Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 42 rust-eif_build Security Advisory CVE-2026-25537 Denial of Service

Update the time crate to version 0.3.47. Update the time-macros crate to version 0.2.27. Update the time-core crate to version 0.1.8. Update the num-conv crate to version 0.2.0. Update the git2 crate to version 0.20.4.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-6388b28850 2026-02-11 00:58:02.841951+00:00 -------------------------------------------------------------------------------- Name : rust-eif_build Product : Fedora 42 Version : 0.2.1 Release : 6.fc42 URL : https://crates.io/crates/eif_build Summary : CLI tool to create EIF files for AWS Nitro Enclaves Description : This CLI tool provides a low level path to assemble an enclave image format (EIF) file used in AWS Nitro Enclaves. -------------------------------------------------------------------------------- Update Information: Update the time crate to version 0.3.47. Update the time-macros crate to version 0.2.27. Update the time-core crate to version 0.1.8. Update the num-conv crate to version 0.2.0. Update the git2 crate to version 0.20.4. Update the bytes crate to version 1.11.1. Additionally, this update contains rebuilds of applications affected by security advisories: bytes: RUSTSEC-2026-0007 git2: RUSTSEC-2026-0008 jsonwebtoken: CVE-2026-25537 time: RUSTSEC-2026-0009 All applications that statically link libgit2 via the git2 Rust bindings were also rebuilt against the latest version of the git2 / libgit2-sys crates to pull in fixes included in libgit2 between v1.8.1 and v1.9.2. -------------------------------------------------------------------------------- ChangeLog: * Sat Feb 7 2026 Fabio Valentini - 0.2.1-6 - Rebuild for RUSTSEC-2026-{0007,0008,0009} and CVE-2026-25537 * Sat Jan 17 2026 Fedora Release Engineering - 0.2.1-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild * Fri Jul 25 2025 Fedora Release Engineering - 0.2.1-4 - Rebuilt forhttps://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2437465 - CVE-2026-25537 rust-jsonwebtoken: jsonwebtoken has Type Confusion that leads to potential authorization bypass [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2437465 [ 2 ] Bug #2437467 - CVE-2026-25537 uv: jsonwebtoken has Type Confusion that leads to potential authorization bypass [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2437467 [ 3 ] Bug #2438046 - CVE-2026-25727 atuin: time affected by a stack exhaustion denial of service attack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2438046 [ 4 ] Bug #2438075 - CVE-2026-25727 keylime-agent-rust: time affected by a stack exhaustion denial of service attack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2438075 [ 5 ] Bug #2438077 - CVE-2026-25727 maturin: time affected by a stack exhaustion denial of service attack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2438077 [ 6 ] Bug #2438086 - CVE-2026-25727 rustup: time affected by a stack exhaustion denial of service attack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2438086 [ 7 ] Bug #2438091 - CVE-2026-25727 tbtools: time affected by a stack exhaustion denial of service attack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2438091 [ 8 ] Bug #2438097 - CVE-2026-25727 tuigreet: time affected by a stack exhaustion denial of service attack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2438097 [ 9 ] Bug #2438098 - CVE-2026-25727 uv: time affected by a stack exhaustion denial of service attack [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2438098 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-6388b28850' at thecommand line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Update for rust-eif_build in Fedora 42 addresses multiple crates and CVE-2026-25537 impact.. rust-eif_build update,Fedora 42 advisory,CVE-2026-25537,security issue report,denial of service. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 11, 2026 Critical Fedora
98

Red Hat Enterprise Linux 7.6 RHSA-2020-2014-01 Important: SQLite Update

An update for sqlite is now available for Red Hat Enterprise Linux 7.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: sqlite security update Advisory ID: RHSA-2020:2014-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:2014 Issue date: 2020-05-05 CVE Names: CVE-2019-13734 ==================================================================== 1. Summary: An update for sqlite is now available for Red Hat Enterprise Linux 7.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux ComputeNode EUS (v. 7.6) - x86_64 Red Hat Enterprise Linux ComputeNode Optional EUS (v. 7.6) - noarch, x86_64 Red Hat Enterprise Linux Server EUS (v. 7.6) - ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux Server Optional EUS (v. 7.6) - noarch, ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7) - aarch64, ppc64le, s390x Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v. 7) - aarch64, noarch, ppc64le, s390x 3. Description: SQLite is a C library that implements an SQL database engine. A large subset of SQL92 is supported. A complete database is stored in a single disk file. The API is designed for convenience and ease of use. Applications that link against SQLite can enjoy the power and flexibility of an SQL database without the administrative hassles of supportinga separate database server. Security Fix(es): * sqlite: fts3: improve shadow table corruption detection (CVE-2019-13734) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1781980 - CVE-2019-13734 sqlite: fts3: improve shadow table corruption detection 6. Package List: Red Hat Enterprise Linux ComputeNode EUS (v. 7.6): Source: sqlite-3.7.17-8.el7_6.1.src.rpm x86_64: sqlite-3.7.17-8.el7_6.1.i686.rpm sqlite-3.7.17-8.el7_6.1.x86_64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.i686.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.x86_64.rpm Red Hat Enterprise Linux ComputeNode Optional EUS (v. 7.6): noarch: sqlite-doc-3.7.17-8.el7_6.1.noarch.rpm x86_64: lemon-3.7.17-8.el7_6.1.x86_64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.i686.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.x86_64.rpm sqlite-devel-3.7.17-8.el7_6.1.i686.rpm sqlite-devel-3.7.17-8.el7_6.1.x86_64.rpm sqlite-tcl-3.7.17-8.el7_6.1.x86_64.rpm Red Hat Enterprise Linux Server EUS (v.7.6): Source: sqlite-3.7.17-8.el7_6.1.src.rpm ppc64: sqlite-3.7.17-8.el7_6.1.ppc.rpm sqlite-3.7.17-8.el7_6.1.ppc64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.ppc.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.ppc64.rpm sqlite-devel-3.7.17-8.el7_6.1.ppc.rpm sqlite-devel-3.7.17-8.el7_6.1.ppc64.rpm ppc64le: sqlite-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-devel-3.7.17-8.el7_6.1.ppc64le.rpm s390x: sqlite-3.7.17-8.el7_6.1.s390.rpm sqlite-3.7.17-8.el7_6.1.s390x.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.s390.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.s390x.rpm sqlite-devel-3.7.17-8.el7_6.1.s390.rpm sqlite-devel-3.7.17-8.el7_6.1.s390x.rpm x86_64: sqlite-3.7.17-8.el7_6.1.i686.rpm sqlite-3.7.17-8.el7_6.1.x86_64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.i686.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.x86_64.rpm sqlite-devel-3.7.17-8.el7_6.1.i686.rpm sqlite-devel-3.7.17-8.el7_6.1.x86_64.rpm Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7): Source: sqlite-3.7.17-8.el7_6.1.src.rpm aarch64: sqlite-3.7.17-8.el7_6.1.aarch64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.aarch64.rpm sqlite-devel-3.7.17-8.el7_6.1.aarch64.rpm ppc64le: sqlite-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-devel-3.7.17-8.el7_6.1.ppc64le.rpm s390x: sqlite-3.7.17-8.el7_6.1.s390.rpm sqlite-3.7.17-8.el7_6.1.s390x.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.s390.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.s390x.rpm sqlite-devel-3.7.17-8.el7_6.1.s390.rpm sqlite-devel-3.7.17-8.el7_6.1.s390x.rpm Red Hat Enterprise Linux Server Optional EUS (v.7.6): noarch: sqlite-doc-3.7.17-8.el7_6.1.noarch.rpm ppc64: lemon-3.7.17-8.el7_6.1.ppc64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.ppc64.rpm sqlite-tcl-3.7.17-8.el7_6.1.ppc64.rpm ppc64le: lemon-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-tcl-3.7.17-8.el7_6.1.ppc64le.rpm s390x: lemon-3.7.17-8.el7_6.1.s390x.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.s390x.rpm sqlite-tcl-3.7.17-8.el7_6.1.s390x.rpm x86_64: lemon-3.7.17-8.el7_6.1.x86_64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.x86_64.rpm sqlite-tcl-3.7.17-8.el7_6.1.x86_64.rpm Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server Optional (v. 7): aarch64: lemon-3.7.17-8.el7_6.1.aarch64.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.aarch64.rpm sqlite-tcl-3.7.17-8.el7_6.1.aarch64.rpm noarch: sqlite-doc-3.7.17-8.el7_6.1.noarch.rpm ppc64le: lemon-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.ppc64le.rpm sqlite-tcl-3.7.17-8.el7_6.1.ppc64le.rpm s390x: lemon-3.7.17-8.el7_6.1.s390x.rpm sqlite-debuginfo-3.7.17-8.el7_6.1.s390x.rpm sqlite-tcl-3.7.17-8.el7_6.1.s390x.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2019-13734 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBXrE0c9zjgjWX9erEAQhcvg/8DmVNPy23jGskQFjKw96zS5x02Umh8pyg ZVdgV66QNQ2tQJ/6Zu03AlsyiNA261zW05vkK3+ToEEUIcoP+nOiZqCHkXr5pVJb Ma28sNlWSEZhYqsho1Y7EtF1JxWugF8olukj4Xylu+5azcIuMwWHyjZufK1/dPzY hYLJeXeAgK4Gdb22s8DyZPxgrNdKXYxRwqr0KoPD04yq/xb6tGV8k9dlZNbjTm7W WigJi8+yJ2DU2yaUOlqNhnWKcawKjK6bRv+FMBs03uUcrboaTuApD9ABWnkCspoW flpWqSpzhES3JWmLFPtX9FvhogV3GKQiSJ2/AFM81i9IfzHJCc9RRkj15LhNEaZD s4/p6Bz8rcBuh+6cGLiAe4I1ETi15zcQZ9vyL2LuSNcC2ffKo2MLRVrM9whUllBW y1cRb+fnLcUSzwzWlRQYxU0aNVcAz19ePkxspj+HzHHpQ07iABW0IGwVw6g9D0rp 3b7pgRCeq4PQpWJGBZFT0nu+zSeW/36gFDBgHHVRNZ8qLIz+jhn50Z+fA36NTTHT 0O7dZSbbZQK9ByyxXAZbaLf/9+omGovH0rzQGTlrJddPhflsdvGwANmzMnmUP3pZ 24620B5cI0uku+KkfEk4gtX3Lra40aMYgCfSoupUsYYY/L0TP5jUPRX+890KwBdW v/hqFZdErqM=4Eb1 -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A critical new release for SQLite has been issued for Red Hat Enterprise Linux 7.6, classified as having major security implications.. Red Hat Security, SQLite Update, Important Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 05, 2020 Important Red Hat
202

openSUSE: 2019:2576-1 Moderate: djvulibre Null Pointer Issue

An update that solves one vulnerability and has one errata is now available.. openSUSE Security Update: Security update for djvulibre ______________________________________________________________________________ Announcement ID: openSUSE-SU-2019:2576-1 Rating: moderate References: #1154401 #1156188 Cross-References: CVE-2019-18804 Affected Products: openSUSE Leap 15.1 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for djvulibre fixes the following issues: Security issue fixed: - CVE-2019-18804: Fixed a null pointer dereference (bsc#1156188). Other issue addressed: - Fixed a crash when mmx was enabled (bsc#1154401) This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.1: zypper in -t patch openSUSE-2019-2576=1 Package List: - openSUSE Leap 15.1 (i586 x86_64): djvulibre-3.5.27-lp151.3.6.1 djvulibre-debuginfo-3.5.27-lp151.3.6.1 djvulibre-debugsource-3.5.27-lp151.3.6.1 djvulibre-doc-3.5.27-lp151.3.6.1 libdjvulibre-devel-3.5.27-lp151.3.6.1 libdjvulibre21-3.5.27-lp151.3.6.1 libdjvulibre21-debuginfo-3.5.27-lp151.3.6.1 References: https://www.suse.com/security/cve/CVE-2019-18804.html https://bugzilla.suse.com/1154401 https://bugzilla.suse.com/1156188 -- . openSUSE unveils a security patch for djvulibre addressing a null pointer vulnerability and offering moderate-level advice.. openSUSE Update,djvulibre Security Fix,moderate Severity,Null Pointer Issue. . LinuxSecurity.com Team

Calendar 2 Nov 27, 2019 OpenSUSE
202

openSUSE 13.2 Important: mariadb Security Update 2016:1664-1

An update that fixes 25 vulnerabilities is now available.. openSUSE Security Update: Security update for mariadb ______________________________________________________________________________ Announcement ID: openSUSE-SU-2016:1664-1 Rating: important References: #963806 #963810 #970287 #970295 #979524 #980904 Cross-References: CVE-2016-0505 CVE-2016-0546 CVE-2016-0596 CVE-2016-0597 CVE-2016-0598 CVE-2016-0600 CVE-2016-0606 CVE-2016-0608 CVE-2016-0609 CVE-2016-0616 CVE-2016-0640 CVE-2016-0641 CVE-2016-0642 CVE-2016-0643 CVE-2016-0644 CVE-2016-0646 CVE-2016-0647 CVE-2016-0648 CVE-2016-0649 CVE-2016-0650 CVE-2016-0651 CVE-2016-0655 CVE-2016-0666 CVE-2016-0668 CVE-2016-2047 Affected Products: openSUSE 13.2 ______________________________________________________________________________ An update that fixes 25 vulnerabilities is now available. Description: mariadb was updated to version 10.0.25 to fix 25 security issues. These security issues were fixed: - CVE-2016-0505: Unspecified vulnerability allowed remote authenticated users to affect availability via unknown vectors related to Options (bsc#980904). - CVE-2016-0546: Unspecified vulnerability allowed local users to affect confidentiality, integrity, and availability via unknown vectors related to Client (bsc#980904). - CVE-2016-0596: Unspecified vulnerability allowed remote authenticated users to affect availability via vectors related to DML (bsc#980904). - CVE-2016-0597: Unspecified vulnerability allowed remote authenticated users to affect availability via unknown vectors related to Optimizer (bsc#980904). - CVE-2016-0598: Unspecified vulnerability allowed remote authenticated users to affect availability via vectors related to DML (bsc#980904). - CVE-2016-0600:Unspecified vulnerability allowed remote authenticated users to affect availability via unknown vectors related to InnoDB (bsc#980904). - CVE-2016-0606: Unspecified vulnerability allowed remote authenticated users to affect integrity via unknown vectors related to encryption (bsc#980904). - CVE-2016-0608: Unspecified vulnerability allowed remote authenticated users to affect availability via vectors related to UDF (bsc#980904). - CVE-2016-0609: Unspecified vulnerability allowed remote authenticated users to affect availability via unknown vectors related to privileges (bsc#980904). - CVE-2016-0616: Unspecified vulnerability allowed remote authenticated users to affect availability via unknown vectors related to Optimizer (bsc#980904). - CVE-2016-0640: Unspecified vulnerability allowed local users to affect integrity and availability via vectors related to DML (bsc#980904). - CVE-2016-0641: Unspecified vulnerability allowed local users to affect confidentiality and availability via vectors related to MyISAM (bsc#980904). - CVE-2016-0642: Unspecified vulnerability allowed local users to affect integrity and availability via vectors related to Federated (bsc#980904). - CVE-2016-0643: Unspecified vulnerability allowed local users to affect confidentiality via vectors related to DML (bsc#980904). - CVE-2016-0644: Unspecified vulnerability allowed local users to affect availability via vectors related to DDL (bsc#980904). - CVE-2016-0646: Unspecified vulnerability allowed local users to affect availability via vectors related to DML (bsc#980904). - CVE-2016-0647: Unspecified vulnerability allowed local users to affect availability via vectors related to FTS (bsc#980904). - CVE-2016-0648: Unspecified vulnerability allowed local users to affect availability via vectors related to PS (bsc#980904). - CVE-2016-0649: Unspecified vulnerability allowed local users to affect availability viavectors related to PS (bsc#980904). - CVE-2016-0650: Unspecified vulnerability allowed local users to affect availability via vectors related to Replication (bsc#980904). - CVE-2016-0651: Unspecified vulnerability allowed local users to affect availability via vectors related to Optimizer (bsc#980904). - CVE-2016-0655: Unspecified vulnerability allowed local users to affect availability via vectors related to InnoDB (bsc#980904). - CVE-2016-0666: Unspecified vulnerability allowed local users to affect availability via vectors related to Security: Privileges (bsc#980904). - CVE-2016-0668: Unspecified vulnerability allowed local users to affect availability via vectors related to InnoDB (bsc#980904). - CVE-2016-2047: The ssl_verify_server_cert function in sql-common/client.c did not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allowed man-in-the-middle attackers to spoof SSL servers via a "/CN=" string in a field in a certificate, as demonstrated by "/OU=/CN=bar.com/CN=foo.com (bsc#963806). These non-security issues were fixed: - bsc#970295: Fix the leftovers of "logrotate.d/mysql" string in the logrotate error message. Occurrences of this string were changed to "logrotate.d/mariadb" - bsc#963810: Add 'log-error' and 'secure-file-priv' configuration options * add '/etc/my.cnf.d/error_log.conf' that specifies 'log-error /var/log/mysql/mysqld.log'. If no path is set, the error log is written to '/var/lib/mysql/$HOSTNAME.err', which is not picked up by logrotate. * add '/etc/my.cnf.d/secure_file_priv.conf' which specifies that 'LOAD DATA', 'SELECT ... INTO' and 'LOAD FILE()' will only work with files in the directory specified by 'secure-file-priv' option (='/var/lib/mysql-files'). - Temporarily disable OQGraph. It seems to need the boost library with the version not earlier than 1.40 and not later than 1.55 (MDEV-9479) - boo#979524: Don't remove HandlerSocket plugin - boo#970287: Add "BuildRequires: jemalloc-devel" in order to allow enabling of the TokuDB plugin - run 'usermod -g mysql mysql' only if mysql user is not in mysql group. Run 'usermod -s /bin/false/ mysql' only if mysql user doesn't have '/bin/false' shell set. - Re-enable profiling support Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 13.2: zypper in -t patch openSUSE-2016-761=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE 13.2 (i586 x86_64): libmysqlclient-devel-10.0.25-2.24.1 libmysqlclient18-10.0.25-2.24.1 libmysqlclient18-debuginfo-10.0.25-2.24.1 libmysqlclient_r18-10.0.25-2.24.1 libmysqld-devel-10.0.25-2.24.1 libmysqld18-10.0.25-2.24.1 libmysqld18-debuginfo-10.0.25-2.24.1 mariadb-10.0.25-2.24.1 mariadb-bench-10.0.25-2.24.1 mariadb-bench-debuginfo-10.0.25-2.24.1 mariadb-client-10.0.25-2.24.1 mariadb-client-debuginfo-10.0.25-2.24.1 mariadb-debuginfo-10.0.25-2.24.1 mariadb-debugsource-10.0.25-2.24.1 mariadb-errormessages-10.0.25-2.24.1 mariadb-test-10.0.25-2.24.1 mariadb-test-debuginfo-10.0.25-2.24.1 mariadb-tools-10.0.25-2.24.1 mariadb-tools-debuginfo-10.0.25-2.24.1 - openSUSE 13.2 (x86_64): libmysqlclient18-32bit-10.0.25-2.24.1 libmysqlclient18-debuginfo-32bit-10.0.25-2.24.1 libmysqlclient_r18-32bit-10.0.25-2.24.1 References: https://www.suse.com/security/cve/CVE-2016-0505.html https://www.suse.com/security/cve/CVE-2016-0546.html https://www.suse.com/security/cve/CVE-2016-0596.html https://www.suse.com/security/cve/CVE-2016-0597.html https://www.suse.com/security/cve/CVE-2016-0598.html https://www.suse.com/security/cve/CVE-2016-0600.html https://www.suse.com/security/cve/CVE-2016-0606.html https://www.suse.com/security/cve/CVE-2016-0608.html https://www.suse.com/security/cve/CVE-2016-0609.html https://www.suse.com/security/cve/CVE-2016-0616.html https://www.suse.com/security/cve/CVE-2016-0640.html https://www.suse.com/security/cve/CVE-2016-0641.html https://www.suse.com/security/cve/CVE-2016-0642.html https://www.suse.com/security/cve/CVE-2016-0643.html https://www.suse.com/security/cve/CVE-2016-0644.html https://www.suse.com/security/cve/CVE-2016-0646.html https://www.suse.com/security/cve/CVE-2016-0647.html https://www.suse.com/security/cve/CVE-2016-0648.html https://www.suse.com/security/cve/CVE-2016-0649.html https://www.suse.com/security/cve/CVE-2016-0650.html https://www.suse.com/security/cve/CVE-2016-0651.html https://www.suse.com/security/cve/CVE-2016-0655.html https://www.suse.com/security/cve/CVE-2016-0666.html https://www.suse.com/security/cve/CVE-2016-0668.html https://www.suse.com/security/cve/CVE-2016-2047.html https://bugzilla.suse.com/963806 https://bugzilla.suse.com/963810 https://bugzilla.suse.com/970287 https://bugzilla.suse.com/970295 https://bugzilla.suse.com/979524 https://bugzilla.suse.com/980904 -- . A release focusing on 25 vulnerabilities for PostgreSQL in Fedora, essential for ensuring system security.. openSUSE Security,mariadb Update,Important Fixes,System Integrity. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 23, 2016 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here