Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
197

Debian 11 Shapelib Severe Double Release Denial of Service DLA-4451-2

An issue has been found in shapelib, a library for reading and writing ESRI Shapefiles. The issue is related to a double free, which results in a crash and a denial of service. For Debian 11 bullseye, this problem has been fixed in version. Debian LTS Advisory DLA-4451-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Thorsten Alteholz January 24, 2026 https://wiki.debian.org/LTS Package : shapelib Version : 1.5.0-2+deb11u1 CVE ID : CVE-2022-0699 An issue has been found in shapelib, a library for reading and writing ESRI Shapefiles. The issue is related to a double free, which results in a crash and a denial of service. For Debian 11 bullseye, this problem has been fixed in version 1.5.0-2+deb11u1. We recommend that you upgrade your shapelib packages. For the detailed security status of shapelib please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/shapelib Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Fix for shapelib causing denial of service due to double free issues on Debian 11 Bullseye.. Debian security updates, shapelib library, denial of service fix, double free issues. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 24, 2026 Critical Debian LTS
89

Fedora 37: FEDORA-2023-318f1b283a Critical libxml2 Buffer Overflow Issue

Backport fix for CVE-2022-0699.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-216f0a205a 2022-03-26 14:56:28.653031 --------------------------------------------------------------------------------Name : shapelib Product : Fedora 36 Version : 1.5.0 Release : 12.fc36 URL : http://shapelib.maptools.org/ Summary : C library for handling ESRI Shapefiles Description : The Shapefile C Library provides the ability to write simple C programs for reading, writing and updating (to a limited extent) ESRI Shapefiles, and the associated attribute file (.dbf). --------------------------------------------------------------------------------Update Information: Backport fix for CVE-2022-0699. --------------------------------------------------------------------------------ChangeLog: * Wed Mar 2 2022 Sandro Mani - 1.5.0-12 - Backport fix for CVE-2022-0699 --------------------------------------------------------------------------------References: [ 1 ] Bug #2054307 - CVE-2022-0699 shapelib: Double-free vulnerability in contrib/shpsort.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2054307 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-216f0a205a' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. FedoraCode of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Patch release for Fedora 36’s shapelib resolves a severe double-free vulnerability associated with CVE-2022-0699. Discover further details!. Fedora Update, Shapelib Fix, Moderate Severity, Security Issues. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 26, 2022 Critical Fedora
89

Fedora 37: FEDORA-2023-7480123d45 Moderate: Gdal Update

Add mingw subpackages.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-6746739d52 2022-03-26 14:56:28.650826 --------------------------------------------------------------------------------Name : shapelib Product : Fedora 36 Version : 1.5.0 Release : 11.fc36 URL : http://shapelib.maptools.org/ Summary : C library for handling ESRI Shapefiles Description : The Shapefile C Library provides the ability to write simple C programs for reading, writing and updating (to a limited extent) ESRI Shapefiles, and the associated attribute file (.dbf). --------------------------------------------------------------------------------Update Information: Add mingw subpackages. --------------------------------------------------------------------------------ChangeLog: * Thu Feb 24 2022 Sandro Mani - 1.5.0-11 - Make mingw subpackages noarch * Thu Feb 24 2022 Sandro Mani - 1.5.0-10 - Make mingw subpackages noarch * Thu Feb 24 2022 Sandro Mani - 1.5.0-9 - Add mingw subpackage --------------------------------------------------------------------------------References: [ 1 ] Bug #2060171 - F36FailsToInstall: mingw64-freeimage, mingw32-freeimage https://bugzilla.redhat.com/show_bug.cgi?id=2060171 [ 2 ] Bug #2060172 - F36FailsToInstall: mingw32-gdal, mingw64-gdal https://bugzilla.redhat.com/show_bug.cgi?id=2060172 [ 3 ] Bug #2060174 - F36FailsToInstall: mingw32-opencv, mingw64-opencv https://bugzilla.redhat.com/show_bug.cgi?id=2060174 [ 4 ] Bug #2060175 - F36FailsToInstall: mingw32-poppler, mingw64-poppler https://bugzilla.redhat.com/show_bug.cgi?id=2060175 [ 5 ] Bug #2060176 - F36FailsToInstall: mingw32-python3-shapely, mingw64-python3-shapely https://bugzilla.redhat.com/show_bug.cgi?id=2060176 [ 6 ] Bug #2060177 - F36FailsToInstall: mingw32-qtspell-qt5, mingw64-qtspell-qt5 https://bugzilla.redhat.com/show_bug.cgi?id=2060177 [ 7 ] Bug #2060358 - F36FailsToInstall: mingw32-python3-pyproj, mingw64-python3-pyproj https://bugzilla.redhat.com/show_bug.cgi?id=2060358 [ 8 ] Bug #2060816 - F36FailsToInstall: mingw64-SDL2_image, mingw32-SDL2_image https://bugzilla.redhat.com/show_bug.cgi?id=2060816 [ 9 ] Bug #2060818 - F36FailsToInstall: mingw32-qt5-qtimageformats, mingw64-qt5-qtimageformats https://bugzilla.redhat.com/show_bug.cgi?id=2060818 [ 10 ] Bug #2060819 - F36FailsToInstall: mingw32-qt5-qtwebkit, mingw64-qt5-qtwebkit https://bugzilla.redhat.com/show_bug.cgi?id=2060819 [ 11 ] Bug #2060820 - F36FailsToInstall: mingw32-qt6-qtimageformats, mingw64-qt6-qtimageformats https://bugzilla.redhat.com/show_bug.cgi?id=2060820 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-6746739d52' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . The latest Fedora 36 update introduces mingw subpackages for shapelib, improving compatibility with the C programming library.. Fedora 36Update, Shapelib Library, C Programming, Mingw Subpackages. . LinuxSecurity.com Team

Calendar 2 Mar 26, 2022 Fedora
203

Mageia 8 MGASA-2022-0096 Critical Double-Free Error in Shapelib

Double-free vulnerability in contrib/shpsort.c. (CVE-2022-0699) References: - https://bugs.mageia.org/show_bug.cgi?id=30114 - . MGASA-2022-0096 - Updated shapelib packages fix security vulnerability Publication date: 11 Mar 2022 URL: https://advisories.mageia.org/MGASA-2022-0096.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-0699 Double-free vulnerability in contrib/shpsort.c. (CVE-2022-0699) References: - https://bugs.mageia.org/show_bug.cgi?id=30114 - - https://www.cve.org/CVERecord?id=CVE-2022-0699 SRPMS: - 8/core/shapelib-1.5.0-2.1.mga8 . The recent shapelib package updates address a significant double-free vulnerability within Mageia. This announcement includes specifics and pertinent links.. shapelib security update, mageia vulnerability, double-free error, security advisory, software patch. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 11, 2022 Critical Mageia
202

openSUSE: 2022:0087-1 Critical Vulnerability: Memory Leak in LibXYZ

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for shapelib ______________________________________________________________________________ Announcement ID: openSUSE-SU-2022:0068-1 Rating: important References: #1196236 Cross-References: CVE-2022-0699 Affected Products: openSUSE Backports SLE-15-SP3 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for shapelib fixes the following issues: - CVE-2022-0699: Fixed a Double-free vulnerability in contrib/shpsort.c Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP3: zypper in -t patch openSUSE-2022-68=1 Package List: - openSUSE Backports SLE-15-SP3 (aarch64 i586 ppc64le s390x x86_64): libshp-devel-1.5.0-bp153.2.3.1 libshp2-1.5.0-bp153.2.3.1 shapelib-1.5.0-bp153.2.3.1 References: https://www.suse.com/security/cve/CVE-2022-0699.html https://bugzilla.suse.com/1196236 . Resolution implemented for key Shapelib enhancement, targeting a significant flaw present in the openSUSE Backports distribution.. openSUSE Security Update, shapelib Patch, Double-free Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Mar 02, 2022 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here