Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":546,"type":"x","order":1,"pct":78.45,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.31,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.36,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -1 articles for you...
82

CentOS Control Web Panel Critical Issue: Patch Required by February 7

The US government’s cybersecurity agency CISA is giving federal agencies an early February deadline to patch a critical -- and already exploited -- security vulnerability in the widely used CentOS Control Web Panel utility. . The agency added the CVE-2022-44877 flaw to its KEV (Known Exploited Vulnerabilities) catalog and set a February 7th deadline for federal agencies to test and deploy an available fix. Security researchers warned earlier this month that the publication of proof-of-concept code and a YouTube video demonstration would lead to live attacks. Soon after, threat-hunting outfits GreyNoise and Shadowserver spotted signs of exploitation in the wild. . CISA includes a critical vulnerability in CentOS Control Web Panel on its urgent patch list, requiring federal entities to rectify exploitation risks by February 7.. CentOS Patch, Control Web Panel Flaw, Cybersecurity Updates. . Brittany Day

Calendar 2 Jan 19, 2023 User Avatar Brittany Day Government
78

Google Chrome 91: Security Fixes For Linux Users and New Features

Google Chrome 91 has arrived with important security fixes and excellent new features - especially for Linux users! . Google’s Chrome browser and operating system has been updated to version 91, bringing with it a wide variety of features, mainly announcing that Linux support is now official for ChromeOS, alongside being able to copy and paste a file onto a web page and much more. Announced to little fanfare, Google has detailed a bunch of security fixes that plug the holes to vulnerabilities, and is now available on all platforms, such as Windows, macOS, Linux, and Chromebooks. . Mozilla Firefox 89 introduces crucial updates and enhancements, improving Windows functionality with additional tools.. Google Chrome, Linux Capabilities, Browser Security, Software Update. . LinuxSecurity.com Team

Calendar 2 May 26, 2021 User Avatar LinuxSecurity.com Team Vendors/Products
83

Linux: Critical Security Flaw in GCC and Its Recommended Fixes

Everything has security problems, even Linux. An old and obscure problem with the gcc compiler was recently discovered to have left a security hole in essentially every version of Linux that anyone is likely to be running. Here's what you need to know about fixing it.. The problem itself was discovered by Brad Spengler, the hacker behind the open-source network and server security program, grsecurity. What he found was that in some network code, there was a procedure that included a variable that could be set to NULL (no value at all). Now, this didn't appear to be a problem because the programmer also included a test which would return an error-message if the variable turned out to have a NULL value. So far, so good. Unfortunately, the gcc code optimizer on finding that a variable has been assigned a NULL value removed the test! This left a hole, that didn't exist in the original program. Using this hole, and code provided by Spengler, any cracker with sufficient access to a Linux computer could get into the computer's memory and, from there, get into all kinds of mischief. For more on the down and dirty technical details, turn to Jonathan Corbet's story, "Fun with NULL Pointers." The link for this article located at ComputerWorld is no longer available. . The problem itself was discovered by Brad Spengler, the hacker behind the open-source network and se. everything, security, problems, linux, obscure, problem, compiler. . LinuxSecurity.com Team

Calendar 2 Aug 21, 2009 User Avatar LinuxSecurity.com Team Hacks/Cracks
79

Openwall Linux: BIND 4.9.10-OW2 Patch Addresses Recent Vulnerabilities

Yesterday I've put out the BIND 4.9.10-OW2 patch, which includes the patch provided by ISC and thus has the two recently announced vulnerabilities affecting BIND 4 fixed. Another recent update is crypt_blowfish 0.4.5.. . .. Yesterday I've put out the BIND 4.9.10-OW2 patch, which includes the patch provided by ISC and thus has the two recently announced vulnerabilities affecting BIND 4 fixed. Another recent update is crypt_blowfish 0.4.5. From: Solar Designer Date: Fri, 15 Nov 2002 10:23:40 +0300 To: This email address is being protected from spambots. You need JavaScript enabled to view it. Subject: BIND 4.9.10-OW2, crypt_blowfish 0.4.5 Hi, Yesterday I've put out the BIND 4.9.10-OW2 patch, which includes the patch provided by ISC and thus has the two recently announced vulnerabilities affecting BIND 4 fixed. Previous versions of BIND 4.9.x-OW patches, if used properly, significantly reduced the impact of the "named" vulnerability. The patches (and links to more information on the vulnerabilities) are available at their usual location: /bind/ A patch against BIND 4.9.11 will appear as soon as this version is officially released, although it will likely be effectively the same as the currently available 4.9.10-OW2. It hasn't been fully researched whether the resolver code in glibc, and in particular on Openwall GNU/*/Linux (Owl), shares any of the newly discovered BIND 4 resolver library vulnerabilities. Analysis is in progress. Another recent update is crypt_blowfish 0.4.5, available at: /crypt/ For those who didn't know, this is an implementation of a modern password hashing algorithm, bcrypt, provided via the crypt(3) and a reentrant interface. bcrypt originates in OpenBSD, and now is also used on Owl and a few other Linux distributions. This release corrects the x86-specific assembly code which was in fact not reentrant (a bug), adds a test for proper behavior with multiple threads (such that bugs like this don't get into a release again), and is more careful about zeroing out sensitive data. Of course, it is already in Owl-current(in fact, crypt_blowfish is maintained as a part of Owl). -- /sd . The BIND 4.9.10-OW2 update has been launched, addressing critical security flaws in BIND 4 and crypt_blowfish.. BIND Patch, Openwall Linux, crypt_blowfish, password hashing, security update. . LinuxSecurity.com Team

Calendar 2 Nov 17, 2002 User Avatar LinuxSecurity.com Team Security Projects
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":546,"type":"x","order":1,"pct":78.45,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.31,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.36,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here