Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
87

Debian: DSA 1026-1 Critical: sash Buffer Overflow Threat Resolved

Updated package.. - --------------------------------------------------------------------------Debian Security Advisory DSA 1026-1 This email address is being protected from spambots. You need JavaScript enabled to view it. http://www.debian.org/security/ Moritz Muehlenhoff April 6th, 2006 http://www.debian.org/security/faq - --------------------------------------------------------------------------Package : sash Vulnerability : buffer overflows Problem-Type : local(remote) Debian-specific: no CVE ID : CVE-2005-1849 CVE-2005-2096 Debian Bug : 318069 Markus Oberhumer discovered a flaw in the way zlib, a library used for file compression and decompression, handles invalid input. This flaw can cause programs which use zlib to crash when opening an invalid file. A further error in the way zlib handles the inflation of certain compressed files can cause a program which uses zlib to crash when opening an invalid file. sash, the stand-alone shell, links statically against zlib, and was thus affected by these problems. The old stable distribution (woody) isn't affected by these problems. For the stable distribution (sarge) these problems have been fixed in version 3.7-5sarge1. For the unstable distribution (sid) these problems have been fixed in version 3.7-6. We recommend that you upgrade your sash package. Upgrade Instructions - --------------------wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.1 alias sarge - -------------------------------- Source archives: Size/MD5 checksum: 626 76b6e1da964b13f658be8d47cb86f549 Size/MD5 checksum: 12884 31311a323d287e90fc009a2df0fd4cfa Size/MD5 checksum: 50337 ee7c7ed5aad76599974d016a6f201ef4 Alpha architecture: Size/MD5 checksum: 351674 0fb668feb016efc21047949391198358 AMD64 architecture: Size/MD5 checksum: 319266 fd8cf5fac1897887967da5d847732a1d ARM architecture: Size/MD5 checksum: 275770 ac7639f8b71b102e6af2a8e80ab49160 Intel IA-32 architecture: Size/MD5 checksum: 277712 d15fd151bdcc9cb4bd0369d62a6f7275 Intel IA-64 architecture: Size/MD5 checksum: 416856 f57b2aa2f43a79d7a3a79d7448365508 HP Precision architecture: Size/MD5 checksum: 309870 00056dd6979b462d2e00dd8bc2b65c26 Motorola 680x0 architecture: Size/MD5 checksum: 236548 5f1788608ab337aa5a33e158d7aecade Big endian MIPS architecture: Size/MD5 checksum: 308406 db784c2fa118ba8a39b83c953b258b0f Little endian MIPS architecture: Size/MD5 checksum: 307280 6d62964036a56514f1cd31f8e9d36cfe PowerPC architecture: Size/MD5 checksum: 300344 d5a1c9f92acbfd515d0e183af808ca56 IBM S/390 architecture: Size/MD5 checksum: 289972 9772185159d49f7a613074faf922d428 Sun Sparc architecture: Size/MD5 checksum: 283338 486946909f328f524d03a001dba83f47 These files will probably be moved into the stable distribution on its next update. - ---------------------------------------------------------------------------------For apt-get: deb https://www.debian.org/security/ stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Debian Security Advisory DSA 1027-1 addresses critical vulnerabilities in the libc6 library impacting various platforms.. Debian Security, Buffer Overflow, Sash Update, Software Patch. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 06, 2006 Critical Debian
87

Debian 2.2 DSA-015-1 Security Issue: Sash Permissions Vulnerability

Versions of sash prior to 3.4-4 did not clone /etc/shadow properlywhich lead into readable files for anybody.. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ---------------------------------------------------------------------------- Debian Security Advisory DSA-015-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze January 23, 2001 - ---------------------------------------------------------------------------- Package : sash Vulnerability : broken maintainer script Debian-specific: yes Versions of sash prior to 3.4-4 did not clone /etc/shadow properly which lead into readable files for anybody. This was fixed by the Debian maintainer. This package only exists in stable, so if you are running unstable you won't see a bugfix unless you use the resources from the bottom of this message to the proper configuration. We recommend you upgrade your sash package immediately. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 2.2 alias potato - ------------------------------------ Potato was released for the alpha, arm, i386, m68k, powerpc and sparc architectures. Source archives: MD5 checksum: f65d5dfd23acc395b99651076e8029bd MD5 checksum: c78f46d34405afcbaae29726dd9f8e89 MD5 checksum: 9c631eb171371b69276ff6692100beb6 Intel ia32 architecture: MD5 checksum: 4273648c65527f88855887f97bb6eeab Motorola 680x0 architecture: MD5 checksum: 7bc34c6c7b0b1f6793693853711c76ad Sun Sparc architecture: MD5 checksum: 1fdadd243c5aabc329edcb880dcd2581 Alpha architecture: MD5 checksum: 57837ce03d6c55dad077d67cc18ed38a PowerPC architecture: MD5 checksum: b5bf950effb0517552e0056ce995120e ARM architecture: MD5 checksum:d7e3253ef764c1bb10b04caafd7b9c30 These files will be moved into soon. For not yet released architectures please refer to the appropriate directory . - ---------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.4 (GNU/Linux) Comment: For info see The GNU Privacy Guard iD8DBQE6bNE0W5ql+IAeqTIRAgLoAJ9CohteWM4aVgKghMRRZ1JjiHcdbACfeYRe 2SKtPRjH2k9IRbcwHZ6+RIw=OHfM -----END PGP SIGNATURE----- . Debian advises updates for sash due to permissions issue allowing unauthorized access; crucial for system safety.. Debian Security Advisory,sash permissions issue,package update,access risk,sash flaw. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 22, 2001 Important Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here