Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -1 articles for you...
219

Rocky Linux 9 RLSA-2023:4569 Moderate D-Bus Security Advisory

Moderate: dbus security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2023:4569", "synopsis": "Moderate: dbus security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for dbus.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "D-Bus is a system for sending messages between applications. It is used both for the system-wide message bus service, and as a per-user-login-session messaging facility.\n\nSecurity Fix(es):\n\n* dbus: dbus-daemon: assertion failure when a monitor is active and a message from the driver cannot be delivered (CVE-2023-34969)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2213166", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2213166", "description": ""}], "cves": [{"name": "CVE-2023-34969", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-34969", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2023-08-24T04:21:33.856417Z", "rpms": {"Rocky Linux 9": {"nvras": ["dbus-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-1:1.12.20-7.el9_2.1.src.rpm", "dbus-common-1:1.12.20-7.el9_2.1.noarch.rpm", "dbus-daemon-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-daemon-debuginfo-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-debuginfo-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-debugsource-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-devel-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-libs-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-libs-debuginfo-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-tools-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-tools-debuginfo-1:1.12.20-7.el9_2.1.aarch64.rpm","dbus-x11-1:1.12.20-7.el9_2.1.aarch64.rpm", "dbus-x11-debuginfo-1:1.12.20-7.el9_2.1.aarch64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. A security patch has been released for dbus in Rocky Linux 9, targeting moderate risk vulnerabilities and reinforcing overall system integrity.. Rocky Linux Security, System Messaging Fix, Linux Application Update. . LinuxSecurity.com Team

Calendar 2 Aug 24, 2023 Rocky Linux
98

RedHat 8: RHSA-2023-4498-01 Moderate: Dbus Assertion Failure

An update for dbus is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ===================================================================== Red Hat Security Advisory Synopsis: Moderate: dbus security update Advisory ID: RHSA-2023:4498-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:4498 Issue date: 2023-08-07 CVE Names: CVE-2023-34969 ===================================================================== 1. Summary: An update for dbus is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux BaseOS (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: D-Bus is a system for sending messages between applications. It is used both for the system-wide message bus service, and as a per-user-login-session messaging facility. Security Fix(es): * dbus: dbus-daemon: assertion failure when a monitor is active and a message from the driver cannot be delivered (CVE-2023-34969) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 For theupdate to take effect, all running instances of dbus-daemon and all running applications using the libdbus library must be restarted, or the system rebooted. 5. Bugs fixed (https://bugzilla.redhat.com/): 2213166 - CVE-2023-34969 dbus: dbus-daemon: assertion failure when a monitor is active and a message from the driver cannot be delivered 6. Package List: Red Hat Enterprise Linux AppStream (v.8): aarch64: dbus-daemon-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-debugsource-1.12.8-24.el8_8.1.aarch64.rpm dbus-devel-1.12.8-24.el8_8.1.aarch64.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-x11-1.12.8-24.el8_8.1.aarch64.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm ppc64le: dbus-daemon-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-debugsource-1.12.8-24.el8_8.1.ppc64le.rpm dbus-devel-1.12.8-24.el8_8.1.ppc64le.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-x11-1.12.8-24.el8_8.1.ppc64le.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm s390x: dbus-daemon-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-debugsource-1.12.8-24.el8_8.1.s390x.rpm dbus-devel-1.12.8-24.el8_8.1.s390x.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-x11-1.12.8-24.el8_8.1.s390x.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.s390x.rpm x86_64: dbus-daemon-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-daemon-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-debugsource-1.12.8-24.el8_8.1.i686.rpm dbus-debugsource-1.12.8-24.el8_8.1.x86_64.rpm dbus-devel-1.12.8-24.el8_8.1.i686.rpm dbus-devel-1.12.8-24.el8_8.1.x86_64.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-x11-1.12.8-24.el8_8.1.x86_64.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm Red Hat Enterprise Linux BaseOS (v.8): Source: dbus-1.12.8-24.el8_8.1.src.rpm aarch64: dbus-1.12.8-24.el8_8.1.aarch64.rpm dbus-daemon-1.12.8-24.el8_8.1.aarch64.rpm dbus-daemon-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-debugsource-1.12.8-24.el8_8.1.aarch64.rpm dbus-libs-1.12.8-24.el8_8.1.aarch64.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-tools-1.12.8-24.el8_8.1.aarch64.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.aarch64.rpm noarch: dbus-common-1.12.8-24.el8_8.1.noarch.rpm ppc64le: dbus-1.12.8-24.el8_8.1.ppc64le.rpm dbus-daemon-1.12.8-24.el8_8.1.ppc64le.rpm dbus-daemon-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-debugsource-1.12.8-24.el8_8.1.ppc64le.rpm dbus-libs-1.12.8-24.el8_8.1.ppc64le.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-tools-1.12.8-24.el8_8.1.ppc64le.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.ppc64le.rpm s390x: dbus-1.12.8-24.el8_8.1.s390x.rpm dbus-daemon-1.12.8-24.el8_8.1.s390x.rpm dbus-daemon-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-debugsource-1.12.8-24.el8_8.1.s390x.rpm dbus-libs-1.12.8-24.el8_8.1.s390x.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-tools-1.12.8-24.el8_8.1.s390x.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.s390x.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.s390x.rpm x86_64: dbus-1.12.8-24.el8_8.1.x86_64.rpm dbus-daemon-1.12.8-24.el8_8.1.x86_64.rpm dbus-daemon-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-daemon-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-debugsource-1.12.8-24.el8_8.1.i686.rpm dbus-debugsource-1.12.8-24.el8_8.1.x86_64.rpm dbus-libs-1.12.8-24.el8_8.1.i686.rpm dbus-libs-1.12.8-24.el8_8.1.x86_64.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-libs-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-tests-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-tools-1.12.8-24.el8_8.1.x86_64.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-tools-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.i686.rpm dbus-x11-debuginfo-1.12.8-24.el8_8.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2023-34969 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJk0P29AAoJENzjgjWX9erEIpIP/iA+jp4RpqfkakYFyKwh/Ri+ /uBcu4iMdJtLK/gdPGh3EAImZ5yyyunfsd0vFg31QDkO/rTbREaHMJAF/Z/Yk/bH gY0lm+3ooT/uPV0SS6b3lHMw+JdUNrFXOW7WD4UTGylTrt4zGadPx3buDkFNF2K/ t8ToRWw2gcqP04NZvYCdyAGj+29asS//LMgHkq8V4fxvGDlW/p2rTIQXJg4O0V45 s5c46F3rwpfcx8OKmDSO+EogQosT5dG92YYKTvWRpfujYz2hQMW7WUASajB3eXBZ sNRMNI/g9wjPNRRPvn2oMNGkcc+sjAHkkI8AS37cafC2HtTIsvlicnE9TPafCnYx i7TvKqy3/oJ2bx11X99D77tVwlRvXfaKVhCi+qyXA/8SXI6H81OYfjqzL27Gff4Q /kJmoIob2wWoFlV4zElEBT5ByTI/JZ/T7d6p2cNrIXtajuPWkmF2+Ic3j3XMiQkw WhjMOuf/fCm3kDuZFDyO5aen6DqEMgvL8GzVN4F1WNtkkG8kqGr+L0MUu2yDvB1L T+vrTPItN8NqRjImEJwn/rtJRb4sepkTR1hdr0XukaJJiyhdyTOGkOkYvXRCcrqD NG0AD3gcGKRs8Pg+J2Bbzy4RVnsFlX4+z8Dtomr00Yd8j6H7Ko58Xqgtzuze4z9Z 7mrHj3Q/YVchFCMQTB0l =Je9q -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Ubuntu releases a significant security patch for D-Bus impacting Server Edition 20.04, resolving a critical memory leak vulnerability.. Red Hat Enterprise; dbus Security; Moderate Severity; System Messaging. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 07, 2023 Important Red Hat
89

Fedora 38: FEDORA-2023-d22162d9ba Moderate: mingw-dbus System Fix

Backport fix for CVE-2023-34969.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-d22162d9ba 2023-06-24 01:20:34.546731 --------------------------------------------------------------------------------Name : mingw-dbus Product : Fedora 38 Version : 1.14.8 Release : 1.fc38 URL : https://https:// Summary : MinGW Windows port of D-Bus Description : D-BUS is a system for sending messages between applications. It is used both for the system wide message bus service, and as a per-user-login-session messaging facility. --------------------------------------------------------------------------------Update Information: Backport fix for CVE-2023-34969. --------------------------------------------------------------------------------ChangeLog: * Thu Jun 15 2023 Sandro Mani - 1.14.8-1 - Update to 1.14.8 * Sat Feb 11 2023 Sandro Mani - 1.14.6-1 - Update to 1.14.6 --------------------------------------------------------------------------------References: [ 1 ] Bug #2213397 - mingw-dbus: dbus: dbus-daemon: assertion failure when a monitor is active and a message from the driver cannot be delivered [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2213397 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-d22162d9ba' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe sendan email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 38 has released an update that includes a backported fix for CVE-2023-34969 pertaining to the mingw-dbus system.. Fedora Update,mysql security,mingw-dbus patch,D-Bus Fixes,system messaging. . LinuxSecurity.com Team

Calendar 2 Jun 24, 2023 Fedora
98

Red Hat Enterprise Linux 8 RHSA-2023:0096-01 Moderate Dbus Issue

An update for dbus is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: dbus security update Advisory ID: RHSA-2023:0096-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:0096 Issue date: 2023-01-12 CVE Names: CVE-2022-42010 CVE-2022-42011 CVE-2022-42012 ==================================================================== 1. Summary: An update for dbus is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux BaseOS (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: D-Bus is a system for sending messages between applications. It is used both for the system-wide message bus service, and as a per-user-login-session messaging facility. Security Fix(es): * dbus: dbus-daemon crashes when receiving message with incorrectly nested parentheses and curly brackets (CVE-2022-42010) * dbus: dbus-daemon can be crashed by messages with array length inconsistent with element type (CVE-2022-42011) * dbus: `_dbus_marshal_byteswap` doesn't process fds in messages with "foreign" endianness correctly (CVE-2022-42012) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and otherrelated information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 For the update to take effect, all running instances of dbus-daemon and all running applications using the libdbus library must be restarted, or the system rebooted. 5. Bugs fixed (https://bugzilla.redhat.com/): 2133616 - CVE-2022-42010 dbus: dbus-daemon crashes when receiving message with incorrectly nested parentheses and curly brackets 2133617 - CVE-2022-42011 dbus: dbus-daemon can be crashed by messages with array length inconsistent with element type 2133618 - CVE-2022-42012 dbus: `_dbus_marshal_byteswap` doesn't process fds in messages with "foreign" endianness correctly 6. Package List: Red Hat Enterprise Linux AppStream (v.8): aarch64: dbus-daemon-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-debugsource-1.12.8-23.el8_7.1.aarch64.rpm dbus-devel-1.12.8-23.el8_7.1.aarch64.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-x11-1.12.8-23.el8_7.1.aarch64.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm ppc64le: dbus-daemon-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-debugsource-1.12.8-23.el8_7.1.ppc64le.rpm dbus-devel-1.12.8-23.el8_7.1.ppc64le.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-x11-1.12.8-23.el8_7.1.ppc64le.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm s390x: dbus-daemon-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-debugsource-1.12.8-23.el8_7.1.s390x.rpm dbus-devel-1.12.8-23.el8_7.1.s390x.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-x11-1.12.8-23.el8_7.1.s390x.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.s390x.rpm x86_64: dbus-daemon-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-daemon-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-debugsource-1.12.8-23.el8_7.1.i686.rpm dbus-debugsource-1.12.8-23.el8_7.1.x86_64.rpm dbus-devel-1.12.8-23.el8_7.1.i686.rpm dbus-devel-1.12.8-23.el8_7.1.x86_64.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-x11-1.12.8-23.el8_7.1.x86_64.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm Red Hat Enterprise Linux BaseOS (v.8): Source: dbus-1.12.8-23.el8_7.1.src.rpm aarch64: dbus-1.12.8-23.el8_7.1.aarch64.rpm dbus-daemon-1.12.8-23.el8_7.1.aarch64.rpm dbus-daemon-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-debugsource-1.12.8-23.el8_7.1.aarch64.rpm dbus-libs-1.12.8-23.el8_7.1.aarch64.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-tools-1.12.8-23.el8_7.1.aarch64.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.aarch64.rpm noarch: dbus-common-1.12.8-23.el8_7.1.noarch.rpm ppc64le: dbus-1.12.8-23.el8_7.1.ppc64le.rpm dbus-daemon-1.12.8-23.el8_7.1.ppc64le.rpm dbus-daemon-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-debugsource-1.12.8-23.el8_7.1.ppc64le.rpm dbus-libs-1.12.8-23.el8_7.1.ppc64le.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-tools-1.12.8-23.el8_7.1.ppc64le.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.ppc64le.rpm s390x: dbus-1.12.8-23.el8_7.1.s390x.rpm dbus-daemon-1.12.8-23.el8_7.1.s390x.rpm dbus-daemon-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-debugsource-1.12.8-23.el8_7.1.s390x.rpm dbus-libs-1.12.8-23.el8_7.1.s390x.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-tools-1.12.8-23.el8_7.1.s390x.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.s390x.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.s390x.rpm x86_64: dbus-1.12.8-23.el8_7.1.x86_64.rpm dbus-daemon-1.12.8-23.el8_7.1.x86_64.rpm dbus-daemon-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-daemon-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-debugsource-1.12.8-23.el8_7.1.i686.rpm dbus-debugsource-1.12.8-23.el8_7.1.x86_64.rpm dbus-libs-1.12.8-23.el8_7.1.i686.rpm dbus-libs-1.12.8-23.el8_7.1.x86_64.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-libs-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-tests-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-tools-1.12.8-23.el8_7.1.x86_64.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-tools-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.i686.rpm dbus-x11-debuginfo-1.12.8-23.el8_7.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-42010 https://access.redhat.com/security/cve/CVE-2022-42011 https://access.redhat.com/security/cve/CVE-2022-42012 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY7/i3dzjgjWX9erEAQjvgQ//amTIwzga07Gm+tHjXgqVgNbqz2eJYJFV uyFUL7QnCdlP9NnYTe9hXKgMnpJgc+vfl1BQCbeH7Np1X77tIXO9oWrCJtAH6mNp aaIEOBrq3hGiNbgjG2SWnwVSPtnBn4RQZSiUhZn6CdlSCEdEsfBHppUrUCO6gFrE n+7/abMkcmsPSFtIJNFN17/92OaLChPLm7PdzJ/EmbhmTznG8mevz0DspbDyPAE/ R/Z5h4QXyvad/ZDVg/3euFC/ny/6FaXJW3PoUReFQ3luCA8rgpoNmh1m/glninC9 KMrfn/o87iaTI71k70+M7OwkHw3xo6NmWsaQ2HEq/j1tzjsRD6sjx0eYoowbWL2A pVY5mxrNXcDegtOZ/Aa/X44Hd9KWRZ9Fse+ye85yeakaTRjFaijYe6URrFs/tDaO R3XVtlKqXyS9yStF6jZLaBdZhGBAxAEM/IOKV38dSIat0dzQ2SQr5+GaCtVhaN+t iQG3CF67hYkDIylX0F7fZVrbtFOQXbsvkCcL7qwRCXAS3aAYRHLZpPwDex26uw4Q aGTs3eBYhVQ1VAPjJdkVAROqBa31T9RBn/UuUzvadbY6J0gWeNYB45OvEHpJ2Zkg eW1YYrrU/si+mSwZsXOYniNTfY0AVaCgRndyIAl0NL1jRFvi6MU66V2LW5Zcqwq6 Cu/RYePhzYs=iJ9Z -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A significant dbus security enhancement is now released for Red Hat Enterprise Linux 8, accompanied by comprehensive advisory details.. Red Hat Security Update, dbus Security Advisory,Enterprise Linux Update. . LinuxSecurity.com Team

Calendar 2 Jan 12, 2023 Red Hat
98

Red Hat 9.0: RHSA-2022-8977 Moderate Dbus Security Issue

An update for dbus is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: dbus security update Advisory ID: RHSA-2022:8977-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:8977 Issue date: 2022-12-13 CVE Names: CVE-2022-42010 CVE-2022-42011 CVE-2022-42012 ==================================================================== 1. Summary: An update for dbus is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v.9.0) - aarch64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux BaseOS EUS (v.9.0) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: D-Bus is a system for sending messages between applications. It is used both for the system-wide message bus service, and as a per-user-login-session messaging facility. Security Fix(es): * dbus: dbus-daemon crashes when receiving message with incorrectly nested parentheses and curly brackets (CVE-2022-42010) * dbus: dbus-daemon can be crashed by messages with array length inconsistent with element type (CVE-2022-42011) * dbus: `_dbus_marshal_byteswap` doesn't process fds in messages with "foreign" endianness correctly (CVE-2022-42012) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other relatedinformation, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 For the update to take effect, all running instances of dbus-daemon and all running applications using the libdbus library must be restarted, or the system rebooted. 5. Bugs fixed (https://bugzilla.redhat.com/): 2133616 - CVE-2022-42010 dbus: dbus-daemon crashes when receiving message with incorrectly nested parentheses and curly brackets 2133617 - CVE-2022-42011 dbus: dbus-daemon can be crashed by messages with array length inconsistent with element type 2133618 - CVE-2022-42012 dbus: `_dbus_marshal_byteswap` doesn't process fds in messages with "foreign" endianness correctly 6. Package List: Red Hat Enterprise Linux AppStream EUS(v.9.0): aarch64: dbus-daemon-1.12.20-5.el9_0.1.aarch64.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-debugsource-1.12.20-5.el9_0.1.aarch64.rpm dbus-devel-1.12.20-5.el9_0.1.aarch64.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-x11-1.12.20-5.el9_0.1.aarch64.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm ppc64le: dbus-daemon-1.12.20-5.el9_0.1.ppc64le.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-debugsource-1.12.20-5.el9_0.1.ppc64le.rpm dbus-devel-1.12.20-5.el9_0.1.ppc64le.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-x11-1.12.20-5.el9_0.1.ppc64le.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm s390x: dbus-daemon-1.12.20-5.el9_0.1.s390x.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-debugsource-1.12.20-5.el9_0.1.s390x.rpm dbus-devel-1.12.20-5.el9_0.1.s390x.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-x11-1.12.20-5.el9_0.1.s390x.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.s390x.rpm x86_64: dbus-daemon-1.12.20-5.el9_0.1.x86_64.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-debugsource-1.12.20-5.el9_0.1.i686.rpm dbus-debugsource-1.12.20-5.el9_0.1.x86_64.rpm dbus-devel-1.12.20-5.el9_0.1.i686.rpm dbus-devel-1.12.20-5.el9_0.1.x86_64.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-x11-1.12.20-5.el9_0.1.x86_64.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm Red Hat Enterprise Linux BaseOS EUS(v.9.0): Source: dbus-1.12.20-5.el9_0.1.src.rpm aarch64: dbus-1.12.20-5.el9_0.1.aarch64.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-debugsource-1.12.20-5.el9_0.1.aarch64.rpm dbus-libs-1.12.20-5.el9_0.1.aarch64.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-tools-1.12.20-5.el9_0.1.aarch64.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.aarch64.rpm noarch: dbus-common-1.12.20-5.el9_0.1.noarch.rpm ppc64le: dbus-1.12.20-5.el9_0.1.ppc64le.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-debugsource-1.12.20-5.el9_0.1.ppc64le.rpm dbus-libs-1.12.20-5.el9_0.1.ppc64le.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-tools-1.12.20-5.el9_0.1.ppc64le.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.ppc64le.rpm s390x: dbus-1.12.20-5.el9_0.1.s390x.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-debugsource-1.12.20-5.el9_0.1.s390x.rpm dbus-libs-1.12.20-5.el9_0.1.s390x.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-tools-1.12.20-5.el9_0.1.s390x.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.s390x.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.s390x.rpm x86_64: dbus-1.12.20-5.el9_0.1.x86_64.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-daemon-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-debugsource-1.12.20-5.el9_0.1.i686.rpm dbus-debugsource-1.12.20-5.el9_0.1.x86_64.rpm dbus-libs-1.12.20-5.el9_0.1.i686.rpm dbus-libs-1.12.20-5.el9_0.1.x86_64.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-libs-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-tests-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-tools-1.12.20-5.el9_0.1.x86_64.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-tools-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.i686.rpm dbus-x11-debuginfo-1.12.20-5.el9_0.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2022-42010 https://access.redhat.com/security/cve/CVE-2022-42011 https://access.redhat.com/security/cve/CVE-2022-42012 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY5j9/9zjgjWX9erEAQj45g//WjO+V9yYyQWGruAmG4AUX54olkvOyC0V Ag4hLPeQ0h3wPdcv07ucqxY37DrzrqxXI0hbXZkrnxoN2T0rJjo8GAdPrrrOIqpV zZ6iqkEf+aLU5oNOrw0NAPe5oazaevy+auYsER8SeTcZb4kUbb/sNPOjI3o2QvNn DhudaPFsZ/hwqMTBasgqPwun4SUXHq4rv/Vh6lzS7xzRD9DRlFjSmkjcTbM+SGPO UNj+wRXPyaa0lQ04aRAnEPm4MlbHFe8YDy7L/KkpFeIfYxk3AloomxP/uffSQWsR MOywYYCwCKJ5I5qKIuW0/DlnobfOSC3J2B5tqaaCVHXy9D0NL4BiELOqVqzEjbc0 byqF2akJgmZYOWFvbD3DYlkVkDh8utXpO9Da9JIBc8IkgkiQFicA6Xwk6qH4QYY3 Xx2M/L/aKLmCOleL99OZ5zDMRVg2wf3kpf3e8aHQkdlf6d6XF5vELk+XH0W+N17C 0SBL0FCQsw98WNAoY643NaR7or5bsBxhs1rjAKK0Kj/GDnyxLUTKYHB5V0O4AOEu Wp3/6+YubTYqvTfoGY9Zazt18naQz+uCcxnlH+/0n5CXfDmFvQc0hlJwrMSzZdaD 4WZn8TJ6xQ9tCFb8uv1/GphEr1praGOvSd71e78hOh0vB9OLaLCrKdlBXM8lyInz ztf9Jrw2DnY=wGFs -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Canonical reveals a significant security patch for snapd in Ubuntu 22.04 LTS, rectifying identified vulnerabilities.. Red Hat Enterprise Linux, D-Bus messaging, moderate security update. . LinuxSecurity.com Team

Calendar 2 Dec 13, 2022 Red Hat
89

Fedora 24 D-Bus Update: FEDORA-2016-0a4dc821d5 Moderate Format String Issue

Update to 1.11.6. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-0a4dc821d5 2016-10-13 17:12:37.426444 -------------------------------------------------------------------------------- Name : dbus Product : Fedora 24 Version : 1.11.6 Release : 1.fc24 URL : https://https:// Summary : D-BUS message bus Description : D-BUS is a system for sending messages between applications. It is used both for the system-wide message bus service, and as a per-user-login-session messaging facility. -------------------------------------------------------------------------------- Update Information: Update to 1.11.6 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1383657 - dbus: Format string vulnerability https://bugzilla.redhat.com/show_bug.cgi?id=1383657 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update dbus' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. . An enhancement for Fedora 24 has been released to fix a vulnerability in dbus related to format strings, improving security for system communications.. Fedora Security Update, dbus Software Update, Format String Issue. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 13, 2016 Important Fedora
89

Fedora 8: 2008:2070 Moderate: Dbus Message Bus Policy Issue

This update fixes CVE-2008-0595.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2008-2070 2008-02-28 21:10:49 --------------------------------------------------------------------------------Name : dbus Product : Fedora 8 Version : 1.1.2 Release : 9.fc8 URL : https://https:// Summary : D-BUS message bus Description : D-BUS is a system for sending messages between applications. It is used both for the systemwide message bus service, and as a per-user-login-session messaging facility. --------------------------------------------------------------------------------ChangeLog: * Wed Feb 27 2008 David Zeuthen - 1.1.2-9.fc8 - CVE-2008-0595 * Thu Oct 25 2007 Bill Nottingham - 1.1.2-8 - have -libs obsolete older versions of the main package so that yum upgrades work --------------------------------------------------------------------------------References: [ 1 ] Bug #432419 - CVE-2008-0595 dbus security policy circumvention https://bugzilla.redhat.com/show_bug.cgi?id=432419 --------------------------------------------------------------------------------This update can be installed with the "yum" update program. Use su -c 'yum update dbus' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . This release addresses a vulnerability in dbus that could lead to evading security protocols on Fedora 8, thereby fortifying the integrity of system messaging.. Fedora Update, D-BUS,Security Policy, Software Update, System Messaging. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 28, 2008 Important Fedora
98

Red Hat: RHSA-2022:0459-02 Important: NetworkManager Security Update

Updated dbus packages that fix a security issue are now available for Red Hat Enterprise Linux 4. This update has been rated as having moderate security impact by the Red Hat Security Response Team.. - --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Moderate: dbus security update Advisory ID: RHSA-2007:0008-01 Advisory URL: https://access.redhat.com/errata/RHSA-2007:0008.html Issue date: 2007-02-08 Updated on: 2007-02-08 Product: Red Hat Enterprise Linux CVE Names: CVE-2006-6107 - ---------------------------------------------------------------------1. Summary: Updated dbus packages that fix a security issue are now available for Red Hat Enterprise Linux 4. This update has been rated as having moderate security impact by the Red Hat Security Response Team. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux Desktop version 4 - i386, x86_64 Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64 3. Problem description: D-BUS is a system for sending messages between applications. It is used both for the systemwide message bus service, and as a per-user-login-session messaging facility. Kimmo Hämäläinen discovered a flaw in the way D-BUS processes certain messages. It is possible for a local unprivileged D-BUS process to disrupt the ability of another D-BUS process to receive messages. (CVE-2006-6107) Users of dbus are advised to upgrade to these updated packages, which contain backported patches to correct this issue. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. This update is available via Red Hat Network. To use Red Hat Network, launch the Red Hat Update Agent with the followingcommand: up2date This will start an interactive process that will result in the appropriate RPMs being upgraded on your system. 5. Bug IDs fixed (http://bugzilla.redhat.com/): 218055 - CVE-2006-6107 D-Bus denial of service 6. RPMs required: Red Hat Enterprise Linux AS version 4: SRPMS: 379fdd3f9afb34124fa9b88deb440e3f dbus-0.22-12.EL.8.src.rpm i386: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm b8a46001a416b2e36f5da1e6868c91ec dbus-devel-0.22-12.EL.8.i386.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8e5eadeb5be39e139885336011551656 dbus-python-0.22-12.EL.8.i386.rpm 2f9d064981b12a7f4cb8cf74d6142de5 dbus-x11-0.22-12.EL.8.i386.rpm ia64: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm dd584d93cd98e8ebc3331e5c5d938b87 dbus-0.22-12.EL.8.ia64.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm 872bafd3dbb945e65141d63418ee9592 dbus-debuginfo-0.22-12.EL.8.ia64.rpm a294a24161855aa73d4a9d83e4f3a107 dbus-devel-0.22-12.EL.8.ia64.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm b07996f3ebf2331958a1adfd230302cc dbus-glib-0.22-12.EL.8.ia64.rpm c7406fea694e12487aa8213142ed66ea dbus-python-0.22-12.EL.8.ia64.rpm 7097ef62d6917170005f000a14a54fe7 dbus-x11-0.22-12.EL.8.ia64.rpm ppc: acaed9d78ce157ef8b15e19692c832c1 dbus-0.22-12.EL.8.ppc.rpm 87db84625d2e27f3b0c168e2f1e34a18 dbus-0.22-12.EL.8.ppc64.rpm a9f3006c196b42ee882baced9a29f821 dbus-debuginfo-0.22-12.EL.8.ppc.rpm c40f580e5fc221bedfdbe209172fa671 dbus-debuginfo-0.22-12.EL.8.ppc64.rpm d4adf9454e5303fdcaab8c43805a212c dbus-devel-0.22-12.EL.8.ppc.rpm 1a66a5a36be6167dff2558866ab34d9c dbus-glib-0.22-12.EL.8.ppc.rpm e28bef04fa98091747deef3b121fec18 dbus-glib-0.22-12.EL.8.ppc64.rpm 60c70fee76a3a98c6cf46629901b2ed3 dbus-python-0.22-12.EL.8.ppc.rpm 02a34c40ade9386f829e0bbf12dc8036 dbus-x11-0.22-12.EL.8.ppc.rpm s390: 2aec70890676846f00be1fd5ed9f4a9c dbus-0.22-12.EL.8.s390.rpm 995ca549549fa390bb04fee99726f683 dbus-debuginfo-0.22-12.EL.8.s390.rpm ba507082ec7e13a57cbf9d2addf18e9d dbus-devel-0.22-12.EL.8.s390.rpm 79ebed9e812ce4760fcbd4bb7fa8efb7 dbus-glib-0.22-12.EL.8.s390.rpm f1be5d2e04c8e0698caddc9d0af40ab2 dbus-python-0.22-12.EL.8.s390.rpm 11ca54506fedf365fab62e025d7b742b dbus-x11-0.22-12.EL.8.s390.rpm s390x: 2aec70890676846f00be1fd5ed9f4a9c dbus-0.22-12.EL.8.s390.rpm 38a9c1c9838f1fc0ffe7e8c62259a4e9 dbus-0.22-12.EL.8.s390x.rpm 995ca549549fa390bb04fee99726f683 dbus-debuginfo-0.22-12.EL.8.s390.rpm 146b6a51d985cec520b70d2e39353c95 dbus-debuginfo-0.22-12.EL.8.s390x.rpm d17fd60137f8fc012826cb5c2fb1c798 dbus-devel-0.22-12.EL.8.s390x.rpm 79ebed9e812ce4760fcbd4bb7fa8efb7 dbus-glib-0.22-12.EL.8.s390.rpm 5608a1394e595ee7560bc2080b54524e dbus-glib-0.22-12.EL.8.s390x.rpm 6afc6054de436384a71951c4ca7c1083 dbus-python-0.22-12.EL.8.s390x.rpm aa63335eff72a01edf6c3c8709257100 dbus-x11-0.22-12.EL.8.s390x.rpm x86_64: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm ac83105ce8b120ec537a3ea54da1e37d dbus-0.22-12.EL.8.x86_64.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm e6beedfb77d864db50af50524560ddf2 dbus-debuginfo-0.22-12.EL.8.x86_64.rpm 1b248af405670382e31b06c4fa52fa36 dbus-devel-0.22-12.EL.8.x86_64.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8c41138bbf9127bbb2d799f566ce3a8a dbus-glib-0.22-12.EL.8.x86_64.rpm 920cf9a273c521118e374230690a3df6 dbus-python-0.22-12.EL.8.x86_64.rpm 847b2400eee82a36e3542b2f4f2d4947 dbus-x11-0.22-12.EL.8.x86_64.rpm Red Hat Enterprise Linux Desktop version 4: SRPMS: 379fdd3f9afb34124fa9b88deb440e3f dbus-0.22-12.EL.8.src.rpm i386: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm b8a46001a416b2e36f5da1e6868c91ec dbus-devel-0.22-12.EL.8.i386.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8e5eadeb5be39e139885336011551656 dbus-python-0.22-12.EL.8.i386.rpm 2f9d064981b12a7f4cb8cf74d6142de5 dbus-x11-0.22-12.EL.8.i386.rpm x86_64: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm ac83105ce8b120ec537a3ea54da1e37d dbus-0.22-12.EL.8.x86_64.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm e6beedfb77d864db50af50524560ddf2 dbus-debuginfo-0.22-12.EL.8.x86_64.rpm 1b248af405670382e31b06c4fa52fa36 dbus-devel-0.22-12.EL.8.x86_64.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8c41138bbf9127bbb2d799f566ce3a8a dbus-glib-0.22-12.EL.8.x86_64.rpm 920cf9a273c521118e374230690a3df6 dbus-python-0.22-12.EL.8.x86_64.rpm 847b2400eee82a36e3542b2f4f2d4947 dbus-x11-0.22-12.EL.8.x86_64.rpm Red Hat Enterprise Linux ES version 4: SRPMS: 379fdd3f9afb34124fa9b88deb440e3f dbus-0.22-12.EL.8.src.rpm i386: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm b8a46001a416b2e36f5da1e6868c91ec dbus-devel-0.22-12.EL.8.i386.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8e5eadeb5be39e139885336011551656 dbus-python-0.22-12.EL.8.i386.rpm 2f9d064981b12a7f4cb8cf74d6142de5 dbus-x11-0.22-12.EL.8.i386.rpm ia64: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm dd584d93cd98e8ebc3331e5c5d938b87 dbus-0.22-12.EL.8.ia64.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm 872bafd3dbb945e65141d63418ee9592 dbus-debuginfo-0.22-12.EL.8.ia64.rpm a294a24161855aa73d4a9d83e4f3a107 dbus-devel-0.22-12.EL.8.ia64.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm b07996f3ebf2331958a1adfd230302cc dbus-glib-0.22-12.EL.8.ia64.rpm c7406fea694e12487aa8213142ed66ea dbus-python-0.22-12.EL.8.ia64.rpm 7097ef62d6917170005f000a14a54fe7 dbus-x11-0.22-12.EL.8.ia64.rpm x86_64: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm ac83105ce8b120ec537a3ea54da1e37d dbus-0.22-12.EL.8.x86_64.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm e6beedfb77d864db50af50524560ddf2 dbus-debuginfo-0.22-12.EL.8.x86_64.rpm 1b248af405670382e31b06c4fa52fa36 dbus-devel-0.22-12.EL.8.x86_64.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8c41138bbf9127bbb2d799f566ce3a8a dbus-glib-0.22-12.EL.8.x86_64.rpm 920cf9a273c521118e374230690a3df6 dbus-python-0.22-12.EL.8.x86_64.rpm 847b2400eee82a36e3542b2f4f2d4947 dbus-x11-0.22-12.EL.8.x86_64.rpm Red Hat Enterprise Linux WS version 4: SRPMS: 379fdd3f9afb34124fa9b88deb440e3f dbus-0.22-12.EL.8.src.rpm i386: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm b8a46001a416b2e36f5da1e6868c91ec dbus-devel-0.22-12.EL.8.i386.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8e5eadeb5be39e139885336011551656 dbus-python-0.22-12.EL.8.i386.rpm 2f9d064981b12a7f4cb8cf74d6142de5 dbus-x11-0.22-12.EL.8.i386.rpm ia64: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm dd584d93cd98e8ebc3331e5c5d938b87 dbus-0.22-12.EL.8.ia64.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm 872bafd3dbb945e65141d63418ee9592 dbus-debuginfo-0.22-12.EL.8.ia64.rpm a294a24161855aa73d4a9d83e4f3a107 dbus-devel-0.22-12.EL.8.ia64.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm b07996f3ebf2331958a1adfd230302cc dbus-glib-0.22-12.EL.8.ia64.rpm c7406fea694e12487aa8213142ed66ea dbus-python-0.22-12.EL.8.ia64.rpm 7097ef62d6917170005f000a14a54fe7 dbus-x11-0.22-12.EL.8.ia64.rpm x86_64: e81002d1ca5787e89458cd7d5bb04dd5 dbus-0.22-12.EL.8.i386.rpm ac83105ce8b120ec537a3ea54da1e37d dbus-0.22-12.EL.8.x86_64.rpm 987a9f27799464897a63534b25ae3a8f dbus-debuginfo-0.22-12.EL.8.i386.rpm e6beedfb77d864db50af50524560ddf2 dbus-debuginfo-0.22-12.EL.8.x86_64.rpm 1b248af405670382e31b06c4fa52fa36 dbus-devel-0.22-12.EL.8.x86_64.rpm 5ba2eefce27c72524c7c5cdb1b6e2224 dbus-glib-0.22-12.EL.8.i386.rpm 8c41138bbf9127bbb2d799f566ce3a8a dbus-glib-0.22-12.EL.8.x86_64.rpm 920cf9a273c521118e374230690a3df6 dbus-python-0.22-12.EL.8.x86_64.rpm 847b2400eee82a36e3542b2f4f2d4947 dbus-x11-0.22-12.EL.8.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://www.cve.org/CVERecord?id=CVE-2006-6107 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2007 Red Hat, Inc. . This notice outlines a significant update for the dbus framework in Fedora Core 4, aimed at resolving a vulnerability related to system security.. Red Hat D-Bus Update, Linux Enterprise Security, DBus System Messaging. . LinuxSecurity.com Team

Calendar 2 Feb 08, 2007 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here