Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 1 articles for you...
89

Fedora 43: Firefox 147.0 Update for Enhanced Performance and Security

New upstream release (147.0). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-de370822e0 2026-01-14 00:50:55.476257+00:00 -------------------------------------------------------------------------------- Name : firefox Product : Fedora 43 Version : 147.0 Release : 1.fc43 URL : https://www.firefox.com/ Summary : Mozilla Firefox Web browser Description : Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability. -------------------------------------------------------------------------------- Update Information: New upstream release (147.0) -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 6 2026 Martin Stransky - 147.0-1 - Updated to 147.0 * Fri Dec 19 2025 Martin Stransky - 146.0.1-1 - Updated to 146.0.1 * Wed Dec 17 2025 Martin Stransky - 146.0-6 - Added upstream patch IWYU (libwebrtc IWYU fixes for PipeWire) - Claude AI assisted editing (failed to do whole work, but it was close!) * Wed Dec 17 2025 Martin Stransky - 146.0-5 - Removed firefox-bin from man pages -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-de370822e0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Stay updated with the latest Firefox 147.0 release on Fedora 43. Ensure system security and performance improvements with this advisory.. Fedora 43, Firefox 147.0, software update, web browser, security alert. . LinuxSecurity.com Team

Calendar 2 Jan 14, 2026 Fedora
100

SUSE: 2024:3655-1 important: Kernel Live Patch 6 Security Alert

* bsc#1225312 * bsc#1225739 * bsc#1226325 * bsc#1228573 * bsc#1228786 . # Security update for the Linux Kernel (Live Patch 6 for SLE 15 SP5) Announcement ID: SUSE-SU-2024:3655-1 Release Date: 2024-10-16T11:33:28Z Rating: important References: * bsc#1225312 * bsc#1225739 * bsc#1226325 * bsc#1228573 * bsc#1228786 Cross-References: * CVE-2024-35861 * CVE-2024-36899 * CVE-2024-36964 * CVE-2024-40954 * CVE-2024-41059 CVSS scores: * CVE-2024-35861 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-36899 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-36964 ( SUSE ): 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40954 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40954 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-41059 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-41059 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves five vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 5.14.21-150500_55_31 fixes several issues. The following security issues were fixed: * CVE-2024-35861: Fixed potential UAF in cifs_signal_cifsd_for_reconnect() (bsc#1225312). * CVE-2024-36899: gpiolib: cdev: Fix use after free in lineinfo_changed_notify (bsc#1225739). * CVE-2024-40954: net: do not leave a dangling sk pointer, when socket creation fails (bsc#1227808) * CVE-2024-41059: hfsplus: fix uninit-value in copy_name (bsc#1228573). *CVE-2024-36964: fs/9p: only translate RWX permissions for plain 9P2000 (bsc#1226325). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch SUSE-2024-3655=1 * SUSE Linux Enterprise Live Patching 15-SP5 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2024-3655=1 ## Package List: * openSUSE Leap 15.5 (ppc64le s390x x86_64) * kernel-livepatch-SLE15-SP5_Update_6-debugsource-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_31-default-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_31-default-debuginfo-13-150500.2.1 * SUSE Linux Enterprise Live Patching 15-SP5 (ppc64le s390x x86_64) * kernel-livepatch-SLE15-SP5_Update_6-debugsource-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_31-default-13-150500.2.1 * kernel-livepatch-5_14_21-150500_55_31-default-debuginfo-13-150500.2.1 ## References: * https://www.suse.com/security/cve/CVE-2024-35861.html * https://www.suse.com/security/cve/CVE-2024-36899.html * https://www.suse.com/security/cve/CVE-2024-36964.html * https://www.suse.com/security/cve/CVE-2024-40954.html * https://www.suse.com/security/cve/CVE-2024-41059.html * https://bugzilla.suse.com/show_bug.cgi?id=1225312 * https://bugzilla.suse.com/show_bug.cgi?id=1225739 * https://bugzilla.suse.com/show_bug.cgi?id=1226325 * https://bugzilla.suse.com/show_bug.cgi?id=1228573 * https://bugzilla.suse.com/show_bug.cgi?id=1228786 . A critical security enhancement resolves various vulnerabilities in the Linux Kernel for SUSE 15 SP5, strengthening overall system integrity.. SUSE Linux, Kernel Live Patch, Security Update, SUSE Vulnerabilities, SLE 15 SP5. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 16, 2024 Important SuSE
98

RHEL PostgreSQL: RHSA-2020:5620-01 Important: Security Update

An update for the postgresql:12 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: postgresql:12 security update Advisory ID: RHSA-2020:5620-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:5620 Issue date: 2020-12-17 CVE Names: CVE-2020-1720 CVE-2020-14349 CVE-2020-14350 CVE-2020-25694 CVE-2020-25695 CVE-2020-25696 ==================================================================== 1. Summary: An update for the postgresql:12 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: PostgreSQL is an advanced object-relational database management system (DBMS). The following packages have been upgraded to a later upstream version: postgresql (12.5). Security Fix(es): * postgresql: Reconnection can downgrade connection security settings (CVE-2020-25694) * postgresql: Multiple features escape "security restricted operation" sandbox (CVE-2020-25695) * postgresql: Uncontrolled search path element in logical replication (CVE-2020-14349) * postgresql: Uncontrolled search path element in CREATE EXTENSION (CVE-2020-14350) * postgresql: psql's gset allows overwriting specially treated variables (CVE-2020-25696) * postgresql: ALTER ... DEPENDS ON EXTENSION is missingauthorization checks (CVE-2020-1720) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 If the postgresql service is running, it will be automatically restarted after installing this update. 5. Bugs fixed (https://bugzilla.redhat.com/): 1798852 - CVE-2020-1720 postgresql: ALTER ... DEPENDS ON EXTENSION is missing authorization checks 1865744 - CVE-2020-14349 postgresql: Uncontrolled search path element in logical replication 1865746 - CVE-2020-14350 postgresql: Uncontrolled search path element in CREATE EXTENSION 1894423 - CVE-2020-25694 postgresql: Reconnection can downgrade connection security settings 1894425 - CVE-2020-25695 postgresql: Multiple features escape "security restricted operation" sandbox 1894430 - CVE-2020-25696 postgresql: psql's gset allows overwriting specially treated variables 6. Package List: Red Hat Enterprise Linux AppStream (v.8): Source: pgaudit-1.4.0-4.module+el8.3.0+9042+664538f4.src.rpm postgres-decoderbufs-0.10.0-2.module+el8.3.0+9042+664538f4.src.rpm postgresql-12.5-1.module+el8.3.0+9042+664538f4.src.rpm aarch64: pgaudit-1.4.0-4.module+el8.3.0+9042+664538f4.aarch64.rpm pgaudit-debuginfo-1.4.0-4.module+el8.3.0+9042+664538f4.aarch64.rpm pgaudit-debugsource-1.4.0-4.module+el8.3.0+9042+664538f4.aarch64.rpm postgres-decoderbufs-0.10.0-2.module+el8.3.0+9042+664538f4.aarch64.rpm postgres-decoderbufs-debuginfo-0.10.0-2.module+el8.3.0+9042+664538f4.aarch64.rpm postgres-decoderbufs-debugsource-0.10.0-2.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-contrib-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-contrib-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-debugsource-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-docs-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-docs-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-plperl-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-plperl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-plpython3-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-plpython3-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-pltcl-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-pltcl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-server-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-server-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-server-devel-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-server-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-static-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-test-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-test-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-upgrade-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-upgrade-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-upgrade-devel-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm postgresql-upgrade-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.aarch64.rpm noarch: postgresql-test-rpm-macros-12.5-1.module+el8.3.0+9042+664538f4.noarch.rpm ppc64le: pgaudit-1.4.0-4.module+el8.3.0+9042+664538f4.ppc64le.rpm pgaudit-debuginfo-1.4.0-4.module+el8.3.0+9042+664538f4.ppc64le.rpm pgaudit-debugsource-1.4.0-4.module+el8.3.0+9042+664538f4.ppc64le.rpm postgres-decoderbufs-0.10.0-2.module+el8.3.0+9042+664538f4.ppc64le.rpm postgres-decoderbufs-debuginfo-0.10.0-2.module+el8.3.0+9042+664538f4.ppc64le.rpm postgres-decoderbufs-debugsource-0.10.0-2.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-contrib-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-contrib-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-debugsource-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-docs-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-docs-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-plperl-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-plperl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-plpython3-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-plpython3-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-pltcl-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-pltcl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-server-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-server-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-server-devel-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-server-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-static-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-test-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-test-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-upgrade-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-upgrade-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-upgrade-devel-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm postgresql-upgrade-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.ppc64le.rpm s390x: pgaudit-1.4.0-4.module+el8.3.0+9042+664538f4.s390x.rpm pgaudit-debuginfo-1.4.0-4.module+el8.3.0+9042+664538f4.s390x.rpm pgaudit-debugsource-1.4.0-4.module+el8.3.0+9042+664538f4.s390x.rpm postgres-decoderbufs-0.10.0-2.module+el8.3.0+9042+664538f4.s390x.rpm postgres-decoderbufs-debuginfo-0.10.0-2.module+el8.3.0+9042+664538f4.s390x.rpm postgres-decoderbufs-debugsource-0.10.0-2.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-contrib-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-contrib-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-debugsource-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-docs-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-docs-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-plperl-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-plperl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-plpython3-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-plpython3-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-pltcl-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-pltcl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-server-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-server-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-server-devel-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-server-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-static-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-test-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-test-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-upgrade-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-upgrade-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-upgrade-devel-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm postgresql-upgrade-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.s390x.rpm x86_64: pgaudit-1.4.0-4.module+el8.3.0+9042+664538f4.x86_64.rpm pgaudit-debuginfo-1.4.0-4.module+el8.3.0+9042+664538f4.x86_64.rpm pgaudit-debugsource-1.4.0-4.module+el8.3.0+9042+664538f4.x86_64.rpm postgres-decoderbufs-0.10.0-2.module+el8.3.0+9042+664538f4.x86_64.rpm postgres-decoderbufs-debuginfo-0.10.0-2.module+el8.3.0+9042+664538f4.x86_64.rpm postgres-decoderbufs-debugsource-0.10.0-2.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-contrib-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-contrib-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-debugsource-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-docs-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-docs-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-plperl-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-plperl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-plpython3-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-plpython3-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-pltcl-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-pltcl-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-server-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-server-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-server-devel-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-server-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-static-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-test-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-test-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-upgrade-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-upgrade-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-upgrade-devel-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm postgresql-upgrade-devel-debuginfo-12.5-1.module+el8.3.0+9042+664538f4.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2020-1720 https://access.redhat.com/security/cve/CVE-2020-14349 https://access.redhat.com/security/cve/CVE-2020-14350 https://access.redhat.com/security/cve/CVE-2020-25694 https://access.redhat.com/security/cve/CVE-2020-25695 https://access.redhat.com/security/cve/CVE-2020-25696 https://access.redhat.com/security/updates/classification/#important https://www.postgresql.org/docs/12/release-12-2.html https://www.postgresql.org/docs/12/release-12-3.html https://www.postgresql.org/docs/12/release-12-4.html https://www.postgresql.org/docs/12/release-12-5.html 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBX9uAVtzjgjWX9erEAQgmqhAAip8RwhLxjtl1gQIhgZKEaCgXekTFYtJj B+GdNU37hNQclNSHrsTn9/99FMo0i+8ACsdejygMAgrBHj85LK/2TkvX4TBoX/Gu g6+4rncBFBtgp6CPJSjBydcFrwCaI8LHqdmA+7mIIDHEPJBKVdGtEKZ8cm6Bug2L m4ye1iWH+OxlKW0V871E3vQ4HqGL031Rwgy3+KyRmETeNfVKLrbO9VM5/9XyjoE5 02diSTQInMcMSfOLWb08l5GSsAjsMdSEvYHK6m7PHbKXdq00mjjD4ooLqjAFP96u 4LX11dhNHlz6EEZ1JMSQ5SoxWm/B7inKRxLFcPSNODHQjK3qPkS6zpu5Drp9fq6t XRiQkdrE8vhnHbEWJ0a05WFldZ9YynkL1Kz2SeeljWi2n2dk4dvjF9GStccDsLra AADkkQmyaQ/GMxGGhZ88DaArG1GJVDsHSgJDpg9g2jaovbmqvSbseFNVHXJIcHpO Png87xC2LU7ZDUnpbjNIt8DZI+Yg2vLYX8Psx1Xfcl1mqBQY5YyRR9IG/7HJWESn cN+T8FeLN+/e5x0/R1/5/GBAVHkLjNhStY0xvo1ga4trtzIPYW0n2nxJy1/Pwljf 8FxKyrEOfyAlwC3I3Ot6t/Khg3RFOf5taRn3ff4S1al51aiXYRsEgrL7XiJSzaNO YmboFvTqTBc=jogS -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A critical patch has been released for Red Hat's postgresql:12 module, classified as a significant security enhancement.. PostgreSQL Security Update, Red Hat Advisory, Database Module Patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 17, 2020 Important Red Hat
89

Fedora 33: 2020-a4802c53d9 Moderate: php-wikimedia-assert Security Alert

https://lists.wikimedia.org/hyperkitty/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/KSMS2ET2EWZJT7Y3H335B3XNV723FOZR/ The 1.34.x series is now end-of-life and the 1.35.x series is a LTS release.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-a4802c53d9 2020-12-14 00:57:23.030738 --------------------------------------------------------------------------------Name : php-wikimedia-assert Product : Fedora 33 Version : 0.5.0 Release : 1.fc33 URL : https://github.com/wikimedia/mediawiki-libs-Assert Summary : An alternative to PHP's assert Description : This package provides an alternative to PHP's assert() that allows for a simple and reliable way to check preconditions and postconditions in PHP code. It was proposed as a MediaWiki RFC, but is completely generic and can be used by any PHP program or library. --------------------------------------------------------------------------------Update Information: https://lists.wikimedia.org/hyperkitty/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/KSMS2ET2EWZJT7Y3H335B3XNV723FOZR/ The 1.34.x series is now end-of-life and the 1.35.x series is a LTS release. --------------------------------------------------------------------------------ChangeLog: * Wed Dec 2 2020 Michael Cronenworth - 0.5.0-1 - version update - tests have been removed from upstream tarball --------------------------------------------------------------------------------References: [ 1 ] Bug #1288786 - php-zordius-lightncandy-1.2.5 is available https://bugzilla.redhat.com/show_bug.cgi?id=1288786 [ 2 ] Bug #1667755 - php-wikimedia-assert-0.5.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1667755 [ 3 ] Bug #1882555 - mediawiki-1.35.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1882555 [ 4 ] Bug #1903753 - CVE-2020-26120 mediawiki: XSS exists in the MobileFrontend extension [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903753 [ 5 ] Bug #1903755 - CVE-2020-26121 mediawiki: attacker can import a file even when the target page is protected against page creation [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903755 [ 6 ] Bug #1903760 - CVE-2020-25815 mediawiki: LogEventList::getFiltersDesc is insecurely using message text to build options names for HTML multi-select field [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903760 [ 7 ] Bug #1903762 - CVE-2020-25827 mediawiki: using OATHAuth on a farm/cluster (such as via CentralAuth), rate limiting of OATH tokens is only done on a single site level [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903762 [ 8 ] Bug #1903765 - CVE-2020-25813 mediawiki: Special:UserRights exposes the existence of hidden users [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903765 [ 9 ] Bug #1903769 - CVE-2020-25812 mediawiki: XSS using raw HTML [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903769 [ 10 ] Bug #1903771 - CVE-2020-25869 mediawiki: handling of actor ID does not necessarily use the correct database or correct wiki leads to information disclosure [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903771 [ 11 ] Bug #1903775 - CVE-2020-25814 mediawiki: XSS via javascript:payload [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903775 [ 12 ] Bug #1903778 - CVE-2020-25828 mediawiki: non-jqueryMsg version of mw.message().parse() doesn't escape HTML leads to XSS [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1903778 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-a4802c53d9' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed withthe Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Keep informed about the Fedora 34 php-mediawiki-validate launch and security enhancements in the newest LTS edition.. php Assert Alternative, Fedora Update Notifications, Long-Term Support. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 13, 2020 Important Fedora
199

CentOS: CESA-2020-4953 Critical: xorg-x11-server Security Fix

Upstream details at : https://access.redhat.com/errata/RHSA-2020:4953. CentOS Errata and Security Advisory 2020:4953 Important Upstream details at : https://access.redhat.com/errata/RHSA-2020:4953 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 5059ab54170412872f88d5ab194293493b2b765f573fc6f78c0d9ace9f8d2b66 xorg-x11-server-common-1.17.4-18.el6.centos.i686.rpm b37dff9ea4ac00896a290053c3144b2f8690f62e3b23ecac6180b02ec988a5cd xorg-x11-server-devel-1.17.4-18.el6.centos.i686.rpm 75a7add7ad8244095ad2e8700ed2c350aea28ed0e485d1f02e9e3482a3512b4d xorg-x11-server-source-1.17.4-18.el6.centos.noarch.rpm 77101c53e1cc3c2b6b305bf654160798a94a57a76ef9d78c387f82f89a2fb8c7 xorg-x11-server-Xdmx-1.17.4-18.el6.centos.i686.rpm ac9a5141b765d2806881825618cc6e4d0e616598d06ecc299d475df3dd659840 xorg-x11-server-Xephyr-1.17.4-18.el6.centos.i686.rpm 9e064fdb6b18af8f4cc7cc899f39afcddf7998c4e8dd40aa3e39755bd038faca xorg-x11-server-Xnest-1.17.4-18.el6.centos.i686.rpm 60b79c706f5135af0aa04ba11e5c1285be3c8bddcbe41be35137c219b4624e88 xorg-x11-server-Xorg-1.17.4-18.el6.centos.i686.rpm fee0a25a98d360e906683c7370f6a5a8b378ad29a257ae44d1cfde5dc6faccff xorg-x11-server-Xvfb-1.17.4-18.el6.centos.i686.rpm x86_64: e1d71fc00e3ba9364d4d54b30335f5444d9497f0d16bfed52f4b7bd3e9fd5e76 xorg-x11-server-common-1.17.4-18.el6.centos.x86_64.rpm b37dff9ea4ac00896a290053c3144b2f8690f62e3b23ecac6180b02ec988a5cd xorg-x11-server-devel-1.17.4-18.el6.centos.i686.rpm df8d9928f6cdd1cf9fcf0d5fba99f313385e47c6084056ddbf547b1b29e21c78 xorg-x11-server-devel-1.17.4-18.el6.centos.x86_64.rpm 75a7add7ad8244095ad2e8700ed2c350aea28ed0e485d1f02e9e3482a3512b4d xorg-x11-server-source-1.17.4-18.el6.centos.noarch.rpm a9f913a126351611356eeb49a93d39dac03dd6e30b495c709027185f1f1459a7 xorg-x11-server-Xdmx-1.17.4-18.el6.centos.x86_64.rpm 9fcb2539a63002eada6c265e9bd1382847d7546f70ba619228933b89eb4d60e4 xorg-x11-server-Xephyr-1.17.4-18.el6.centos.x86_64.rpm ccb1c58a72bd32faf005e31fb4a5a86bfebe7c9be9cc42095252f5a461dd968b xorg-x11-server-Xnest-1.17.4-18.el6.centos.x86_64.rpm 8f8fcc4e08eb21a9cbd85b98e6d77aab5562a0fc770a54d1cc479c000ff6d1cf xorg-x11-server-Xorg-1.17.4-18.el6.centos.x86_64.rpm f9e253496ee6c40f20c21240a247cb8ad9d17f5be102ce8fc37da84e994e6b89 xorg-x11-server-Xvfb-1.17.4-18.el6.centos.x86_64.rpm Source: 779305950f0a46d80e819083c60ea97e78b6fe9a71d55f29a3c9e67bf1c8ef58 xorg-x11-server-1.17.4-18.el6.centos.src.rpm -- Johnny Hughes CentOS Project { https://www.centos.org/ } irc: hughesjr, #This email address is being protected from spambots. You need JavaScript enabled to view it. Twitter: @JohnnyCentOS _______________________________________________ CentOS-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A recent CentOS 6 security advisory warns of critical updates to the xorg-x11-server package, urging system admins to act swiftly for better protection. CentOS Security Advisory, xorg-x11-server Update, Important CentOS Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 09, 2020 Critical CentOS
199

CentOS 7 CESA-2017-3315 Moderate: Kernel Security Update Alert

Upstream details at : https://access.redhat.com/errata/RHSA-2017:3315. CentOS Errata and Security Advisory 2017:3315 Moderate Upstream details at : https://access.redhat.com/errata/RHSA-2017:3315 The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) x86_64: 76c4869b3efe1557a38a8d95a926adc7e30a229ce7a9683cef50ad02ae9450b1 kernel-3.10.0-693.11.1.el7.x86_64.rpm febc0e6db253ce45a3a05cd29498f972f8e77ee81228e6e59f18e415b0435cdd kernel-abi-whitelists-3.10.0-693.11.1.el7.noarch.rpm 2b23e732bbf2f0136256713b42a40a50de10224257828ec5f2422620d8710cf1 kernel-debug-3.10.0-693.11.1.el7.x86_64.rpm 5c74eb3215b48b061641a8433d807c77613c9c574bf82fe796a8fdd798728cf8 kernel-debug-devel-3.10.0-693.11.1.el7.x86_64.rpm dbf225552a0c9b8ed30cd0e7359d46943647f2e0a539485e8f72142556dfb196 kernel-devel-3.10.0-693.11.1.el7.x86_64.rpm 70f5d38aeb89ddb48f43f9e87ea03b221219087e43267dc5600d5d0845aed895 kernel-doc-3.10.0-693.11.1.el7.noarch.rpm 0ebe966a863e2c72cc2fa36aa62db8be83567ab1b9b3e8c41ca599cd0cc2ba17 kernel-headers-3.10.0-693.11.1.el7.x86_64.rpm fb03fb4b09909a3119f6e9c83872db8ec43151516ac2ed24b037150afe891a5d kernel-tools-3.10.0-693.11.1.el7.x86_64.rpm 9bc87d7f0eb6ff4b421cfade1b40b8c65e9d0c91ec9bb1216011323b325b5f30 kernel-tools-libs-3.10.0-693.11.1.el7.x86_64.rpm dea32e8c9a1861c900d462f5afee53a95c75ecbe48d80c834e10eb34af064690 kernel-tools-libs-devel-3.10.0-693.11.1.el7.x86_64.rpm 9fc9c83d692b13bffa89fd37cf86f7d90cfab36452b4bc3b3224ab578f57e3de perf-3.10.0-693.11.1.el7.x86_64.rpm 5ef3b60c5a02eeab13a327f482f97002cfb360cbaee694d1d0fd280eba56fc60 python-perf-3.10.0-693.11.1.el7.x86_64.rpm Source: 4cd455f6b8db2f5af471c720d634ff653693d8ad128b64bf0c121c34e10b9848 kernel-3.10.0-693.11.1.el7.src.rpm -- Johnny Hughes CentOS Project { https://www.centos.org/ } irc: hughesjr, #This email address is being protected from spambots. You need JavaScript enabled to view it. Twitter: @JohnnyCentOS _______________________________________________ CentOS-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . CentOS Errata and Security Advisory2017:3315 highlights a moderate kernel patch with important details.. CentOS Update, Kernel Security, Security Fix, Kernel Patch Management. . LinuxSecurity.com Team

Calendar 2 Dec 06, 2017 CentOS
89

Fedora 25: 2017-0188 Critical Alert For PostgreSQL Security Update

update to 9.5.10, per release notes https://www.postgresql.org/docs/9.5/release-9-5-10.html. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-0188f21212 2017-11-22 16:43:26.864280 --------------------------------------------------------------------------------Name : postgresql Product : Fedora 25 Version : 9.5.10 Release : 1.fc25 URL : https://www.postgresql.org/ Summary : PostgreSQL client programs Description : PostgreSQL is an advanced Object-Relational database management system (DBMS). The base postgresql package contains the client programs that you'll need to access a PostgreSQL DBMS server, as well as HTML documentation for the whole system. These client programs can be located on the same machine as the PostgreSQL server, or on a remote machine that accesses a PostgreSQL server over a network connection. The PostgreSQL server can be found in the postgresql-server sub-package. --------------------------------------------------------------------------------Update Information: update to 9.5.10, per release notes https://www.postgresql.org/docs/9.5/release-9-5-10.html --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade postgresql' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . This safety bulletin emphasizes a crucialenhancement for MySQL on Fedora 26, providing access to important documentation.. PostgreSQL Update, Fedora 25 Security, Database Management, Software Upgrade. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 22, 2017 Critical Fedora
199

CentOS 6: CESA-2017-1202 Critical: Firefox Security Notice

Upstream details at : https://access.redhat.com/errata/RHSA-2017:1201.html. CentOS Errata and Security Advisory 2017:1201 Important Upstream details at : https://access.redhat.com/errata/RHSA-2017:1201.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 7591a0fa7d14c55bd4ebf4ce7079f86d2941f78933b4c329c23d4f30f880244b thunderbird-52.1.0-1.el6.centos.i686.rpm x86_64: 8b938732635979eafa3e2cd0ede2dcf7a4cabfb419998a1848622c69a9cc01b5 thunderbird-52.1.0-1.el6.centos.x86_64.rpm Source: 21fc84a445440a16fc4c778c47450ae94e2493efc36ed1812524d1f4fc2e9a84 thunderbird-52.1.0-1.el6.centos.src.rpm -- Johnny Hughes CentOS Project { https://www.centos.org/ } irc: hughesjr, #This email address is being protected from spambots. You need JavaScript enabled to view it. Twitter: @JohnnyCentOS _______________________________________________ CentOS-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Fedora Security Update 2023:4567 presents essential Firefox security enhancements, with upstream information accessible.. Thunderbird Security Update, CentOS Errata, Security Advisory 2017. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 09, 2017 Important CentOS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here