Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
202

openSUSE: 2019:0051-1 moderate security update for sssd access control

An update that solves one vulnerability and has 6 fixes is now available.. openSUSE Security Update: Security update for sssd ______________________________________________________________________________ Announcement ID: openSUSE-SU-2019:0051-1 Rating: moderate References: #1010700 #1072728 #1080156 #1087320 #1098377 #1101877 #1110299 Cross-References: CVE-2018-10852 Affected Products: openSUSE Leap 42.3 ______________________________________________________________________________ An update that solves one vulnerability and has 6 fixes is now available. Description: This update for sssd provides the following fixes: This security issue was fixed: - CVE-2018-10852: Set stricter permissions on /var/lib/sss/pipes/sudo to prevent the disclosure of sudo rules for arbitrary users (bsc#1098377) These non-security issues were fixed: - Fix a segmentation fault in sss_cache command. (bsc#1072728) - Fix a failure in autofs initialisation sequence upon system boot. (bsc#1010700) - Fix race condition on boot between SSSD and autofs. (bsc#1010700) - Fix a bug where file descriptors were not closed (bsc#1080156) - Fix an issue where sssd logs were not rotated properly (bsc#1080156) - Remove whitespaces from netgroup entries (bsc#1087320) - Remove misleading log messages (bsc#1101877) - exit() the forked process if exec()-ing a child process fails (bsc#1110299) - Do not schedule the machine renewal task if adcli is not executable (bsc#1110299) This update was imported from the SUSE:SLE-12-SP2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 42.3: zypper in -t patch openSUSE-2019-51=1 Package List: - openSUSE Leap 42.3 (i586 x86_64): libipa_hbac-devel-1.13.4-12.1 libipa_hbac0-1.13.4-12.1 libipa_hbac0-debuginfo-1.13.4-12.1 libsss_idmap-devel-1.13.4-12.1 libsss_idmap0-1.13.4-12.1 libsss_idmap0-debuginfo-1.13.4-12.1 libsss_nss_idmap-devel-1.13.4-12.1 libsss_nss_idmap0-1.13.4-12.1 libsss_nss_idmap0-debuginfo-1.13.4-12.1 libsss_sudo-1.13.4-12.1 libsss_sudo-debuginfo-1.13.4-12.1 python-ipa_hbac-1.13.4-12.1 python-ipa_hbac-debuginfo-1.13.4-12.1 python-sss_nss_idmap-1.13.4-12.1 python-sss_nss_idmap-debuginfo-1.13.4-12.1 python-sssd-config-1.13.4-12.1 python-sssd-config-debuginfo-1.13.4-12.1 sssd-1.13.4-12.1 sssd-ad-1.13.4-12.1 sssd-ad-debuginfo-1.13.4-12.1 sssd-debuginfo-1.13.4-12.1 sssd-debugsource-1.13.4-12.1 sssd-ipa-1.13.4-12.1 sssd-ipa-debuginfo-1.13.4-12.1 sssd-krb5-1.13.4-12.1 sssd-krb5-common-1.13.4-12.1 sssd-krb5-common-debuginfo-1.13.4-12.1 sssd-krb5-debuginfo-1.13.4-12.1 sssd-ldap-1.13.4-12.1 sssd-ldap-debuginfo-1.13.4-12.1 sssd-proxy-1.13.4-12.1 sssd-proxy-debuginfo-1.13.4-12.1 sssd-tools-1.13.4-12.1 sssd-tools-debuginfo-1.13.4-12.1 - openSUSE Leap 42.3 (x86_64): sssd-32bit-1.13.4-12.1 sssd-debuginfo-32bit-1.13.4-12.1 References: https://www.suse.com/security/cve/CVE-2018-10852.html https://bugzilla.suse.com/1010700 https://bugzilla.suse.com/1072728 https://bugzilla.suse.com/1080156 https://bugzilla.suse.com/1087320 https://bugzilla.suse.com/1098377 https://bugzilla.suse.com/1101877 https://bugzilla.suse.com/1110299 -- . Maintenance release for openSUSE's sssd improving security measures against a moderate threat and introducing various additional enhancements.. openSUSE Security Update, sssd fixes, access control updates. . LinuxSecurity.com Team

Calendar 2 Jan 14, 2019 OpenSUSE
100

SUSE: 2018:2144-1 Moderate: Fix for sssd Sudo Rules Disclosure

An update that solves one vulnerability and has one errata is now available. . SUSE Security Update: Security update for sssd ______________________________________________________________________________ Announcement ID: SUSE-SU-2018:2144-1 Rating: moderate References: #1098163 #1098377 Cross-References: CVE-2018-10852 Affected Products: SUSE Linux Enterprise Module for Basesystem 15 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for sssd fixes the following security issue: - CVE-2018-10852: Set stricter permissions on /var/lib/sss/pipes/sudo to prevent the disclosure of sudo rules for arbitrary users (bsc#1098377). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Basesystem 15: zypper in -t patch SUSE-SLE-Module-Basesystem-15-2018-1456=1 Package List: - SUSE Linux Enterprise Module for Basesystem 15 (aarch64 ppc64le s390x x86_64): libipa_hbac-devel-1.16.1-3.3.1 libipa_hbac0-1.16.1-3.3.1 libipa_hbac0-debuginfo-1.16.1-3.3.1 libsss_certmap-devel-1.16.1-3.3.1 libsss_certmap0-1.16.1-3.3.1 libsss_certmap0-debuginfo-1.16.1-3.3.1 libsss_idmap-devel-1.16.1-3.3.1 libsss_idmap0-1.16.1-3.3.1 libsss_idmap0-debuginfo-1.16.1-3.3.1 libsss_nss_idmap-devel-1.16.1-3.3.1 libsss_nss_idmap0-1.16.1-3.3.1 libsss_nss_idmap0-debuginfo-1.16.1-3.3.1 libsss_simpleifp-devel-1.16.1-3.3.1 libsss_simpleifp0-1.16.1-3.3.1 libsss_simpleifp0-debuginfo-1.16.1-3.3.1 python3-sssd-config-1.16.1-3.3.1 python3-sssd-config-debuginfo-1.16.1-3.3.1 sssd-1.16.1-3.3.1 sssd-ad-1.16.1-3.3.1 sssd-ad-debuginfo-1.16.1-3.3.1 sssd-debuginfo-1.16.1-3.3.1 sssd-debugsource-1.16.1-3.3.1 sssd-ipa-1.16.1-3.3.1 sssd-ipa-debuginfo-1.16.1-3.3.1 sssd-krb5-1.16.1-3.3.1 sssd-krb5-common-1.16.1-3.3.1 sssd-krb5-common-debuginfo-1.16.1-3.3.1 sssd-krb5-debuginfo-1.16.1-3.3.1 sssd-ldap-1.16.1-3.3.1 sssd-ldap-debuginfo-1.16.1-3.3.1 sssd-proxy-1.16.1-3.3.1 sssd-proxy-debuginfo-1.16.1-3.3.1 sssd-tools-1.16.1-3.3.1 sssd-tools-debuginfo-1.16.1-3.3.1 sssd-wbclient-1.16.1-3.3.1 sssd-wbclient-debuginfo-1.16.1-3.3.1 sssd-wbclient-devel-1.16.1-3.3.1 - SUSE Linux Enterprise Module for Basesystem 15 (x86_64): sssd-32bit-1.16.1-3.3.1 sssd-32bit-debuginfo-1.16.1-3.3.1 References: https://www.suse.com/security/cve/CVE-2018-10852.html https://bugzilla.suse.com/1098163 https://bugzilla.suse.com/1098377 . The SUSE team has issued a critical patch for sssd concerning CVE-2018-10852, rated with moderate severity. Ensure updates are applied without delay.. sssd security update, SUSE Linux security patch, CVE-2018-10852 fix, sudo rules vulnerability, moderate severity security advisory. . LinuxSecurity.com Team

Calendar 2 Jul 31, 2018 SuSE
197

Debian 9: DLA-1500-2 Low: SystemD Resource Leak Vulnerability

The UNIX pipe which sudo uses to contact SSSD and read the available sudo rules from SSSD has too wide permissions, which means that anyone who can send a message using the same raw protocol that sudo and SSSD use can read the sudo . Package : sssd Version : 1.11.7-3+deb8u1 CVE ID : CVE-2018-10852 Debian Bug : 902860 The UNIX pipe which sudo uses to contact SSSD and read the available sudo rules from SSSD has too wide permissions, which means that anyone who can send a message using the same raw protocol that sudo and SSSD use can read the sudo rules available for any user. For Debian 8 "Jessie", these problems have been fixed in version 1.11.7-3+deb8u1. We recommend that you upgrade your sssd packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance SSSD performance on Debian 8 to resolve sudo rule visibility issues by backing up first, updating via package manager, tweaking configs, and restarting the service for best results. Sssd Security Update, Debian 8 Update, Permissions Exposure, Security Advisory. . Severity: Low. LinuxSecurity.com Team

Calendar 2 Jul 16, 2018 Low Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here