Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
172

Ubuntu 23.04 USN-6233-2 critical: YAJL memory corruption threat

Several security issues were fixed in YAJL.. ========================================================================== Ubuntu Security Notice USN-6233-2 December 14, 2023 yajl vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.04 - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS Summary: Several security issues were fixed in YAJL. Software Description: - yajl: Yet Another JSON Library Details: USN-6233-1 fixed vulnerabilities in YAJL. This update provides the corresponding updates for Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 23.04. Original advisory details: It was discovered that YAJL was not properly performing bounds checks when decoding a string with escape sequences. If a user or automated system using YAJL were tricked into processing specially crafted input, an attacker could possibly use this issue to cause a denial of service (application abort). (CVE-2017-16516) It was discovered that YAJL was not properly handling memory allocation when dealing with large inputs, which could lead to heap memory corruption. If a user or automated system using YAJL were tricked into running a specially crafted large input, an attacker could possibly use this issue to cause a denial of service. (CVE-2022-24795) It was discovered that memory leaks existed in one of the YAJL parsing functions. An attacker could possibly use this issue to cause a denial of service (memory exhaustion). (CVE-2023-33460) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.04: libyajl2 2.1.0-3ubuntu0.23.04.1 Ubuntu 22.04 LTS: libyajl2 2.1.0-3ubuntu0.22.04.1 Ubuntu 20.04 LTS: libyajl2 2.1.0-3ubuntu0.20.04.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6233-2 https://ubuntu.com/security/notices/USN-6233-1 CVE-2017-16516, CVE-2022-24795, CVE-2023-33460 Package Information: https://launchpad.net/ubuntu/+source/yajl/2.1.0-3ubuntu0.23.04.1 https://launchpad.net/ubuntu/+source/yajl/2.1.0-3ubuntu0.22.04.1 https://launchpad.net/ubuntu/+source/yajl/2.1.0-3ubuntu0.20.04.1 . Protect your Ubuntu systems by applying the newest YAJL updates to mitigate security risks and ensure continuous operation.. YAJL Updates, Ubuntu Security, Memory Risks, Denial of Service. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Dec 14, 2023 Critical Ubuntu
172

Ubuntu 18.04 LTS USN-6233-1: Critical YAJL Denial of Service Issues

Several security issues were fixed in YAJL.. =========================================================================Ubuntu Security Notice USN-6233-1 July 18, 2023 yajl vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS (Available with Ubuntu Pro) - Ubuntu 16.04 LTS (Available with Ubuntu Pro) - Ubuntu 14.04 LTS (Available with Ubuntu Pro) Summary: Several security issues were fixed in YAJL. Software Description: - yajl: Yet Another JSON Library Details: It was discovered that YAJL was not properly performing bounds checks when decoding a string with escape sequences. If a user or automated system using YAJL were tricked into processing specially crafted input, an attacker could possibly use this issue to cause a denial of service (application abort). (CVE-2017-16516) It was discovered that YAJL was not properly handling memory allocation when dealing with large inputs, which could lead to heap memory corruption. If a user or automated system using YAJL were tricked into running a specially crafted large input, an attacker could possibly use this issue to cause a denial of service. (CVE-2022-24795) It was discovered that memory leaks existed in one of the YAJL parsing functions. An attacker could possibly use this issue to cause a denial of service (memory exhaustion). (CVE-2023-33460) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS (Available with Ubuntu Pro): libyajl2 2.1.0-2ubuntu0.18.04.1~esm1 Ubuntu 16.04 LTS (Available with Ubuntu Pro): libyajl2 2.1.0-2ubuntu0.16.04.1~esm1 Ubuntu 14.04 LTS (Available with Ubuntu Pro): libyajl2 2.0.4-4ubuntu0.1~esm1 In general, a standard system updatewill make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6233-1 CVE-2017-16516, CVE-2022-24795, CVE-2023-33460 . Numerous vulnerabilities addressed in YAJL impact Ubuntu users. Make sure to update your systems for enhanced security.. Ubuntu Security Update, YAJL Issues, Denial of Service, Memory Management, Open Source Software. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jul 18, 2023 Critical Ubuntu
197

Debian 10 Moderate: DLA-3492-1 yajl Denial Of Service And Memory Leak

Multiple vulnerabilties have been found in yajl, a JSON parser / small validating JSON generator# written in ANSI C, which potentially can cause memory corruption or DoS. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-3492-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Tobias Frost July 11, 2023 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : yajl Version : 2.1.0-3+deb10u2 CVE ID : CVE-2017-16516 CVE-2022-24795 CVE-2023-33460 Debian Bug : 1040036 Multiple vulnerabilties have been found in yajl, a JSON parser / small validating JSON generator# written in ANSI C, which potentially can cause memory corruption or DoS. The CVE-20117-16516 had been addressed already in DLA-3478, however the fix has been found to be incomplete as it missed an additional memory leak. This update fixes that problem. CVE-2017-16516 When a crafted JSON file is supplied to yajl, the process might crash with a SIGABRT in the yajl_string_decode function in yajl_encode.c. This results potentially in a denial of service. CVE-2022-24795 The 1.x branch and the 2.x branch of `yajl` contain an integer overflow which leads to subsequent heap memory corruption when dealing with large (~2GB) inputs. CVE-2023-33460 There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function, which potentially cause out-of-memory in server and cause crash. For Debian 10 buster, these problems have been fixed in version 2.1.0-3+deb10u2. We recommend that you upgrade your yajl packages. For the detailed security status of yajl please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/yajl Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at:https://wiki.debian.org/LTS . Ubuntu Security Notice USN-4567-1 addresses vulnerabilities in libcurl leading to potential information leakage and service disruptions.. Debian LTS Security, yajl Update, JSON Parser Security, DoS Protection, Memory Issues. . LinuxSecurity.com Team

Calendar 2 Jul 11, 2023 Debian LTS
197

Debian 10 DLA-3478-1 Moderate: Yajl Memory Leak Could Cause Crashes

A memory leak has been found in yajl, a JSON parser / small validating JSON generator written in ANSI C, which might allow an attacker to cause an out of memory situation and potentially causing a crash. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-3478-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Tobias Frost July 02, 2023 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : yajl Version : 2.1.0-2+deb10u1 CVE ID : CVE-2023-33460 Debian Bug : 1039984 A memory leak has been found in yajl, a JSON parser / small validating JSON generator written in ANSI C, which might allow an attacker to cause an out of memory situation and potentially causing a crash. For Debian 10 buster, this problem has been fixed in version 2.1.0-2+deb10u1. We recommend that you upgrade your yajl packages. For the detailed security status of yajl please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/yajl Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-3480-1 highlights a vulnerability in libxml2 that may lead to data exposure. Users are advised to update promptly.. Debian LTS,yajl update,memory leak fix,JSON security. . LinuxSecurity.com Team

Calendar 2 Jul 02, 2023 Debian LTS
98

Red Hat Enterprise Linux 9 RHSA-2022:8252-01 Moderate: Yajl Heap Overflow

An update for yajl is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: yajl security update Advisory ID: RHSA-2022:8252-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:8252 Issue date: 2022-11-15 CVE Names: CVE-2022-24795 ==================================================================== 1. Summary: An update for yajl is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat CodeReady Linux Builder (v. 9) - aarch64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux AppStream (v. 9) - aarch64, ppc64le, s390x, x86_64 3. Description: Yet Another JSON Library (YAJL) is a small event-driven (SAX-style) JSON parser written in ANSI C, and a small validating JSON generator. Security Fix(es): * yajl: heap-based buffer overflow when handling large inputs due to an integer overflow (CVE-2022-24795) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.1 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes thechanges described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2072912 - CVE-2022-24795 yajl: heap-based buffer overflow when handling large inputs due to an integer overflow 6. Package List: Red Hat Enterprise Linux AppStream (v. 9): Source: yajl-2.1.0-21.el9.src.rpm aarch64: yajl-2.1.0-21.el9.aarch64.rpm yajl-debuginfo-2.1.0-21.el9.aarch64.rpm yajl-debugsource-2.1.0-21.el9.aarch64.rpm ppc64le: yajl-2.1.0-21.el9.ppc64le.rpm yajl-debuginfo-2.1.0-21.el9.ppc64le.rpm yajl-debugsource-2.1.0-21.el9.ppc64le.rpm s390x: yajl-2.1.0-21.el9.s390x.rpm yajl-debuginfo-2.1.0-21.el9.s390x.rpm yajl-debugsource-2.1.0-21.el9.s390x.rpm x86_64: yajl-2.1.0-21.el9.i686.rpm yajl-2.1.0-21.el9.x86_64.rpm yajl-debuginfo-2.1.0-21.el9.i686.rpm yajl-debuginfo-2.1.0-21.el9.x86_64.rpm yajl-debugsource-2.1.0-21.el9.i686.rpm yajl-debugsource-2.1.0-21.el9.x86_64.rpm Red Hat CodeReady Linux Builder (v. 9): aarch64: yajl-debuginfo-2.1.0-21.el9.aarch64.rpm yajl-debugsource-2.1.0-21.el9.aarch64.rpm yajl-devel-2.1.0-21.el9.aarch64.rpm ppc64le: yajl-debuginfo-2.1.0-21.el9.ppc64le.rpm yajl-debugsource-2.1.0-21.el9.ppc64le.rpm yajl-devel-2.1.0-21.el9.ppc64le.rpm s390x: yajl-debuginfo-2.1.0-21.el9.s390x.rpm yajl-debugsource-2.1.0-21.el9.s390x.rpm yajl-devel-2.1.0-21.el9.s390x.rpm x86_64: yajl-debuginfo-2.1.0-21.el9.i686.rpm yajl-debuginfo-2.1.0-21.el9.x86_64.rpm yajl-debugsource-2.1.0-21.el9.i686.rpm yajl-debugsource-2.1.0-21.el9.x86_64.rpm yajl-devel-2.1.0-21.el9.i686.rpm yajl-devel-2.1.0-21.el9.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-24795 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.1_release_notes/index 8. Contact: The Red Hat security contact is . Morecontact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY3PgsdzjgjWX9erEAQhkcBAAlE0Cpp0ZXfHJMTZOXuYMAWD7quUUu3eQ L6LQ3wmDf0o7sfpl5OyfIM3ptYVRSKOmc0vlphPdgiNB+WDtM3kxUhWFlm5GcTgR qARr8HLjwukV52J9bp3obLzuj1UrgtiWkDTqAT9seIIHqULiUJGZEsDErGipQ1qV R7F4ZQRZPUKIDSROhNOlN7wyCwNNS8WuqZiScmlrECs93BoOyhq4361aL2lcyzS6 tG/yiMzYMmAnU/6uDZrsAJDCPuahqvrkAoSW6rw98/inEcE9OaVMbvz7uxRszgsb LsSEM4LZGkkVphHnXLRvVGwORgcIspdXup+5MYGG7MZmphDSQVLm2y/NW08zdwWM DlKTNtCvyYlKfbqG8ALJRFGyCDlnh/PuNTcRrjt5WTcL6abqUs26igNNuTCG8BhV n78z4RzNozGLipPnGNC9oRadrQUgJEeautqK6TGymyeNnaLi5PnmPM2lPmVXSF1t liMuMZhUcyFcNrLkOn4IRlOaXdHh+RQdtK4Q2DcO8upZS2l7by8zSM3BVSwaJhTG mKZfAv3rIwhwVAFdmORJ/JTAGRo9lUf7qkYP9wAIGVClY3Xn1coezD+nbeecPJUk dojUkMdOma6MXs5bIRPXMofkRbnXJENdX1wefsXdr3GjAIf5PqF4Uybcgl4DCr9s 1yVv252cIxA=fC4O -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Critical yajl security enhancement released for Red Hat Enterprise Linux 9. Fix memory overflow and bolster defenses.. Red Hat Advisory,yajl Update,Linux Security Update,Moderate Threat,Heap Overflow Fix. . LinuxSecurity.com Team

Calendar 2 Nov 15, 2022 Red Hat
98

Red Hat Enterprise Linux 8 RHSA-2022-7524-01 Moderate: yajl Heap Overflow

An update for yajl is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: yajl security update Advisory ID: RHSA-2022:7524-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2022:7524 Issue date: 2022-11-08 CVE Names: CVE-2022-24795 ==================================================================== 1. Summary: An update for yajl is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat CodeReady Linux Builder (v. 8) - aarch64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux AppStream (v. 8) - aarch64, ppc64le, s390x, x86_64 3. Description: Yet Another JSON Library (YAJL) is a small event-driven (SAX-style) JSON parser written in ANSI C and a small validating JSON generator. Security Fix(es): * yajl: heap-based buffer overflow when handling large inputs due to an integer overflow (CVE-2022-24795) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.7 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes thechanges described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2072912 - CVE-2022-24795 yajl: heap-based buffer overflow when handling large inputs due to an integer overflow 6. Package List: Red Hat Enterprise Linux AppStream (v. 8): Source: yajl-2.1.0-11.el8.src.rpm aarch64: yajl-2.1.0-11.el8.aarch64.rpm yajl-debuginfo-2.1.0-11.el8.aarch64.rpm yajl-debugsource-2.1.0-11.el8.aarch64.rpm ppc64le: yajl-2.1.0-11.el8.ppc64le.rpm yajl-debuginfo-2.1.0-11.el8.ppc64le.rpm yajl-debugsource-2.1.0-11.el8.ppc64le.rpm s390x: yajl-2.1.0-11.el8.s390x.rpm yajl-debuginfo-2.1.0-11.el8.s390x.rpm yajl-debugsource-2.1.0-11.el8.s390x.rpm x86_64: yajl-2.1.0-11.el8.i686.rpm yajl-2.1.0-11.el8.x86_64.rpm yajl-debuginfo-2.1.0-11.el8.i686.rpm yajl-debuginfo-2.1.0-11.el8.x86_64.rpm yajl-debugsource-2.1.0-11.el8.i686.rpm yajl-debugsource-2.1.0-11.el8.x86_64.rpm Red Hat CodeReady Linux Builder (v. 8): aarch64: yajl-debuginfo-2.1.0-11.el8.aarch64.rpm yajl-debugsource-2.1.0-11.el8.aarch64.rpm yajl-devel-2.1.0-11.el8.aarch64.rpm ppc64le: yajl-debuginfo-2.1.0-11.el8.ppc64le.rpm yajl-debugsource-2.1.0-11.el8.ppc64le.rpm yajl-devel-2.1.0-11.el8.ppc64le.rpm s390x: yajl-debuginfo-2.1.0-11.el8.s390x.rpm yajl-debugsource-2.1.0-11.el8.s390x.rpm yajl-devel-2.1.0-11.el8.s390x.rpm x86_64: yajl-debuginfo-2.1.0-11.el8.i686.rpm yajl-debuginfo-2.1.0-11.el8.x86_64.rpm yajl-debugsource-2.1.0-11.el8.i686.rpm yajl-debugsource-2.1.0-11.el8.x86_64.rpm yajl-devel-2.1.0-11.el8.i686.rpm yajl-devel-2.1.0-11.el8.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2022-24795 https://access.redhat.com/security/updates/classification#moderate https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/8/html/8.7_release_notes/index 8. Contact: The Red Hat security contact is . Morecontact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBY2pSj9zjgjWX9erEAQhNHQ/+NmD/kowonHJ8LFS8NxvSBg7CI5R3lXw5 mInDFqY9V6giZ/6ljuvM5wPGupf0o08fYLKukbcSPHbM9niZidXNhOiE68euQT1R tWiwoNvz2cGJ5A/PorVeuTeqUz+xDUljDHenc+YKpVHGx6+OjSTLL+CT0plpcy2d APJOAa8s4ta+7lBGw3DYyQZkPNcgFdJYRsw9BGtDPkNjpnfsWKTCErvpbKmINaAO iavmeVlSUqiPzuMu2Xez15NMGdbiTgqi5hJ/KhPjRAbqrvFFhewEmiFszyjuUlGs XAvAO2vBB8L2uZH4x6RnijBfouvWZbT1mAbh+goE6eVKJRf/F5kAG+ZYG48le9fh gFNBltaqCqeergu8g1/rsbHfwacpAjkkIookrK/QMgXcn7j09mK5kuR9lGi3wo+S U/S4JnGAzHo1ytl0Flk9nIjKhf24a3BH5DDlUR3dR56OqzMJ64co/DB6RZWEWf4t mwpOgDHkrKW7JBp74nX8owLg71SM0knv2nSmhla4hL0fEd7q+W+Ypjc/QLSDDb0J C67zsAmcyXDz96Gpz0v2bgpMperdhJ9ggmtYIp4RlgFL0DagWQRc0FAp52GsVu9u e+c0mTlCHeoaCDumnvxs2FQtwvbFogkc5MllZ3jB+IdbQbxSbJQpGt/QkLtPauaU 9YBoCjrUFPw=nzh9 -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A significant update for yajl has been released, addressing a heap-buffer overflow vulnerability affecting users of Red Hat Enterprise Linux 8.. Red Hat Enterprise Linux,yajl security update,buffer overflow risk. . LinuxSecurity.com Team

Calendar 2 Nov 08, 2022 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here