Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
100

SUSE: 2024:3074-1 Low: Unbound Null Pointer Dereference

* bsc#1229068 Cross-References: * CVE-2024-43167 . # Security update for unbound Announcement ID: SUSE-SU-2024:3074-1 Rating: low References: * bsc#1229068 Cross-References: * CVE-2024-43167 CVSS scores: * CVE-2024-43167 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2024-43167 ( SUSE ): 2.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L Affected Products: * Basesystem Module 15-SP5 * openSUSE Leap 15.5 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Package Hub 15 15-SP5 An update that solves one vulnerability can now be installed. ## Description: This update for unbound fixes the following issues: * CVE-2024-43167: Fix null pointer dereference issue in function ub_ctx_set_fwd (bsc#1229068) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2024-3074=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2024-3074=1 * Basesystem Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2024-3074=1 * SUSE Package Hub 15 15-SP5 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2024-3074=1 ## Package List: * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * unbound-devel-1.20.0-150100.10.16.1 * unbound-anchor-1.20.0-150100.10.16.1 * unbound-debuginfo-1.20.0-150100.10.16.1 * unbound-python-1.20.0-150100.10.16.1 * unbound-python-debuginfo-1.20.0-150100.10.16.1 * unbound-debugsource-1.20.0-150100.10.16.1 * libunbound8-debuginfo-1.20.0-150100.10.16.1 *libunbound8-1.20.0-150100.10.16.1 * unbound-1.20.0-150100.10.16.1 * unbound-anchor-debuginfo-1.20.0-150100.10.16.1 * openSUSE Leap 15.5 (noarch) * unbound-munin-1.20.0-150100.10.16.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * unbound-debuginfo-1.20.0-150100.10.16.1 * unbound-anchor-1.20.0-150100.10.16.1 * unbound-debugsource-1.20.0-150100.10.16.1 * libunbound8-debuginfo-1.20.0-150100.10.16.1 * libunbound8-1.20.0-150100.10.16.1 * Basesystem Module 15-SP5 (aarch64 ppc64le s390x x86_64) * unbound-devel-1.20.0-150100.10.16.1 * unbound-debuginfo-1.20.0-150100.10.16.1 * unbound-anchor-1.20.0-150100.10.16.1 * unbound-debugsource-1.20.0-150100.10.16.1 * libunbound8-debuginfo-1.20.0-150100.10.16.1 * libunbound8-1.20.0-150100.10.16.1 * unbound-anchor-debuginfo-1.20.0-150100.10.16.1 * SUSE Package Hub 15 15-SP5 (aarch64 ppc64le s390x x86_64) * unbound-python-1.20.0-150100.10.16.1 * unbound-debuginfo-1.20.0-150100.10.16.1 * unbound-debugsource-1.20.0-150100.10.16.1 * unbound-python-debuginfo-1.20.0-150100.10.16.1 * unbound-1.20.0-150100.10.16.1 ## References: * https://www.suse.com/security/cve/CVE-2024-43167.html * https://bugzilla.suse.com/show_bug.cgi?id=1229068 . An update for unbound security in SUSE has been released to fix a minor vulnerability. Keep your systems current.. SUSE Security Advisory, Unbound Update, Linux Security Patch. . Severity: Low. LinuxSecurity.com Team

Calendar 2 Sep 02, 2024 Low SuSE
217

Oracle Linux 9 ELSA-2024-1750 critical: Unbound access control update

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-1750 https://linux.oracle.com/errata/ELSA-2024-1750.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: python3-unbound-1.16.2-3.el9_3.5.x86_64.rpm unbound-1.16.2-3.el9_3.5.x86_64.rpm unbound-libs-1.16.2-3.el9_3.5.i686.rpm unbound-libs-1.16.2-3.el9_3.5.x86_64.rpm unbound-devel-1.16.2-3.el9_3.5.i686.rpm unbound-devel-1.16.2-3.el9_3.5.x86_64.rpm aarch64: python3-unbound-1.16.2-3.el9_3.5.aarch64.rpm unbound-1.16.2-3.el9_3.5.aarch64.rpm unbound-libs-1.16.2-3.el9_3.5.aarch64.rpm unbound-devel-1.16.2-3.el9_3.5.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol9/SRPMS-updates//unbound-1.16.2-3.el9_3.5.src.rpm Related CVEs: CVE-2024-1488 Description of changes: [1.16.2-3.5] - Rebuilt again with z-stream target [1.16.2-3.4] - Correct typo in new config file [1.16.2-3.3] - Ensure group access correction reaches also updated configs (CVE-2024-1488) [1.16.2-3.2] - Ensure only unbound group can change configuration (CVE-2024-1488) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Advisory ELSA-2024-1751 highlights essential upgrades for OpenSSH, addressing severe security flaws that compromise access.. Oracle Linux, Unbound Security, Critical Update, Access Control. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 12, 2024 Critical Oracle
98

Red Hat Enterprise Linux 8 RHSA-2023:2771 Moderate: Unbound DNS Attack

An update for unbound is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: unbound security and bug fix update Advisory ID: RHSA-2023:2771-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:2771 Issue date: 2023-05-16 CVE Names: CVE-2022-3204 ==================================================================== 1. Summary: An update for unbound is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, ppc64le, s390x, x86_64 3. Description: The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver. Security Fix(es): * unbound: NRDelegation attack leads to uncontrolled resource consumption (Non-Responsive Delegation Attack) (CVE-2022-3204) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.8 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, referto: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2128947 - CVE-2022-3204 unbound: NRDelegation attack leads to uncontrolled resource consumption (Non-Responsive Delegation Attack) 2135322 - failing devel man pages for rhel 8 6. Package List: Red Hat Enterprise Linux AppStream (v. 8): Source: unbound-1.16.2-5.el8.src.rpm aarch64: python3-unbound-1.16.2-5.el8.aarch64.rpm python3-unbound-debuginfo-1.16.2-5.el8.aarch64.rpm unbound-1.16.2-5.el8.aarch64.rpm unbound-debuginfo-1.16.2-5.el8.aarch64.rpm unbound-debugsource-1.16.2-5.el8.aarch64.rpm unbound-devel-1.16.2-5.el8.aarch64.rpm unbound-libs-1.16.2-5.el8.aarch64.rpm unbound-libs-debuginfo-1.16.2-5.el8.aarch64.rpm ppc64le: python3-unbound-1.16.2-5.el8.ppc64le.rpm python3-unbound-debuginfo-1.16.2-5.el8.ppc64le.rpm unbound-1.16.2-5.el8.ppc64le.rpm unbound-debuginfo-1.16.2-5.el8.ppc64le.rpm unbound-debugsource-1.16.2-5.el8.ppc64le.rpm unbound-devel-1.16.2-5.el8.ppc64le.rpm unbound-libs-1.16.2-5.el8.ppc64le.rpm unbound-libs-debuginfo-1.16.2-5.el8.ppc64le.rpm s390x: python3-unbound-1.16.2-5.el8.s390x.rpm python3-unbound-debuginfo-1.16.2-5.el8.s390x.rpm unbound-1.16.2-5.el8.s390x.rpm unbound-debuginfo-1.16.2-5.el8.s390x.rpm unbound-debugsource-1.16.2-5.el8.s390x.rpm unbound-devel-1.16.2-5.el8.s390x.rpm unbound-libs-1.16.2-5.el8.s390x.rpm unbound-libs-debuginfo-1.16.2-5.el8.s390x.rpm x86_64: python3-unbound-1.16.2-5.el8.x86_64.rpm python3-unbound-debuginfo-1.16.2-5.el8.i686.rpm python3-unbound-debuginfo-1.16.2-5.el8.x86_64.rpm unbound-1.16.2-5.el8.x86_64.rpm unbound-debuginfo-1.16.2-5.el8.i686.rpm unbound-debuginfo-1.16.2-5.el8.x86_64.rpm unbound-debugsource-1.16.2-5.el8.i686.rpm unbound-debugsource-1.16.2-5.el8.x86_64.rpm unbound-devel-1.16.2-5.el8.i686.rpm unbound-devel-1.16.2-5.el8.x86_64.rpm unbound-libs-1.16.2-5.el8.i686.rpm unbound-libs-1.16.2-5.el8.x86_64.rpm unbound-libs-debuginfo-1.16.2-5.el8.i686.rpm unbound-libs-debuginfo-1.16.2-5.el8.x86_64.rpm These packages are GPG signed by Red Hat for security. Our keyand details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-3204 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/8/html/8.8_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBZGNwC9zjgjWX9erEAQiZGQ/+PwvyBCGfx+saizKfgrSwslCDfGUB2X6x 4SDvt3L7YB6VdYMS8sZWTBh8VPWVGsS2vSxHhInYwzO6G5z+RhWNzvSU1F2ochKW ukqTRzKhWT6+ASZNbMqhPaYvWEctBUIAOLS+u0c1o4la7tZYj3gSgwApaFqc/hqO Hqf4UUNGxFLjUqip/1Ja5UbFhv6PaSjwZonxL3rEZtsUKTXIBLtPGshQi5tNILr7 JD758VmPgxOrP9ixBiAkJPO+LQRJtg1tHSdLhRjmQAoUIh7MImqBXeVSQBtKGhaS IsuLDBG4UXC9dMSwzBazYnvPiTE4V+XYizIqlrlZAdKy5+qq3Kzj/HaHyRtVBb2P o7pGen9dyw0Rnfs4bQI1vU4pMflws7MLXkGRdhmu+CMLNv4SppDfhN8tOj6cYiVx 3/TnCy19qQGfNNEeuOAeYCLeiKYvN7IeBWvOkrAT6OWcThp7GFhSoEtGn91AM5qN pJ20/3KhkWvHMmNPxBVDtCh4XfQtcda9WSKMcBjt7SopwJ2FM2ddZi48JJRZ+LBZ RljejbB4+bMeU8gD3bkMBSkULWren6izuCti1CXvPcmTb+c39LwByOTFeofjnaqz K9mZrvqagb2A6NpB21r5VLrqaflRGxyQ5MXSn2bGPvymS++xguVd0AvjLXjFPHwE 7qQthjxNwZI=O8Dd -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A significant enhancement for Unbound in RHEL 8 resolves a moderate vulnerability impacting DNS functionality. Find out more.. Unbound Security Update, RHEL 8 Update, DNS Attack Mitigation. . LinuxSecurity.com Team

Calendar 2 May 16, 2023 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here