Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
197

Debian 8: DLA-1807-1 Critical: Vcftools Denial Of Service Issues

Webin security lab - dbapp security Ltd found three issues in vcftools, a collection of tools to work with VCF files. Different functions in header.cpp are vulnerable to denial of services due to use-after-free . Package : vcftools Version : 0.1.12+dfsg-1+deb8u1 CVE ID : CVE-2018-11099 CVE-2018-11129 CVE-2018-11130 Webin security lab - dbapp security Ltd found three issues in vcftools, a collection of tools to work with VCF files. Different functions in header.cpp are vulnerable to denial of services due to use-after-free issues or information disclosure due to heap-based buffer over-read. For Debian 8 "Jessie", these problems have been fixed in version 0.1.12+dfsg-1+deb8u1. We recommend that you upgrade your vcftools packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Critical security advisory for vcftools: denial of service issues fixed in Debian 8 Jessie, CVE-2018-11099, CVE-2018-11129, CVE-2018-11130.. Debian LTS, vcftools, security update, denial of service. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 27, 2019 Critical Debian LTS
172

Ubuntu 16.04 LTS: USN-3974-1 Moderate: VCFtools Input Handling Crash

VCFTools could be made to crash if it received specially crafted input.. =========================================================================Ubuntu Security Notice USN-3974-1 May 13, 2019 VCFtools vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS Summary: VCFTools could be made to crash if it received specially crafted input. Software Description: - vcftools: Collection of tools to work with VCF files Details: It was discovered that VCFtools improperly handled certain input. If a user was tricked into opening a crafted input file, VCFtools could be made to crash. (CVE-2018-11099, CVE-2018-11129, CVE-2018-11130) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS: vcftools 0.1.14+dfsg-2ubuntu0.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-3974-1 CVE-2018-11099, CVE-2018-11129, CVE-2018-11130 Package Information: https://launchpad.net/ubuntu/+source/vcftools/0.1.14+dfsg-2ubuntu0.1 -- ubuntu-security-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce . The Ubuntu Security Notice USN-3975-1 reveals vulnerabilities in VCFtools leading to instability when processing specially designed data.. vcftools vulnerabilities, Ubuntu security notice, input handling issues. . Severity: Important. LinuxSecurity.com Team

Calendar 2 May 13, 2019 Important Ubuntu
89

Fedora 28: 2018:ea05fcd378 Critical: vcftools Use After Free Issue

- Update to latest upstream release 0.1.16. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-ea05fcd378 2018-12-30 01:38:50.660979 --------------------------------------------------------------------------------Name : vcftools Product : Fedora 28 Version : 0.1.16 Release : 1.fc28 URL : https://vcftools.github.io/ Summary : VCF file manipulation tools Description : A program package designed for working with VCF files, such as those generated by the 1000 Genomes Project. The aim of VCFtools is to provide methods for working with VCF files: validating, merging, comparing and calculate some basic population genetic statistics. --------------------------------------------------------------------------------Update Information: - Update to latest upstream release 0.1.16 --------------------------------------------------------------------------------ChangeLog: * Sun Aug 5 2018 Adam Huffman - 0.1.16-1 - Update to latest upstream release 0.1.16 * Sat Jul 14 2018 Fedora Release Engineering - 0.1.15-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild * Mon Apr 9 2018 Filipe Rosset - 0.1.15-6 - added gcc-c++ as BR --------------------------------------------------------------------------------References: [ 1 ] Bug #1580228 - CVE-2018-11130 vcftools: Use after free in headerp.cpp:header::add_FORMAT_descriptor() [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1580228 [ 2 ] Bug #1580225 - CVE-2018-11129 vcftools: Use after free in header.cpp:header::add_INFO_descriptor() [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1580225 [ 3 ] Bug #1580222 - CVE-2018-11099 vcftools: Heap-based buffer over-read in header.cpp:header::add_INFO_descriptor() [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1580222 --------------------------------------------------------------------------------This update can be installed with the"dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-ea05fcd378' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Essential security patch for vcftools in Fedora 28 tackles numerous vulnerabilities and improves file management.. vcftools Update,Fedora Security,File Manipulation Tools. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 30, 2018 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here