Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 26: FEDORA-2017-d452f83821 High: Django SQL Injection Risk

Update to 3.2.18.RELEASE. Resolves: CVE-2016-9878 (rhbz#1408164,1408165). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-f341d71730 2017-01-01 18:36:12.605457 -------------------------------------------------------------------------------- Name : springframework Product : Fedora 25 Version : 3.2.18 Release : 1.fc25 URL : https://spring.io/projects/spring-framework/ Summary : Spring Java Application Framework Description : Spring is a layered Java/J2EE application framework, based on code published in Expert One-on-One J2EE Design and Development by Rod Johnson (Wrox, 2002). -------------------------------------------------------------------------------- Update Information: Update to 3.2.18.RELEASE. Resolves: CVE-2016-9878 (rhbz#1408164,1408165) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1408164 - CVE-2016-9878 Spring Framework: Directory Traversal in the Spring Framework ResourceServlet https://bugzilla.redhat.com/show_bug.cgi?id=1408164 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade springframework' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . Fedora 25 has released a Springframework security patch addressing the directory traversal vulnerability present in CVE-2016-9878.. FedoraUpdate, SpringFramework, Directory Traversal, Security Update, Java Application. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 01, 2017 Important Fedora
89

Ubuntu 20.04: UBUNTU-2021-9300124780 High: Unrestricted File Upload

Security fix for CVE-2015-5211. Update to 3.2.15.RELEASE. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-693035254a 2015-11-01 18:14:58.630611 -------------------------------------------------------------------------------- Name : springframework Product : Fedora 22 Version : 3.2.15 Release : 1.fc22 URL : https://spring.io/projects/spring-framework/ Summary : Spring Java Application Framework Description : Spring is a layered Java/J2EE application framework, based on code published in Expert One-on-One J2EE Design and Development by Rod Johnson (Wrox, 2002). -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2015-5211. Update to 3.2.15.RELEASE -------------------------------------------------------------------------------- References: [ 1 ] Bug #1272946 - CVE-2015-5211 Spring Framework: Reflected File Download (RFD) vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=1272946 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update springframework' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Fedora 22 receives a security release that tackles CVE-2015-5211 within springframework, enhancing overall security measures.. Fedora 22 Security Update, springframework CVE-2015-5211, Reflected File Download Fix, SoftwareManagement Linux. . LinuxSecurity.com Team

Calendar 2 Nov 01, 2015 Fedora
89

Fedora 21 FEDORA-2015-11184 Critical: Springframework DoS Fix

Security fix for CVE-2015-3192. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-11184 2015-07-04 17:45:37 -------------------------------------------------------------------------------- Name : springframework Product : Fedora 21 Version : 3.2.14 Release : 1.fc21 URL : https://spring.io/projects/spring-framework/ Summary : Spring Java Application Framework Description : Spring is a layered Java/J2EE application framework, based on code published in Expert One-on-One J2EE Design and Development by Rod Johnson (Wrox, 2002). -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2015-3192 -------------------------------------------------------------------------------- ChangeLog: * Fri Jul 3 2015 Michal Srb - 0:3.2.14-1 - Update to 3.2.14 - Resolves: CVE-2015-3192 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1239002 - CVE-2015-3192 Spring Framework: denial-of-service attack with XML input https://bugzilla.redhat.com/show_bug.cgi?id=1239002 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update springframework' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Fedora Update Notification FEDORA-2015-11184 2015-07-04 17:45:37 Name : springframework Product : Fe. security,cve-2015-3192, ---------------------------------------------------------------------. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 16, 2015 Critical Fedora
89

Fedora 20: FEDORA-2015-6862 Urgent Springframework Security Alert

Security fix for CVE-2014-0225. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-6862 2015-04-26 07:27:39 -------------------------------------------------------------------------------- Name : springframework Product : Fedora 20 Version : 3.1.4 Release : 3.fc20 URL : https://spring.io Summary : Spring Java Application Framework Description : Spring is a layered Java/J2EE application framework, based on code published in Expert One-on-One J2EE Design and Development by Rod Johnson (Wrox, 2002). -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2014-0225 -------------------------------------------------------------------------------- ChangeLog: * Fri Apr 24 2015 Michal Srb - 0:3.1.4-3 - Resolves: CVE-2014-0225 * Fri Dec 6 2013 gil cattaneo 0:3.1.4-2 - fix for rhbz: 993376, 953977 - switch to XMvn - disable derby (partial), and jopt-simple support - enable castor and jruby support * Thu Dec 5 2013 Orion Poplawski - 0:3.1.4-1 - Update to 3.1.4 - Add BR xmlunit - Change wstx-asl to woodstox-core-asl * Sun Aug 4 2013 Fedora Release Engineering - 0:3.1.1-15 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #1110110 - CVE-2014-0225 Spring Framework: Information disclosure via SSRF https://bugzilla.redhat.com/show_bug.cgi?id=1110110 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update springframework' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/admin/lists/package-announce.lists.fedoraproject.org/ . Important update for Spring Framework on Fedora 20 resolves a serious vulnerability that could lead to information leakage through SSRF. Protect your systems immediately!. Fedora,Spring Framework,Security Update,App Protection. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 08, 2015 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here