Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 1 articles for you...
78

WordPress: Mandatory Security Update Moderate: Access Threat Fixed

Maintainers of the open-source WordPress blog publishing platform has shipped a mandatory security update to cover a potentially serious security vulnerability.. The vulnerability, rated moderate, could allow a malicious Author-level user could gain further access to the WordPress-powered site. The link for this article located at ZDNet Blogs is no longer available. . The vulnerability, rated moderate, could allow a malicious Author-level user could gain further acce. maintainers, open-source, wordpress, publishing, platform, shipped, mandatory, security. . LinuxSecurity.com Team

Calendar 2 Dec 03, 2010 User Avatar LinuxSecurity.com Team Vendors/Products
83

Cisco: Access Issue in IP Phones 7935/7936 Critical Design Flaw

Cisco Systems issued a warning on Wednesday that some of its IP phones could be compromised, allowing unauthorised individuals to bypass security restrictions. In the warning, Cisco detailed flaws for two sets of products. One warning identified two versions of the Cisco Unified IP Conference Station, a speaker phone specially designed for conference rooms. The products are the 7935 version 3.2(15) and 7936 version 3.3(12). . Cisco said because of a design error in the HTTP interface, which allows the device to be managed remotely, an administrator's credentials are saved or cached when the device is accessed remotely. So if an unauthorised person tried to access the device at a later time, it would permit access without further authentication. The link for this article located at CNET News.com is no longer available. . Avaya communication devices could be vulnerable because of a flaw in the SIP stack, posing a threat of unauthorized control.. Cisco IP Phones, Network Security, Unauthorized Access, Critical Design Flaws, Access Issues. . LinuxSecurity.com Team

Calendar 2 Feb 22, 2007 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Red Cross Employee Indicted: 1 Million Social Security Numbers Breach

A former employee with the American Red Cross’ St. Louis chapter – who had access to the Social Security numbers of 1 million people – has been indicted by a federal grand jury. . Medcalf was a telephone worker at the Red Cross branch, where, with the job of calling former donors to urge them to give blood again, she had access to past donors’ Social Security numbers, according to the report. The link for this article located at https://www.scworld.com/ is no longer available. . An ex-staff member exploited their privileges to access the Social Security numbers of 1 million contributors, resulting in charges of identity fraud.. Data Breach, Identity Theft, Red Cross Access, Social Security. . LinuxSecurity.com Team

Calendar 2 May 25, 2006 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

Security Advisory: CVS and Subversion Critical Flaws Detected

Flaws in two popular source code database applications could allow attackers to access and corrupt open-source software projects, according to a security researcher. One vulnerability affects the Concurrent Versions System (CVS), an application used by many developers to store program code. The other flaw affects a newer, less widely used system known as Subversion, said Stefan Esser, the researcher who discovered the security holes. . . .. Flaws in two popular source code database applications could allow attackers to access and corrupt open-source software projects, according to a security researcher. One vulnerability affects the Concurrent Versions System (CVS), an application used by many developers to store program code. The other flaw affects a newer, less widely used system known as Subversion, said Stefan Esser, the researcher who discovered the security holes. The CVS software, in particular, is run by many large open-source projects to create servers that maintain the versions of a program under development. Groups developing the Gnome and KDE Linux desktops, the Apache web server and large Linux distributions, are among those that use servers with the source code databases. The link for this article located at Silicon.com is no longer available. . Vulnerabilities in Git and Mercurial may permit malicious actors to compromise community-driven initiatives and retrieve confidential information.. Source Code Management, Open Source Security, Database Risks, CVS Flaws, Subversion Issues. . LinuxSecurity.com Team

Calendar 2 May 20, 2004 User Avatar LinuxSecurity.com Team Server Security
74

OpenSSH Remote Access Advisory Critical: Security Issues Exposed

In a recent discussion about the Apache Chunk Handling vulnerability, which consisted of many debates and rants on how the reporting was done, ISS mentioned that they found another serious vulnerability in one other vendor's open source product. Theo de Raadt . . . . In a recent discussion about the Apache Chunk Handling vulnerability, which consisted of many debates and rants on how the reporting was done, ISS mentioned that they found another serious vulnerability in one other vendor's open source product. Theo de Raadt from OpenBSD and OpenSSH development team yesterday shed some light and announced that OpenSSH is vulnerable. This is his post to BugTraq mailing list: There is an upcoming OpenSSH vulnerability that we're working on with ISS. Details will be published early next week. However, I can say that when OpenSSH's sshd(8) is running with priv seperation, the bug cannot be exploited. The link for this article located at Net-Security.org is no longer available. . A recent analysis of OpenSSH security flaws reveals significant vulnerabilities, highlighting the urgency for timely updates and best practices to ensure system security. OpenSSH vulnerabilities, Remote Access Security, Open Source Threats, Security Issues in OpenSSH. . Anthony Pell

Calendar 2 Jun 26, 2002 User Avatar Anthony Pell Network Security
83

Webmin: Local Root Threat From Java Runtime Environment Vulnerability

Leading this Security Alerts is a java runtime vulnerability. "In this column, we look at a local root vulnerability in Webmin; a bug in BSD-based TCP/IP stacks; a vulnerability in the Java Runtime Environment; buffer overflows in listar, Imlib, and Open . . . . Leading this Security Alerts is a java runtime vulnerability. "In this column, we look at a local root vulnerability in Webmin; a bug in BSD-based TCP/IP stacks; a vulnerability in the Java Runtime Environment; buffer overflows in listar, Imlib, and Open Unix and UnixWare 7's rpc.cmsd; and problems in Netscape, QPopper, PHP's move_uploaded_file() function, Penguin Traceroute, PHP Net Toolpack, and Mandrake's kdm." . A critical vulnerability within the Java Runtime Environment poses risks for local root access, necessitating urgent action in security protocols.. Java Runtime Environment, Webmin, Local Root Threat, Security Alert, Access Issue. . LinuxSecurity.com Team

Calendar 2 Mar 26, 2002 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here