Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
98

Red Hat OpenStack 16.1 RHSA-2020:5412-01 Moderate Risk of Untrusted Code

An update for python-XStatic-jQuery224 is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: python-XStatic-jQuery224 security update Advisory ID: RHSA-2020:5412-01 Product: Red Hat OpenStack Platform Advisory URL: https://access.redhat.com/errata/RHSA-2020:5412 Issue date: 2020-12-15 CVE Names: CVE-2020-11023 ==================================================================== 1. Summary: An update for python-XStatic-jQuery224 is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenStack Platform 16.1 - noarch 3. Description: python-XStatic-jQuery is the jQuery javascript library packaged for Python's setuptools Security Fix(es): * Passing HTML containing elements to manipulation methods could result in untrusted code execution (CVE-2020-11023) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1850004 - CVE-2020-11023 jquery: Passing HTML containing elements to manipulation methods could result in untrusted code execution 6. Package List: Red Hat OpenStackPlatform 16.1: Source: python-XStatic-jQuery224-2.2.4.1-3.el8ost.src.rpm noarch: python3-XStatic-jQuery224-2.2.4.1-3.el8ost.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2020-11023 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBX9kD4NzjgjWX9erEAQjXaQ//a3f5WycvwPH8IvPGcQEa8pxaOvQSQ2gY POuJRbf4KXFjYoT9gMgeJGxewguWNhn+NKJ7snKtm4YV1jfIlTbVoMIKeNE+aqSI /l0EJtyDeg+UrDvhUQMJV23KHG1Alys6jqeHTfzn7MRITxdQBH0eJFKRnICUd5LF 70bt5G10zhuu/R7M3xc1YXgtJi2TK6PNjtcjnIYayhQsQXQj56bKM2CDmHZM/14u UqhJXtqkeaeVRiIWLBcOTaD6JSy0FAkocQFFfapc9g2pLwJo/KsgwfQ+iMyOLtmB j8clhXMtSD3WQg4bJw13hYEt82ABcCWN5ulraictr+JRzviYSEKje43Nu05wzf13 vMfyFXM/QMcFhjw8G8nvh5YSdk3ic4LA0VtsoCUtSMZb8C+VwbnHlWLxKgm+Dsze C/6zAzR0Im7Y8X0iNmlZdQPp22l3SrOUJS1kkNtakAIQJ99lwn1JTfk8q6Prbv6I uLaDxmG6+N3VuSD4eTAW19L8N8leByL9iFOcLeV2oFy8Nph8FVl2kBkuqEX0MBhZ NE3R1ZP4krcDJpjPeIIt4i6S0unx0glW/1v8v4M32FXKYBbbixxEnF/DV3bCEYqg I/ckwMONk2WQXRGe6vEdYkCxh6WENFQRpvEMt0fI2270iQPFpRhtleycij1CtUDU lxJCOeCr2tI=RBZi -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Security enhancement released for python-XStatic-jQuery224 on Red Hat OpenStack targeting vulnerabilities related to unauthorized code execution.. python-XStatic-jQuery224, Red Hat OpenStack, code execution fix. . LinuxSecurity.com Team

Calendar 2 Dec 15, 2020 Red Hat
89

Fedora Core 3: FEDORA-2005-345 Moderate: kdewebdev Untrusted Execution

Updated package. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-345 2005-04-28 ---------------------------------------------------------------------Product : Fedora Core 3 Name : kdewebdev Version : 3.3.1 Release : 2.1 Summary : WEB Development package for the K Desktop Environment. Description : The kdewebdev package contains Quanta Plus and other applications, which are useful for web development. They are runtime dependencies of Quanta Plus, and it is highly recommended that you install them. ---------------------------------------------------------------------* Wed Apr 27 2005 Than Ngo 6:3.3.1-2.1 - apply patch to fix CAN-2005-0754, Kommander untrusted code execution, thanks to KDE security team * Mon Oct 18 2004 Than Ngo 6:3.3.1-2 - rebuilt ---------------------------------------------------------------------This update can be downloaded from: 4d5d22019cab362058135ec8faa14d25 SRPMS/kdewebdev-3.3.1-2.1.src.rpm 59d982f1666a49d1085946700e52f30d x86_64/kdewebdev-3.3.1-2.1.x86_64.rpm 1535e28501e0d82b95e51aeabc032b44 x86_64/kdewebdev-devel-3.3.1-2.1.x86_64.rpm 26226ae521ad3134352bd9b99fbece49 x86_64/debug/kdewebdev-debuginfo-3.3.1-2.1.x86_64.rpm a749308d15c2d15e3bd00d859c06ee92 i386/kdewebdev-3.3.1-2.1.i386.rpm 1cb8f8ec42a9810a12a2113c02d09b45 i386/kdewebdev-devel-3.3.1-2.1.i386.rpm 2d7c68a65e20f78fc856c4dc55dbb527 i386/debug/kdewebdev-debuginfo-3.3.1-2.1.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . KDEWebDev release addresses potential risks linked to unverified code execution in Fedora Core 3 to improve system integrity and performance.. Fedora Core 3,kdewebdev,untrusted execution,security patch. . LinuxSecurity.com Team

Calendar 2 Apr 28, 2005 Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here