Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 471
Alerts This Week
Warning Icon 1 471

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":75,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 55 articles for you...
100

SUSE: 2025:20406-1 moderate: openssl-3 timing side-channel fix

* bsc#1236136 * bsc#1240366 Cross-References: * CVE-2024-13176 . # Security update for openssl-3 Announcement ID: SUSE-SU-2025:20406-1 Release Date: 2025-06-13T11:30:03Z Rating: moderate References: * bsc#1236136 * bsc#1240366 Cross-References: * CVE-2024-13176 * CVE-2025-27587 CVSS scores: * CVE-2024-13176 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2024-13176 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-13176 ( NVD ): 4.1 CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2025-27587 ( SUSE ): 6.0 CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-27587 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * SUSE Linux Micro 6.0 An update that solves two vulnerabilities can now be installed. ## Description: This update for openssl-3 fixes the following issues: * CVE-2025-27587: Fixed Minerva side channel vulnerability in P-384 on PPC arch (bsc#1240366) * CVE-2024-13176: Fixed timing side-channel in the ECDSA signature computation (bsc#1236136) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-353=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 s390x x86_64) * openssl-3-debugsource-3.1.4-8.1 * libopenssl3-3.1.4-8.1 * libopenssl3-debuginfo-3.1.4-8.1 * libopenssl-3-devel-3.1.4-8.1 * openssl-3-debuginfo-3.1.4-8.1 * libopenssl-3-fips-provider-debuginfo-3.1.4-8.1 * libopenssl-3-fips-provider-3.1.4-8.1 * openssl-3-3.1.4-8.1 ## References: * https://www.suse.com/security/cve/CVE-2024-13176.html * https://www.suse.com/security/cve/CVE-2025-27587.html * https://bugzilla.suse.com/show_bug.cgi?id=1236136 * https://bugzilla.suse.com/show_bug.cgi?id=1240366 .CVE-2024-13176 and CVE-2025-27587 security issues resolved in openssl-3 for SUSE Linux Micro.. openssl security patch, SUSE Linux Micro, side channel attack, openssl vulnerability, moderate severity update. . LinuxSecurity.com Team

Calendar%202 Jun 17, 2025 SuSE
197

Debian LTS: DLA-4123-1 Moderate: wpa Security Risks Addressed

Multiple vulnerabilities were found in wpa, a set of tools including the widely-used wpasupplicant client for authenticating with WPA and WPA2 wireless networks. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4123-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Bastien Roucariès April 12, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : wpa Version : 2:2.9.0-21+deb11u3 CVE ID : CVE-2022-23303 CVE-2022-23304 CVE-2022-37660 Multiple vulnerabilities were found in wpa, a set of tools including the widely-used wpasupplicant client for authenticating with WPA and WPA2 wireless networks. CVE-2022-23303 The implementations of SAE in hostapd are vulnerable to side channel attacks as a result of cache access patterns. CVE-2022-23304 The implementations of EAP-pwd are vulnerable to side-channel attacks as a result of cache access patterns. CVE-2022-37660 The PKEX code remains active even after a successful PKEX association. An attacker that successfully bootstrapped public keys with another entity using PKEX in the past, will be able to subvert a future bootstrapping by passively observing public keys. For Debian 11 bullseye, these problems have been fixed in version 2:2.9.0-21+deb11u3. We recommend that you upgrade your wpa packages. For the detailed security status of wpa please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/wpa Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance your wpa software to address significant security threats arising from various weaknesses in WPA authentication processes.. Debian LTS, WPA security, wpasupplicant, vulnerabilitypatch, wireless authentication. . LinuxSecurity.com Team

Calendar%202 Apr 12, 2025 Debian LTS
202

openSUSE 2024:0343-1 moderate: Botan side channel threats

An update that solves two vulnerabilities and has two fixes is now available. . openSUSE Security Update: Security update for Botan ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0343-1 Rating: moderate References: #1232296 #1232297 #1232300 #1232301 Cross-References: CVE-2024-50382 CVE-2024-50383 CVSS scores: CVE-2024-50382 (SUSE): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N CVE-2024-50383 (SUSE): 6.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N Affected Products: openSUSE Backports SLE-15-SP5 openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that solves two vulnerabilities and has two fixes is now available. Description: This update for Botan fixes the following issues: - Fixed CVE-2024-50382, CVE-2024-50383 - various compiler-induced side channel in GHASH when certain LLVM/GCC versions are used to compile Botan. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2024-343=1 - openSUSE Backports SLE-15-SP5: zypper in -t patch openSUSE-2024-343=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): Botan-2.19.5-bp156.3.6.1 Botan-debuginfo-2.19.5-bp156.3.6.1 Botan-debugsource-2.19.5-bp156.3.6.1 libbotan-2-19-2.19.5-bp156.3.6.1 libbotan-2-19-debuginfo-2.19.5-bp156.3.6.1 libbotan-devel-2.19.5-bp156.3.6.1 python3-botan-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP6 (aarch64_ilp32): libbotan-2-19-64bit-2.19.5-bp156.3.6.1 libbotan-2-19-64bit-debuginfo-2.19.5-bp156.3.6.1 libbotan-devel-64bit-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP6 (x86_64): libbotan-2-19-32bit-2.19.5-bp156.3.6.1 libbotan-2-19-32bit-debuginfo-2.19.5-bp156.3.6.1 libbotan-devel-32bit-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP6 (noarch): Botan-doc-2.19.5-bp156.3.6.1 - openSUSE Backports SLE-15-SP5 (aarch64 i586 ppc64le s390x x86_64): Botan-2.19.5-bp155.2.6.1 libbotan-2-19-2.19.5-bp155.2.6.1 libbotan-devel-2.19.5-bp155.2.6.1 python3-botan-2.19.5-bp155.2.6.1 - openSUSE Backports SLE-15-SP5 (aarch64_ilp32): libbotan-2-19-64bit-2.19.5-bp155.2.6.1 libbotan-devel-64bit-2.19.5-bp155.2.6.1 - openSUSE Backports SLE-15-SP5 (noarch): Botan-doc-2.19.5-bp155.2.6.1 - openSUSE Backports SLE-15-SP5 (x86_64): libbotan-2-19-32bit-2.19.5-bp155.2.6.1 libbotan-devel-32bit-2.19.5-bp155.2.6.1 References: https://www.suse.com/security/cve/CVE-2024-50382.html https://www.suse.com/security/cve/CVE-2024-50383.html https://bugzilla.suse.com/1232296 https://bugzilla.suse.com/1232297 https://bugzilla.suse.com/1232300 https://bugzilla.suse.com/1232301 . An update for Botan addresses two concerns in openSUSE classified under moderate severity, complete with detailed patch instructions.. openSUSE Botan Update, opensuse-backports, Botan Security Advisory. . LinuxSecurity.com Team

Calendar%202 Oct 30, 2024 OpenSUSE
100

SUSE: 2024:0861-2 Important: openssl Cryptographic Vulnerability Patch

* bsc#1218865 Cross-References: * CVE-2023-5981 * CVE-2024-0553 . # Security update for gnutls Announcement ID: SUSE-SU-2024:0860-1 Rating: moderate References: * bsc#1218865 Cross-References: * CVE-2023-5981 * CVE-2024-0553 CVSS scores: * CVE-2023-5981 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-5981 ( NVD ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-0553 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2024-0553 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves two vulnerabilities can now be installed. ## Description: This update for gnutls fixes the following issues: * CVE-2024-0553: Fixed insufficient mitigation for side channel attack in RSA- PSK, aka CVE-2023-5981 (bsc#1218865). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2024-860=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patchSUSE-SLE-Product-HPC-15-SP3-LTSS-2024-860=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2024-860=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-860=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2024-860=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-860=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2024-860=1 * SUSE Linux Enterprise Micro 5.1 zypper in -t patch SUSE-SUSE-MicroOS-5.1-2024-860=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2024-860=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2024-860=1 ## Package List: * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (x86_64) * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls-devel-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (x86_64) * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 *libgnutls-devel-32bit-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (ppc64le s390x x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (ppc64le s390x x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 *libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * libgnutls-devel-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (x86_64) * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-32bit-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * SUSE Enterprise Storage 7.1 (x86_64) * libgnutls30-32bit-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-3.6.7-150200.14.31.1 * libgnutls30-32bit-3.6.7-150200.14.31.1 * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * libgnutls-devel-32bit-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * libgnutlsxx-devel-3.6.7-150200.14.31.1 * libgnutlsxx28-debuginfo-3.6.7-150200.14.31.1 * libgnutlsxx28-3.6.7-150200.14.31.1 * libgnutls30-hmac-32bit-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Micro 5.1 (s390x x86_64) *gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Micro 5.2 (s390x x86_64) * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (s390x x86_64) * gnutls-debuginfo-3.6.7-150200.14.31.1 * libgnutls30-hmac-3.6.7-150200.14.31.1 * libgnutls30-3.6.7-150200.14.31.1 * libgnutls30-debuginfo-3.6.7-150200.14.31.1 * gnutls-3.6.7-150200.14.31.1 * gnutls-debugsource-3.6.7-150200.14.31.1 ## References: * https://www.suse.com/security/cve/CVE-2023-5981.html * https://www.suse.com/security/cve/CVE-2024-0553.html * https://bugzilla.suse.com/show_bug.cgi?id=1218865 . A security patch for gnutls tackles moderate severity vulnerabilities in SUSE offerings. Further details provided.. gnutls update, SUSE Linux Enterprise, side channel fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 13, 2024 Important SuSE
89

Ubuntu 23: 2025-e91a36bd9a4 Essential: Json-web-token Security Patch

Fix side channel vulnerability. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-d76e37ba62 2024-03-07 01:49:42.076791 -------------------------------------------------------------------------------- Name : cpp-jwt Product : Fedora 38 Version : 1.4 Release : 7.fc38 URL : https://github.com/arun11299/cpp-jwt Summary : JSON Web Token library for C++ Description : JSON Web Token(JWT) is a JSON based standard (RFC- 7519) for creating assertions or access tokens that consists of some claims (encoded within the assertion). This assertion can be used in some kind of bearer authentication mechanism that the server will provide to clients, and the clients can make use of the provided assertion for accessing resources. -------------------------------------------------------------------------------- Update Information: Fix side channel vulnerability -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 27 2024 Jonathan Wright - 1.4-7 - Fix side channel vulnerability rhbz#2263329 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2263329 - Side-channel in cpp-jwt https://bugzilla.redhat.com/show_bug.cgi?id=2263329 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d76e37ba62' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announcemailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 38 has rolled out a crucial update that targets a side channel vulnerability in cpp-jwt, aimed at strengthening the overall security measures.. Fedora Software Update, Cpp-jwt Side Channel, Security Enhancement. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 07, 2024 Important Fedora
89

Fedora 39: 2024-78gbc3nehta Critical: Cpp-auth Session Breach Patch

Fix side channel vulnerability. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-56fbd2cbfa 2024-03-07 00:56:19.124112 -------------------------------------------------------------------------------- Name : cpp-jwt Product : Fedora 39 Version : 1.4 Release : 7.fc39 URL : https://github.com/arun11299/cpp-jwt Summary : JSON Web Token library for C++ Description : JSON Web Token(JWT) is a JSON based standard (RFC- 7519) for creating assertions or access tokens that consists of some claims (encoded within the assertion). This assertion can be used in some kind of bearer authentication mechanism that the server will provide to clients, and the clients can make use of the provided assertion for accessing resources. -------------------------------------------------------------------------------- Update Information: Fix side channel vulnerability -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 27 2024 Jonathan Wright - 1.4-7 - Fix side channel vulnerability rhbz#2263329 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2263329 - Side-channel in cpp-jwt https://bugzilla.redhat.com/show_bug.cgi?id=2263329 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-56fbd2cbfa' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announcemailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Ubuntu 24.04 security patch for lib-crypto resolves a memory leak vulnerability, improving software resilience.. Fedora Security, Cpp-jwt Update, System Vulnerabilities, Software Maintenance. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 07, 2024 Critical Fedora
202

openSUSE 15.5: 2023:3447-1 Moderate: xen Side Channel and Execution Fixes

This update for xen fixes the following issues: CVE-2023-20569: Fixed side channel attack Inception or RAS Poisoning. (bsc#1214082, XSA-434). # Security update for xen Announcement ID: SUSE-SU-2023:3447-1 Rating: moderate References: * #1027519 * #1212684 * #1213616 * #1214082 * #1214083 Cross-References: * CVE-2022-40982 * CVE-2023-20569 * CVE-2023-20593 CVSS scores: * CVE-2022-40982 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2022-40982 ( NVD ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2023-20569 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N * CVE-2023-20569 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-20593 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-20593 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * Basesystem Module 15-SP5 * openSUSE Leap 15.5 * Server Applications Module 15-SP5 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves three vulnerabilities and has two fixes can now be installed. ## Description: This update for xen fixes the following issues: * CVE-2023-20569: Fixed side channel attack Inception or RAS Poisoning. (bsc#1214082, XSA-434) * CVE-2022-40982: Fixed transient execution attack called "Gather Data Sampling". (bsc#1214083, XSA-435) * CVE-2023-20593: Fixed a ZenBleed issue in "Zen 2" CPUs that could allow an attacker to potentially access sensitive information. (bsc#1213616, XSA-433) ## Patch Instructions: To install this SUSE Moderate update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Server Applications Module 15-SP5 zypper in -t patchSUSE-SLE-Module-Server-Applications-15-SP5-2023-3447=1 * openSUSE Leap 15.5 zypper in -t patch SUSE-2023-3447=1 openSUSE-SLE-15.5-2023-3447=1 * Basesystem Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2023-3447=1 ## Package List: * Server Applications Module 15-SP5 (x86_64) * xen-tools-debuginfo-4.17.2_02-150500.3.6.1 * xen-tools-4.17.2_02-150500.3.6.1 * xen-devel-4.17.2_02-150500.3.6.1 * xen-debugsource-4.17.2_02-150500.3.6.1 * xen-4.17.2_02-150500.3.6.1 * Server Applications Module 15-SP5 (noarch) * xen-tools-xendomains-wait-disk-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (aarch64 x86_64 i586) * xen-libs-4.17.2_02-150500.3.6.1 * xen-tools-domU-debuginfo-4.17.2_02-150500.3.6.1 * xen-devel-4.17.2_02-150500.3.6.1 * xen-tools-domU-4.17.2_02-150500.3.6.1 * xen-libs-debuginfo-4.17.2_02-150500.3.6.1 * xen-debugsource-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (x86_64) * xen-libs-32bit-debuginfo-4.17.2_02-150500.3.6.1 * xen-libs-32bit-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (aarch64 x86_64) * xen-4.17.2_02-150500.3.6.1 * xen-tools-debuginfo-4.17.2_02-150500.3.6.1 * xen-tools-4.17.2_02-150500.3.6.1 * xen-doc-html-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (noarch) * xen-tools-xendomains-wait-disk-4.17.2_02-150500.3.6.1 * openSUSE Leap 15.5 (aarch64_ilp32) * xen-libs-64bit-debuginfo-4.17.2_02-150500.3.6.1 * xen-libs-64bit-4.17.2_02-150500.3.6.1 * Basesystem Module 15-SP5 (x86_64) * xen-libs-4.17.2_02-150500.3.6.1 * xen-tools-domU-debuginfo-4.17.2_02-150500.3.6.1 * xen-tools-domU-4.17.2_02-150500.3.6.1 * xen-debugsource-4.17.2_02-150500.3.6.1 * xen-libs-debuginfo-4.17.2_02-150500.3.6.1 ## References: * https://www.suse.com/security/cve/CVE-2022-40982.html * https://www.suse.com/security/cve/CVE-2023-20569.html * https://www.suse.com/security/cve/CVE-2023-20593.html * https://bugzilla.suse.com/show_bug.cgi?id=1027519 *https://bugzilla.suse.com/show_bug.cgi?id=1212684 * https://bugzilla.suse.com/show_bug.cgi?id=1213616 * https://bugzilla.suse.com/show_bug.cgi?id=1214082 * https://bugzilla.suse.com/show_bug.cgi?id=1214083 . SUSE issued a significant patch for xen targeting CVE-2023-20569 and additional issues. Discover the details regarding the corrections and security flaws.. openSUSE Update,xen Security Advisory,moderate Security Fix,vulnerability Management. . LinuxSecurity.com Team

Calendar%202 Aug 28, 2023 OpenSUSE
202

openSUSE 15.4 2023:3360-1 Moderate AMD CPU Side Channel Fix

This update for kernel-firmware fixes the following issues: CVE-2023-20569: Fixed AMD 19h ucode to mitigate a side channel vulnerability in some of the AMD CPUs. (bsc#1213287). # Security update for kernel-firmware Announcement ID: SUSE-SU-2023:3360-1 Rating: moderate References: * #1213287 Cross-References: * CVE-2023-20569 CVSS scores: * CVE-2023-20569 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N Affected Products: * Basesystem Module 15-SP4 * openSUSE Leap 15.4 * openSUSE Leap Micro 5.3 * openSUSE Leap Micro 5.4 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for kernel-firmware fixes the following issues: * CVE-2023-20569: Fixed AMD 19h ucode to mitigate a side channel vulnerability in some of the AMD CPUs. (bsc#1213287) ## Special Instructions and Notes: * Please reboot the system after installing this update. ## Patch Instructions: To install this SUSE Moderate update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2023-3360=1 openSUSE-SLE-15.4-2023-3360=1 * openSUSE Leap Micro 5.3 zypper in -t patch openSUSE-Leap-Micro-5.3-2023-3360=1 * openSUSE Leap Micro 5.4 zypper in -t patch openSUSE-Leap-Micro-5.4-2023-3360=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patchSUSE-SLE-Micro-5.3-2023-3360=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2023-3360=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-3360=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2023-3360=1 * Basesystem Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2023-3360=1 ## Package List: * openSUSE Leap 15.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 *kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * openSUSE Leap Micro 5.3 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 *kernel-firmware-dpaa2-20220509-150400.4.22.1 * openSUSE Leap Micro 5.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 *kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro 5.3 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 *kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * SUSE Linux Enterprise Micro 5.4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 *kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 * kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 * Basesystem Module 15-SP4 (noarch) * kernel-firmware-mellanox-20220509-150400.4.22.1 * kernel-firmware-iwlwifi-20220509-150400.4.22.1 * kernel-firmware-media-20220509-150400.4.22.1 * kernel-firmware-mwifiex-20220509-150400.4.22.1 * ucode-amd-20220509-150400.4.22.1 * kernel-firmware-realtek-20220509-150400.4.22.1 * kernel-firmware-atheros-20220509-150400.4.22.1 * kernel-firmware-i915-20220509-150400.4.22.1 * kernel-firmware-liquidio-20220509-150400.4.22.1 * kernel-firmware-ti-20220509-150400.4.22.1 * kernel-firmware-chelsio-20220509-150400.4.22.1 * kernel-firmware-sound-20220509-150400.4.22.1 * kernel-firmware-all-20220509-150400.4.22.1 * kernel-firmware-bluetooth-20220509-150400.4.22.1 * kernel-firmware-qlogic-20220509-150400.4.22.1 * kernel-firmware-radeon-20220509-150400.4.22.1 * kernel-firmware-qcom-20220509-150400.4.22.1 * kernel-firmware-platform-20220509-150400.4.22.1 * kernel-firmware-mediatek-20220509-150400.4.22.1 *kernel-firmware-ath11k-20220509-150400.4.22.1 * kernel-firmware-usb-network-20220509-150400.4.22.1 * kernel-firmware-nvidia-20220509-150400.4.22.1 * kernel-firmware-nfp-20220509-150400.4.22.1 * kernel-firmware-prestera-20220509-150400.4.22.1 * kernel-firmware-marvell-20220509-150400.4.22.1 * kernel-firmware-bnx2-20220509-150400.4.22.1 * kernel-firmware-amdgpu-20220509-150400.4.22.1 * kernel-firmware-serial-20220509-150400.4.22.1 * kernel-firmware-brcm-20220509-150400.4.22.1 * kernel-firmware-network-20220509-150400.4.22.1 * kernel-firmware-ath10k-20220509-150400.4.22.1 * kernel-firmware-ueagle-20220509-150400.4.22.1 * kernel-firmware-intel-20220509-150400.4.22.1 * kernel-firmware-dpaa2-20220509-150400.4.22.1 ## References: * https://www.suse.com/security/cve/CVE-2023-20569.html * https://bugzilla.suse.com/show_bug.cgi?id=1213287 . The recent kernel-firmware revision addresses a significant AMD CPU side-channel vulnerability, impacting openSUSE systems with medium-level risk.. openSUSE Security,Kernal Firmware Update,AMD Side Channel. . LinuxSecurity.com Team

Calendar%202 Aug 18, 2023 OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":75,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200