Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
99

Slackware 13.0: SSA:2009-302-01 Critical: Xpdf Application Crash Fix

New xpdf packages are available for Slackware 9.1, 10.0, 10.1, 10.2, 11.0, 12.0, 12.1, 12.2, 13.0, and -current to fix security issues. More details about the issues may be found in the Common Vulnerabilities and Exposures (CVE) database: . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] xpdf (SSA:2009-302-01) New xpdf packages are available for Slackware 9.1, 10.0, 10.1, 10.2, 11.0, 12.0, 12.1, 12.2, 13.0, and -current to fix security issues. More details about the issues may be found in the Common Vulnerabilities and Exposures (CVE) database: https://www.cve.org/CVERecord?id=CVE-2009-3603 https://www.cve.org/CVERecord?id=CVE-2009-3604 https://www.cve.org/CVERecord?id=CVE-2009-3605 https://www.cve.org/CVERecord?id=CVE-2009-3606 https://www.cve.org/CVERecord?id=CVE-2009-3608 https://www.cve.org/CVERecord?id=CVE-2009-3609 Here are the details from the Slackware 13.0 ChangeLog: +--------------------------+ patches/packages/xpdf-3.02pl4-i486-1_slack13.0.tgz: Upgraded. This update fixes several security issues that could lead to an application crash, or execution of arbitrary code. For more information, see: https://www.cve.org/CVERecord?id=CVE-2009-3603 https://www.cve.org/CVERecord?id=CVE-2009-3604 https://www.cve.org/CVERecord?id=CVE-2009-3605 https://www.cve.org/CVERecord?id=CVE-2009-3606 https://www.cve.org/CVERecord?id=CVE-2009-3608 https://www.cve.org/CVERecord?id=CVE-2009-3609 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ HINT: Getting slow download speeds from ftp.slackware.com? Give slackware.osuosl.org a try. This is another primary FTP site for Slackware that can be considerably faster than downloading directly from ftp.slackware.com. Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating additional FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/for additional mirror sites near you. Updated package for Slackware 9.1: Updated package for Slackware 10.0: Updated package for Slackware 10.1: Updated package for Slackware 10.2: Updated package for Slackware 11.0: Updated package for Slackware 12.0: Updated package for Slackware 12.1: Updated package for Slackware 12.2: Updated package for Slackware 13.0: Updated package for Slackware x86_64 13.0: Updated package for Slackware -current: Updated package for Slackware x86_64 -current: MD5 signatures: +-------------+ Slackware 9.1 package: fd58cae84772ed2c03ca720b0a71ef49 xpdf-3.02pl4-i486-1_slack9.1.tgz Slackware 10.0 package: 37cf2a9f5c02b6585d622374cd9a8756 xpdf-3.02pl4-i486-1_slack10.0.tgz Slackware 10.1 package: a3e2b22532f7a0190782590ee5310b4b xpdf-3.02pl4-i486-1_slack10.1.tgz Slackware 10.2 package: 78d27cc6c8a33f21d7e5f21d90aa0c43 xpdf-3.02pl4-i486-1_slack10.2.tgz Slackware 11.0 package: da0134b674360e0509689ad68877a21c xpdf-3.02pl4-i486-1_slack11.0.tgz Slackware 12.0 package: e3a10ebf3f499882a8a364963d6287f9 xpdf-3.02pl4-i486-1_slack12.0.tgz Slackware 12.1 package: 83b8a9b89877987c65f9c1bf3a01b321 xpdf-3.02pl4-i486-1_slack12.1.tgz Slackware 12.2 package: ddfd41747e7f76e20a8a39911d0080ac xpdf-3.02pl4-i486-1_slack12.2.tgz Slackware 13.0 package: 4e42d51c18a7e354e961857096e09140 xpdf-3.02pl4-i486-1_slack13.0.txz Slackware x86_64 13.0 package: 977dfd83fdb4c1af3d68ffa12c882424 xpdf-3.02pl4-x86_64-1_slack13.0.txz Slackware -current package: 3c756246f0db86bea9f9f127f1461e8f xpdf-3.02pl4-i486-1.txz Slackware x86_64 -current package: f8f257349bad0cdf7d0bada5654b0190 xpdf-3.02pl4-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg xpdf-3.02pl4-i486-1_slack13.0.txz +-----+ . Recent xpdf updates available for Slackware addressing severe security vulnerabilities and enhancing package management. Upgrade today!. Slackware Security Fix, Xpdf Update, Application Crash Resolution. . Severity: Critical. LinuxSecurity.comTeam

Calendar 2 Oct 29, 2009 Critical Slackware
87

Debian 4.0: DSA 333-1 Severe: LibPNG Memory Corruption Vulnerability

There is an integer overflow in the pdftops filter from the xpdf package that can be exploited to gain the privileges of the target user.. -------------------------------------------------------------------------- Debian Security Advisory DSA 222-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze January 6th, 2003 Debian -- Debian security FAQ -------------------------------------------------------------------------- Package : xpdf Vulnerability : integer overflow Problem-Type : local, remote Debian-specific: no CVE Id : CAN-2002-1384 iDEFENSE discovered an integer overflow in the pdftops filter from the xpdf package that can be exploited to gain the privileges of the target user. This can lead to gaining privileged access to the 'lp' user if thee pdftops program is part of the print filter. For the current stable distribution (woody) this problem has been fixed in version 1.00-3.1. For the old stable distribution (potato) this problem has been fixed in version 0.90-8.1. For the unstable distribution (sid) this problem has been fixed in version 2.01-2. We recommend that you upgrade your xpdf package. wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 2.2 alias potato --------------------------------- Source archives: Size/MD5 checksum: 574 2a6a10836edfa134643e54eabdf7800a Size/MD5 checksum: 5732 6048fc73fb6c3bdb84988bfa14f39e4d Size/MD5 checksum: 391204 a7678b64713a466279b61c28ba01134b Alpha architecture: Size/MD5 checksum: 1186210ec915ccf9d83ab7e80ab01b390e4d29d ARM architecture: Size/MD5 checksum: 1044416 de2ee7c2dbc53fbd288e0c142eca2c73 Intel IA-32 architecture: Size/MD5 checksum: 970292 903b558758cecb9010d49bc011feba9c Motorola 680x0 architecture: Size/MD5 checksum: 937202 414e5f0c67a0d8dbb5403d2b3f4cdefd PowerPC architecture: Size/MD5 checksum: 998784 6e2c8520b103de3d997f22d5bd1edc43 Sun Sparc architecture: Size/MD5 checksum: 967906 4f91ac10e70deeddf31910c8b8804dcc Debian GNU/Linux 3.0 alias woody -------------------------------- Source archives: Size/MD5 checksum: 705 10b8248182e33e5f808b918164c65e1a Size/MD5 checksum: 9193 b2a726030843f6dba93fca9cf7ee2f07 Size/MD5 checksum: 397750 81f3c381cef729e4b6f4ce21cf5bbf3c Architecture independent components: Size/MD5 checksum: 38352 5d2bb590b9e8048777f97ae716ad7fd9 Size/MD5 checksum: 1284 96fad618de11d4bb5a417597f52fd140 Alpha architecture: Size/MD5 checksum: 570340 abcba0057c5163cfa16677861afe0444 Size/MD5 checksum: 1043778 fff419b1f683dda8d42c6cf5a532466a ARM architecture: Size/MD5 checksum: 486522 181d893a1d72fb57ec2a710b686d9653 Size/MD5 checksum: 885110 197c160a3a8e369120ebf6c0b3887fc2 Intel IA-32 architecture: Size/MD5 checksum: 449114 aaf65860ba521173078d4bd05d509221 Size/MD5 checksum: 827038 8e6f7917d7beab9791ae199df03ed137 Intel IA-64 architecture: Size/MD5 checksum: 681614 b5c776d364d54288eeca24b2bc3c3f16 Size/MD5 checksum: 1226210 192370f58c4ea2c0b0afe081e06c814a HP Precision architecture: Size/MD5 checksum: 563210 a299eac56445c113a2e1c854e6aa4b41 Size/MD5 checksum: 1031636 ad0fd54f0b845aeb0833f1251728f150 Motorola 680x0 architecture: Size/MD5 checksum: 427002 645824dbba65ad2d348a6506c3693786 Size/MD5checksum: 793786 a7dbbb63426e69e461f71b8e09daae1b Big endian MIPS architecture: Size/MD5 checksum: 554532 06ae29ea680a8d5147eb7ecc4e2a6a89 Size/MD5 checksum: 1015364 2c9e8af2ecfed78b81afc4b71b1b252d Little endian MIPS architecture: Size/MD5 checksum: 545672 f91403c256d83e17565a3e6d7dfcf3ec Size/MD5 checksum: 997232 37178c976f59ad89fe70250cb5a36927 PowerPC architecture: Size/MD5 checksum: 469694 7fc743072be7aa60ca276300df5c31b1 Size/MD5 checksum: 858468 0608406ee86bbb12d612ceb2b70822ac IBM S/390 architecture: Size/MD5 checksum: 420886 f1a7ce5d72574bac00f6ab033ddbc549 Size/MD5 checksum: 771686 1321ebf1e33163335c024e0489734734 Sun Sparc architecture: Size/MD5 checksum: 443210 39beec8cccdfc893fa1f6d04b7f5e1cb Size/MD5 checksum: 808376 a445dd84481dbd9f283a6365066ef992 These files will probably be moved into the stable distribution on its next revision. --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . Integer overflow in xpdf allows privilege escalation. Upgrade advised for Debian systems to prevent access issues.. Debian Security Advisory, Integer Overflow, xpdf Update. . LinuxSecurity.com Team

Calendar 2 Jan 07, 2003 Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here