/show_bug.cgi?id=1316896 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update rpm' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailinglist
Get the latest Linux and open source security news straight to your inbox.