Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

Rebase to sudo 1.9.12p2 – security fix for CVE-2023-22809

Red Hat OpenShift sandboxed containers: Peer-pods technical deep dive
Red Hat OpenShift sandboxed containers: Peer-pods solution overview
Red Hat OpenShift sandboxed containers: Peer-pods hands-on
CSAF VEX documents now generally available

An update that fixes one vulnerability is now available.

The 6.1.9 stable kernel update contains a number of important fixes across the tree.

Update to version 1.23.0. Release notes: https://github.com/syncthing/syncthing/releases/tag/v1.23.0 Additionally, this update was built with a version of golang that addresses CVE-2022-41717, and it fixes the installation of icon files.

The 6.1.9 stable kernel update contains a number of important fixes across the tree.

Update to version 1.23.0. Release notes: https://github.com/syncthing/syncthing/releases/tag/v1.23.0 Additionally, this update was built with a version of golang that addresses CVE-2022-41717, and it fixes the installation of icon files.

Several security issues were fixed in LibTIFF.

Several security issues were fixed in Long Range ZIP.

Several security issues were fixed in Apache HTTP Server.

The newest upstream commit Security fix for CVE-2023-0288

Update to 109.0.5414.119. Fixes the following security issues: CVE-2023-0471 CVE-2023-0472 CVE-2023-0473 CVE-2023-0474

New openssh packages are available for Slackware 15.0 and -current to fix security issues.

security update

security update

security update

security update

The container suse/sle-micro/5.3/toolbox was updated. The following patches have been included in this update:

Rebuild for CVE-2022-41717 in golang.

Fix CVE-2022-47021

new upstream version

Rebuild for CVE-2022-41717 in golang.

Update to pgadmin4-6.19. —- Backport fix for CVE-2023-22298.

Several security issues were fixed in Vim.

An update is now available for Red Hat JBoss Enterprise Application Platform 7.4 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed

Beyond the STIG: What hardening really means

Several security issues were fixed in Slurm.

Update to 2.53.15

Several vulnerabilities have been fixed in the libstb library. CVE-2018-16981

Brief introduction CVE-2020-21529

python-future could be made to crash if it received specially crafted input.

The container suse/sle-micro/5.1/toolbox was updated. The following patches have been included in this update:

The container bci/ruby was updated. The following patches have been included in this update:

The container bci/openjdk was updated. The following patches have been included in this update:

The container bci/nodejs was updated. The following patches have been included in this update:

The container bci/golang was updated. The following patches have been included in this update:

security update

security update

A Complete Guide to Security Automation & Reporting Using Open Source Tools
Data Privacy Day, every day

The components for Red Hat OpenShift support for Windows Container 7.0.0 are now available. This product release includes bug fixes and a moderate security update for the following packages: windows-machine-config-operator and

The container bci/rust was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

Update to 1.3.2 (CVE-2022-29187, CVE-2022-24765)

* CVE-2022-47318

Update 1.2.6

security update

Several buffer overflow, divide by zero or out of bounds read/write vulnerabilities were discovered in tiff, the Tag Image File Format (TIFF) library and tools, which may cause denial of service when processing a crafted TIFF image.

Two vulnerabilities were found in dojo, a modular JavaScript toolkit, that could result in information disclosure. CVE-2020-4051

The container bci/python was updated. The following patches have been included in this update:

The container bci/python was updated. The following patches have been included in this update:

The container suse/pcp was updated. The following patches have been included in this update:

The container bci/openjdk-devel was updated. The following patches have been included in this update:

security update

In Apache::Session::Browseable before 1.3.6, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used.

In Apache::Session::LDAP before 0.5, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used.

The container bci/dotnet-runtime was updated. The following patches have been included in this update:

The container bci/dotnet-sdk was updated. The following patches have been included in this update:

The container bci/dotnet-sdk was updated. The following patches have been included in this update:

The container bci/dotnet-sdk was updated. The following patches have been included in this update:

security update

security update

An update that fixes four vulnerabilities is now available.

Update to 1.3.2 (CVE-2022-29187, CVE-2022-24765)

https://www.mediawiki.org/wiki/Release_notes/1.38 https://lists.wikimedia.org/hyperkitty/list/mediawiki- announce@lists.wikimedia.org/message/UEMW64LVEH3BEXCJV43CVS6XPYURKWU3/

The container suse/sle-micro/5.2/toolbox was updated. The following patches have been included in this update:

**Redis 6.2.10** Released Mon Jan 17 12:00:00 IST 2023 Upgrade urgency: MODERATE, a quick followup fix for a recently released 6.2.9. Bug Fixes * Revert the change to KEYS in the recent client output buffer limit fix (#11676) —- **Redis 6.2.9** Released Mon Jan 16 12:00:00 IDT 2023 Upgrade urgency: SECURITY, contains fixes to security […]

The container suse/sle-micro/5.1/toolbox was updated. The following patches have been included in this update:

security update

security update

security update

libXpm 3.5.15, fixes CVE-2022-46285, CVE-2022-44617, CVE-2022-4883

**Redis 7.0.8** Released Mon Jan 16 12:00:00 IDT 2023 Security Fixes: * (**CVE-2022-35977**) Integer overflow in the Redis SETRANGE and SORT/SORT_RO commands can drive Redis to OOM panic * (**CVE-2023-22458**) Integer overflow in the Redis HRANDFIELD and ZRANDMEMBER commands can lead to denial-of- service Bug Fixes * Avoid possible hang when client issues long KEYS,

Several security issues were fixed in the Linux kernel.

An update is now available for Red Hat OpenShift GitOps 1.6.4 Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

An update is now available for Red Hat OpenShift GitOps 1.5.9 Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

An update is now available for Red Hat OpenShift GitOps 1.7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

PAM would allow unintended access to the machine over network.

An update for go-toolset-1.18 and go-toolset-1.18-golang is now available for Red Hat Developer Tools. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

An update for the go-toolset:rhel8 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

The container bci/rust was updated. The following patches have been included in this update:

The container bci/rust was updated. The following patches have been included in this update:

Update to 42.6

security update

How to use Red Hat Insights malware detection service

Red Hat OpenShift Container Platform release 4.10.50 is now available with updates to packages and images that fix several bugs. Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which

An update for java-1.8.0-openjdk is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

An update for pcs is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support, Red Hat Enterprise Linux 8.2 Telecommunications Update Service, and Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions.

An update for sssd is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support, Red Hat Enterprise Linux 8.2 Telecommunications Update Service, and Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions.

An update for kernel is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support, Red Hat Enterprise Linux 8.2 Telecommunications Update Service, and Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions.

An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

How to Check if Your Linux System is Infected with a Virus

Setuptools could be made to crash if it received specially crafted input.

Multiple vulnerabilities were found in trafficserver, a caching proxy server. CVE-2021-37150

An update for sudo is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

An update for sudo is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

An update for sudo is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,