Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
202

openSUSE 15.1: openSUSE-SU-2020:2298-1 Moderate: OpenSSH Info Leak

An update that solves one vulnerability and has 5 fixes is now available. . openSUSE Security Update: Security update for openssh ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:2298-1 Rating: moderate References: #1115550 #1139398 #1142000 #1148566 #1173513 #1174162 Cross-References: CVE-2020-14145 Affected Products: openSUSE Leap 15.1 ______________________________________________________________________________ An update that solves one vulnerability and has 5 fixes is now available. Description: This update for openssh fixes the following issues: - CVE-2020-14145: Fixed a potential information leak during host key exchange (bsc#1173513). - Supplement libgtk-3-0 instead of libX11-6 to avoid installation on a textmode install (bsc#1142000) - Fixed an issue where oracle cluster with cluvfy using "scp" failing/missinterpreted (bsc#1148566). - Fixed sshd termination of multichannel sessions with non-root users (bsc#1115550,bsc#1174162). - Added speculative hardening for key storage (bsc#1139398). This update was imported from the SUSE:SLE-15-SP1:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.1: zypper in -t patch openSUSE-2020-2298=1 Package List: - openSUSE Leap 15.1 (i586 x86_64): openssh-7.9p1-lp151.4.18.1 openssh-cavs-7.9p1-lp151.4.18.1 openssh-cavs-debuginfo-7.9p1-lp151.4.18.1 openssh-debuginfo-7.9p1-lp151.4.18.1 openssh-debugsource-7.9p1-lp151.4.18.1 openssh-fips-7.9p1-lp151.4.18.1 openssh-helpers-7.9p1-lp151.4.18.1 openssh-helpers-debuginfo-7.9p1-lp151.4.18.1 - openSUSELeap 15.1 (x86_64): openssh-askpass-gnome-7.9p1-lp151.4.18.1 openssh-askpass-gnome-debuginfo-7.9p1-lp151.4.18.1 openssh-askpass-gnome-debugsource-7.9p1-lp151.4.18.1 References: https://www.suse.com/security/cve/CVE-2020-14145.html https://bugzilla.suse.com/1115550 https://bugzilla.suse.com/1139398 https://bugzilla.suse.com/1142000 https://bugzilla.suse.com/1148566 https://bugzilla.suse.com/1173513 https://bugzilla.suse.com/1174162 _______________________________________________ openSUSE Security Announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe, email This email address is being protected from spambots. You need JavaScript enabled to view it. List Netiquette: List Archives: . OpenSUSE has released a vital security update for OpenSSH addressing a critical information leak vulnerability, essential for system integrity and confidentiality. OpenSSH Security Update, openSUSE 15.1, Moderate Severity Patch. . LinuxSecurity.com Team

Calendar 2 Dec 20, 2020 OpenSUSE
87

Debian: DSA-382-2 Critical: OpenSSH Buffer Handling Remote Issue

This advisory is an addition to the earlier DSA-382-1 advisory: two morebuffer handling problems have been found in addition to the onedescribed in DSA-382-1. - ------------------------------------------------------------------------ Debian Security Advisory DSA-382-2 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Wichert Akkerman September 17, 2003 - ------------------------------------------------------------------------ Package : ssh Vulnerability : buffer handling Problem type : possible remote Debian-specific: no CVS references : CAN-2003-0693 CAN-2003-0695 This advisory is an addition to the earlier DSA-382-1 advisory: two more buffer handling problems have been found in addition to the one described in DSA-382-1. It is not known if these bugs are exploitable, but as a precaution an upgrade is advised. For the Debian stable distribution these bugs have been fixed in version 1:3.4p1-1.woody.2 . Please note that if a machine is setup to install packages from proposed-updates it will not automatically install this update. Upgrade Instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 837668 459c1d0262e939d6432f193c7a4ba8a8 Size/MD5 checksum: 815 99e4e39a5347fe8e5619761060bf9d2b Size/MD5 checksum: 35975 8c6a44e3c8cbfd5dccb010be5cdf564d alpha architecture (DEC Alpha) Size/MD5 checksum: 35840 77fcccedb2ac13fd027abba4c8656e38 Size/MD5 checksum: 85008652c511f04447dc6d3bbc3fff19c6f0fd arm architecture (ARM) Size/MD5 checksum: 35074 f42db667b183a1551544ec0ac05bc0ba Size/MD5 checksum: 658234 94b2f66ad21fca6acd61cdffebb5af35 hppa architecture (HP PA RISC) Size/MD5 checksum: 35432 d6b3856b13d7ea28ea87cf158074b247 Size/MD5 checksum: 755812 0d98e1f72ae21c92a45c81f08ac55ea5 i386 architecture (Intel ia32) Size/MD5 checksum: 642524 88ca624e0b28087e918e3e7ee5b1e75f Size/MD5 checksum: 35346 b6a6e4cbc599a4ff13918bf41b1f24c7 ia64 architecture (Intel ia64) Size/MD5 checksum: 36838 75534178ba2118d8cd2bcbb15966c8bb Size/MD5 checksum: 1002662 1633a52473a4dedd0aed1d606c91f45a mips architecture (MIPS (Big Endian)) Size/MD5 checksum: 35366 7a9b4c554c46e70d91e545a352be3fe1 Size/MD5 checksum: 729978 245ad86a030f8abe236ee7e79c0a7eb6 mipsel architecture (MIPS (Little Endian)) Size/MD5 checksum: 35326 4f6d478143b4d0775a70639efcbf349a Size/MD5 checksum: 727424 e0fd2c4d7ce937f33071aaa9505e5f5e powerpc architecture (PowerPC) Size/MD5 checksum: 681518 71f51665606d40f711a5f726b961dcb0 Size/MD5 checksum: 35088 0e9e0faa18c89a1851b7c47dc609bb71 s390 architecture (IBM S/390) Size/MD5 checksum: 35726 3fd0240ab71a05f7b5ca5f68f695ee72 Size/MD5 checksum: 718054 660d30ccc42e85ab02f3c19b7dca8ee8 sparc architecture (Sun SPARC/UltraSPARC) Size/MD5 checksum: 686044 de5978b63c24074f28935c73d143e8fd Size/MD5 checksum: 35146 a3c936f9274de7182f8b00616f67249e - -- - ---------------------------------------------------------------------------- Debian Security team Debian -- Security Information Mailing-List: This email address is being protected from spambots. You need JavaScript enabled to view it. . The notice issued by Ubuntu draws attention to new security flaws identified in OpenSSH's memory handling and advises users to promptlyrefresh their systems.. Debian Security, OpenSSH Update, Critical Threats, Buffer Management Issues. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 17, 2003 Critical Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here