Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
100

SUSE Linux Enterprise 12 SP5: 2024:3061-1 Moderate Apache2 Source Code Leak

* bsc#1227353 Cross-References: * CVE-2024-39884 . # Security update for apache2 Announcement ID: SUSE-SU-2024:3061-1 Rating: moderate References: * bsc#1227353 Cross-References: * CVE-2024-39884 CVSS scores: * CVE-2024-39884 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 * SUSE Linux Enterprise Software Development Kit 12 SP5 An update that solves one vulnerability can now be installed. ## Description: This update for apache2 fixes the following issues: * CVE-2024-39884: Fixed source code disclosure with handlers configured via AddType (bsc#1227353) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-3061=1 * SUSE Linux Enterprise Server 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-3061=1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 zypper in -t patch SUSE-SLE-SERVER-12-SP5-2024-3061=1 * SUSE Linux Enterprise Software Development Kit 12 SP5 zypper in -t patch SUSE-SLE-SDK-12-SP5-2024-3061=1 ## Package List: * SUSE Linux Enterprise High Performance Computing 12 SP5 (aarch64 x86_64) * apache2-example-pages-2.4.51-35.60.1 * apache2-debuginfo-2.4.51-35.60.1 * apache2-utils-2.4.51-35.60.1 * apache2-tls13-worker-2.4.51-35.60.1 * apache2-debugsource-2.4.51-35.60.1 * apache2-worker-2.4.51-35.60.1 * apache2-tls13-debugsource-2.4.51-35.60.1 * apache2-tls13-prefork-debuginfo-2.4.51-35.60.1 * apache2-tls13-2.4.51-35.60.1 * apache2-tls13-worker-debuginfo-2.4.51-35.60.1 * apache2-utils-debuginfo-2.4.51-35.60.1 *apache2-tls13-prefork-2.4.51-35.60.1 * apache2-2.4.51-35.60.1 * apache2-tls13-debuginfo-2.4.51-35.60.1 * apache2-tls13-example-pages-2.4.51-35.60.1 * apache2-tls13-utils-debuginfo-2.4.51-35.60.1 * apache2-prefork-debuginfo-2.4.51-35.60.1 * apache2-worker-debuginfo-2.4.51-35.60.1 * apache2-prefork-2.4.51-35.60.1 * apache2-tls13-utils-2.4.51-35.60.1 * SUSE Linux Enterprise High Performance Computing 12 SP5 (noarch) * apache2-doc-2.4.51-35.60.1 * apache2-tls13-doc-2.4.51-35.60.1 * SUSE Linux Enterprise Server 12 SP5 (aarch64 ppc64le s390x x86_64) * apache2-example-pages-2.4.51-35.60.1 * apache2-debuginfo-2.4.51-35.60.1 * apache2-utils-2.4.51-35.60.1 * apache2-tls13-worker-2.4.51-35.60.1 * apache2-debugsource-2.4.51-35.60.1 * apache2-worker-2.4.51-35.60.1 * apache2-tls13-debugsource-2.4.51-35.60.1 * apache2-tls13-prefork-debuginfo-2.4.51-35.60.1 * apache2-tls13-2.4.51-35.60.1 * apache2-tls13-worker-debuginfo-2.4.51-35.60.1 * apache2-utils-debuginfo-2.4.51-35.60.1 * apache2-tls13-prefork-2.4.51-35.60.1 * apache2-2.4.51-35.60.1 * apache2-tls13-debuginfo-2.4.51-35.60.1 * apache2-tls13-example-pages-2.4.51-35.60.1 * apache2-tls13-utils-debuginfo-2.4.51-35.60.1 * apache2-prefork-debuginfo-2.4.51-35.60.1 * apache2-worker-debuginfo-2.4.51-35.60.1 * apache2-prefork-2.4.51-35.60.1 * apache2-tls13-utils-2.4.51-35.60.1 * SUSE Linux Enterprise Server 12 SP5 (noarch) * apache2-doc-2.4.51-35.60.1 * apache2-tls13-doc-2.4.51-35.60.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 (ppc64le x86_64) * apache2-example-pages-2.4.51-35.60.1 * apache2-debuginfo-2.4.51-35.60.1 * apache2-utils-2.4.51-35.60.1 * apache2-tls13-worker-2.4.51-35.60.1 * apache2-debugsource-2.4.51-35.60.1 * apache2-worker-2.4.51-35.60.1 * apache2-tls13-debugsource-2.4.51-35.60.1 * apache2-tls13-prefork-debuginfo-2.4.51-35.60.1 * apache2-tls13-2.4.51-35.60.1 *apache2-tls13-worker-debuginfo-2.4.51-35.60.1 * apache2-utils-debuginfo-2.4.51-35.60.1 * apache2-tls13-prefork-2.4.51-35.60.1 * apache2-2.4.51-35.60.1 * apache2-tls13-debuginfo-2.4.51-35.60.1 * apache2-tls13-example-pages-2.4.51-35.60.1 * apache2-tls13-utils-debuginfo-2.4.51-35.60.1 * apache2-prefork-debuginfo-2.4.51-35.60.1 * apache2-worker-debuginfo-2.4.51-35.60.1 * apache2-prefork-2.4.51-35.60.1 * apache2-tls13-utils-2.4.51-35.60.1 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 (noarch) * apache2-doc-2.4.51-35.60.1 * apache2-tls13-doc-2.4.51-35.60.1 * SUSE Linux Enterprise Software Development Kit 12 SP5 (aarch64 ppc64le s390x x86_64) * apache2-debuginfo-2.4.51-35.60.1 * apache2-debugsource-2.4.51-35.60.1 * apache2-tls13-debugsource-2.4.51-35.60.1 * apache2-tls13-debuginfo-2.4.51-35.60.1 * apache2-tls13-devel-2.4.51-35.60.1 * apache2-devel-2.4.51-35.60.1 ## References: * https://www.suse.com/security/cve/CVE-2024-39884.html * https://bugzilla.suse.com/show_bug.cgi?id=1227353 . An advisory for nginx resolves a code vulnerability in Red Hat Enterprise Linux. Prompt application of the patch advised.. SUSE Linux, Apache Update, Security Patch, Code Disclosure. . LinuxSecurity.com Team

Calendar 2 Aug 29, 2024 SuSE
89

Fedora 21 Wildmagic5 Security Update: Enhance Security with Hardened Builds

wildmagic5-5.13-12.fc23 - Rebuild with -fPIC - Hardened builds on

Calendar 2 Nov 14, 2015 Informational Fedora
87

Debian: DSA 169-1 Moderate: Tomcat4 Source Code Disclosure Risk

A security vulnerability has been found in all Tomcat 4.x releases. This problem allows an attacker to use a specially crafted URL to return the unprocessed source code of a JSP page, or, under special circumstances, a static resource which would otherwise have been protected by security constraints, without the need for being properly authenticated.. - -------------------------------------------------------------------------- Debian Security Advisory DSA 169-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze October, 4th, 2002 Debian -- Debian security FAQ - -------------------------------------------------------------------------- Package : tomcat4 Vulnerability : source code disclosure Problem-Type : remote Debian-specific: no A security vulnerability has been found in all Tomcat 4.x releases. This problem allows an attacker to use a specially crafted URL to return the unprocessed source code of a JSP page, or, under special circumstances, a static resource which would otherwise have been protected by security constraints, without the need for being properly authenticated. This problem has been fixed in version 4.0.3-3woody1 for the current stable distribution (woody) and in version 4.1.12-1 for the unstable release (sid). The old stable release (potato) does not contain tomcat packages. Also, packages for tomcat3 are not vulnerable to this problem. We recommend that you upgrade your tomcat package immediately. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 735 a289e7ca78555790041f9f156bb43d6b Size/MD5 checksum: 15271 a95ea3dac14fcc124d2ac34d8ef685cd Size/MD5 checksum: 1588186 2b2e0d859f7152e5225633933e6585d6 Architecture independent components: Size/MD5 checksum: 1133954 913a12f0bc47c3dd7b32416b3ebbd1a5 Size/MD5 checksum: 1385482 395d7482c58aa9e41702e605071792c9 Size/MD5 checksum: 126030 904242e382289346c58cf93cfc2ddc9b These files will probably be moved into the stable distribution on its next revision. - --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . A security risk in Tomcat 4.x can expose unprocessed JSP source code; update recommended for protection.. Debian Security Advisory, tomcat upgrade, source disclosure risk. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 04, 2002 Important Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here