Language Selection

English French German Italian Portuguese Spanish

LinuxSecurity.com Advisories

Syndicate content LinuxSecurity - Security Advisories
The central voice for Linux and Open Source security news.
Updated: 1 hour 39 min ago

RedHat: RHSA-2020-3299:01 Important: python-pillow security update>

Tuesday 4th of August 2020 03:42:15 AM
An update for python-pillow is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

RedHat: RHSA-2020-3298:01 Important: dbus security update>

Tuesday 4th of August 2020 03:41:50 AM
An update for dbus is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

RedHat: RHSA-2020-3297:01 Important: kpatch-patch security update>

Tuesday 4th of August 2020 03:41:24 AM
An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

openSUSE: 2020:1144-1: moderate: targetcli-fb>

Tuesday 4th of August 2020 02:12:51 AM
An update that fixes one vulnerability is now available.

openSUSE: 2020:1142-1: important: ghostscript>

Monday 3rd of August 2020 08:14:30 PM
An update that fixes one vulnerability is now available.

SUSE: 2020:2107-1 important: the Linux Kernel>

Monday 3rd of August 2020 06:27:24 PM
An update that solves 16 vulnerabilities and has 82 fixes is now available.

SUSE: 2020:2105-1 important: the Linux Kernel>

Monday 3rd of August 2020 06:01:43 PM
An update that solves 22 vulnerabilities and has 193 fixes is now available.

SUSE: 2020:2106-1 important: the Linux Kernel>

Monday 3rd of August 2020 05:57:34 PM
An update that solves 14 vulnerabilities and has 15 fixes is now available.

openSUSE: 2020:1141-1: moderate: targetcli-fb>

Monday 3rd of August 2020 05:56:50 PM
An update that fixes one vulnerability is now available.

SUSE: 2020:2105-1 important: the Linux Kernel>

Monday 3rd of August 2020 05:31:18 PM
An update that solves 22 vulnerabilities and has 193 fixes is now available.

openSUSE: 2020:1139-1: moderate: claws-mail>

Monday 3rd of August 2020 02:14:17 PM
An update that fixes one vulnerability is now available.

RedHat: RHSA-2020-3285:01 Important: postgresql-jdbc security update>

Monday 3rd of August 2020 01:14:28 PM
An update for postgresql-jdbc is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

RedHat: RHSA-2020-3284:01 Important: postgresql-jdbc security update>

Monday 3rd of August 2020 01:04:25 PM
An update for postgresql-jdbc is now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

RedHat: RHSA-2020-3286:01 Important: postgresql-jdbc security update>

Monday 3rd of August 2020 12:54:35 PM
An update for postgresql-jdbc is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

RedHat: RHSA-2020-3283:01 Important: postgresql-jdbc security update>

Monday 3rd of August 2020 12:09:44 PM
An update for postgresql-jdbc is now available for Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,

SciLinux: SLSA-2020-3281-1 Important: libvncserver on SL7.x x86_64>

Monday 3rd of August 2020 11:53:05 AM
libvncserver: websocket decoding buffer overflow (CVE-2017-18922) SL7 x86_64 libvncserver-0.9.9-14.el7_8.1.i686.rpm libvncserver-0.9.9-14.el7_8.1.x86_64.rpm libvncserver-debuginfo-0.9.9-14.el7_8.1.i686.rpm libvncserver-debuginfo-0.9.9-14.el7_8.1.x86_64.rpm libvncserver-devel-0.9.9-14.el7_8.1.i686.rpm libvncserver-devel-0.9.9-14.el7_8.1.x86_64.rpm - Scientific Linux [More...]

SUSE: 2020:2103-1 important: the Linux Kernel>

Monday 3rd of August 2020 11:13:10 AM
An update that solves 15 vulnerabilities and has 81 fixes is now available.

SciLinux: SLSA-2020-3253-1 Important: firefox on SL7.x x86_64>

Monday 3rd of August 2020 09:56:22 AM
chromium-browser: Use after free in ANGLE (CVE-2020-6463) * chromium-browser: Inappropriate implementation in WebRTC (CVE-2020-6514) * Mozilla: Potential leak of redirect targets when loading scripts in a worker (CVE-2020-15652) * Mozilla: Memory safety bugs fixed in Firefox 79 and Firefox ESR 68.11 (CVE-2020-15659) SL7 x86_64 firefox-68.11.0-1.el7_8.x86_64.rpm firefox-debuginfo- [More...]

RedHat: RHSA-2020-3281:01 Important: libvncserver security update>

Monday 3rd of August 2020 09:46:28 AM
An update for libvncserver is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability

RedHat: RHSA-2020-3280:01 Moderate: nss and nspr security, bug fix,>

Monday 3rd of August 2020 09:02:22 AM
An update for nss and nspr is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from

More in Tux Machines

Debian Janitor: 8,200 landed changes landed so far

The Debian Janitor is an automated system that commits fixes for (minor) issues in Debian packages that can be fixed by software. It gradually started proposing merges in early December. The first set of changes sent out ran lintian-brush on sid packages maintained in Git. This post is part of a series about the progress of the Janitor. The bot has been submitting merge requests for about seven months now. The rollout has happened gradually across the Debian archive, and the bot is now enabled for all packages maintained on Salsa , GitLab , GitHub and Launchpad. Read more

Optimised authentication methods for Ubuntu Desktop

Still counting on passwords to protect your workstation? When set up properly, alternatives to passwords provide a streamlined user experience while significantly improving security. These alternative authentication methods can also easily be combined to create a custom and adaptive authentication profile. This whitepaper introduces three popular authentication methods that provide a solid alternative to passwords. Perhaps you’d like to configure your laptop for login using a YubiKey hardware token connected to a dock. Another option could be to login with a Duo push notification when not connected to the dock, but use a Google Authenticator one-time password when no network is available. Maybe you need a separate hardware token just for ssh authentication, and you always need to keep a long, complex password for emergency authentication should all other methods fail. All of these scenarios can be easily configured within Ubuntu. Read more

Open Hardware: Arduino, RISC-V and 96Boards

  • Arduino-controlled robot arm is ready to play you in a game of chess

    If you’re tired of playing chess on a screen, then perhaps you could create a robotic opponent like Instructables user Michalsky. The augmented board runs micro-Max source code, enabling chess logic to be executed on an Arduino Mega with room for control functions for a 6DOF robotic arm. The setup uses magnetic pieces, allowing it to pick up human moves via an array of 64 reed switches underneath, along with a couple shift registers. The Mega powers the robot arm accordingly, lifting the appropriate piece and placing it on the correct square.

  • New RISC-V CTO On Open Source Chip Architecture’s Global Data Center Momentum

    With more big international players on board, the foundation's new head of technology sees signs of "state of the art moving forward."

  • Snapdragon 410 based 96Boards CE SBC gets an upgrade

    Geniatech has launched a Linux-ready, $109 “Developer Board 4 V3” compliant with 96Boards CE that offers a Snapdragon 410E, GbE, 3x USB, 802.11ac, GPS, and-25 to 70°C support. Geniatech has released a V3 edition of its 96Boards CE form-factor Developer Board 4 SBC, the third update of the Development Board IV we covered back in 2016. Starting at $109, the Developer Board 4 V3 still runs Linux, Android, and Windows 10 IoT Core on Qualcomm’s 1.2GHz, quad -A53 Snapdragon 410m, although it has been upgraded to the 10-year availability Snapdragon 410E. Geniatech also sells a line of Rockchip based SBCs, among other embedded products.

Audiocasts/Shows: Linux in the Ham Shack and Linux Headlines

  • LHS Episode #360: Zapped

    Welcome to the 360th episode of Linux in the Ham Shack. In this short-topic show, the hosts discuss 1.2GHz distance records, a hybrid antenna for geosynchronous satellite operation, data mode identification for your smart phone, being pwned, Ubuntu 20.04.1, LibreOffice, HamClock and much more. Thanks for listening and hope you have a great week.

  • LHS Episode #361: The Weekender LIV

    It's time once again for The Weekender. This is our bi-weekly departure into the world of amateur radio contests, open source conventions, special events, listener challenges, hedonism and just plain fun. Thanks for listening and, if you happen to get a chance, feel free to call us or e-mail and send us some feedback. Tell us how we're doing. We'd love to hear from you.

  • 2020-08-14 | Linux Headlines

    Google could be extending its Firefox search royalty deal, PyPy leaves the Software Freedom Conservancy, Ubuntu puts out a call for testing, Linspire removes snapd support, Microsoft showcases its open source contributions, and Facebook joins The Linux Foundation.