Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
87

Debian 3.0: DSA 405-1 Moderate: Xsok Privilege Escalation Threat

Steve Kemp discovered a problem in xsok, a single player strategy gamefor X11, related to the Sokoban game, which leads a user to executearbitrary commands under the GID of games.. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - -------------------------------------------------------------------------- Debian Security Advisory DSA 405-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze December 30th, 2003 Debian -- Debian security FAQ - -------------------------------------------------------------------------- Package : xsok Vulnerability : missing privelige release Problem-Type : local Debian-specific: no CVE ID : CAN-2003-0949 Steve Kemp discovered a problem in xsok, a single player strategy game for X11, related to the Sokoban game, which leads a user to execute arbitrary commands under the GID of games. For the stable distribution (woody) this problem has been fixed in version 1.02-9woody2. For the unstable distribution (sid) this problem has been fixed in version 1.02-11. We recommend that you upgrade your xsok package. Upgrade Instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0 alias woody - -------------------------------- Source archives: Size/MD5 checksum: 575 5e3f7f8513b7fb3e8fa1ebfa56a2b4bc Size/MD5 checksum: 5616 6c17b1f0201f583c770b42334be33cb4 Size/MD5 checksum: 114085 f961b329e6577ebefcaa0acece9c94c8 Alpha architecture: Size/MD5 checksum: 69860 45a8699a82fb7da43a4ca28f9579fb62 ARMarchitecture: Size/MD5 checksum: 64018 0f2ac33af74901cd52d31cb23e2b5b4f Intel IA-32 architecture: Size/MD5 checksum: 61822 35ede5adbfbdad30eb7ecdc1137f5f33 Intel IA-64 architecture: Size/MD5 checksum: 79138 5ff4f9683dce6582219d4907c3f3bc5c HP Precision architecture: Size/MD5 checksum: 68178 fa756bb317a7162ac9df2a0b0576ee9a Motorola 680x0 architecture: Size/MD5 checksum: 61204 6b32053cc307b3c9bfe4b3036fcab30f Big endian MIPS architecture: Size/MD5 checksum: 68402 b23adc954aaf6a23ac3e118d9c4150b6 Little endian MIPS architecture: Size/MD5 checksum: 68338 061b40e0768f906db728cf9d3b8574e6 PowerPC architecture: Size/MD5 checksum: 64626 6f95af173c40cc7e2d00501d80c0e308 IBM S/390 architecture: Size/MD5 checksum: 64706 42386e9b13539154f214a20c464b9988 Sun Sparc architecture: Size/MD5 checksum: 66278 4d061f87360819298c481eb17dd43881 These files will probably be moved into the stable distribution on its next revision. - --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQE/8UlwW5ql+IAeqTIRAivnAJ47ZNx8ciwmJef3TfpZpZDfbAR6XQCdFT5G AAiln4U8+sjX4HqeAMhjH8s=PFVG -----END PGP SIGNATURE----- . Enhance your xsok module to address a security loophole that permits unrestricted command execution tied to GID.. xsok Vulnerability, Debian Advisory, Privilege Escalation, Security Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 30, 2003 Important Debian
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200