Language Selection

English French German Italian Portuguese Spanish

LinuxSecurity.com Advisories

Syndicate content LinuxSecurity - Security Advisories
The central voice for Linux and Open Source security news.
Updated: 3 hours 11 min ago

SUSE: 2022:52-1 ses/7/cephcsi/csi-attacher Security Update>

Tuesday 25th of January 2022 03:50:56 AM
The container ses/7/cephcsi/csi-attacher was updated. The following patches have been included in this update:

Fedora 35: rust 2022-1bafa3fc91>

Monday 24th of January 2022 08:12:01 PM
Security fix for CVE-2022-21658, a TOCTOU race condition in std::fs::remove_dir_all. Privileged programs should be rebuilt if they use this function on paths that may be manipulated with lesser privileges. For more details, see the upstream [security advisory](https://blog.rust- lang.org/2022/01/20/cve-2022-21658.html).

Fedora 35: binaryen 2022-a662b2def6>

Monday 24th of January 2022 08:11:58 PM
Bug fixes and incremental optimization improvements. ---- Bugfix release including fix for CVE-2021-45290 and CVE-2021-45293.

Fedora 34: rust 2022-2c73789458>

Monday 24th of January 2022 08:04:29 PM
Security fix for CVE-2022-21658, a TOCTOU race condition in std::fs::remove_dir_all. Privileged programs should be rebuilt if they use this function on paths that may be manipulated with lesser privileges. For more details, see the upstream [security advisory](https://blog.rust- lang.org/2022/01/20/cve-2022-21658.html).

Fedora 34: binaryen 2022-9d18d4159e>

Monday 24th of January 2022 08:04:27 PM
Bug fixes and incremental optimization improvements. ---- Bugfix release including fix for CVE-2021-45290 and CVE-2021-45293.

Debian LTS: DLA-2895-1: qt4-x11 security update>

Monday 24th of January 2022 06:03:30 PM
Multiple out-of-bounds error were discovered in qt4-x11. The highest threat from CVE-2021-3481 (at least) is to data confidentiality the application availability.

Debian LTS: DLA-2897-1: apr security update>

Monday 24th of January 2022 05:36:03 PM
An issue has been found in apr, the Apache Portable Runtime Library. The issue is related to out of bounds memory access due to invalid date fields.

openSUSE: 2022:0020-1 important: virtualbox>

Monday 24th of January 2022 04:22:34 PM
An update that solves one vulnerability and has three fixes is now available.

Ubuntu 5250-2: strongSwan vulnerability>

Monday 24th of January 2022 02:30:47 PM
strongSwan could crash or allow unintended access to network services.

Debian: DSA-5057-1: openjdk-11 security update>

Monday 24th of January 2022 02:14:52 PM
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in denial of service, bypass of deserialization restrictions or information disclosure.

Ubuntu 5250-1: strongSwan vulnerability>

Monday 24th of January 2022 01:53:55 PM
strongSwan could crash or allow unintended access to network services.

Debian: DSA-5056-1: strongswan security update>

Monday 24th of January 2022 01:14:03 PM
Zhuowei Zhang discovered a bug in the EAP authentication client code of strongSwan, an IKE/IPsec suite, that may allow to bypass the client and in some scenarios even the server authentication, or could lead to a denial-of-service attack.

RedHat: RHSA-2022-0229:02 Moderate: OpenJDK 11.0.14 security update for>

Monday 24th of January 2022 12:20:09 PM
The Red Hat Build of OpenJDK 11 (java-11-openjdk) is now available for Windows. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

RedHat: RHSA-2022-0166:03 Moderate: OpenJDK 17.0.2 security update for>

Monday 24th of January 2022 12:19:59 PM
The Red Hat build of OpenJDK 17 (java-17-openjdk) is now available for portable Linux. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

RedHat: RHSA-2022-0228:02 Moderate: OpenJDK 11.0.14 security update for>

Monday 24th of January 2022 12:19:12 PM
The Red Hat Build of OpenJDK 11 (java-11-openjdk) is now available for portable Linux. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

RedHat: RHSA-2022-0165:03 Moderate: OpenJDK 17.0.2 security update for>

Monday 24th of January 2022 12:18:31 PM
The Red Hat build of OpenJDK 17 (java-17-openjdk) is now available for Windows. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which

RedHat: RHSA-2022-0237:03 Important: Red Hat OpenStack Platform 16.2 (etcd)>

Monday 24th of January 2022 12:18:23 PM
An update for etcd is now available for Red Hat OpenStack Platform 16.2 (Train). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

Ubuntu 5243-2: AIDE vulnerability>

Monday 24th of January 2022 06:38:57 AM
AIDE could be made to crash or run programs as an administrator if it opened a specially crafted file.

Debian: DSA-5055-1: util-linux security update>

Monday 24th of January 2022 06:31:30 AM
The Qualys Research Labs discovered two vulnerabilities in util-linux's libmount. These flaws allow an unprivileged user to unmount other users' filesystems that are either world-writable themselves or mounted in a world-writable directory (CVE-2021-3996), or to unmount FUSE filesystems

RedHat: RHSA-2022-0232:02 Important: kpatch-patch security update>

Monday 24th of January 2022 06:21:53 AM
An update for kpatch-patch is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

More in Tux Machines

Typesort icon Title Author Replies Last Post
Blog entry A Fishy Tale harshasrisri 01/05/2011 - 2:11pm
Blog entry storming srlinuxx 2 27/04/2011 - 6:05am
Blog entry Downtime srlinuxx 1 21/04/2011 - 10:28pm
Blog entry Gnome3 is a YES revdjenk 08/04/2011 - 12:27pm
Blog entry Mageia 1 Alpha2 -- A Status Report gfranken 27/03/2011 - 3:59am
Blog entry Looking for help to bring a new app to the world bigbearomaha 09/03/2011 - 1:35pm
Blog entry motherboard srlinuxx 2 06/03/2011 - 6:32pm
Blog entry More Hardware troubles srlinuxx 03/03/2011 - 9:19pm
Blog entry PCLinuxOS on the BBC Texstar 1 03/03/2011 - 9:51pm
Blog entry weirdness: puppy & wd-40 srlinuxx 09/06/2011 - 4:07am