Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 37: FEDORA-2023-40044895ce Moderate Tracker-Miners Sandbox Escape

Seccomp jail improvements (CVE-2023-43641). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-40044895ce 2023-10-11 01:33:15.490419 -------------------------------------------------------------------------------- Name : tracker-miners Product : Fedora 37 Version : 3.4.5 Release : 1.fc37 URL : Summary : Tracker miners and metadata extractors Description : Tracker is a powerful desktop-neutral first class object database, tag/metadata database and search tool. This package contains various miners and metadata extractors for tracker. -------------------------------------------------------------------------------- Update Information: Seccomp jail improvements (CVE-2023-43641) -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 10 2023 Kalev Lember - 3.4.5-1 - Update to 3.4.5 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2243096 - tracker-miners: sandbox escape https://bugzilla.redhat.com/show_bug.cgi?id=2243096 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-40044895ce' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct:https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Stay informed with the newest security patches for Fedora 37's tracker-miners, which include significant enhancements and corrections related to Seccomp jail functionality.. Fedora 37 Security, tracker-miners Update, Seccomp Improvements, Security Fixes. . LinuxSecurity.com Team

Calendar 2 Oct 11, 2023 Fedora
100

SUSE 2021:3768-1 Important: WebKit2GTK3 Seccomp Fix for Security

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for webkit2gtk3 ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:3768-1 Rating: important References: #1191937 Cross-References: CVE-2021-42762 CVSS scores: CVE-2021-42762 (NVD) : 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L CVE-2021-42762 (SUSE): 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H Affected Products: SUSE OpenStack Cloud Crowbar 9 SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud 8 SUSE Linux Enterprise Software Development Kit 12-SP5 SUSE Linux Enterprise Server for SAP 12-SP4 SUSE Linux Enterprise Server for SAP 12-SP3 SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server 12-SP4-LTSS SUSE Linux Enterprise Server 12-SP3-LTSS SUSE Linux Enterprise Server 12-SP3-BCL SUSE Linux Enterprise Server 12-SP2-BCL HPE Helion Openstack 8 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for webkit2gtk3 fixes the following issues: - CVE-2021-42762: Updated seccomp rules with latest changes from flatpak (bsc#1191937). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE OpenStack Cloud Crowbar 9: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-9-2021-3768=1 - SUSE OpenStack Cloud Crowbar 8: zypper in -t patch SUSE-OpenStack-Cloud-Crowbar-8-2021-3768=1 - SUSEOpenStack Cloud 9: zypper in -t patch SUSE-OpenStack-Cloud-9-2021-3768=1 - SUSE OpenStack Cloud 8: zypper in -t patch SUSE-OpenStack-Cloud-8-2021-3768=1 - SUSE Linux Enterprise Software Development Kit 12-SP5: zypper in -t patch SUSE-SLE-SDK-12-SP5-2021-3768=1 - SUSE Linux Enterprise Server for SAP 12-SP4: zypper in -t patch SUSE-SLE-SAP-12-SP4-2021-3768=1 - SUSE Linux Enterprise Server for SAP 12-SP3: zypper in -t patch SUSE-SLE-SAP-12-SP3-2021-3768=1 - SUSE Linux Enterprise Server 12-SP5: zypper in -t patch SUSE-SLE-SERVER-12-SP5-2021-3768=1 - SUSE Linux Enterprise Server 12-SP4-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP4-LTSS-2021-3768=1 - SUSE Linux Enterprise Server 12-SP3-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP3-2021-3768=1 - SUSE Linux Enterprise Server 12-SP3-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP3-BCL-2021-3768=1 - SUSE Linux Enterprise Server 12-SP2-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP2-BCL-2021-3768=1 - HPE Helion Openstack 8: zypper in -t patch HPE-Helion-OpenStack-8-2021-3768=1 Package List: - SUSE OpenStack Cloud Crowbar 9 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE OpenStack Cloud Crowbar 9 (x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE OpenStack Cloud Crowbar 8 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE OpenStack Cloud Crowbar 8 (x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE OpenStack Cloud 9 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE OpenStack Cloud 9 (x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE OpenStack Cloud 8 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE OpenStack Cloud 8 (x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE Linux Enterprise Software Development Kit 12-SP5 (aarch64 ppc64le s390x x86_64): typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 webkit2gtk3-devel-2.32.4-2.74.5 - SUSE Linux Enterprise Server for SAP 12-SP4 (ppc64le x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE Linux Enterprise Server for SAP 12-SP4 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE Linux Enterprise Server for SAP 12-SP3 (ppc64le x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE Linux Enterprise Server for SAP 12-SP3 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP5 (aarch64 ppc64le s390x x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP5 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP4-LTSS (aarch64 ppc64le s390x x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP4-LTSS (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP3-LTSS (aarch64 ppc64le s390x x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP3-LTSS (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP3-BCL (x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP2-BCL (x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 webkit2gtk3-devel-2.32.4-2.74.5 - SUSE Linux Enterprise Server 12-SP2-BCL (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 - HPE Helion Openstack 8 (x86_64): libjavascriptcoregtk-4_0-18-2.32.4-2.74.5 libjavascriptcoregtk-4_0-18-debuginfo-2.32.4-2.74.5 libwebkit2gtk-4_0-37-2.32.4-2.74.5 libwebkit2gtk-4_0-37-debuginfo-2.32.4-2.74.5 typelib-1_0-JavaScriptCore-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2-4_0-2.32.4-2.74.5 typelib-1_0-WebKit2WebExtension-4_0-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-2.32.4-2.74.5 webkit2gtk-4_0-injected-bundles-debuginfo-2.32.4-2.74.5 webkit2gtk3-debugsource-2.32.4-2.74.5 - HPE Helion Openstack 8 (noarch): libwebkit2gtk3-lang-2.32.4-2.74.5 References: https://www.suse.com/security/cve/CVE-2021-42762.html https://bugzilla.suse.com/1191937 . SUSE Security Alert: Urgent webkit2gtk3 patch released for various distributions and versions. Take action now!. SUSE Update, Webkit2gtk3, Security Fix, Linux Patches. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 23, 2021 Important SuSE
197

Debian 9: DLA-2320-1 Moderate: Golang Seccomp Access Restriction Bypass

A process running under a restrictive seccomp filter that specified multiple syscall arguments could bypass intended access restrictions by specifying a single matching argument. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2320-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ August 10, 2020 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : golang-github-seccomp-libseccomp-golang Version : 0.0~git20150813.0.1b506fc-2+deb9u1 CVE ID : CVE-2017-18367 Debian Bug : 927981 A process running under a restrictive seccomp filter that specified multiple syscall arguments could bypass intended access restrictions by specifying a single matching argument. Additionally, runc has been rebuilt with the fixed package. For Debian 9 stretch, this problem has been fixed in version 0.0~git20150813.0.1b506fc-2+deb9u1. We recommend that you upgrade your golang-github-seccomp-libseccomp-golang and runc packages, and recompile own Go code using golang-github-seccomp-libseccomp-golang. For the detailed security status of golang-github-seccomp-libseccomp-golang please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/golang-github-seccomp-libseccomp-golang Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-2321-1 highlights vulnerabilities in certain software, prompting urgent updates.. Seccomp Filter, Golang Security, Debian Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 11, 2020 Important Debian LTS
203

Mageia: 2020-0115 Moderate: Firejail Truncation and Seccomp Issues

Updated firejail package fixes security vulnerabilities: Firejail before 0.9.60 allows truncation (resizing to length 0) of the firejail binary on the host by running exploit code inside a firejail sandbox and having the sandbox terminated. To succeed, certain conditions . MGASA-2020-0115 - Updated firejail packages fix security vulnerabilities Publication date: 06 Mar 2020 URL: https://advisories.mageia.org/MGASA-2020-0115.html Type: security Affected Mageia releases: 7 CVE: CVE-2019-12499, CVE-2019-12589 Updated firejail package fixes security vulnerabilities: Firejail before 0.9.60 allows truncation (resizing to length 0) of the firejail binary on the host by running exploit code inside a firejail sandbox and having the sandbox terminated. To succeed, certain conditions need to be fulfilled: The jail (with the exploit code inside) needs to be started as root, and it also needs to be terminated as root from the host (either by stopping it ungracefully (e.g., SIGKILL), or by using the --shutdown control command) (CVE-2019-12499). In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker (CVE-2019-12589). References: - https://bugs.mageia.org/show_bug.cgi?id=26013 - https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./thread/RGVULJ6IKVDO6UAVIQRHQVSKOUD6QDWM/ - https://www.cve.org/CVERecord?id=CVE-2019-12499 - https://www.cve.org/CVERecord?id=CVE-2019-12589 SRPMS: - 7/core/firejail-0.9.56-2.1.mga7 . Recent updates to the firejail packages for Mageia address significant security vulnerabilities. Discover the details regarding these flaws and their remedies.. firejail update, Mageia security, exploit code vulnerabilities, seccomp security, package fixes. . LinuxSecurity.com Team

Calendar 2 Mar 06, 2020 Mageia
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here