Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 521
Alerts This Week
Warning Icon 1 521

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 2 articles for you...
217

Oracle Linux 9: ELSA-2023-0303 Moderate: Usbguard Memory Leak

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-0303 https://linux.oracle.com/errata/ELSA-2023-0303.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: usbguard-1.0.0-10.el9_1.2.i686.rpm usbguard-1.0.0-10.el9_1.2.x86_64.rpm usbguard-dbus-1.0.0-10.el9_1.2.x86_64.rpm usbguard-notifier-1.0.0-10.el9_1.2.x86_64.rpm usbguard-selinux-1.0.0-10.el9_1.2.noarch.rpm usbguard-tools-1.0.0-10.el9_1.2.x86_64.rpm aarch64: usbguard-1.0.0-10.el9_1.2.aarch64.rpm usbguard-dbus-1.0.0-10.el9_1.2.aarch64.rpm usbguard-notifier-1.0.0-10.el9_1.2.aarch64.rpm usbguard-selinux-1.0.0-10.el9_1.2.noarch.rpm usbguard-tools-1.0.0-10.el9_1.2.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol9/SRPMS-updates//usbguard-1.0.0-10.el9_1.2.src.rpm Related CVEs: CVE-2019-25058 Description of changes: [1.0.0-10.2] - Fix dbus memory leak on connection failure - Fix unauthorized access via D-bus Resolves: rhbz#2127877 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Update ELSA-2023-0304 presents enhancements for firewalld that address various vulnerabilities and performance improvements.. Oracle Linux, Usbguard Update, Memory Leak Fix, Security Fix. . LinuxSecurity.com Team

Calendar%202 Jan 24, 2023 Oracle
98

Red Hat Enterprise Linux 9: RHSA-2023:0303-01 Moderate Usbguard Access Issue

An update for usbguard is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: usbguard security update Advisory ID: RHSA-2023:0303-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:0303 Issue date: 2023-01-23 CVE Names: CVE-2019-25058 ==================================================================== 1. Summary: An update for usbguard is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 9) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: The USBGuard software framework provides system protection against intrusive USB devices by implementing basic whitelisting and blacklisting capabilities based on device attributes. To enforce a user-defined policy, USBGuard uses the Linux kernel USB device authorization feature. Security Fix(es): * usbguard: Fix unauthorized access via D-Bus (CVE-2019-25058) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed(https://bugzilla.redhat.com/): 2058465 - CVE-2019-25058 usbguard: Fix unauthorized access via D-Bus 6. Package List: Red Hat Enterprise Linux AppStream (v.9): Source: usbguard-1.0.0-10.el9_1.2.src.rpm aarch64: usbguard-1.0.0-10.el9_1.2.aarch64.rpm usbguard-dbus-1.0.0-10.el9_1.2.aarch64.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_1.2.aarch64.rpm usbguard-debuginfo-1.0.0-10.el9_1.2.aarch64.rpm usbguard-debugsource-1.0.0-10.el9_1.2.aarch64.rpm usbguard-notifier-1.0.0-10.el9_1.2.aarch64.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_1.2.aarch64.rpm usbguard-tools-1.0.0-10.el9_1.2.aarch64.rpm usbguard-tools-debuginfo-1.0.0-10.el9_1.2.aarch64.rpm noarch: usbguard-selinux-1.0.0-10.el9_1.2.noarch.rpm ppc64le: usbguard-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-dbus-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-debuginfo-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-debugsource-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-notifier-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-tools-1.0.0-10.el9_1.2.ppc64le.rpm usbguard-tools-debuginfo-1.0.0-10.el9_1.2.ppc64le.rpm s390x: usbguard-1.0.0-10.el9_1.2.s390x.rpm usbguard-dbus-1.0.0-10.el9_1.2.s390x.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_1.2.s390x.rpm usbguard-debuginfo-1.0.0-10.el9_1.2.s390x.rpm usbguard-debugsource-1.0.0-10.el9_1.2.s390x.rpm usbguard-notifier-1.0.0-10.el9_1.2.s390x.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_1.2.s390x.rpm usbguard-tools-1.0.0-10.el9_1.2.s390x.rpm usbguard-tools-debuginfo-1.0.0-10.el9_1.2.s390x.rpm x86_64: usbguard-1.0.0-10.el9_1.2.i686.rpm usbguard-1.0.0-10.el9_1.2.x86_64.rpm usbguard-dbus-1.0.0-10.el9_1.2.x86_64.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_1.2.i686.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_1.2.x86_64.rpm usbguard-debuginfo-1.0.0-10.el9_1.2.i686.rpm usbguard-debuginfo-1.0.0-10.el9_1.2.x86_64.rpm usbguard-debugsource-1.0.0-10.el9_1.2.i686.rpm usbguard-debugsource-1.0.0-10.el9_1.2.x86_64.rpm usbguard-notifier-1.0.0-10.el9_1.2.x86_64.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_1.2.i686.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_1.2.x86_64.rpm usbguard-tools-1.0.0-10.el9_1.2.x86_64.rpm usbguard-tools-debuginfo-1.0.0-10.el9_1.2.i686.rpm usbguard-tools-debuginfo-1.0.0-10.el9_1.2.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2019-25058 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY863F9zjgjWX9erEAQiW4g/6AzxaRlHgk/XYL+7W2Ossa5IDbEAQJdwG s/MuhV6WO4FyVfR8prWU8xySppJqzSx2dG0hsStRc3vYsILJO1qS1HbuDnMDIdAY ircEF2GgBKBc3IccxM7l5Vmy1d6KiEpba8QyM6g6B0m9rADamwIuZuZiWrzAKeHW ZyKZQe08Xs0eUgYELmgFkiWO9o9yzG3iZRg5XepnyoliD3hprJm2psN0WS+ZaRmG tz7Ggk5iDNHVHKp8jG1SmyiF5HAW1reHUncmcUmgCc7pHWxSAG2TW6Sa35c8bX1E I2YfxonlywoKPmHYTpBBzdN9UdIQm1Q6XwmAgvydZQ3TxxQaxYMGDD311ot4iDKX aRVz642wrGi39/Sk+7Bhm/qfm2cA/N1+nD/iPQ5dhFzzSUs6dq770LAenNbH+kDS 6CIcSXnOu/Z7H/fzMdxmgb1ymKNrJ8AnlD700Z6YXaBsuH69qzzbQkzKdD6mJdc5 Fvkbo9Tf8uNpdUjfgRUuh/0nlbBPqnV5gn58rIEGOMnlT1isTYvAtY0hf2jU0L4K 7LBGa330+sezxya3qu1iqvhA+k3lmI12zaJlLZS82vRSk/OM64B9fXRKjadOSkMN 426XeGsry4wWiqopggdELVUrX8z9/YuHhmk5S+wMbnLSyf5sglyVPgRoXMnyWU/2 O5JKdIJ4vQM=IIOw -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A new update for firewalld in Red Hat Enterprise Linux 9 resolves critical exposure weaknesses that have been rated as high severity.. usbguard Update, Red Hat Advisory, Security Impact, Linux Protection. . LinuxSecurity.com Team

Calendar%202 Jan 23, 2023 Red Hat
217

Oracle Linux 8 ELSA-2023-0087: Moderate Usbguard Security Update

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-0087 https://linux.oracle.com/errata/ELSA-2023-0087.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: usbguard-1.0.0-8.el8_7.2.i686.rpm usbguard-1.0.0-8.el8_7.2.x86_64.rpm usbguard-dbus-1.0.0-8.el8_7.2.x86_64.rpm usbguard-notifier-1.0.0-8.el8_7.2.x86_64.rpm usbguard-selinux-1.0.0-8.el8_7.2.noarch.rpm usbguard-tools-1.0.0-8.el8_7.2.x86_64.rpm aarch64: usbguard-1.0.0-8.el8_7.2.aarch64.rpm usbguard-dbus-1.0.0-8.el8_7.2.aarch64.rpm usbguard-notifier-1.0.0-8.el8_7.2.aarch64.rpm usbguard-selinux-1.0.0-8.el8_7.2.noarch.rpm usbguard-tools-1.0.0-8.el8_7.2.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates/usbguard-1.0.0-8.el8_7.2.src.rpm Related CVEs: CVE-2019-25058 Description of changes: [1.0.0-8.2] - Fix unauthorized access via D-bus - Fix memory leak on D-bus connection failure Resolves: rhbz#2127848 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . The Oracle Linux Security Advisory ELSA-2023-0088 pertains to a critical update for the firewall that addresses vulnerabilities related to arbitrary code execution and denial of service risks.. Oracle Linux Update, usbguard Security Advisory, ELSA-2023-0087, Oracle Security Update. . LinuxSecurity.com Team

Calendar%202 Jan 13, 2023 Oracle
98

Red Hat Enterprise Linux 8 RHSA-2023-0087-01 Moderate Usbguard D-Bus Fix

An update for usbguard is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: usbguard security update Advisory ID: RHSA-2023:0087-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:0087 Issue date: 2023-01-12 CVE Names: CVE-2019-25058 ==================================================================== 1. Summary: An update for usbguard is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: The USBGuard software framework provides system protection against intrusive USB devices by implementing basic whitelisting and blacklisting capabilities based on device attributes. To enforce a user-defined policy, USBGuard uses the Linux kernel USB device authorization feature. Security Fix(es): * usbguard: Fix unauthorized access via D-Bus (CVE-2019-25058) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed(https://bugzilla.redhat.com/): 2058465 - CVE-2019-25058 usbguard: Fix unauthorized access via D-Bus 6. Package List: Red Hat Enterprise Linux AppStream (v.8): Source: usbguard-1.0.0-8.el8_7.2.src.rpm aarch64: usbguard-1.0.0-8.el8_7.2.aarch64.rpm usbguard-dbus-1.0.0-8.el8_7.2.aarch64.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_7.2.aarch64.rpm usbguard-debuginfo-1.0.0-8.el8_7.2.aarch64.rpm usbguard-debugsource-1.0.0-8.el8_7.2.aarch64.rpm usbguard-notifier-1.0.0-8.el8_7.2.aarch64.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_7.2.aarch64.rpm usbguard-tools-1.0.0-8.el8_7.2.aarch64.rpm usbguard-tools-debuginfo-1.0.0-8.el8_7.2.aarch64.rpm noarch: usbguard-selinux-1.0.0-8.el8_7.2.noarch.rpm ppc64le: usbguard-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-dbus-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-debuginfo-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-debugsource-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-notifier-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-tools-1.0.0-8.el8_7.2.ppc64le.rpm usbguard-tools-debuginfo-1.0.0-8.el8_7.2.ppc64le.rpm s390x: usbguard-1.0.0-8.el8_7.2.s390x.rpm usbguard-dbus-1.0.0-8.el8_7.2.s390x.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_7.2.s390x.rpm usbguard-debuginfo-1.0.0-8.el8_7.2.s390x.rpm usbguard-debugsource-1.0.0-8.el8_7.2.s390x.rpm usbguard-notifier-1.0.0-8.el8_7.2.s390x.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_7.2.s390x.rpm usbguard-tools-1.0.0-8.el8_7.2.s390x.rpm usbguard-tools-debuginfo-1.0.0-8.el8_7.2.s390x.rpm x86_64: usbguard-1.0.0-8.el8_7.2.i686.rpm usbguard-1.0.0-8.el8_7.2.x86_64.rpm usbguard-dbus-1.0.0-8.el8_7.2.x86_64.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_7.2.i686.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_7.2.x86_64.rpm usbguard-debuginfo-1.0.0-8.el8_7.2.i686.rpm usbguard-debuginfo-1.0.0-8.el8_7.2.x86_64.rpm usbguard-debugsource-1.0.0-8.el8_7.2.i686.rpm usbguard-debugsource-1.0.0-8.el8_7.2.x86_64.rpm usbguard-notifier-1.0.0-8.el8_7.2.x86_64.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_7.2.i686.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_7.2.x86_64.rpm usbguard-tools-1.0.0-8.el8_7.2.x86_64.rpm usbguard-tools-debuginfo-1.0.0-8.el8_7.2.i686.rpm usbguard-tools-debuginfo-1.0.0-8.el8_7.2.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2019-25058 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY7/i2tzjgjWX9erEAQhLZg/9EezWfPlWIbBiHutx0JhwylMY4T3OqiWW 1gTipQUolrsTWSGjTOmep+1QclnkXWS1rO3RTlu/5tuT/b1kIC7rictgE07KBYIc Z7KXbSF65t5saQV/QkQx+IrPuIJBLr6M+8+jbzn+tXHvfawNBZQmesVSkwX0BvsA X/Rjjy4y1aAJL3+IgreVvDAg8a/SdkckdPhHHTsFXHXUfN5u/mz+3f37XSbzo7Vf ZzIBkI/Vh4NU+6rxZDpeDCDAeEeYrMlWCdF4FwmanLO4Lud+7vkvL1bfEb86GJ+j 5bs9U1dLAdBuFop/VF3tuC0WSnFu1S3jAhboR+ZM95AUpIMzAWjr45Ub/tXE+eeM uXrgZd7RUpYVzzmo3aErJ2HC0iAzaLlhllikoCfplIDC0w6IquKfsucNXy4KJD+z 2uxfHYNa/y8Z9eARXJyN7K29hlNwHA9z3SXY9ou0mj0+Ga4iqEmFJ6k62eR9B2jo HmfQOraQ5prhXJQcoIhjh5o71gmy4aYsQqODA4TtQa1PGR/GkHYGuxFnYqAodthH 1SJmjA6D+RKivEdE4A7OtlbrIs/924YcLYeZWwgdJWt+kOv4o8j/gtgqx6oPySuw y2qOKQB6o0HNBAmNZ9CrSTyhaJ5eD1C05mlRtschBfOzcn73VhFDobvmOgpRGe70 ZUy8WiES6EE=jYT+ -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Oracle has rolled out a significant security patch for netfilter, addressing an exploit regarding unauthorized socket access that affects Linux Server 7.. usbguard Security Patch, Enterprise Linux Update, Red Hat Security Advisory. . LinuxSecurity.com Team

Calendar%202 Jan 12, 2023 Red Hat
98

Red Hat 9.0: RHSA-2022:8971-01 Moderate: Usbguard Access Control

An update for usbguard is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: usbguard security update Advisory ID: RHSA-2022:8971-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:8971 Issue date: 2022-12-13 CVE Names: CVE-2019-25058 ==================================================================== 1. Summary: An update for usbguard is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v.9.0) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: The USBGuard software framework provides system protection against intrusive USB devices by implementing basic whitelisting and blacklisting capabilities based on device attributes. To enforce a user-defined policy, USBGuard uses the Linux kernel USB device authorization feature. Security Fix(es): * usbguard: Fix unauthorized access via D-Bus (CVE-2019-25058) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed(https://bugzilla.redhat.com/): 2058465 - CVE-2019-25058 usbguard: Fix unauthorized access via D-Bus 6. Package List: Red Hat Enterprise Linux AppStream EUS(v.9.0): Source: usbguard-1.0.0-10.el9_0.1.src.rpm aarch64: usbguard-1.0.0-10.el9_0.1.aarch64.rpm usbguard-dbus-1.0.0-10.el9_0.1.aarch64.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_0.1.aarch64.rpm usbguard-debuginfo-1.0.0-10.el9_0.1.aarch64.rpm usbguard-debugsource-1.0.0-10.el9_0.1.aarch64.rpm usbguard-notifier-1.0.0-10.el9_0.1.aarch64.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_0.1.aarch64.rpm usbguard-tools-1.0.0-10.el9_0.1.aarch64.rpm usbguard-tools-debuginfo-1.0.0-10.el9_0.1.aarch64.rpm noarch: usbguard-selinux-1.0.0-10.el9_0.1.noarch.rpm ppc64le: usbguard-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-dbus-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-debuginfo-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-debugsource-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-notifier-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-tools-1.0.0-10.el9_0.1.ppc64le.rpm usbguard-tools-debuginfo-1.0.0-10.el9_0.1.ppc64le.rpm s390x: usbguard-1.0.0-10.el9_0.1.s390x.rpm usbguard-dbus-1.0.0-10.el9_0.1.s390x.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_0.1.s390x.rpm usbguard-debuginfo-1.0.0-10.el9_0.1.s390x.rpm usbguard-debugsource-1.0.0-10.el9_0.1.s390x.rpm usbguard-notifier-1.0.0-10.el9_0.1.s390x.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_0.1.s390x.rpm usbguard-tools-1.0.0-10.el9_0.1.s390x.rpm usbguard-tools-debuginfo-1.0.0-10.el9_0.1.s390x.rpm x86_64: usbguard-1.0.0-10.el9_0.1.i686.rpm usbguard-1.0.0-10.el9_0.1.x86_64.rpm usbguard-dbus-1.0.0-10.el9_0.1.x86_64.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_0.1.i686.rpm usbguard-dbus-debuginfo-1.0.0-10.el9_0.1.x86_64.rpm usbguard-debuginfo-1.0.0-10.el9_0.1.i686.rpm usbguard-debuginfo-1.0.0-10.el9_0.1.x86_64.rpm usbguard-debugsource-1.0.0-10.el9_0.1.i686.rpm usbguard-debugsource-1.0.0-10.el9_0.1.x86_64.rpm usbguard-notifier-1.0.0-10.el9_0.1.x86_64.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_0.1.i686.rpm usbguard-notifier-debuginfo-1.0.0-10.el9_0.1.x86_64.rpm usbguard-tools-1.0.0-10.el9_0.1.x86_64.rpm usbguard-tools-debuginfo-1.0.0-10.el9_0.1.i686.rpm usbguard-tools-debuginfo-1.0.0-10.el9_0.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2019-25058 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY5j97NzjgjWX9erEAQhTcBAAn6skhJsg8EMtazzw72y0ldFQKdb8HtpT 0Nt/ybt7pYJSOEFISnpk6P8hHRBvJp2YTWRvxNvqpL0Ufjy+oBvzTBAVek/tq+S9 n88m4/mh171G5ZD5aDmzdvyVihET9WgsdFRpS0DUmPSzOur/1gHDVpArYTPOJpLT RPuj0iF30nNRESWLNMfhnbjOuyH/r5Loo2dSo2/dpFnCm4wTMLnz1towOwdi6CoX MFxewAF402iiyTgZOlJh900SvR8Sr6MU5EQREYCYVIIwfVlQSi3r5aQABO3D8UUZ ZMr3LsJ4Qkg1x9QU1jSQ2q3pqI1ArljOda1ky56/weDkcSxcd1ctkowvvv0sU7wV FI185U0AtMBEvQYe/RdngFcSw8istKR0cLJOzAn54Gc8Ua010fPNgnMfVPmcE2YR ugbQjpIHmU2zeaGA6GbYayXpdoA+gigBQvTh6hED1rYOCbp7wAXDA1L7obMLiO99 usY2yeu5qwP45OtFiMPEUJX8pgyiGnxDcrNKB8NY3SBa+51v6CCRQ5lO57hyu88x t6CRAJft4kHCJypht9pXHDHZyijwfdJtTZd2/2aA7Be92sZc3NUpywwuJpkkFQ+p 9t/4SePMOpjh+ViZ+sUsEWxEnjnHUFbIEPseP9kFW5vbbOCrYfFxnwURQEWsX+60 gAn5cQIpi/I=PGpJ -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Linux Mint has released a notice for firewall-ng with a moderate severity level. Discover the details and potential effects of this update.. Usbguard Update, Security Advisory, Access Control, System Protection, Linux Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 13, 2022 Important Red Hat
98

Red Hat Enterprise Linux 8.6 RHSA-2022-8806-01: usbguard D-Bus Access Issue

An update for usbguard is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: usbguard security update Advisory ID: RHSA-2022:8806-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:8806 Issue date: 2022-12-06 CVE Names: CVE-2019-25058 ==================================================================== 1. Summary: An update for usbguard is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v.8.6) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: The USBGuard software framework provides system protection against intrusive USB devices by implementing basic whitelisting and blacklisting capabilities based on device attributes. To enforce a user-defined policy, USBGuard uses the Linux kernel USB device authorization feature. Security Fix(es): * usbguard: Fix unauthorized access via D-Bus (CVE-2019-25058) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed(https://bugzilla.redhat.com/): 2058465 - CVE-2019-25058 usbguard: Fix unauthorized access via D-Bus 6. Package List: Red Hat Enterprise Linux AppStream EUS(v.8.6): Source: usbguard-1.0.0-8.el8_6.1.src.rpm aarch64: usbguard-1.0.0-8.el8_6.1.aarch64.rpm usbguard-dbus-1.0.0-8.el8_6.1.aarch64.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_6.1.aarch64.rpm usbguard-debuginfo-1.0.0-8.el8_6.1.aarch64.rpm usbguard-debugsource-1.0.0-8.el8_6.1.aarch64.rpm usbguard-notifier-1.0.0-8.el8_6.1.aarch64.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_6.1.aarch64.rpm usbguard-tools-1.0.0-8.el8_6.1.aarch64.rpm usbguard-tools-debuginfo-1.0.0-8.el8_6.1.aarch64.rpm noarch: usbguard-selinux-1.0.0-8.el8_6.1.noarch.rpm ppc64le: usbguard-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-dbus-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-debuginfo-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-debugsource-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-notifier-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-tools-1.0.0-8.el8_6.1.ppc64le.rpm usbguard-tools-debuginfo-1.0.0-8.el8_6.1.ppc64le.rpm s390x: usbguard-1.0.0-8.el8_6.1.s390x.rpm usbguard-dbus-1.0.0-8.el8_6.1.s390x.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_6.1.s390x.rpm usbguard-debuginfo-1.0.0-8.el8_6.1.s390x.rpm usbguard-debugsource-1.0.0-8.el8_6.1.s390x.rpm usbguard-notifier-1.0.0-8.el8_6.1.s390x.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_6.1.s390x.rpm usbguard-tools-1.0.0-8.el8_6.1.s390x.rpm usbguard-tools-debuginfo-1.0.0-8.el8_6.1.s390x.rpm x86_64: usbguard-1.0.0-8.el8_6.1.i686.rpm usbguard-1.0.0-8.el8_6.1.x86_64.rpm usbguard-dbus-1.0.0-8.el8_6.1.x86_64.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_6.1.i686.rpm usbguard-dbus-debuginfo-1.0.0-8.el8_6.1.x86_64.rpm usbguard-debuginfo-1.0.0-8.el8_6.1.i686.rpm usbguard-debuginfo-1.0.0-8.el8_6.1.x86_64.rpm usbguard-debugsource-1.0.0-8.el8_6.1.i686.rpm usbguard-debugsource-1.0.0-8.el8_6.1.x86_64.rpm usbguard-notifier-1.0.0-8.el8_6.1.x86_64.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_6.1.i686.rpm usbguard-notifier-debuginfo-1.0.0-8.el8_6.1.x86_64.rpm usbguard-tools-1.0.0-8.el8_6.1.x86_64.rpm usbguard-tools-debuginfo-1.0.0-8.el8_6.1.i686.rpm usbguard-tools-debuginfo-1.0.0-8.el8_6.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2019-25058 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY4870NzjgjWX9erEAQiXOw/+NSx4Joq7F6IbS69zkEhwyRlQNt8UtKfq ThFnQCebAlZF1yGTgA2aFf7IBZ0WaWRKTAcMCR+G5yhH6yl7YkixtJPXgeELHlBH rqS/538YYXhXAuE4V7a/Ne/sXktS7r7hhv0/o6JdxUtjZhC64MAQV5usckGWp0Oy YnQYk94xffjg5EJN9Rlmg9j6KBwMcConIxK8B+RzGEdJN6lUiVXqcttD0NLIcZh3 s92CCl/eJn+aVqK0i4eIbTKV67bfCKYG7A4fjqkFK6fxbb+kbFJ5cZUVFdTjnCPp t1FAo/auHzj/v/RTKPP7hNzfAsEILvhjsB5x1/EzG+QzKUft2iaOFXJzXSbKnuc3 gzMq6LDkoCd6LK4QuGQ2zGMWTM1WGv4ig0FfMG7Lzi+JgyRpdKLd7Ns5yFLDzzDx pnCFyvF6qvmMXs6nYGyWTu0oisrEHzy+Qcdwag3sEAyvqBdbDBojmR7wlNA/ZUTX Hkcc/XfqT+AhBBSSpZO+in89VRYFxOlvnICVSAgz5ObtqoJHhSgjmiYCMweNkRJC biwneXhsIcZmXvOOAxJ5WZ2YzL9S+lnYO9Dmo2CKESjkdmCmXoxKW4hqk2MB0nyx dEuNyk0f6R8HqdbimBonVPdf3NCMUWmNv4bVBeyev8/Us1jwF0MpAMIsz7y0hKlg dO0UEWhMbCY=OUEn -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A significant patch for usbguard has been released to enhance the security of Red Hat Enterprise Linux, safeguarding it from unauthorized USB entry.. Red Hat Security Update, usbguard Patch, Linux D-Bus Fix. . LinuxSecurity.com Team

Calendar%202 Dec 06, 2022 Red Hat
98

Red Hat 8.4: RHSA-2022:8679-01 Moderate: usbguard D-Bus Access Issue

An update for usbguard is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: usbguard security update Advisory ID: RHSA-2022:8679-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:8679 Issue date: 2022-11-29 CVE Names: CVE-2019-25058 ==================================================================== 1. Summary: An update for usbguard is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v.8.4) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: The USBGuard software framework provides system protection against intrusive USB devices by implementing basic whitelisting and blacklisting capabilities based on device attributes. To enforce a user-defined policy, USBGuard uses the Linux kernel USB device authorization feature. Security Fix(es): * usbguard: Fix unauthorized access via D-Bus (CVE-2019-25058) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed(https://bugzilla.redhat.com/): 2058465 - CVE-2019-25058 usbguard: Fix unauthorized access via D-Bus 6. Package List: Red Hat Enterprise Linux AppStream EUS(v.8.4): Source: usbguard-1.0.0-2.el8_4.1.src.rpm aarch64: usbguard-1.0.0-2.el8_4.1.aarch64.rpm usbguard-dbus-1.0.0-2.el8_4.1.aarch64.rpm usbguard-dbus-debuginfo-1.0.0-2.el8_4.1.aarch64.rpm usbguard-debuginfo-1.0.0-2.el8_4.1.aarch64.rpm usbguard-debugsource-1.0.0-2.el8_4.1.aarch64.rpm usbguard-notifier-1.0.0-2.el8_4.1.aarch64.rpm usbguard-notifier-debuginfo-1.0.0-2.el8_4.1.aarch64.rpm usbguard-tools-1.0.0-2.el8_4.1.aarch64.rpm usbguard-tools-debuginfo-1.0.0-2.el8_4.1.aarch64.rpm noarch: usbguard-selinux-1.0.0-2.el8_4.1.noarch.rpm ppc64le: usbguard-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-dbus-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-dbus-debuginfo-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-debuginfo-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-debugsource-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-notifier-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-notifier-debuginfo-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-tools-1.0.0-2.el8_4.1.ppc64le.rpm usbguard-tools-debuginfo-1.0.0-2.el8_4.1.ppc64le.rpm s390x: usbguard-1.0.0-2.el8_4.1.s390x.rpm usbguard-dbus-1.0.0-2.el8_4.1.s390x.rpm usbguard-dbus-debuginfo-1.0.0-2.el8_4.1.s390x.rpm usbguard-debuginfo-1.0.0-2.el8_4.1.s390x.rpm usbguard-debugsource-1.0.0-2.el8_4.1.s390x.rpm usbguard-notifier-1.0.0-2.el8_4.1.s390x.rpm usbguard-notifier-debuginfo-1.0.0-2.el8_4.1.s390x.rpm usbguard-tools-1.0.0-2.el8_4.1.s390x.rpm usbguard-tools-debuginfo-1.0.0-2.el8_4.1.s390x.rpm x86_64: usbguard-1.0.0-2.el8_4.1.i686.rpm usbguard-1.0.0-2.el8_4.1.x86_64.rpm usbguard-dbus-1.0.0-2.el8_4.1.x86_64.rpm usbguard-dbus-debuginfo-1.0.0-2.el8_4.1.i686.rpm usbguard-dbus-debuginfo-1.0.0-2.el8_4.1.x86_64.rpm usbguard-debuginfo-1.0.0-2.el8_4.1.i686.rpm usbguard-debuginfo-1.0.0-2.el8_4.1.x86_64.rpm usbguard-debugsource-1.0.0-2.el8_4.1.i686.rpm usbguard-debugsource-1.0.0-2.el8_4.1.x86_64.rpm usbguard-notifier-1.0.0-2.el8_4.1.x86_64.rpm usbguard-notifier-debuginfo-1.0.0-2.el8_4.1.i686.rpm usbguard-notifier-debuginfo-1.0.0-2.el8_4.1.x86_64.rpm usbguard-tools-1.0.0-2.el8_4.1.x86_64.rpm usbguard-tools-debuginfo-1.0.0-2.el8_4.1.i686.rpm usbguard-tools-debuginfo-1.0.0-2.el8_4.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2019-25058 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY4ZVrtzjgjWX9erEAQhcGw//aM+9IHiIvv1znK1QwbtX0uLCxEme6IVn LijSTCBDetqkKxvGW65apZWkQveZx975T9kgG7rY0SX2e5JsTITL1Z7w5DAKp0rV jqtb01AV1GMpx4WcZJ7Jrl1YseAF+o1tUtMUTgjXxtieivx4v6BWpeSJ95w2H9AI Dlm8LdOuFjLO7RtaMVg0Xhr/b+Ae+sTk/DaEn9k5S7Qh2hGNCfg0o0sOHny6+lYQ ZtTcyafLsZ4nR5myt3+BzjxyQEUXP5NuSYGW212R/X5QPbfCgneJHROh11ixczwP 1nJU3bc1VgW3PbrFtxEpZ3qLyTrjqGeB2V4JthodY3Y5cX85jsMY3QlAwni1ijmI PL3hcTXoKUJkTo84mOravY4KVXCwMEIdwXiyENRb77kZbiYl1J07uD4Q5lU3GFTu c10dwWL53Aoa7WpkqD6PuqNvfpRK1Qx+a0nn/ebpu5fJXNekcKKPdh8aUnPxqhL0 i3O1ligEZ88B55Tk2byCHdp7KilCCRGzJw4s7eYfFeLXYM8hEV5kIDw9gprJUA2A rND7SqjnxPfMUuO7hdb5F9krFlvh3L3dx9xO+wnLvlWz1IalIw2HnT3XuPwqsfbI jFMSpxtceVtRBWU2Q3hOuPUBzxXg/BR68uzWJbp5UOntkbjepbXkpfOwqbhwp2AQ nRydwjwSMHE=1Kbx -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . New patch released for usbguard on Red Hat Enterprise Linux 8.4, fixing the potential D-Bus access security flaw.. usbguard updates, Red Hat security, Linux system protection, moderate security advisory, D-Bus access. . LinuxSecurity.com Team

Calendar%202 Nov 29, 2022 Red Hat
197

Debian: DLA-2980-1 Urgent: Sudo Security Vulnerability Exploit

A flaw was found in usbguard, an USB device authorization policy framework. When using the usbguard-dbus daemon an unprivileged user could make USBGuard allow all USB devices to be connected in the future. . -------------------------------------------------------------------------Debian LTS Advisory DLA-2979-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Markus Koschany April 11, 2022 https://wiki.debian.org/LTS -------------------------------------------------------------------------Package : usbguard Version : 0.6.2+ds1-2+deb9u1 CVE ID : CVE-2019-25058 Debian Bug : 1008026 A flaw was found in usbguard, an USB device authorization policy framework. When using the usbguard-dbus daemon an unprivileged user could make USBGuard allow all USB devices to be connected in the future. For Debian 9 stretch, this problem has been fixed in version 0.6.2+ds1-2+deb9u1. We recommend that you upgrade your usbguard packages. For the detailed security status of usbguard please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/usbguard Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . In light of a vulnerability identified in usbguard, this notice advises users to perform an upgrade to enhance the protection of USB device connections.. Debian LTS, Usbguard Update, Security Advisory, Device Management. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 11, 2022 Important Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200