Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
100

SUSE: 2021:0199-1 Important: ImageMagick Multiple Buffer Overflows

An update that fixes 32 vulnerabilities is now available. . SUSE Security Update: Security update for ImageMagick ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:0199-1 Rating: important References: #1179103 #1179202 #1179208 #1179212 #1179223 #1179240 #1179244 #1179260 #1179268 #1179269 #1179278 #1179281 #1179285 #1179311 #1179312 #1179313 #1179315 #1179317 #1179321 #1179322 #1179327 #1179333 #1179336 #1179338 #1179339 #1179343 #1179345 #1179346 #1179347 #1179361 #1179362 #1179397 Cross-References: CVE-2020-19667 CVE-2020-25664 CVE-2020-25665 CVE-2020-25666 CVE-2020-25674 CVE-2020-25675 CVE-2020-25676 CVE-2020-27750 CVE-2020-27751 CVE-2020-27752 CVE-2020-27753 CVE-2020-27754 CVE-2020-27755 CVE-2020-27757 CVE-2020-27759 CVE-2020-27760 CVE-2020-27761 CVE-2020-27762 CVE-2020-27763 CVE-2020-27764 CVE-2020-27765 CVE-2020-27766 CVE-2020-27767 CVE-2020-27768 CVE-2020-27769 CVE-2020-27770 CVE-2020-27771 CVE-2020-27772 CVE-2020-27773 CVE-2020-27774 CVE-2020-27775 CVE-2020-27776 Affected Products: SUSE OpenStack Cloud Crowbar 9 SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 7 SUSE Linux Enterprise Workstation Extension 12-SP5 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE Linux Enterprise Server for SAP 12-SP4 SUSE Linux Enterprise Server for SAP 12-SP3 SUSE Linux Enterprise Server for SAP 12-SP2 SUSE Linux Enterprise Server12-SP5 SUSE Linux Enterprise Server 12-SP4-LTSS SUSE Linux Enterprise Server 12-SP3-LTSS SUSE Linux Enterprise Server 12-SP3-BCL SUSE Linux Enterprise Server 12-SP2-LTSS SUSE Linux Enterprise Server 12-SP2-BCL SUSE Enterprise Storage 5 HPE Helion Openstack 8 ______________________________________________________________________________ An update that fixes 32 vulnerabilities is now available. Description: This update for ImageMagick fixes the following issues: - CVE-2020-19667: Fixed a stack buffer overflow in XPM coder could result in a crash (bsc#1179103). - CVE-2020-25664: Fixed a heap-based buffer overflow in PopShortPixel (bsc#1179202). - CVE-2020-25665: Fixed a heap-based buffer overflow in WritePALMImage (bsc#1179208). - CVE-2020-25666: Fixed an outside the range of representable values of type 'int' and signed integer overflow (bsc#1179212). - CVE-2020-25674: Fixed a heap-based buffer overflow in WriteOnePNGImage (bsc#1179223). - CVE-2020-25675: Fixed an outside the range of representable values of type 'long' and integer overflow (bsc#1179240). - CVE-2020-25676: Fixed an outside the range of representable values of type 'long' and integer overflow at MagickCore/pixel.c (bsc#1179244). - CVE-2020-27750: Fixed an division by zero in MagickCore/colorspace-private.h (bsc#1179260). - CVE-2020-27751: Fixed an integer overflow in MagickCore/quantum-export.c (bsc#1179269). - CVE-2020-27752: Fixed a heap-based buffer overflow in PopShortPixel in MagickCore/quantum-private.h (bsc#1179346). - CVE-2020-27753: Fixed memory leaks in AcquireMagickMemory function (bsc#1179397). - CVE-2020-27754: Fixed an outside the range of representable values of type 'long' and signed integer overflow at MagickCore/quantize.c (bsc#1179336). - CVE-2020-27755: Fixed memory leaks inResizeMagickMemory function in ImageMagick/MagickCore/memory.c (bsc#1179345). - CVE-2020-27757: Fixed an outside the range of representable values of type 'unsigned long long' at MagickCore/quantum-private.h (bsc#1179268). - CVE-2020-27759: Fixed an outside the range of representable values of type 'int' at MagickCore/quantize.c (bsc#1179313). - CVE-2020-27760: Fixed a division by zero at MagickCore/enhance.c (bsc#1179281). - CVE-2020-27761: Fixed an outside the range of representable values of type 'unsigned long' at coders/palm.c (bsc#1179315). - CVE-2020-27762: Fixed an outside the range of representable values of type 'unsigned char' (bsc#1179278). - CVE-2020-27763: Fixed a division by zero at MagickCore/resize.c (bsc#1179312). - CVE-2020-27764: Fixed an outside the range of representable values of type 'unsigned long' at MagickCore/statistic.c (bsc#1179317). - CVE-2020-27765: Fixed a division by zero at MagickCore/segment.c (bsc#1179311). - CVE-2020-27766: Fixed an outside the range of representable values of type 'unsigned long' at MagickCore/statistic.c (bsc#1179361). - CVE-2020-27767: Fixed an outside the range of representable values of type 'float' at MagickCore/quantum.h (bsc#1179322). - CVE-2020-27768: Fixed an outside the range of representable values of type 'unsigned int' at MagickCore/quantum-private.h (bsc#1179339). - CVE-2020-27769: Fixed an outside the range of representable values of type 'float' at MagickCore/quantize.c (bsc#1179321). - CVE-2020-27770: Fixed an unsigned offset overflowed at MagickCore/string.c (bsc#1179343). - CVE-2020-27771: Fixed an outside the range of representable values of type 'unsigned char' at coders/pdf.c (bsc#1179327). - CVE-2020-27772: Fixed an outside the range of representable values of type 'unsigned int' at coders/bmp.c (bsc#1179347). - CVE-2020-27773: Fixed a division by zero at MagickCore/gem-private.h (bsc#1179285). -CVE-2020-27774: Fixed an integer overflow at MagickCore/statistic.c (bsc#1179333). - CVE-2020-27775: Fixed an outside the range of representable values of type 'unsigned char' at MagickCore/quantum.h (bsc#1179338). - CVE-2020-27776: Fixed an outside the range of representable values of type 'unsigned long' at MagickCore/statistic.c (bsc#1179362). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2021-199=1 - SUSE OpenStack Cloud Crowbar 8: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-8-2021-199=1 - SUSE OpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2021-199=1 - SUSE OpenStack Cloud 8: zypper in -t patch SUSE-OpenStack-Cloud-8-2021-199=1 - SUSE OpenStack Cloud 7: zypper in -t patch SUSE-OpenStack-Cloud-7-2021-199=1 - SUSE Linux Enterprise Workstation Extension 12-SP5: zypper in -t patch SUSE-SLE-WE-12-SP5-2021-199=1 - SUSE Linux Enterprise Software Development Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2021-199=1 - SUSE Linux Enterprise Server for SAP 12-SP4: zypper in -t patch SUSE-SLE-SAP-12-SP4-2021-199=1 - SUSE Linux Enterprise Server for SAP 12-SP3: zypper in -t patch SUSE-SLE-SAP-12-SP3-2021-199=1 - SUSE Linux Enterprise Server for SAP 12-SP2: zypper in -t patch SUSE-SLE-SAP-12-SP2-2021-199=1 - SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2021-199=1 - SUSE Linux Enterprise Server 12-SP4-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2021-199=1 - SUSE Linux Enterprise Server 12-SP3-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP3-2021-199=1 - SUSE Linux Enterprise Server 12-SP3-BCL: zypper in -t patchSUSE-SLE-SERVER-12-SP3-BCL-2021-199=1 - SUSE Linux Enterprise Server 12-SP2-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP2-2021-199=1 - SUSE Linux Enterprise Server 12-SP2-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP2-BCL-2021-199=1 - SUSE Enterprise Storage 5: zypper in -t patch SUSE-Storage-5-2021-199=1 - HPE Helion Openstack 8: zypper in -t patch HPE-Helion-OpenStack-8-2021-199=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE OpenStack Cloud Crowbar 8 (x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE OpenStack Cloud 9 (x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE OpenStack Cloud 8 (x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE OpenStack Cloud 7 (s390x x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Workstation Extension 12-SP5 (x86_64): ImageMagick-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagick++-6_Q16-3-6.8.8.1-71.154.1 libMagick++-6_Q16-3-debuginfo-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-32bit-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-32bit-6.8.8.1-71.154.1 - SUSE Linux Enterprise Software Development Kit 12-SP5 (aarch64 ppc64le s390x x86_64): ImageMagick-6.8.8.1-71.154.1 ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 ImageMagick-devel-6.8.8.1-71.154.1 libMagick++-6_Q16-3-6.8.8.1-71.154.1 libMagick++-6_Q16-3-debuginfo-6.8.8.1-71.154.1 libMagick++-devel-6.8.8.1-71.154.1 perl-PerlMagick-6.8.8.1-71.154.1 perl-PerlMagick-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server for SAP 12-SP4 (ppc64le x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server for SAP 12-SP3 (ppc64le x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server for SAP 12-SP2 (ppc64le x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server 12-SP5 (aarch64 ppc64le s390x x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server 12-SP4-LTSS (aarch64 ppc64le s390x x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server 12-SP3-LTSS (aarch64 ppc64le s390x x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server 12-SP3-BCL (x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server 12-SP2-LTSS (ppc64le s390x x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Linux Enterprise Server 12-SP2-BCL (x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - SUSE Enterprise Storage 5 (aarch64 x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 - HPE Helion Openstack 8 (x86_64): ImageMagick-config-6-SUSE-6.8.8.1-71.154.1 ImageMagick-config-6-upstream-6.8.8.1-71.154.1 ImageMagick-debuginfo-6.8.8.1-71.154.1 ImageMagick-debugsource-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-6.8.8.1-71.154.1 libMagickCore-6_Q16-1-debuginfo-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-6.8.8.1-71.154.1 libMagickWand-6_Q16-1-debuginfo-6.8.8.1-71.154.1 References: https://www.suse.com/security/cve/CVE-2020-19667.html https://www.suse.com/security/cve/CVE-2020-25664.html https://www.suse.com/security/cve/CVE-2020-25665.html https://www.suse.com/security/cve/CVE-2020-25666.html https://www.suse.com/security/cve/CVE-2020-25674.html https://www.suse.com/security/cve/CVE-2020-25675.html https://www.suse.com/security/cve/CVE-2020-25676.html https://www.suse.com/security/cve/CVE-2020-27750.html https://www.suse.com/security/cve/CVE-2020-27751.html https://www.suse.com/security/cve/CVE-2020-27752.html https://www.suse.com/security/cve/CVE-2020-27753.html https://www.suse.com/security/cve/CVE-2020-27754.html https://www.suse.com/security/cve/CVE-2020-27755.html https://www.suse.com/security/cve/CVE-2020-27757.html https://www.suse.com/security/cve/CVE-2020-27759.html https://www.suse.com/security/cve/CVE-2020-27760.html https://www.suse.com/security/cve/CVE-2020-27761.html https://www.suse.com/security/cve/CVE-2020-27762.html https://www.suse.com/security/cve/CVE-2020-27763.html https://www.suse.com/security/cve/CVE-2020-27764.html https://www.suse.com/security/cve/CVE-2020-27765.html https://www.suse.com/security/cve/CVE-2020-27766.html https://www.suse.com/security/cve/CVE-2020-27767.html https://www.suse.com/security/cve/CVE-2020-27768.html https://www.suse.com/security/cve/CVE-2020-27769.html https://www.suse.com/security/cve/CVE-2020-27770.html https://www.suse.com/security/cve/CVE-2020-27771.html https://www.suse.com/security/cve/CVE-2020-27772.html https://www.suse.com/security/cve/CVE-2020-27773.html https://www.suse.com/security/cve/CVE-2020-27774.html https://www.suse.com/security/cve/CVE-2020-27775.html https://www.suse.com/security/cve/CVE-2020-27776.html https://bugzilla.suse.com/1179103 https://bugzilla.suse.com/1179202 https://bugzilla.suse.com/1179208 https://bugzilla.suse.com/1179212 https://bugzilla.suse.com/1179223 https://bugzilla.suse.com/1179240 https://bugzilla.suse.com/1179244 https://bugzilla.suse.com/1179260 https://bugzilla.suse.com/1179268 https://bugzilla.suse.com/1179269 https://bugzilla.suse.com/1179278 https://bugzilla.suse.com/1179281 https://bugzilla.suse.com/1179285 https://bugzilla.suse.com/1179311 https://bugzilla.suse.com/1179312 https://bugzilla.suse.com/1179313 https://bugzilla.suse.com/1179315 https://bugzilla.suse.com/1179317 https://bugzilla.suse.com/1179321 https://bugzilla.suse.com/1179322 https://bugzilla.suse.com/1179327 https://bugzilla.suse.com/1179333 https://bugzilla.suse.com/1179336 https://bugzilla.suse.com/1179338 https://bugzilla.suse.com/1179339 https://bugzilla.suse.com/1179343 https://bugzilla.suse.com/1179345 https://bugzilla.suse.com/1179346 https://bugzilla.suse.com/1179347 https://bugzilla.suse.com/1179361 https://bugzilla.suse.com/1179362 https://bugzilla.suse.com/1179397 . Ubuntu released a major security patch for OpenSSL targeting numerous weaknesses to improve overall security.. SUSE Update, ImageMagick Security, Important Patch, System Security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 22, 2021 Important SuSE
100

SUSE: 2020:0693-1 Moderate Update for Wireshark Security Issues

An update that fixes 59 vulnerabilities is now available. . SUSE Security Update: Security update for wireshark ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:0693-1 Rating: moderate References: #1093733 #1094301 #1101776 #1101777 #1101786 #1101788 #1101791 #1101794 #1101800 #1101802 #1101804 #1101810 #1106514 #1111647 #1117740 #1121231 #1121232 #1121233 #1121234 #1121235 #1127367 #1127369 #1127370 #1131941 #1131945 #1136021 #1141980 #1150690 #1156288 #1158505 #1161052 #1165241 #1165710 #957624 Cross-References: CVE-2018-11354 CVE-2018-11355 CVE-2018-11356 CVE-2018-11357 CVE-2018-11358 CVE-2018-11359 CVE-2018-11360 CVE-2018-11361 CVE-2018-11362 CVE-2018-12086 CVE-2018-14339 CVE-2018-14340 CVE-2018-14341 CVE-2018-14342 CVE-2018-14343 CVE-2018-14344 CVE-2018-14367 CVE-2018-14368 CVE-2018-14369 CVE-2018-14370 CVE-2018-16056 CVE-2018-16057 CVE-2018-16058 CVE-2018-18225 CVE-2018-18226 CVE-2018-18227 CVE-2018-19622 CVE-2018-19623 CVE-2018-19624 CVE-2018-19625 CVE-2018-19626 CVE-2018-19627 CVE-2018-19628 CVE-2019-10894 CVE-2019-10895 CVE-2019-10896 CVE-2019-10897 CVE-2019-10898 CVE-2019-10899 CVE-2019-10900 CVE-2019-10901 CVE-2019-10902 CVE-2019-10903 CVE-2019-13619 CVE-2019-16319 CVE-2019-19553 CVE-2019-5716 CVE-2019-5717 CVE-2019-5718 CVE-2019-5719 CVE-2019-5721 CVE-2019-9208 CVE-2019-9209 CVE-2019-9214 CVE-2020-7044 CVE-2020-9428 CVE-2020-9429 CVE-2020-9430 CVE-2020-9431 Affected Products: SUSE LinuxEnterprise Server for SAP 15 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 SUSE Linux Enterprise Module for Desktop Applications 15-SP1 SUSE Linux Enterprise Module for Basesystem 15-SP1 SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise High Performance Computing 15-ESPOS ______________________________________________________________________________ An update that fixes 59 vulnerabilities is now available. Description: This update for wireshark and libmaxminddb fixes the following issues: Update wireshark to new major version 3.2.2 and introduce libmaxminddb for GeoIP support (bsc#1156288). New features include: - Added support for 111 new protocols, including WireGuard, LoRaWAN, TPM 2.0, 802.11ax and QUIC - Improved support for existing protocols, like HTTP/2 - Improved analytics and usability functionalities Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2020-693=1 - SUSE Linux Enterprise Server 15-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-2020-693=1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1: zypper in -t patch SUSE-SLE-Module-Development-Tools-OBS-15-SP1-2020-693=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP1-2020-693=1 - SUSE Linux Enterprise Module for Basesystem 15-SP1: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP1-2020-693=1 - SUSE Linux Enterprise High Performance Computing 15-LTSS: zypper in -t patchSUSE-SLE-Product-HPC-15-2020-693=1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-2020-693=1 Package List: - SUSE Linux Enterprise Server for SAP 15 (ppc64le x86_64): libmaxminddb-debugsource-1.4.2-1.3.1 libmaxminddb-devel-1.4.2-1.3.1 libmaxminddb0-1.4.2-1.3.1 libmaxminddb0-debuginfo-1.4.2-1.3.1 libspandsp2-0.0.6-3.2.1 libspandsp2-debuginfo-0.0.6-3.2.1 libwireshark13-3.2.2-3.35.2 libwireshark13-debuginfo-3.2.2-3.35.2 libwiretap10-3.2.2-3.35.2 libwiretap10-debuginfo-3.2.2-3.35.2 libwsutil11-3.2.2-3.35.2 libwsutil11-debuginfo-3.2.2-3.35.2 mmdblookup-1.4.2-1.3.1 wireshark-3.2.2-3.35.2 wireshark-debuginfo-3.2.2-3.35.2 wireshark-debugsource-3.2.2-3.35.2 - SUSE Linux Enterprise Server for SAP 15 (x86_64): libmaxminddb0-32bit-1.4.2-1.3.1 libmaxminddb0-32bit-debuginfo-1.4.2-1.3.1 - SUSE Linux Enterprise Server 15-LTSS (aarch64 s390x): libmaxminddb-debugsource-1.4.2-1.3.1 libmaxminddb-devel-1.4.2-1.3.1 libmaxminddb0-1.4.2-1.3.1 libmaxminddb0-debuginfo-1.4.2-1.3.1 libspandsp2-0.0.6-3.2.1 libspandsp2-debuginfo-0.0.6-3.2.1 libwireshark13-3.2.2-3.35.2 libwireshark13-debuginfo-3.2.2-3.35.2 libwiretap10-3.2.2-3.35.2 libwiretap10-debuginfo-3.2.2-3.35.2 libwsutil11-3.2.2-3.35.2 libwsutil11-debuginfo-3.2.2-3.35.2 mmdblookup-1.4.2-1.3.1 wireshark-3.2.2-3.35.2 wireshark-debuginfo-3.2.2-3.35.2 wireshark-debugsource-3.2.2-3.35.2 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (x86_64): libspandsp2-32bit-0.0.6-3.2.1 libspandsp2-32bit-debuginfo-0.0.6-3.2.1 spandsp-debugsource-0.0.6-3.2.1 - SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1 (noarch): spandsp-doc-0.0.6-3.2.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1 (aarch64 ppc64le s390xx86_64): libspandsp2-0.0.6-3.2.1 libspandsp2-debuginfo-0.0.6-3.2.1 spandsp-debugsource-0.0.6-3.2.1 spandsp-devel-0.0.6-3.2.1 wireshark-debuginfo-3.2.2-3.35.2 wireshark-debugsource-3.2.2-3.35.2 wireshark-devel-3.2.2-3.35.2 wireshark-ui-qt-3.2.2-3.35.2 wireshark-ui-qt-debuginfo-3.2.2-3.35.2 - SUSE Linux Enterprise Module for Basesystem 15-SP1 (aarch64 ppc64le s390x x86_64): libmaxminddb-debugsource-1.4.2-1.3.1 libmaxminddb-devel-1.4.2-1.3.1 libmaxminddb0-1.4.2-1.3.1 libmaxminddb0-debuginfo-1.4.2-1.3.1 libspandsp2-0.0.6-3.2.1 libspandsp2-debuginfo-0.0.6-3.2.1 libwireshark13-3.2.2-3.35.2 libwireshark13-debuginfo-3.2.2-3.35.2 libwiretap10-3.2.2-3.35.2 libwiretap10-debuginfo-3.2.2-3.35.2 libwsutil11-3.2.2-3.35.2 libwsutil11-debuginfo-3.2.2-3.35.2 mmdblookup-1.4.2-1.3.1 wireshark-3.2.2-3.35.2 wireshark-debuginfo-3.2.2-3.35.2 wireshark-debugsource-3.2.2-3.35.2 - SUSE Linux Enterprise Module for Basesystem 15-SP1 (x86_64): libmaxminddb0-32bit-1.4.2-1.3.1 libmaxminddb0-32bit-debuginfo-1.4.2-1.3.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (aarch64 x86_64): libmaxminddb-debugsource-1.4.2-1.3.1 libmaxminddb-devel-1.4.2-1.3.1 libmaxminddb0-1.4.2-1.3.1 libmaxminddb0-debuginfo-1.4.2-1.3.1 libspandsp2-0.0.6-3.2.1 libspandsp2-debuginfo-0.0.6-3.2.1 libwireshark13-3.2.2-3.35.2 libwireshark13-debuginfo-3.2.2-3.35.2 libwiretap10-3.2.2-3.35.2 libwiretap10-debuginfo-3.2.2-3.35.2 libwsutil11-3.2.2-3.35.2 libwsutil11-debuginfo-3.2.2-3.35.2 mmdblookup-1.4.2-1.3.1 wireshark-3.2.2-3.35.2 wireshark-debuginfo-3.2.2-3.35.2 wireshark-debugsource-3.2.2-3.35.2 - SUSE Linux Enterprise High Performance Computing 15-LTSS (x86_64): libmaxminddb0-32bit-1.4.2-1.3.1 libmaxminddb0-32bit-debuginfo-1.4.2-1.3.1 - SUSE Linux Enterprise High PerformanceComputing 15-ESPOS (aarch64 x86_64): libmaxminddb-debugsource-1.4.2-1.3.1 libmaxminddb-devel-1.4.2-1.3.1 libmaxminddb0-1.4.2-1.3.1 libmaxminddb0-debuginfo-1.4.2-1.3.1 libspandsp2-0.0.6-3.2.1 libspandsp2-debuginfo-0.0.6-3.2.1 libwireshark13-3.2.2-3.35.2 libwireshark13-debuginfo-3.2.2-3.35.2 libwiretap10-3.2.2-3.35.2 libwiretap10-debuginfo-3.2.2-3.35.2 libwsutil11-3.2.2-3.35.2 libwsutil11-debuginfo-3.2.2-3.35.2 mmdblookup-1.4.2-1.3.1 wireshark-3.2.2-3.35.2 wireshark-debuginfo-3.2.2-3.35.2 wireshark-debugsource-3.2.2-3.35.2 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (x86_64): libmaxminddb0-32bit-1.4.2-1.3.1 libmaxminddb0-32bit-debuginfo-1.4.2-1.3.1 References: https://www.suse.com/security/cve/CVE-2018-11354.html https://www.suse.com/security/cve/CVE-2018-11355.html https://www.suse.com/security/cve/CVE-2018-11356.html https://www.suse.com/security/cve/CVE-2018-11357.html https://www.suse.com/security/cve/CVE-2018-11358.html https://www.suse.com/security/cve/CVE-2018-11359.html https://www.suse.com/security/cve/CVE-2018-11360.html https://www.suse.com/security/cve/CVE-2018-11361.html https://www.suse.com/security/cve/CVE-2018-11362.html https://www.suse.com/security/cve/CVE-2018-12086.html https://www.suse.com/security/cve/CVE-2018-14339.html https://www.suse.com/security/cve/CVE-2018-14340.html https://www.suse.com/security/cve/CVE-2018-14341.html https://www.suse.com/security/cve/CVE-2018-14342.html https://www.suse.com/security/cve/CVE-2018-14343.html https://www.suse.com/security/cve/CVE-2018-14344.html https://www.suse.com/security/cve/CVE-2018-14367.html https://www.suse.com/security/cve/CVE-2018-14368.html https://www.suse.com/security/cve/CVE-2018-14369.html https://www.suse.com/security/cve/CVE-2018-14370.html https://www.suse.com/security/cve/CVE-2018-16056.html https://www.suse.com/security/cve/CVE-2018-16057.html https://www.suse.com/security/cve/CVE-2018-16058.html https://www.suse.com/security/cve/CVE-2018-18225.html https://www.suse.com/security/cve/CVE-2018-18226.html https://www.suse.com/security/cve/CVE-2018-18227.html https://www.suse.com/security/cve/CVE-2018-19622.html https://www.suse.com/security/cve/CVE-2018-19623.html https://www.suse.com/security/cve/CVE-2018-19624.html https://www.suse.com/security/cve/CVE-2018-19625.html https://www.suse.com/security/cve/CVE-2018-19626.html https://www.suse.com/security/cve/CVE-2018-19627.html https://www.suse.com/security/cve/CVE-2018-19628.html https://www.suse.com/security/cve/CVE-2019-10894.html https://www.suse.com/security/cve/CVE-2019-10895.html https://www.suse.com/security/cve/CVE-2019-10896.html https://www.suse.com/security/cve/CVE-2019-10897.html https://www.suse.com/security/cve/CVE-2019-10898.html https://www.suse.com/security/cve/CVE-2019-10899.html https://www.suse.com/security/cve/CVE-2019-10900.html https://www.suse.com/security/cve/CVE-2019-10901.html https://www.suse.com/security/cve/CVE-2019-10902.html https://www.suse.com/security/cve/CVE-2019-10903.html https://www.suse.com/security/cve/CVE-2019-13619.html https://www.suse.com/security/cve/CVE-2019-16319.html https://www.suse.com/security/cve/CVE-2019-19553.html https://www.suse.com/security/cve/CVE-2019-5716.html https://www.suse.com/security/cve/CVE-2019-5717.html https://www.suse.com/security/cve/CVE-2019-5718.html https://www.suse.com/security/cve/CVE-2019-5719.html https://www.suse.com/security/cve/CVE-2019-5721.html https://www.suse.com/security/cve/CVE-2019-9208.html https://www.suse.com/security/cve/CVE-2019-9209.html https://www.suse.com/security/cve/CVE-2019-9214.html https://www.suse.com/security/cve/CVE-2020-7044.html https://www.suse.com/security/cve/CVE-2020-9428.html https://www.suse.com/security/cve/CVE-2020-9429.html https://www.suse.com/security/cve/CVE-2020-9430.html https://www.suse.com/security/cve/CVE-2020-9431.html https://bugzilla.suse.com/1093733 https://bugzilla.suse.com/1094301 https://bugzilla.suse.com/1101776 https://bugzilla.suse.com/1101777 https://bugzilla.suse.com/1101786 https://bugzilla.suse.com/1101788 https://bugzilla.suse.com/1101791 https://bugzilla.suse.com/1101794 https://bugzilla.suse.com/1101800 https://bugzilla.suse.com/1101802 https://bugzilla.suse.com/1101804 https://bugzilla.suse.com/1101810 https://bugzilla.suse.com/1106514 https://bugzilla.suse.com/1111647 https://bugzilla.suse.com/1117740 https://bugzilla.suse.com/1121231 https://bugzilla.suse.com/1121232 https://bugzilla.suse.com/1121233 https://bugzilla.suse.com/1121234 https://bugzilla.suse.com/1121235 https://bugzilla.suse.com/1127367 https://bugzilla.suse.com/1127369 https://bugzilla.suse.com/1127370 https://bugzilla.suse.com/1131941 https://bugzilla.suse.com/1131945 https://bugzilla.suse.com/1136021 https://bugzilla.suse.com/1141980 https://bugzilla.suse.com/1150690 https://bugzilla.suse.com/1156288 https://bugzilla.suse.com/1158505 https://bugzilla.suse.com/1161052 https://bugzilla.suse.com/1165241 https://bugzilla.suse.com/1165710 https://bugzilla.suse.com/957624 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE Security Patch for wireshark addresses 59 vulnerabilities across various SUSE distributions rated with moderate severity.. SUSE Update, wireshark Security, libmaxminddb Enabling, moderate Rating Issues. . LinuxSecurity.com Team

Calendar 2 Mar 13, 2020 SuSE
100

SUSE: 2017:3332-1 Important Kernel Update Severe: Privilege Escalation

An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available. An update that fixes two vulnerabilities is now available.. SUSE Security Update: Security update for the Linux Kernel (Live Patch 14 for SLE 12 SP1) ______________________________________________________________________________ Announcement ID: SUSE-SU-2017:3332-1 Rating: important References: #1053153 #1069708 Cross-References: CVE-2017-10661 CVE-2017-16939 Affected Products: SUSE Linux Enterprise Server for SAP 12-SP1 SUSE Linux Enterprise Server 12-SP1-LTSS ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for the Linux Kernel 3.12.69-60_64_35 fixes several issues. The following security issues were fixed: - CVE-2017-16939: The XFRM dump policy implementation in net/xfrm/xfrm_user.c allowed local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCVBUF setsockopt system call in conjunction with XFRM_MSG_GETPOLICY Netlink messages (bsc#1069708). - CVE-2017-10661: Race condition in fs/timerfd.c allowed local users to gain privileges or cause a denial of service (list corruption or use-after-free) via simultaneous file-descriptor operations that leverage improper might_cancel queueing (bsc#1053153). Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 12-SP1: zypper in -t patch SUSE-SLE-SAP-12-SP1-2017-2086=1 - SUSE Linux Enterprise Server 12-SP1-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP1-2017-2086=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Server for SAP 12-SP1 (x86_64): kgraft-patch-3_12_69-60_64_35-default-8-2.1 kgraft-patch-3_12_69-60_64_35-xen-8-2.1 - SUSE Linux Enterprise Server 12-SP1-LTSS (x86_64): kgraft-patch-3_12_69-60_64_35-default-8-2.1 kgraft-patch-3_12_69-60_64_35-xen-8-2.1 References: https://www.suse.com/security/cve/CVE-2017-10661.html https://www.suse.com/security/cve/CVE-2017-16939.html https://bugzilla.suse.com/1053153 https://bugzilla.suse.com/1069708 . SUSE has released a Security Update addressing two vulnerabilities within the Linux Kernel for Enterprise Server 12 SP1. Discover additional details here.. SUSE Kernel Update, Linux Live Patch, Security Fixes, Privilege Escalation. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 15, 2017 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here