Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 464
Alerts This Week
Warning Icon 1 464

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":2,"type":"x","order":2,"pct":66.67,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 23: php-simplesamlphp-saml2 Security Update Critical: Signature Fix

### v1.10.3 / v2.3.3 - This is a security release fixing an issue with signature validation. Please upgrade as soon as possible. - [201612-01](https://simplesamlphp.org/security/201612-01). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-5c32bae671 2016-12-12 20:33:39.179894 -------------------------------------------------------------------------------- Name : php-simplesamlphp-saml2 Product : Fedora 23 Version : 2.3.3 Release : 1.fc23 URL : https://github.com/simplesamlphp/saml2 Summary : SAML2 PHP library from SimpleSAMLphp Description : A PHP library for SAML2 related functionality. Extracted from SimpleSAMLphp [1], used by OpenConext [2]. This library started as a collaboration between UNINETT [3] and SURFnet [4] but everyone is invited to contribute. Autoloader: /usr/share/php/SAML2/autoload.php [1] https://simplesamlphp.org/ [2] https://openconext.org/ [3] https://sikt.no/ [4] https://www.surf.nl -------------------------------------------------------------------------------- Update Information: ### v1.10.3 / v2.3.3 - This is a security release fixing an issue with signature validation. Please upgrade as soon as possible. - [201612-01](https://simplesamlphp.org/security/201612-01) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1401147 - php-simplesamlphp-saml2-2.3.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1401147 [ 2 ] Bug #1401148 - php-simplesamlphp-saml2_1-1.10.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1401148 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade php-simplesamlphp-saml2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the FedoraProject GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Important patch released for php-simplesamlphp-saml2 in Fedora 23. Prompt upgrade advised to address signature verification issue.. Fedora Security Update, PHP SAML Library, Signature Validation Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Dec 13, 2016 Critical Fedora
200

Scientific Linux: Important 2006 Errata For GnuPG Signature Flaws

An updated GnuPG package that fixes signature verification . Date: Wed, 15 Mar 2006 18:12:30 -0600 Reply-To: Connie Sieh Sender: Security Errata for Scientific Linux From: Connie Sieh Subject: ERRATA for "gnupg" on SL 301,302,303,304,305 i386,x86_64 available Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it. The following ERRATA for SL 301,302,303,304,305 i386,x86_64 are now available from: Synopsis: An updated GnuPG package that fixes signature verification flaws as well as minor bugs is now available Severity: important Issued on: 2006-03-15 CVEs: CVE-2006-0455 CVE-2006-0049 SRPMS gnupg-1.2.1-15.src.rpm i386 gnupg-1.2.1-15.i386.rpm x86_64 gnupg-1.2.1-15.x86_64.rpm -Connie Sieh -Troy Dawson . A new release of the OpenSSL package for CentOS addresses critical vulnerabilities related to encryption and decryption processes.. GnuPG Update, Scientific Linux Errata, Signature Verification Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 15, 2006 Important Scientific Linux
200

Scientific Linux 40, 41, 42: Important GnuPG Update for Signature Fix

An updated GnuPG package that fixes signature verification . Date: Wed, 15 Mar 2006 14:52:10 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: ERRATA for "gnupg" on SL 40,41,42 i386,x86_64 now available Comments: To: This email address is being protected from spambots. You need JavaScript enabled to view it. The ERRATA for SL 40,41,42 i386,x86_64 are now available from: Synopsis: An updated GnuPG package that fixes signature verification flaws as well as minor bugs is now available Severity: important Issued on: 2006-03-15 CVEs: CVE-2006-0455 CVE-2006-0049 SRPMS gnupg-1.2.6-3.src.rpm i386 gnupg-1.2.6-3.i386.rpm x86_64 gnupg-1.2.6-3.x86_64.rpm --Connie Sieh --Troy Dawson . A revised OpenSSL version tackles encryption vulnerabilities in CentOS 7, 8, and 9.. GnuPG Update, Security Fix, Scientific Linux 40, Signature Verification, Important Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 15, 2006 Important Scientific Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":2,"type":"x","order":2,"pct":66.67,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200