Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges

Alerts This Week
Warning Icon 1 488
Alerts This Week
Warning Icon 1 488

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 73 articles for you...
172

Ubuntu 26.04 LTS Linux Kernel Critical Security Update 8488-2

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-8488-2 July 02, 2026 linux-raspi vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-raspi: Linux kernel for Raspberry Pi systems Details: It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information. (CVE-2025-54505) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - x86 architecture; - Block layer subsystem; - Cryptographic API; - Rados block device (RBD) driver; - Compressed RAM block device driver; - Character device driver; - TPM device driver; - Hardware crypto device drivers; - EDAC drivers; - GPU drivers; - Greybus drivers; - HID subsystem; - Microsoft Hyper-V drivers; - Hardware monitoring drivers; - I2C subsystem; - IIO subsystem; - InfiniBand drivers; - Input Device core drivers; - LED subsystem; - Multiple devices driver; - Media drivers; - IBM Advanced System Management driver; - MTD block device drivers; - Network drivers; - Microsoft Azure Network Adapter (MANA) driver; - NTB driver; - NVME drivers; - Device tree and open firmware driver; - PCI subsystem; - Remote Processor subsystem; - SCSI subsystem; - SPI subsystem; - Realtek RTL8723BS SDIO drivers; - SM750 framebuffer staging driver; - Thermal drivers; - USB Gadget drivers; - USB over IP driver; - VFIO drivers; - Framebuffer layer; - 9P distributed file system; - AFS file system; - Cephdistributed file system; - File systems infrastructure; - EROFS file system; - Ext4 file system; - F2FS file system; - FUSE (File system in Userspace); - Journaling layer for block devices (JBD2); - NILFS2 file system; - File system notification infrastructure; - NTFS3 file system; - OCFS2 file system; - SMB network file system; - UDF file system; - XFS file system; - Codetag library; - Memory management; - Memory Management; - KVM subsystem; - Tracing infrastructure; - User-space API (UAPI); - io_uring subsystem; - Locking primitives; - Timer subsystem; - Scatterlist API; - Heterogeneous memory management; - KASAN memory debugging framework; - Bluetooth subsystem; - Ethernet bridge; - CAIF protocol; - CAN network layer; - Ceph Core library; - IPv4 networking; - IPv6 networking; - Multipath TCP; - Netfilter; - NFC subsystem; - Packet sockets; - Qualcomm IPC Router (QRTR); - RDS protocol; - RxRPC session sockets; - SMC sockets; - Stream parser; - Landlock security; - SELinux security module; - ALSA framework; - Generic PCM loopback sound driver; - FireWire sound drivers; - Creative Sound Blaster X-Fi driver; - QCOM ASoC drivers; - USB sound devices; - Objtool; (CVE-2026-31532, CVE-2026-31574, CVE-2026-31575, CVE-2026-31576, CVE-2026-31577, CVE-2026-31578, CVE-2026-31579, CVE-2026-31580, CVE-2026-31581, CVE-2026-31582, CVE-2026-31583, CVE-2026-31584, CVE-2026-31585, CVE-2026-31586, CVE-2026-31587, CVE-2026-31588, CVE-2026-31589, CVE-2026-31590, CVE-2026-31591, CVE-2026-31592, CVE-2026-31593, CVE-2026-31594, CVE-2026-31595, CVE-2026-31596, CVE-2026-31597, CVE-2026-31598, CVE-2026-31599, CVE-2026-31600, CVE-2026-31601, CVE-2026-31602, CVE-2026-31603, CVE-2026-31604, CVE-2026-31605, CVE-2026-31606, CVE-2026-31607, CVE-2026-31608, CVE-2026-31609, CVE-2026-31610, CVE-2026-31611, CVE-2026-31612, CVE-2026-31613, CVE-2026-31614, CVE-2026-31615, CVE-2026-31616, CVE-2026-31617, CVE-2026-31618, CVE-2026-31619,CVE-2026-31620, CVE-2026-31621, CVE-2026-31622, CVE-2026-31623, CVE-2026-31624, CVE-2026-31625, CVE-2026-31626, CVE-2026-31627, CVE-2026-31628, CVE-2026-31629, CVE-2026-31686, CVE-2026-31694, CVE-2026-31696, CVE-2026-31697, CVE-2026-31698, CVE-2026-31699, CVE-2026-31700, CVE-2026-31701, CVE-2026-31702, CVE-2026-31703, CVE-2026-31704, CVE-2026-31705, CVE-2026-31706, CVE-2026-31707, CVE-2026-31708, CVE-2026-31709, CVE-2026-31710, CVE-2026-31711, CVE-2026-31712, CVE-2026-31713, CVE-2026-31714, CVE-2026-31715, CVE-2026-31716, CVE-2026-31717, CVE-2026-31718, CVE-2026-31719, CVE-2026-43058, CVE-2026-43071, CVE-2026-43072, CVE-2026-43073, CVE-2026-43348, CVE-2026-43349, CVE-2026-43350, CVE-2026-43491, CVE-2026-43493, CVE-2026-43499, CVE-2026-43501, CVE-2026-45986, CVE-2026-45987, CVE-2026-45988, CVE-2026-45989, CVE-2026-45990, CVE-2026-45991, CVE-2026-45994, CVE-2026-45995, CVE-2026-45996, CVE-2026-45997, CVE-2026-45999, CVE-2026-46001, CVE-2026-46002, CVE-2026-46003, CVE-2026-46004, CVE-2026-46005, CVE-2026-46006, CVE-2026-46007, CVE-2026-46008, CVE-2026-46009, CVE-2026-46010, CVE-2026-46011, CVE-2026-46012, CVE-2026-46013, CVE-2026-46014, CVE-2026-46015, CVE-2026-46016, CVE-2026-46018, CVE-2026-46019, CVE-2026-46020, CVE-2026-46021, CVE-2026-46022, CVE-2026-46023, CVE-2026-46024, CVE-2026-46025, CVE-2026-46026, CVE-2026-46027, CVE-2026-46028, CVE-2026-46029, CVE-2026-46030, CVE-2026-46031, CVE-2026-46032, CVE-2026-46033, CVE-2026-46034, CVE-2026-46035, CVE-2026-46036, CVE-2026-46037, CVE-2026-46038, CVE-2026-46039, CVE-2026-46040, CVE-2026-46041, CVE-2026-46042, CVE-2026-46043, CVE-2026-46044, CVE-2026-46045, CVE-2026-46046, CVE-2026-46047, CVE-2026-46049, CVE-2026-46050, CVE-2026-46051, CVE-2026-46052, CVE-2026-46053, CVE-2026-46054, CVE-2026-46056, CVE-2026-46057, CVE-2026-46058, CVE-2026-46059, CVE-2026-46060, CVE-2026-46061, CVE-2026-46062, CVE-2026-46063, CVE-2026-46064, CVE-2026-46065, CVE-2026-46066, CVE-2026-46067, CVE-2026-46068, CVE-2026-46069, CVE-2026-46070, CVE-2026-46071, CVE-2026-46072, CVE-2026-46073,CVE-2026-46074, CVE-2026-46075, CVE-2026-46076, CVE-2026-46077, CVE-2026-46078, CVE-2026-46079, CVE-2026-46080, CVE-2026-46081, CVE-2026-46082, CVE-2026-46083, CVE-2026-46084, CVE-2026-46085, CVE-2026-46086, CVE-2026-46087, CVE-2026-46088, CVE-2026-46089, CVE-2026-46090, CVE-2026-46091, CVE-2026-46092, CVE-2026-46093, CVE-2026-46094, CVE-2026-46095, CVE-2026-46096, CVE-2026-46097, CVE-2026-46098, CVE-2026-46099, CVE-2026-46100, CVE-2026-46101, CVE-2026-46102, CVE-2026-46103, CVE-2026-46115, CVE-2026-46119, CVE-2026-46135, CVE-2026-46137, CVE-2026-46155, CVE-2026-46185, CVE-2026-46195, CVE-2026-46243, CVE-2026-46244, CVE-2026-46276, CVE-2026-46277, CVE-2026-46278, CVE-2026-46279, CVE-2026-46280, CVE-2026-46281, CVE-2026-46282, CVE-2026-46283, CVE-2026-46284, CVE-2026-46285, CVE-2026-46286, CVE-2026-46287, CVE-2026-46288, CVE-2026-46289, CVE-2026-46316, CVE-2026-46332, CVE-2026-52904, CVE-2026-52905, CVE-2026-52906, CVE-2026-52907, CVE-2026-52933) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS linux-image-7.0.0-1014-raspi 7.0.0-1014.14 linux-image-7.0.0-1014-raspi-realtime 7.0.0-1014.14 linux-image-raspi 7.0.0-1014.14 linux-image-raspi-7.0 7.0.0-1014.14 linux-image-raspi-realtime 7.0.0-1014.14 linux-image-raspi-realtime-7.0 7.0.0-1014.14 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-8488-2 https://ubuntu.com/security/notices/USN-8488-1 CVE-2025-54505, CVE-2026-31532,CVE-2026-31574, CVE-2026-31575, CVE-2026-31576, CVE-2026-31577, CVE-2026-31578, CVE-2026-31579, CVE-2026-31580, CVE-2026-31581, CVE-2026-31582, CVE-2026-31583, CVE-2026-31584, CVE-2026-31585, CVE-2026-31586, CVE-2026-31587, CVE-2026-31588, CVE-2026-31589, CVE-2026-31590, CVE-2026-31591, CVE-2026-31592, CVE-2026-31593, CVE-2026-31594, CVE-2026-31595, CVE-2026-31596, CVE-2026-31597, CVE-2026-31598, CVE-2026-31599, CVE-2026-31600, CVE-2026-31601, CVE-2026-31602, CVE-2026-31603, CVE-2026-31604, CVE-2026-31605, CVE-2026-31606, CVE-2026-31607, CVE-2026-31608, CVE-2026-31609, CVE-2026-31610, CVE-2026-31611, CVE-2026-31612, CVE-2026-31613, CVE-2026-31614, CVE-2026-31615, CVE-2026-31616, CVE-2026-31617, CVE-2026-31618, CVE-2026-31619, CVE-2026-31620, CVE-2026-31621, CVE-2026-31622, CVE-2026-31623, CVE-2026-31624, CVE-2026-31625, CVE-2026-31626, CVE-2026-31627, CVE-2026-31628, CVE-2026-31629, CVE-2026-31686, CVE-2026-31694, CVE-2026-31696, CVE-2026-31697, CVE-2026-31698, CVE-2026-31699, CVE-2026-31700, CVE-2026-31701, CVE-2026-31702, CVE-2026-31703, CVE-2026-31704, CVE-2026-31705, CVE-2026-31706, CVE-2026-31707, CVE-2026-31708, CVE-2026-31709, CVE-2026-31710, CVE-2026-31711, CVE-2026-31712, CVE-2026-31713, CVE-2026-31714, CVE-2026-31715, CVE-2026-31716, CVE-2026-31717, CVE-2026-31718, CVE-2026-31719, CVE-2026-43058, CVE-2026-43071, CVE-2026-43072, CVE-2026-43073, CVE-2026-43348, CVE-2026-43349, CVE-2026-43350, CVE-2026-43491, CVE-2026-43493, CVE-2026-43499, CVE-2026-43501, CVE-2026-45986, CVE-2026-45987, CVE-2026-45988, CVE-2026-45989, CVE-2026-45990, CVE-2026-45991, CVE-2026-45994, CVE-2026-45995, CVE-2026-45996, CVE-2026-45997, CVE-2026-45999, CVE-2026-46001, CVE-2026-46002, CVE-2026-46003, CVE-2026-46004, CVE-2026-46005, CVE-2026-46006, CVE-2026-46007, CVE-2026-46008, CVE-2026-46009, CVE-2026-46010, CVE-2026-46011, CVE-2026-46012, CVE-2026-46013, CVE-2026-46014, CVE-2026-46015, CVE-2026-46016, CVE-2026-46018, CVE-2026-46019, CVE-2026-46020, CVE-2026-46021,CVE-2026-46022, CVE-2026-46023, CVE-2026-46024, CVE-2026-46025, CVE-2026-46026, CVE-2026-46027, CVE-2026-46028, CVE-2026-46029, CVE-2026-46030, CVE-2026-46031, CVE-2026-46032, CVE-2026-46033, CVE-2026-46034, CVE-2026-46035, CVE-2026-46036, CVE-2026-46037, CVE-2026-46038, CVE-2026-46039, CVE-2026-46040, CVE-2026-46041, CVE-2026-46042, CVE-2026-46043, CVE-2026-46044, CVE-2026-46045, CVE-2026-46046, CVE-2026-46047, CVE-2026-46049, CVE-2026-46050, CVE-2026-46051, CVE-2026-46052, CVE-2026-46053, CVE-2026-46054, CVE-2026-46056, CVE-2026-46057, CVE-2026-46058, CVE-2026-46059, CVE-2026-46060, CVE-2026-46061, CVE-2026-46062, CVE-2026-46063, CVE-2026-46064, CVE-2026-46065, CVE-2026-46066, CVE-2026-46067, CVE-2026-46068, CVE-2026-46069, CVE-2026-46070, CVE-2026-46071, CVE-2026-46072, CVE-2026-46073, CVE-2026-46074, CVE-2026-46075, CVE-2026-46076, CVE-2026-46077, CVE-2026-46078, CVE-2026-46079, CVE-2026-46080, CVE-2026-46081, CVE-2026-46082, CVE-2026-46083, CVE-2026-46084, CVE-2026-46085, CVE-2026-46086, CVE-2026-46087, CVE-2026-46088, CVE-2026-46089, CVE-2026-46090, CVE-2026-46091, CVE-2026-46092, CVE-2026-46093, CVE-2026-46094, CVE-2026-46095, CVE-2026-46096, CVE-2026-46097, CVE-2026-46098, CVE-2026-46099, CVE-2026-46100, CVE-2026-46101, CVE-2026-46102, CVE-2026-46103, CVE-2026-46115, CVE-2026-46119, CVE-2026-46135, CVE-2026-46137, CVE-2026-46155, CVE-2026-46185, CVE-2026-46195, CVE-2026-46243, CVE-2026-46244, CVE-2026-46276, CVE-2026-46277, CVE-2026-46278, CVE-2026-46279, CVE-2026-46280, CVE-2026-46281, CVE-2026-46282, CVE-2026-46283, CVE-2026-46284, CVE-2026-46285, CVE-2026-46286, CVE-2026-46287, CVE-2026-46288, CVE-2026-46289, CVE-2026-46316, CVE-2026-46332, CVE-2026-52904, CVE-2026-52905, CVE-2026-52906, CVE-2026-52907, CVE-2026-52933 Package Information: https://launchpad.net/ubuntu/+source/linux-raspi/7.0.0-1014.14 . Critical security advisory for Ubuntu fixing multiple kernel security issues. Update suggested for Raspberry Pi.. Linux Kernel, Raspberry Pi,Security Advisory, Ubuntu Update. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 02, 2026 Critical Ubuntu
172

Ubuntu 18.04 LTS USN-6329-1 Critical: Linux Kernel Threats Resolved

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6329-1 August 31, 2023 linux-gcp-5.4, linux-oracle-5.4 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS (Available with Ubuntu Pro) Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-gcp-5.4: Linux kernel for Google Cloud Platform (GCP) systems - linux-oracle-5.4: Linux kernel for Oracle Cloud systems Details: Daniel Moghimi discovered that some Intel(R) Processors did not properly clear microarchitectural state after speculative execution of various instructions. A local unprivileged user could use this to obtain to sensitive information. (CVE-2022-40982) Tavis Ormandy discovered that some AMD processors did not properly handle speculative execution of certain vector register instructions. A local attacker could use this to expose sensitive information. (CVE-2023-20593) It was discovered that the universal 32bit network packet classifier implementation in the Linux kernel did not properly perform reference counting in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3609) It was discovered that the Quick Fair Queueing network scheduler implementation in the Linux kernel contained an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3611) It was discovered that the network packet classifier with netfilter/firewall marks implementation in the Linux kernel did not properly handle reference counting, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial ofservice (system crash) or possibly execute arbitrary code. (CVE-2023-3776) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS (Available with Ubuntu Pro): linux-image-5.4.0-1107-oracle 5.4.0-1107.116~18.04.1 linux-image-5.4.0-1111-gcp 5.4.0-1111.120~18.04.1 linux-image-gcp 5.4.0.1111.87 linux-image-oracle 5.4.0.1107.116~18.04.79 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6329-1 CVE-2022-40982, CVE-2023-20593, CVE-2023-3609, CVE-2023-3611, CVE-2023-3776 . A number of security vulnerabilities within the Linux kernel addressed in Ubuntu 18.04 LTS require immediate updates and system restarts.. Ubuntu Security, Kernel Threats, Linux Updates, Critical Vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Sep 01, 2023 Critical Ubuntu
172

Ubuntu 23.04: 6319-1 Critical: AMD Microcode Speculative Execution

AMD processors may allow an attacker to expose sensitive information due to a speculative execution vulnerability.. ========================================================================== Ubuntu Security Notice USN-6319-1 August 30, 2023 amd64-microcode vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.04 - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS (Available with Ubuntu Pro) - Ubuntu 16.04 LTS (Available with Ubuntu Pro) Summary: AMD processors may allow an attacker to expose sensitive information due to a speculative execution vulnerability. Software Description: - amd64-microcode: Processor microcode firmware for AMD CPUs Details: Daniël Trujillo, Johannes Wikner, and Kaveh Razavi discovered that some AMD processors utilising speculative execution and branch prediction may allow unauthorised memory reads via a speculative side-channel attack. A local attacker could use this to expose sensitive information, including kernel memory. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.04: amd64-microcode 3.20220411.1ubuntu3.2 Ubuntu 22.04 LTS: amd64-microcode 3.20191218.1ubuntu2.2 Ubuntu 20.04 LTS: amd64-microcode 3.20191218.1ubuntu1.2 Ubuntu 18.04 LTS (Available with Ubuntu Pro): amd64-microcode 3.20191021.1+really3.20181128.1~ubuntu0.18.04.1+esm2 Ubuntu 16.04 LTS (Available with Ubuntu Pro): amd64-microcode 3.20191021.1+really3.20180524.1~ubuntu0.16.04.2+esm2 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6319-1 CVE-2023-20569 Package Information: https://launchpad.net/ubuntu/+source/amd64-microcode/3.20220411.1ubuntu3.2 https://launchpad.net/ubuntu/+source/amd64-microcode/3.20191218.1ubuntu2.2 https://launchpad.net/ubuntu/+source/amd64-microcode/3.20191218.1ubuntu1.2 . Mitigating AMD Microcode flaw in Ubuntu platforms that risks leaking sensitive information via speculative execution processes.. AMD Microcode Update, Speculative Execution, Ubuntu Notice. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Aug 30, 2023 Critical Ubuntu
203

Mageia 8 MGASA-2023-0087 Critical: Multi-Kernel Issues Including DoS

This kernel update is based on upstream 5.15.98 and fixes atleast the following security issues: A regression exists in the Linux Kernel within KVM: nVMX that allowed for speculative execution attacks. L2 can carry out Spectre v2 attacks on L1 . MGASA-2023-0087 - Updated kernel packages fix security vulnerabilities Publication date: 11 Mar 2023 URL: https://advisories.mageia.org/MGASA-2023-0087.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-2196, CVE-2022-3707, CVE-2022-4129, CVE-2022-4382, CVE-2022-4842, CVE-2022-27672, CVE-2023-0179, CVE-2023-0394, CVE-2023-1073, CVE-2023-1074, CVE-2023-1078, CVE-2023-23559, CVE-2023-26545 This kernel update is based on upstream 5.15.98 and fixes atleast the following security issues: A regression exists in the Linux Kernel within KVM: nVMX that allowed for speculative execution attacks. L2 can carry out Spectre v2 attacks on L1 due to L1 thinking it doesn't need retpolines or IBPB after running L2 due to KVM (L0) advertising eIBRS support to L1. An attacker at L2 with code execution can execute code on an indirect branch on the host machine (CVE-2022-2196). A double-free memory flaw was found in the Linux kernel. The Intel GVT-g graphics driver triggers VGA card system resource overload, causing a fail in the intel_gvt_dma_map_guest_page function. This issue could allow a local user to crash the system (CVE-2022-3707). A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service (CVE-2022-4129). A use-after-free flaw caused by a race among the superblock operations in the gadgetfs Linux driver was found. It could be triggered by yanking out a device that is running the gadgetfs side (CVE-2022-4382). A flaw NULL Pointer Dereference in the Linux kernel NTFS3 driver function attr_punch_hole()was found. A local user could use this flaw to crash the system (CVE-2022-4842). When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling thread after an SMT mode switch potentially resulting in information disclosure (CVE-2022-27672). A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root user via arbitrary code execution (CVE-2023-0179). A NULL pointer dereference flaw was found in rawv6_push_pending_frames in net/ipv6/raw.c in the network subcomponent in the Linux kernel. This flaw causes the system to crash (CVE-2023-0394). A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially escalate their privileges on the system (CVE-2023-1073). A memory leak flaw was found in the Linux kernel's Stream Control Transmission Protocol. This issue may occur when a user starts a malicious networking service and someone connects to this service. This could allow a local user to starve resources, causing a denial of service (CVE-2023-1074). rds: rds_rm_zerocopy_callback() use list_first_entry() (CVE-2023-1078). An integer overflow flaw was found in the Linux kernel’s wireless RNDIS USB device driver in how a user installs a malicious USB device. This flaw allows a local user to crash or potentially escalate their privileges on the system (CVE-2023-23559). There is a double free in net/mpls/af_mpls.c upon an allocation failure (for registering the sysctl table under a new location) during the renaming of a device (CVE-2023-26545). For other upstream fixes in this update, see the referenced changelogs. References: - https://bugs.mageia.org/show_bug.cgi?id=31631 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.89 -https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.90 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.91 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.92 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.93 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.94 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.95 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.96 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.97 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.98 - https://www.cve.org/CVERecord?id=CVE-2022-2196 - https://www.cve.org/CVERecord?id=CVE-2022-3707 - https://www.cve.org/CVERecord?id=CVE-2022-4129 - https://www.cve.org/CVERecord?id=CVE-2022-4382 - https://www.cve.org/CVERecord?id=CVE-2022-4842 - https://www.cve.org/CVERecord?id=CVE-2022-27672 - https://www.cve.org/CVERecord?id=CVE-2023-0179 - https://www.cve.org/CVERecord?id=CVE-2023-0394 - https://www.cve.org/CVERecord?id=CVE-2023-1073 - https://www.cve.org/CVERecord?id=CVE-2023-1074 - https://www.cve.org/CVERecord?id=CVE-2023-1078 - https://www.cve.org/CVERecord?id=CVE-2023-23559 - https://www.cve.org/CVERecord?id=CVE-2023-26545 SRPMS: - 8/core/kernel-5.15.98-1.mga8 - 8/core/kmod-virtualbox-7.0.6-1.6.mga8 - 8/core/kmod-xtables-addons-3.23-1.8.mga8 . The latest kernel patch resolves several vulnerabilities, enhancing memory safety and execution integrity. Crucial for users running Mageia 8.. Kernel Security, Mageia Update, Memory Flaw, Speculative Execution. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 11, 2023 Critical Mageia
202

openSUSE 15.4: 2023:0169-1 Important: Xen Speculative Execution Fix

An update that solves one vulnerability and has one errata is now available.. SUSE Security Update: Security update for xen ______________________________________________________________________________ Announcement ID: SUSE-SU-2023:0169-1 Rating: important References: #1027519 #1205209 Cross-References: CVE-2022-23824 CVSS scores: CVE-2022-23824 (NVD) : 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVE-2022-23824 (SUSE): 5.1 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N Affected Products: SUSE Linux Enterprise Desktop 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Micro 5.3 SUSE Linux Enterprise Module for Basesystem 15-SP4 SUSE Linux Enterprise Module for Server Applications 15-SP4 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap 15.4 openSUSE Leap Micro 5.3 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for xen fixes the following issues: - CVE-2022-23824: Fixed multiple speculative execution issues (bnc#1205209). Non-security fixes: - Updated to version 4.16.3 (bsc#1027519). Special Instructions and Notes: Please reboot the system after installing this update. Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap Micro 5.3: zypper in -t patchopenSUSE-Leap-Micro-5.3-2023-169=1 - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2023-169=1 - SUSE Linux Enterprise Module for Server Applications 15-SP4: zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP4-2023-169=1 - SUSE Linux Enterprise Module for Basesystem 15-SP4: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2023-169=1 - SUSE Linux Enterprise Micro 5.3: zypper in -t patch SUSE-SLE-Micro-5.3-2023-169=1 Package List: - openSUSE Leap Micro 5.3 (x86_64): xen-debugsource-4.16.3_02-150400.4.19.1 xen-libs-4.16.3_02-150400.4.19.1 xen-libs-debuginfo-4.16.3_02-150400.4.19.1 - openSUSE Leap 15.4 (aarch64 x86_64): xen-4.16.3_02-150400.4.19.1 xen-debugsource-4.16.3_02-150400.4.19.1 xen-devel-4.16.3_02-150400.4.19.1 xen-doc-html-4.16.3_02-150400.4.19.1 xen-libs-4.16.3_02-150400.4.19.1 xen-libs-debuginfo-4.16.3_02-150400.4.19.1 xen-tools-4.16.3_02-150400.4.19.1 xen-tools-debuginfo-4.16.3_02-150400.4.19.1 xen-tools-domU-4.16.3_02-150400.4.19.1 xen-tools-domU-debuginfo-4.16.3_02-150400.4.19.1 - openSUSE Leap 15.4 (noarch): xen-tools-xendomains-wait-disk-4.16.3_02-150400.4.19.1 - openSUSE Leap 15.4 (x86_64): xen-libs-32bit-4.16.3_02-150400.4.19.1 xen-libs-32bit-debuginfo-4.16.3_02-150400.4.19.1 - SUSE Linux Enterprise Module for Server Applications 15-SP4 (noarch): xen-tools-xendomains-wait-disk-4.16.3_02-150400.4.19.1 - SUSE Linux Enterprise Module for Server Applications 15-SP4 (x86_64): xen-4.16.3_02-150400.4.19.1 xen-debugsource-4.16.3_02-150400.4.19.1 xen-devel-4.16.3_02-150400.4.19.1 xen-tools-4.16.3_02-150400.4.19.1 xen-tools-debuginfo-4.16.3_02-150400.4.19.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (x86_64): xen-debugsource-4.16.3_02-150400.4.19.1 xen-libs-4.16.3_02-150400.4.19.1 xen-libs-debuginfo-4.16.3_02-150400.4.19.1 xen-tools-domU-4.16.3_02-150400.4.19.1 xen-tools-domU-debuginfo-4.16.3_02-150400.4.19.1 - SUSE Linux Enterprise Micro 5.3 (x86_64): xen-debugsource-4.16.3_02-150400.4.19.1 xen-libs-4.16.3_02-150400.4.19.1 xen-libs-debuginfo-4.16.3_02-150400.4.19.1 References: https://www.suse.com/security/cve/CVE-2022-23824.html https://bugzilla.suse.com/1027519 https://bugzilla.suse.com/1205209 . Newly released Xen update: Addresses CVE-2022-23824, enhances the security posture for impacted SUSE versions. Reboot necessary.. SUSE Linux Enterprise,xen security update,important advisory,SUSE security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 26, 2023 Important OpenSUSE
203

Mageia 8 MGASA-2022-0278 Moderate: Kernel Security Flaws Fixed

This kernel update is based on upstream 5.15.58 and fixes at least the following security issues: Kernel lockdown bypass when UEFI secure boot is disabled / unavailable and IMA appraisal is enabled (CVE-2022-21505). . MGASA-2022-0278 - Updated kernel packages fix security vulnerabilities Publication date: 06 Aug 2022 URL: https://advisories.mageia.org/MGASA-2022-0278.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-21505, CVE-2022-23825, CVE-2022-29900, CVE-2022-29901, CVE-2022-36123, CVE-2022-36879, CVE-2022-36946 This kernel update is based on upstream 5.15.58 and fixes at least the following security issues: Kernel lockdown bypass when UEFI secure boot is disabled / unavailable and IMA appraisal is enabled (CVE-2022-21505). Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure (CVE-2022-23825). Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions (CVE-2022-29900, RetBleed). Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve arbitrary speculative code execution under certain microarchitecture-dependent conditions (CVE-2022-29901). The Linux kernel before 5.18.13 lacks a certain clear operation for the block starting symbol (.bss). This allows Xen PV guest OS users to cause a denial of service or gain privileges (CVE-2022-36123). An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a refcount to be dropped twice (CVE-2022-36879). nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queueverdict with a one-byte nfta_payload attribute, an skb_pull can encounter a negative skb-> len (CVE-2022-36946). Other fixes in this update: - fs: sendfile handles O_NONBLOCK of out_fd - hugetlb: fix memoryleak in hugetlb_mcopy_atomic_pte - mm: fix page leak with multiple threads mapping the same page - x86/bugs: Do not enable IBPB at firmware entry when IBPB is not available - x86/speculation: Make all RETbleed mitigations 64-bit only For other upstream fixes, see the referenced changelogs. References: - https://bugs.mageia.org/show_bug.cgi?id=30687 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.56 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.57 - https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.58 - - https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00702.html - https://www.cve.org/CVERecord?id=CVE-2022-21505 - https://www.cve.org/CVERecord?id=CVE-2022-23825 - https://www.cve.org/CVERecord?id=CVE-2022-29900 - https://www.cve.org/CVERecord?id=CVE-2022-29901 - https://www.cve.org/CVERecord?id=CVE-2022-36123 - https://www.cve.org/CVERecord?id=CVE-2022-36879 - https://www.cve.org/CVERecord?id=CVE-2022-36946 SRPMS: - 8/core/kernel-5.15.58-2.mga8 - 8/core/kmod-virtualbox-6.1.36-1.4.mga8 - 8/core/kmod-xtables-addons-3.20-1.30.mga8 . The kernel patch 2022-0298 mitigates various vulnerabilities impacting Debian editions, bolstering overall security measures.. Mageia Kernel Update,Mageia Security Patch,Kernel Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Aug 06, 2022 Important Mageia
89

Fedora 36: FEDORA-2022-3e6ce58029 Critical Threat: Retbleed Execution

Retbleed - arbitrary speculative code execution with return instructions [XSA-407, CVE-2022-23816, CVE-2022-23825, CVE-2022-29900]. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-3e6ce58029 2022-07-18 01:07:32.021239 --------------------------------------------------------------------------------Name : xen Product : Fedora 36 Version : 4.16.1 Release : 6.fc36 URL : https://xenproject.org/ Summary : Xen is a virtual machine monitor Description : This package contains the XenD daemon and xm command line tools, needed to manage virtual machines running under the Xen hypervisor --------------------------------------------------------------------------------Update Information: Retbleed - arbitrary speculative code execution with return instructions [XSA-407, CVE-2022-23816, CVE-2022-23825, CVE-2022-29900] --------------------------------------------------------------------------------ChangeLog: * Tue Jul 12 2022 Michael Young - 4.16.1-6 - Retbleed - arbitrary speculative code execution with return instructions [XSA-407, CVE-2022-23816, CVE-2022-23825, CVE-2022-29900] --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-3e6ce58029' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct:https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Major revision for Fedora 36 tackles Spectre vulnerability, allowing unauthorized speculative code execution with significant security implications.. Fedora Update, Retbleed Exploit, Speculative Execution Fix, Xen Security, Virtual Machine Protection. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 17, 2022 Critical Fedora
87

Debian 11: DSA-5184-1 Critical: Xen Privilege Escalation Risks

Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in privilege escalation. In addition this updates provides mitigations for the "Retbleed" speculative execution attack and the "MMIO stale data" vulnerabilities. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5184-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Moritz Muehlenhoff July 15, 2022 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : xen CVE ID : CVE-2022-21123 CVE-2022-21125 CVE-2022-21166 CVE-2022-23816 CVE-2022-23825 CVE-2022-26362 CVE-2022-26363 CVE-2022-26364 CVE-2022-29900 Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in privilege escalation. In addition this updates provides mitigations for the "Retbleed" speculative execution attack and the "MMIO stale data" vulnerabilities. For additional information please refer to the following pages: https://xenbits.xen.org/xsa/advisory-404.html https://xenbits.xen.org/xsa/advisory-407.html For the stable distribution (bullseye), these problems have been fixed in version 4.14.5+24-g87d90d511c-1. We recommend that you upgrade your xen packages. For the detailed security status of xen please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/xen Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu security notice USN-5500-1 addresses multiple vulnerabilities in the Linux kernel, resolving issues related to memory corruption and denial of service.. Debian Xen Security, Privilege EscalationFix, Hypervisor Update. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 15, 2022 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200