Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 34: 2021-64e9e98eb4 Moderate: Starship Update for CVE-2021-32810

- Update starship to version 0.56.0. - Update shadow-rs crate to version 0.6.3. - Update urlencoding crate to version 1.3.3. - Update versions crate to version 3.0.2. - Rebuild starship with crossbeam-deque 0.8.1 / 0.7.4 for CVE-2021-32810.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-64e9e98eb4 2021-08-15 01:09:28.221864 --------------------------------------------------------------------------------Name : rust-versions Product : Fedora 34 Version : 3.0.2 Release : 1.fc34 URL : Summary : Library for parsing and comparing software version numbers Description : Library for parsing and comparing software version numbers. --------------------------------------------------------------------------------Update Information: - Update starship to version 0.56.0. - Update shadow-rs crate to version 0.6.3. - Update urlencoding crate to version 1.3.3. - Update versions crate to version 3.0.2. - Rebuild starship with crossbeam-deque 0.8.1 / 0.7.4 for CVE-2021-32810. --------------------------------------------------------------------------------ChangeLog: * Sun Aug 1 2021 Fabio Valentini 3.0.2-1 - Update to version 3.0.2; Fixes RHBZ#1988865 * Fri Jul 23 2021 Fedora Release Engineering - 3.0.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1974127 - rust-starship-0.56.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1974127 [ 2 ] Bug #1988865 - rust-versions-3.0.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1988865 [ 3 ] Bug #1988867 - rust-shadow-rs-0.6.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1988867 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2021-64e9e98eb4' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Fedora's latest Rust updates address critical security vulnerabilities like CVE-2021-32810, enhancing performance and security for developers and applications. Rust Versions Update, Package Security Fix, Software Library Patch. . LinuxSecurity.com Team

Calendar 2 Aug 14, 2021 Fedora
89

Fedora 33 ZeroMQ 2020-5460fcf6bd Critical: DoS Threat Resolved

Fix of #1876738 and #1876689. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-5460fcf6bd 2020-09-25 16:31:57.897781 --------------------------------------------------------------------------------Name : zeromq Product : Fedora 33 Version : 4.3.3 Release : 1.fc33 URL : https://zeromq.org Summary : Software library for fast, message-based applications Description : The 0MQ lightweight messaging kernel is a library which extends the standard socket interfaces with features traditionally provided by specialized messaging middle-ware products. 0MQ sockets provide an abstraction of asynchronous message queues, multiple messaging patterns, message filtering (subscriptions), seamless access to multiple transport protocols and more. This package contains the ZeroMQ shared library. --------------------------------------------------------------------------------Update Information: Fix of #1876738 and #1876689 --------------------------------------------------------------------------------ChangeLog: * Tue Sep 15 2020 Denis Arnaud - 4.3.3-1 - Upstream upgrade - Fixes #1876738 and #1876689 --------------------------------------------------------------------------------References: [ 1 ] Bug #1876689 - CVE-2020-15166 zeromq: unauthenticated clients causing denial-of-service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1876689 [ 2 ] Bug #1876738 - zeromq-4.3.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1876738 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-5460fcf6bd' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used bythe Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . New update out for Fedora 33: zeromq. Addresses important problems affecting messaging applications.. Fedora Update, ZeroMQ Library, Software Upgrade, Message Queuing. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 25, 2020 Critical Fedora
89

Fedora 31: FEDORA-2019-d20ce4d5a1 Critical: Zeromq Stack Overflow

Security fix for CVE-2019-13132. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-d20ce4d5a1 2019-09-28 00:00:59.189385 --------------------------------------------------------------------------------Name : zeromq Product : Fedora 31 Version : 4.3.2 Release : 1.fc31 URL : https://zeromq.org Summary : Software library for fast, message-based applications Description : The 0MQ lightweight messaging kernel is a library which extends the standard socket interfaces with features traditionally provided by specialized messaging middle-ware products. 0MQ sockets provide an abstraction of asynchronous message queues, multiple messaging patterns, message filtering (subscriptions), seamless access to multiple transport protocols and more. This package contains the ZeroMQ shared library. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2019-13132 --------------------------------------------------------------------------------References: [ 1 ] Bug #1727055 - CVE-2019-13132 zeromq: stack-overflow on any server protected by encryption/authentication https://bugzilla.redhat.com/show_bug.cgi?id=1727055 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-d20ce4d5a1' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribesend an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Essential patch released for Fedora 31 addressing ZeroMQ stack overflow vulnerabilities linked to CVE-2019-13132.. Fedora Security Update, zeromq Stack Overflow, Security Fix, Fedora 31 Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 27, 2019 Critical Fedora
89

Fedora 28 libmspack Security Update: Critical Out-of-Bounds Issues

Latest stable releases of libmspack and cabextract, includes security fixes for CVE-2018-14680, CVE-2018-14681, CVE-2018-14682, CVE-2018-18584, CVE-2018-18585. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-cb337fb199 2018-11-13 02:25:35.636330 --------------------------------------------------------------------------------Name : libmspack Product : Fedora 28 Version : 0.9.1 Release : 0.1.alpha.fc28 URL : https://www.cabextract.org.uk/libmspack/ Summary : Library for CAB and related files compression and decompression Description : The purpose of libmspack is to provide both compression and decompression of some loosely related file formats used by Microsoft. --------------------------------------------------------------------------------Update Information: Latest stable releases of libmspack and cabextract, includes security fixes for CVE-2018-14680, CVE-2018-14681, CVE-2018-14682, CVE-2018-18584, CVE-2018-18585 --------------------------------------------------------------------------------ChangeLog: * Tue Nov 6 2018 Rex Dieter - 0.9.1-0.1.alpha - 0.9.1alpha - libmspack-0.8-0.1.alpha corrupts extracted cab files (#1647033) - examples no longer installed (by default) * Tue Oct 30 2018 Rex Dieter - 0.8-0.1.alpha - 0.8alpha - use %make_build %make_install %ldconfig_scriptlets %license - devel: use %{?_isa} to tighten dep on main pkg - drop deprecated Group: tag - %files: tighten to include library soname * Wed Aug 1 2018 Richard W.M. Jones - 0.7-0.1.alpha - New upstream version 0.7alpha. - No tarball was uploaded so temporarily use tarball from github. - Fixes CVE-2018-14679 libmspack: off-by-one error in the CHM PMGI/PMGL chunk number validity checks * Fri Jul 13 2018 Fedora Release Engineering - 0.6-0.3.alpha - Rebuilt forhttps://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1644215 - CVE-2018-18585 libmspack: chmd_read_headers() fails to reject filenames containing NULL bytes https://bugzilla.redhat.com/show_bug.cgi?id=1644215 [ 2 ] Bug #1644214 - CVE-2018-18584 libmspack: Out-of-bounds write in mspack/cab.h https://bugzilla.redhat.com/show_bug.cgi?id=1644214 [ 3 ] Bug #1610941 - CVE-2018-14682 libmspack: off-by-one error in the TOLOWER() macro for CHM decompression https://bugzilla.redhat.com/show_bug.cgi?id=1610941 [ 4 ] Bug #1610934 - CVE-2018-14680 libmspack: off-by-one error in the CHM chunk number validity checks https://bugzilla.redhat.com/show_bug.cgi?id=1610934 [ 5 ] Bug #1610896 - CVE-2018-14681 libmspack: out-of-bounds write in kwajd_read_headers in mspack/kwajd.c https://bugzilla.redhat.com/show_bug.cgi?id=1610896 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-cb337fb199' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . The latest libmspack update for Fedora 28 resolves several security vulnerabilities, particularly out-of-bounds write issues. Be sure to update your system!. libmspack, Fedora Security, software update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Nov 13, 2018 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here