Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 511
Alerts This Week
Warning Icon 1 511

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 26 articles for you...
100

SUSE Linux Micro 6.0 Kernel RT Important Security Update for CVE-2025-54518

An update that solves six vulnerabilities can now be installed.. # Security update for the Linux Kernel RT (Live Patch 11 for SUSE Linux Enterprise Micro 6.0) Announcement ID: SUSE-SU-2026:21925-1 Release Date: 2026-06-01T09:26:52Z Rating: important References: * bsc#1259798 * bsc#1260563 * bsc#1260908 * bsc#1264096 * bsc#1265224 * bsc#1265384 Cross-References: * CVE-2025-54518 * CVE-2026-23243 * CVE-2026-23274 * CVE-2026-23317 * CVE-2026-46300 * CVE-2026-46333 CVSS scores: * CVE-2025-54518 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-54518 ( SUSE ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-54518 ( NVD ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2026-23243 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-23243 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-23243 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-23274 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-23274 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-23274 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-23317 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-23317 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-23317 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-46300 ( SUSE ): 8.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-46300 ( SUSE ): 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2026-46300 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-46300 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H *CVE-2026-46333 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-46333 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N * CVE-2026-46333 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * SUSE Linux Micro 6.0 An update that solves six vulnerabilities can now be installed. ## Description: This update for the SUSE Linux Enterprise Kernel 6.4.0-32.1 fixes various security issues The following security issues were fixed: * CVE-2025-54518: AMD-SN-7052: CPU OP Cache Corruption (bsc#1264096). * CVE-2026-23243: RDMA/umad: Reject negative data_len in ib_umad_write (bsc#1259798). * CVE-2026-23274: netfilter: xt_IDLETIMER: reject rev0 reuse of ALARM timer labels (bsc#1260908). * CVE-2026-23317: drm/vmwgfx: Return the correct value in vmw_translate_ptr functions (bsc#1260563). * CVE-2026-46300: FragNesia attack: another xfrm/esp based local root exploit (bsc#1265224). * CVE-2026-46333: ptrace: slightly saner 'get_dumpable()' logic (bsc#1265384). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-kernel-443=1 ## Package List: * SUSE Linux Micro 6.0 (x86_64) * kernel-livepatch-6_4_0-35-rt-debuginfo-12-1.1 * kernel-livepatch-MICRO-6-0-RT_Update_11-debugsource-12-1.1 * kernel-livepatch-6_4_0-35-rt-12-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-54518.html * https://www.suse.com/security/cve/CVE-2026-23243.html * https://www.suse.com/security/cve/CVE-2026-23274.html * https://www.suse.com/security/cve/CVE-2026-23317.html * https://www.suse.com/security/cve/CVE-2026-46300.html * https://www.suse.com/security/cve/CVE-2026-46333.html * https://bugzilla.suse.com/show_bug.cgi?id=1259798 * https://bugzilla.suse.com/show_bug.cgi?id=1260563 *https://bugzilla.suse.com/show_bug.cgi?id=1260908 * https://bugzilla.suse.com/show_bug.cgi?id=1264096 * https://bugzilla.suse.com/show_bug.cgi?id=1265224 * https://bugzilla.suse.com/show_bug.cgi?id=1265384 . Important security updates for SUSE Linux Micro 6.0 Kernel RT to address multiple vulnerabilities.. SUSE Linux updates, Kernel RT security, SUSE vulnerability patch, important Linux updates. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 02, 2026 Important SuSE
100

SUSE: Kernel-Livepatch Important Fixes CVE-2024-49860 2025:20768-1

* bsc#1231862 * bsc#1245685 * bsc#1245795 * bsc#1246001 * bsc#1246356 . # Security update for kernel-livepatch-MICRO-6-0_Update_2 Announcement ID: SUSE-SU-2025:20768-1 Release Date: 2025-09-23T07:53:43Z Rating: important References: * bsc#1231862 * bsc#1245685 * bsc#1245795 * bsc#1246001 * bsc#1246356 * bsc#1247499 * bsc#1248298 Cross-References: * CVE-2024-49860 * CVE-2025-21756 * CVE-2025-38109 * CVE-2025-38177 * CVE-2025-38181 * CVE-2025-38498 * CVE-2025-38555 CVSS scores: * CVE-2024-49860 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-49860 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-49860 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H * CVE-2025-21756 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-21756 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38109 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38109 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38177 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38177 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38181 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-38181 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-38498 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38498 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-38555 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-38555 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Micro 6.1 An update that solves seven vulnerabilities can now be installed. ## Description: This update for kernel-livepatch-MICRO-6-0_Update_2fixes the following issues: * CVE-2024-49860: ACPI: sysfs: validate return type of _STR method (bsc#1231862) * CVE-2025-38177: kernel: sch_hfsc: make hfsc_qlen_notify() idempotent (bsc#1246356) * CVE-2025-38109: net/mlx5: fix ECVF vports unload on shutdown flow (bsc#1245685) * CVE-2025-38181: calipso: fix null-ptr-deref in calipso_req_{set,del}attr() (bsc#1246001) * CVE-2025-21756: vsock: Keep the binding until socket destruction (bsc#1245795) * CVE-2025-38498: do_change_type(): refuse to operate on unmounted/not ours mounts (bsc#1247499) * CVE-2025-38555: usb: gadget : fix use-after-free in composite_dev_cleanup() (bsc#1248298) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-kernel-130=1 ## Package List: * SUSE Linux Micro 6.1 (s390x x86_64) * kernel-livepatch-6_4_0-19-default-debuginfo-12-1.1 * kernel-livepatch-6_4_0-19-default-12-1.1 * kernel-livepatch-MICRO-6-0_Update_2-debugsource-12-1.1 ## References: * https://www.suse.com/security/cve/CVE-2024-49860.html * https://www.suse.com/security/cve/CVE-2025-21756.html * https://www.suse.com/security/cve/CVE-2025-38109.html * https://www.suse.com/security/cve/CVE-2025-38177.html * https://www.suse.com/security/cve/CVE-2025-38181.html * https://www.suse.com/security/cve/CVE-2025-38498.html * https://www.suse.com/security/cve/CVE-2025-38555.html * https://bugzilla.suse.com/show_bug.cgi?id=1231862 * https://bugzilla.suse.com/show_bug.cgi?id=1245685 * https://bugzilla.suse.com/show_bug.cgi?id=1245795 * https://bugzilla.suse.com/show_bug.cgi?id=1246001 * https://bugzilla.suse.com/show_bug.cgi?id=1246356 * https://bugzilla.suse.com/show_bug.cgi?id=1247499 * https://bugzilla.suse.com/show_bug.cgi?id=1248298 . Seven issues resolved in the SUSE securityupdate for kernel-livepatch addressing key vulnerabilities and threats.. SUSE Linux Micro, kernel update, important security patch, livepatch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 26, 2025 Important SuSE
100

SUSE: 2025:0709-1 important: kernel updates for critical issues

* bsc#1227320 * bsc#1227371 * bsc#1228585 * bsc#1236783 . # Security update for the Linux Kernel (Live Patch 23 for SLE 15 SP4) Announcement ID: SUSE-SU-2025:0709-1 Release Date: 2025-02-25T08:03:43Z Rating: important References: * bsc#1227320 * bsc#1227371 * bsc#1228585 * bsc#1236783 Cross-References: * CVE-2024-35789 * CVE-2024-36974 * CVE-2024-40956 * CVE-2024-53104 CVSS scores: * CVE-2024-35789 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-36974 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40956 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-40956 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53104 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53104 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-53104 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Live Patching 15-SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves four vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 5.14.21-150400_24_108 fixes several issues. The following security issues were fixed: * CVE-2024-35789: wifi: mac80211: check/clear fast rx for non-4addr sta VLAN changes (bsc#1227320). * CVE-2024-40956: dmaengine: idxd: Fix possible Use-After-Free in irq_process_work_list (bsc#1228585). * CVE-2024-36974: net/sched: taprio: always validate TCA_TAPRIO_ATTR_PRIOMAP (bsc#1227371). * CVE-2024-53104: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format (bsc#1236783). ## Patch Instructions: To install this SUSE update usethe SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-709=1 * SUSE Linux Enterprise Live Patching 15-SP4 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2025-709=1 ## Package List: * openSUSE Leap 15.4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_108-default-debuginfo-15-150400.2.1 * kernel-livepatch-5_14_21-150400_24_108-default-15-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_23-debugsource-15-150400.2.1 * SUSE Linux Enterprise Live Patching 15-SP4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_108-default-debuginfo-15-150400.2.1 * kernel-livepatch-5_14_21-150400_24_108-default-15-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_23-debugsource-15-150400.2.1 ## References: * https://www.suse.com/security/cve/CVE-2024-35789.html * https://www.suse.com/security/cve/CVE-2024-36974.html * https://www.suse.com/security/cve/CVE-2024-40956.html * https://www.suse.com/security/cve/CVE-2024-53104.html * https://bugzilla.suse.com/show_bug.cgi?id=1227320 * https://bugzilla.suse.com/show_bug.cgi?id=1227371 * https://bugzilla.suse.com/show_bug.cgi?id=1228585 * https://bugzilla.suse.com/show_bug.cgi?id=1236783 . Ubuntu has released an urgent kernel security patch targeting multiple vulnerabilities for LTS 20.04. Detailed installation steps provided.. Linux Kernel Security, SUSE Updates, Kernel Threats, Patch Instructions. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 25, 2025 Important SuSE
100

SUSE: 2024:2277-1 Critical Security Vulnerabilities in Git Clone

* bsc#1224168 * bsc#1224170 * bsc#1224171 * bsc#1224172 * bsc#1224173 . # Security update for git Announcement ID: SUSE-SU-2024:2277-1 Rating: important References: * bsc#1224168 * bsc#1224170 * bsc#1224171 * bsc#1224172 * bsc#1224173 Cross-References: * CVE-2024-32002 * CVE-2024-32004 * CVE-2024-32020 * CVE-2024-32021 * CVE-2024-32465 CVSS scores: * CVE-2024-32002 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2024-32002 ( NVD ): 9.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H * CVE-2024-32004 ( SUSE ): 8.1 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H * CVE-2024-32020 ( SUSE ): 3.9 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:L * CVE-2024-32021 ( SUSE ): 3.9 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:L * CVE-2024-32465 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: * Basesystem Module 15-SP6 * Development Tools Module 15-SP6 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves five vulnerabilities can now be installed. ## Description: This update for git fixes the following issues: * CVE-2024-32002: Fix recursive clones on case-insensitive filesystems that support symbolic links are susceptible to case confusion. (bsc#1224168) * CVE-2024-32004: Fixed arbitrary code execution during local clones. (bsc#1224170) * CVE-2024-32020: Fix file overwriting vulnerability during local clones. (bsc#1224171) * CVE-2024-32021: Git may create hardlinks to arbitrary user-readable files. (bsc#1224172) * CVE-2024-32465: Fixed arbitrary code execution during clone operations. (bsc#1224173) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: *Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2024-2277=1 * Development Tools Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP6-2024-2277=1 * openSUSE Leap 15.6 zypper in -t patch SUSE-2024-2277=1 openSUSE-SLE-15.6-2024-2277=1 ## Package List: * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * git-core-debuginfo-2.43.0-150600.3.3.1 * git-debugsource-2.43.0-150600.3.3.1 * git-debuginfo-2.43.0-150600.3.3.1 * git-core-2.43.0-150600.3.3.1 * Development Tools Module 15-SP6 (aarch64 ppc64le s390x x86_64) * gitk-2.43.0-150600.3.3.1 * git-email-2.43.0-150600.3.3.1 * git-web-2.43.0-150600.3.3.1 * git-svn-2.43.0-150600.3.3.1 * git-arch-2.43.0-150600.3.3.1 * git-cvs-2.43.0-150600.3.3.1 * git-daemon-debuginfo-2.43.0-150600.3.3.1 * git-daemon-2.43.0-150600.3.3.1 * git-debuginfo-2.43.0-150600.3.3.1 * git-debugsource-2.43.0-150600.3.3.1 * perl-Git-2.43.0-150600.3.3.1 * git-gui-2.43.0-150600.3.3.1 * git-2.43.0-150600.3.3.1 * Development Tools Module 15-SP6 (noarch) * git-doc-2.43.0-150600.3.3.1 * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * gitk-2.43.0-150600.3.3.1 * git-email-2.43.0-150600.3.3.1 * git-web-2.43.0-150600.3.3.1 * git-core-2.43.0-150600.3.3.1 * git-svn-2.43.0-150600.3.3.1 * git-arch-2.43.0-150600.3.3.1 * git-cvs-2.43.0-150600.3.3.1 * git-gui-2.43.0-150600.3.3.1 * git-daemon-debuginfo-2.43.0-150600.3.3.1 * git-debugsource-2.43.0-150600.3.3.1 * git-p4-2.43.0-150600.3.3.1 * git-daemon-2.43.0-150600.3.3.1 * git-debuginfo-2.43.0-150600.3.3.1 * git-core-debuginfo-2.43.0-150600.3.3.1 * perl-Git-2.43.0-150600.3.3.1 * git-credential-libsecret-debuginfo-2.43.0-150600.3.3.1 * git-credential-libsecret-2.43.0-150600.3.3.1 * git-2.43.0-150600.3.3.1 * openSUSE Leap 15.6 (noarch) * git-doc-2.43.0-150600.3.3.1 ## References: *https://www.suse.com/security/cve/CVE-2024-32002.html * https://www.suse.com/security/cve/CVE-2024-32004.html * https://www.suse.com/security/cve/CVE-2024-32020.html * https://www.suse.com/security/cve/CVE-2024-32021.html * https://www.suse.com/security/cve/CVE-2024-32465.html * https://bugzilla.suse.com/show_bug.cgi?id=1224168 * https://bugzilla.suse.com/show_bug.cgi?id=1224170 * https://bugzilla.suse.com/show_bug.cgi?id=1224171 * https://bugzilla.suse.com/show_bug.cgi?id=1224172 * https://bugzilla.suse.com/show_bug.cgi?id=1224173 . SUSE releases enhancements addressing critical vulnerabilities in seven significant network protocols. Crucial for ensuring system reliability and safeguarding user data.. SUSE Security Update, Git Threats, Important Git Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 02, 2024 Important SuSE
100

SUSE: 2024:0508-1 Important: Salt Directory Traversal Fix Details

* bsc#1193948 * bsc#1211649 * bsc#1215963 * bsc#1216284 * bsc#1219430 . # Security update for salt Announcement ID: SUSE-SU-2024:0508-1 Rating: important References: * bsc#1193948 * bsc#1211649 * bsc#1215963 * bsc#1216284 * bsc#1219430 * bsc#1219431 * jsc#MSQA-719 Cross-References: * CVE-2024-22231 * CVE-2024-22232 CVSS scores: * CVE-2024-22231 ( SUSE ): 5.0 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N * CVE-2024-22232 ( SUSE ): 7.7 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N Affected Products: * openSUSE Leap 15.3 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves two vulnerabilities, contains one feature and has four security fixes can now be installed. ## Description: This update for salt fixes the following issues: Security issues fixed: * CVE-2024-22231: Prevent directory traversal when creating syndic cache directory on the master (bsc#1219430) * CVE-2024-22232: Prevent directory traversal attacks in the master's serve_file method (bsc#1219431) Bugs fixed: * Ensure that pillar refresh loads beacons from pillar without restart * Fix the aptpkg.py unit test failure * Prefer unittest.mock to python-mock in test suite * Enable "KeepAlive" probes for Salt SSH executions (bsc#1211649) * Revert changes to set Salt configured user early in the stack (bsc#1216284) * Align behavior of some modules when using salt-call via symlink (bsc#1215963) * Fix gitfs " **env** " and improve cache cleaning (bsc#1193948) * Remove python-boto dependency for the python3-salt-testsuite package for Tumbleweed ## Special Instructions and Notes: ## Patch Instructions: To install this SUSE update use theSUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2024-508=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2024-508=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-508=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-508=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2024-508=1 * SUSE Linux Enterprise Micro 5.1 zypper in -t patch SUSE-SUSE-MicroOS-5.1-2024-508=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2024-508=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2024-508=1 ## Package List: * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * salt-standalone-formulas-configuration-3006.0-150300.53.70.1 * python3-salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 * python3-salt-testsuite-3006.0-150300.53.70.1 * salt-proxy-3006.0-150300.53.70.1 * salt-transactional-update-3006.0-150300.53.70.1 * salt-doc-3006.0-150300.53.70.1 * salt-master-3006.0-150300.53.70.1 * salt-cloud-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-ssh-3006.0-150300.53.70.1 * salt-syndic-3006.0-150300.53.70.1 * salt-api-3006.0-150300.53.70.1 * openSUSE Leap 15.3 (noarch) * salt-bash-completion-3006.0-150300.53.70.1 * salt-zsh-completion-3006.0-150300.53.70.1 * salt-fish-completion-3006.0-150300.53.70.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * salt-standalone-formulas-configuration-3006.0-150300.53.70.1 * python3-salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 * salt-proxy-3006.0-150300.53.70.1 * salt-doc-3006.0-150300.53.70.1 * salt-master-3006.0-150300.53.70.1 *salt-cloud-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-ssh-3006.0-150300.53.70.1 * salt-syndic-3006.0-150300.53.70.1 * salt-api-3006.0-150300.53.70.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * salt-bash-completion-3006.0-150300.53.70.1 * salt-zsh-completion-3006.0-150300.53.70.1 * salt-fish-completion-3006.0-150300.53.70.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * salt-standalone-formulas-configuration-3006.0-150300.53.70.1 * python3-salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 * salt-proxy-3006.0-150300.53.70.1 * salt-transactional-update-3006.0-150300.53.70.1 * salt-doc-3006.0-150300.53.70.1 * salt-master-3006.0-150300.53.70.1 * salt-cloud-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-ssh-3006.0-150300.53.70.1 * salt-syndic-3006.0-150300.53.70.1 * salt-api-3006.0-150300.53.70.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (noarch) * salt-bash-completion-3006.0-150300.53.70.1 * salt-zsh-completion-3006.0-150300.53.70.1 * salt-fish-completion-3006.0-150300.53.70.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * salt-standalone-formulas-configuration-3006.0-150300.53.70.1 * python3-salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 * salt-proxy-3006.0-150300.53.70.1 * salt-doc-3006.0-150300.53.70.1 * salt-master-3006.0-150300.53.70.1 * salt-cloud-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-ssh-3006.0-150300.53.70.1 * salt-syndic-3006.0-150300.53.70.1 * salt-api-3006.0-150300.53.70.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * salt-bash-completion-3006.0-150300.53.70.1 * salt-zsh-completion-3006.0-150300.53.70.1 * salt-fish-completion-3006.0-150300.53.70.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * salt-standalone-formulas-configuration-3006.0-150300.53.70.1 * python3-salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 *salt-proxy-3006.0-150300.53.70.1 * salt-transactional-update-3006.0-150300.53.70.1 * salt-doc-3006.0-150300.53.70.1 * salt-master-3006.0-150300.53.70.1 * salt-cloud-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-ssh-3006.0-150300.53.70.1 * salt-syndic-3006.0-150300.53.70.1 * salt-api-3006.0-150300.53.70.1 * SUSE Enterprise Storage 7.1 (noarch) * salt-bash-completion-3006.0-150300.53.70.1 * salt-zsh-completion-3006.0-150300.53.70.1 * salt-fish-completion-3006.0-150300.53.70.1 * SUSE Linux Enterprise Micro 5.1 (aarch64 s390x x86_64) * python3-salt-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 * salt-transactional-update-3006.0-150300.53.70.1 * SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64) * python3-salt-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 * salt-transactional-update-3006.0-150300.53.70.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64) * python3-salt-3006.0-150300.53.70.1 * salt-3006.0-150300.53.70.1 * salt-minion-3006.0-150300.53.70.1 * salt-transactional-update-3006.0-150300.53.70.1 ## References: * https://www.suse.com/security/cve/CVE-2024-22231.html * https://www.suse.com/security/cve/CVE-2024-22232.html * https://bugzilla.suse.com/show_bug.cgi?id=1193948 * https://bugzilla.suse.com/show_bug.cgi?id=1211649 * https://bugzilla.suse.com/show_bug.cgi?id=1215963 * https://bugzilla.suse.com/show_bug.cgi?id=1216284 * https://bugzilla.suse.com/show_bug.cgi?id=1219430 * https://bugzilla.suse.com/show_bug.cgi?id=1219431 * . SUSE issued a critical security notice for Salt, targeting vulnerabilities linked to path traversal. Users urged to apply updates promptly.. Salt Security Update, Directory Traversal Fix, SUSE Advisory, OpenSUSE Security, SUSE Patch Instructions. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 15, 2024 Important SuSE
91

Gentoo: GLSA-202401-12 Critical: Apache Tomcat Security Vulnerabilities

Multiple vulnerabilities have been found in Apache Batik, the worst of which could result in arbitrary code execution.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 202401-11 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: Apache Batik: Multiple Vulnerabilities Date: January 07, 2024 Bugs: #724534, #872689, #918088 ID: 202401-11 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======== Multiple vulnerabilities have been found in Apache Batik, the worst of which could result in arbitrary code execution. Background ========== Apache Batik is a Java-based toolkit for applications or applets that want to use images in the Scalable Vector Graphics (SVG) format for various purposes, such as display, generation or manipulation. Affected packages ================= Package Vulnerable Unaffected -------------- ------------ ------------ dev-java/batik < 1.17 > = 1.17 Description =========== Multiple vulnerabilities have been discovered in Apache Batik. Please review the CVE identifiers referenced below for details. Impact ====== Please review the referenced CVE identifiers for details. Workaround ========== There is no known workaround at this time. Resolution ========== All Apache Batik users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =dev-java/batik-1.17" References ========== [ 1 ] CVE-2018-8013 https://nvd.nist.gov/vuln/detail/CVE-2018-8013 [ 2 ] CVE-2019-17566 https://nvd.nist.gov/vuln/detail/CVE-2019-17566 [ 3 ] CVE-2020-11987 https://nvd.nist.gov/vuln/detail/CVE-2020-11987 [ 4 ] CVE-2022-38398 https://nvd.nist.gov/vuln/detail/CVE-2022-38398 [ 5 ] CVE-2022-38648 https://nvd.nist.gov/vuln/detail/CVE-2022-38648 [ 6 ] CVE-2022-40146 https://nvd.nist.gov/vuln/detail/CVE-2022-40146 [ 7 ] CVE-2022-41704 https://nvd.nist.gov/vuln/detail/CVE-2022-41704 [ 8 ] CVE-2022-42890 https://nvd.nist.gov/vuln/detail/CVE-2022-42890 [ 9 ] CVE-2022-44729 https://nvd.nist.gov/vuln/detail/CVE-2022-44729 [ 10 ] CVE-2022-44730 https://nvd.nist.gov/vuln/detail/CVE-2022-44730 Availability ============ This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/202401-11 Concerns? ========= Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org. License ======= Copyright 2024 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.5/ . Gentoo alerts users to Apache Batik security flaws; take immediate action to safeguard systems against potential remote execution risks.. Apache Batik Risks,Gentoo Advisory,Code Execution Issues. . LinuxSecurity.com Team

Calendar%202 Jan 07, 2024 Gentoo
202

openSUSE 15.4 SUSE-SU-2023:4455-1 Important: PostgreSQL13 Security Issues

This update for postgresql13 fixes the following issues: Security issues fixed:. # Security update for postgresql13 Announcement ID: SUSE-SU-2023:4455-1 Rating: important References: * bsc#1216022 * bsc#1216734 * bsc#1216960 * bsc#1216961 * bsc#1216962 Cross-References: * CVE-2023-5868 * CVE-2023-5869 * CVE-2023-5870 CVSS scores: * CVE-2023-5868 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-5869 ( SUSE ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2023-5870 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Galera for Ericsson 15 SP5 * Legacy Module 15-SP4 * openSUSE Leap 15.4 * openSUSE Leap 15.5 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves three vulnerabilities and has two security fixes can now be installed. ## Description: This update for postgresql13 fixes the following issues: Security issues fixed: * CVE-2023-5868: Fix handling of unknown-type arguments in DISTINCT "any" aggregate functions. This error led to a text-type value being interpreted as an unknown-type value (that is, azero-terminated string) at runtime. This could result in disclosure of server memory following the text value. (bsc#1216962) * CVE-2023-5869: Detect integer overflow while computing new array dimensions. When assigning new elements to array subscripts that are outside the current array bounds, an undetected integer overflow could occur in edge cases. Memory stomps that are potentially exploitable for arbitrary code execution are possible, and so is disclosure of server memory. (bsc#1216961) * CVE-2023-5870: Prevent the pg_signal_backend role from signalling background workers and autovacuum processes. The documentation says that pg_signal_backend cannot issue signals to superuser-owned processes. It was able to signal these background processes, though, because they advertise a role OID of zero. Treat that as indicating superuser ownership. The security implications of cancelling one of these process types are fairly small so far as the core code goes (we'll just start another one), but extensions might add background workers that are more vulnerable. Also ensure that the is_superuser parameter is set correctly in such processes. No specific security consequences are known for that oversight, but it might be significant for some extensions. (bsc#1216960) * Updated to 13.13: https://www.postgresql.org/docs/13/release-13-13.html * Overhaul postgresql-README.SUSE and move it from the binary package to the noarch wrapper package. * Change the unix domain socket location from /var/run to /run. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch openSUSE-SLE-15.4-2023-4455=1 * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2023-4455=1 * Legacy Module 15-SP4 zypper in -t patchSUSE-SLE-Module-Legacy-15-SP4-2023-4455=1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2023-4455=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-4455=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-4455=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2023-4455=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-4455=1 * Galera for Ericsson 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-ERICSSON-2023-4455=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2023-4455=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2023-4455=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2023-4455=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64) * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-devel-13.13-150200.5.50.1 * postgresql13-test-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 *postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * openSUSE Leap 15.4 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-devel-13.13-150200.5.50.1 * postgresql13-test-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * openSUSE Leap 15.5 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * Legacy Module 15-SP4 (aarch64 ppc64le s390x x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 *postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-debuginfo-13.13-150200.5.50.1 * postgresql13-llvmjit-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * Legacy Module 15-SP4 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (aarch64 x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (aarch64 x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 *postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (aarch64 ppc64le s390x x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 *postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * Galera for Ericsson 15 SP5 (x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 *postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * Galera for Ericsson 15 SP5 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) *postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * postgresql13-docs-13.13-150200.5.50.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * postgresql13-debugsource-13.13-150200.5.50.1 * postgresql13-pltcl-13.13-150200.5.50.1 * postgresql13-server-debuginfo-13.13-150200.5.50.1 * postgresql13-plpython-13.13-150200.5.50.1 * postgresql13-server-13.13-150200.5.50.1 * postgresql13-13.13-150200.5.50.1 * postgresql13-contrib-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-13.13-150200.5.50.1 * postgresql13-plperl-debuginfo-13.13-150200.5.50.1 * postgresql13-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-server-devel-debuginfo-13.13-150200.5.50.1 * postgresql13-pltcl-debuginfo-13.13-150200.5.50.1 * postgresql13-devel-13.13-150200.5.50.1 * postgresql13-plpython-debuginfo-13.13-150200.5.50.1 * postgresql13-plperl-13.13-150200.5.50.1 * postgresql13-contrib-13.13-150200.5.50.1 * SUSE Enterprise Storage 7.1 (noarch) * postgresql13-docs-13.13-150200.5.50.1 ## References: *https://www.suse.com/security/cve/CVE-2023-5868.html * https://www.suse.com/security/cve/CVE-2023-5869.html * https://www.suse.com/security/cve/CVE-2023-5870.html * https://bugzilla.suse.com/show_bug.cgi?id=1216022 * https://bugzilla.suse.com/show_bug.cgi?id=1216734 * https://bugzilla.suse.com/show_bug.cgi?id=1216960 * https://bugzilla.suse.com/show_bug.cgi?id=1216961 * https://bugzilla.suse.com/show_bug.cgi?id=1216962 . This crucial patch for mariadb10 addresses significant flaws and weaknesses in various Ubuntu versions.. Postgresql13 Security Update, openSUSE Advisory, Important Security Patch, Linux Update, SUSE Vulnerability Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 16, 2023 Important OpenSUSE
217

Oracle Linux 9 ELSA-2023-4327 Moderate: PostgreSQL Threat Update

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-4327 https://linux.oracle.com/errata/ELSA-2023-4327.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable LinuxNetwork: x86_64: pgaudit-1.7.0-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm pg_repack-1.4.8-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-contrib-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-docs-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-plperl-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-plpython3-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-pltcl-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-private-devel-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-private-libs-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-server-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-server-devel-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-static-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-test-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-test-rpm-macros-15.3-1.module+el9.2.0+21134+ceb95ed9.noarch.rpm postgresql-upgrade-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm postgresql-upgrade-devel-15.3-1.module+el9.2.0+21134+ceb95ed9.x86_64.rpm aarch64: pgaudit-1.7.0-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm pg_repack-1.4.8-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-contrib-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-docs-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-plperl-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-plpython3-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-pltcl-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-private-devel-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-private-libs-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-server-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-server-devel-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-static-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-test-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-test-rpm-macros-15.3-1.module+el9.2.0+21134+ceb95ed9.noarch.rpm postgresql-upgrade-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm postgresql-upgrade-devel-15.3-1.module+el9.2.0+21134+ceb95ed9.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol9/SRPMS-updates//pgaudit-1.7.0-1.module+el9.2.0+21134+ceb95ed9.src.rpm https://oss.oracle.com:443/ol9/SRPMS-updates//pg_repack-1.4.8-1.module+el9.2.0+21134+ceb95ed9.src.rpm https://oss.oracle.com:443/ol9/SRPMS-updates//postgres-decoderbufs-1.9.7-1.Final.module+el9.2.0+21134+ceb95ed9.src.rpm https://oss.oracle.com:443/ol9/SRPMS-updates//postgresql-15.3-1.module+el9.2.0+21134+ceb95ed9.src.rpm Related CVEs: CVE-2023-2454 CVE-2023-2455 Description of changes: pgaudit pg_repack postgres-decoderbufs postgresql [15.3-1] - update to 15.3 - Fixes CVE-2023-2454 and CVE-2023-2455 Resolves: #2214875 [15.2-1] - update to 15.2 - Resolves: #2128410 [15.0-2] - update postgresql-setup to 8.8 [15.0-1] - Initial import for postgresql 15 - Resolves: #2128410 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . The Oracle Linux 9 security advisory outlines various patched components to counteract potential vulnerabilities proficiently.. Oracle Linux Security, PostgreSQL Update, Linux Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Aug 10, 2023 Important Oracle
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200