A significant wave of Linux security patches has been released across multiple distributions, including Debian, Fedora, Ubuntu, Red Hat, Rocky, Slackware, and SUSE, with a focus on Mozilla's Thunderbird and Firefox-ESR, which account for a large number of the reported vulnerabilities. Debian alone has issued updates for 62 CVEs in Firefox-ESR and 44 in Thunderbird, while security fixes for Python's query string parser could potentially break systems relying on semicolons for separation. Other notable updates include critical patches for OpenSSL and various kernel vulnerabilities, particularly affecting server-side applications that utilize PHP or handle email through Thunderbird. Administrators are advised to prioritize these updates, especially those related to OpenSSL and the major Mozilla updates, while also ensuring proper management of any potential application breakage due to the changes in the Python parser
GridinSoft Anti-Malware 5.0.30 released
GridinSoft Anti-Malware has recently released its version 5.0.30, enhancing its capability to tackle PC threats such as adware, malware, and potentially unwanted programs (PUPs). This software allows users to effectively remove these threats, ensuring their systems are safeguarded against various virus and malware attacks.
Linux Security Roundup: CVEs in Debian and Ubuntu Kernels, RHEL Sends 27 Errata
The latest Linux security updates encompass a range of distributions, with significant vulnerabilities identified in Debian, Ubuntu, and Red Hat systems. Debian's kernel update introduces hundreds of CVEs, while Ubuntu addresses critical flaws in its Oracle kernel alongside numerous other vulnerabilities. Red Hat issued 27 errata, including a critical kernel update for NVIDIA, and critical vulnerabilities were also reported for FreeIPA and PostgreSQL in Rocky Linux. Users are urged to prioritize applying the most critical patches, especially for FreeIPA updates on AlmaLinux and Rocky Linux 10, and to ensure their systems are up-to-date with kernel updates across various distributions
OpenSSL 4.0.3 Releases 14 Security Fixes Across QUIC, DTLS and SM2
OpenSSL 4.0.3 has been released, addressing 14 vulnerabilities related to QUIC, DTLS, X.509 certificate handling, and the SM2 cryptographic suite, with the most severe flaw rated as High. Notable issues include an AES-SIV authentication error that could misreport tampered data and a base64 encoding bug that may lead to truncated output. The release highlights significant themes, particularly the prevalence of QUIC vulnerabilities and recurring timing side-channel issues in cryptographic operations. OpenSSL is rapidly evolving, with a final release of version 4.1 expected soon, which will include DTLS 1.3 support and a commitment to regular major updates every two years
Linux Security Roundup: SUSE Kernel, rsync, and Exim CVEs
The latest Linux security roundup highlights significant updates, with SUSE releasing a kernel patch addressing 133 CVEs, while Debian and Ubuntu also rolled out important updates for rsync, dovecot, and Exim, among others. Notably, vulnerabilities in Slackware's groff and pcre2 libraries remind us of long-standing security issues, some dating back decades, while AlmaLinux and Oracle Linux also issued multiple security advisories for essential packages. Users of Fedora and Rocky Linux should prioritize updates for Chromium and Ruby, respectively, due to their critical vulnerabilities. Administrators are advised to carefully assess the advisory tables and apply the necessary patches, keeping in mind that some updates may require system reboots
Linux Security Roundup: Red Hat Flags 3 Critical CVEs, Ubuntu PyJWT Fix Ships
Linux distributions, including Red Hat, Ubuntu, Debian, Fedora, Rocky Linux, and SUSE, have recently released security updates addressing various vulnerabilities, with Red Hat highlighting three critical advisories, particularly for the unbound DNS resolver and Red Hat Identity Management. Ubuntu's PyJWT update fixes five CVEs, including a significant signature-bypass vulnerability that could allow token forgery. Debian's updates cover multiple packages, with a focus on libheif, which has several CVEs related to untrusted file processing. Users are advised to prioritize patching critical vulnerabilities, particularly those related to DNS resolution and token forgery, before addressing the rest of the updates
Linux Security Roundup: Unbound Criticals and a Chromium Flood Across Six Distros
Six Linux distributions have released important security updates, primarily addressing critical vulnerabilities in the DNS resolver Unbound and various web browsers. Unbound has received critical ratings due to remote code execution and DNSSEC flaws, while browsers including Firefox, Thunderbird, and Chromium have been updated to fix numerous vulnerabilities related to use-after-free and privilege escalation bugs. The security updates across AlmaLinux, Debian, Fedora, RHEL, Rocky Linux, and SUSE include a significant focus on patching these critical issues, with recommendations to prioritize updating DNS resolvers and browsers first. Additional advisories cover various packages, including fixes for other software vulnerabilities and maintenance issues, emphasizing the need for administrators to apply these updates promptly to secure their systems
Linux Security Roundup: Unbound, Chromium, and WebkitGTK Lead the List
A recent wave of security advisories has highlighted critical vulnerabilities across various Linux distributions, particularly focusing on the unbound DNS resolver, which poses a severe remote code execution risk. Fedora's webkitgtk upgrade also addresses numerous CVEs, including hundreds from ANGLE and Skia, emphasizing the importance of patching these components first if they are in use. Other distributions like AlmaLinux, RHEL, and SUSE have also reported similar vulnerabilities, urging users to prioritize updates for critical packages. Overall, system administrators are advised to apply these patches promptly, especially for the unbound and Chromium-related updates, to mitigate potential security threats
Avira Phantom VPN 2.47.1 released
Avira Phantom VPN version 2.47.1 has been released, offering users a straightforward solution for concealing their internet traffic and enhancing online privacy. This VPN service is particularly beneficial when connecting to unsecured Wi-Fi hotspots in public spaces, ensuring that users' data remains secure.
Linux Security Roundup: 58-CVE Chromium, Critical unbound DNS, and Ubuntu apology
The latest Linux security roundup highlights significant updates across eight distributions, particularly noting Fedora's release of a Chromium update addressing 58 CVEs and critical fixes for the unbound DNS resolver in Red Hat and Rocky Linux. Other notable updates include critical patches for the Ansible Automation Platform and a rare apology from Ubuntu for a regression in its earlier XDG Desktop Portal fix. The roundup also mentions various updates for Firefox, PostgreSQL, and the container toolchain, with varying patch efforts across the distributions. Overall, the updates reflect a mix of critical vulnerabilities and routine maintenance patches, emphasizing the importance of timely updates to maintain security across Linux systems
Wireshark 4.6.9 and 4.4.19 Release Patches 35 Vulnerabilities Across Stable and Old Stable Lines
Wireshark has released two security updates, versions 4.6.9 and 4.4.19, which address at least 35 vulnerabilities across its current and older stable lines. The updates primarily fix local crashes triggered by opening crafted capture files, but some vulnerabilities can be exploited remotely and may lead to remote code execution (RCE). The fixes include common parser errors such as integer overflows and out-of-bounds reads, with notable contributions from several security researchers. Users are advised to update both installations while ensuring the integrity of the signed packages prior to installation
Linux Security Roundup: Browsers and SSH Bugs Dominate
The latest Linux security updates are heavily focused on browser-related vulnerabilities, with significant fixes for Chromium and Firefox, which have introduced 58 and 73 CVEs respectively. OpenSSH, curl, and sudo advisories are also prevalent across various distributions, necessitating patching efforts for those who manage multiple systems. Other notable updates include kernel patches for RHEL and Ubuntu, which require reboots after installation due to ABI changes that impact third-party modules. Overall, users are advised to prioritize browser and OpenSSH updates, followed by curl, sudo, and PostgreSQL fixes, while ensuring they follow the specific update protocols for their respective Linux distributions
Malwarebytes 5.7.1.346 / 5.27.1.4191 released
Malwarebytes has recently released versions 5.7.1.346 and 5.27.1.4191, providing an effective antivirus solution designed to safeguard users from various cyber threats, including malware, ransomware, exploits, and harmful websites and applications. The user-friendly interface of Malwarebytes Anti-Malware makes it accessible even for novices, allowing users to launch scans with ease to detect and remove threats for free. For those seeking enhanced protection, the Premium version offers real-time scanning capabilities, blocking potential infections proactively.
Linux Security Roundup: RHEL Ships 42 Errata, Ubuntu Kernel Fix Tracks 200+ CVEs
Red Hat has released a substantial batch of 42 security errata for RHEL, with nearly all rated as Important, while Ubuntu's recent Raspberry Pi kernel fix addresses over 200 vulnerabilities. Among the critical updates, strongSwan's authentication bypass in Ubuntu and a leaked file descriptor in Slackware's nsenter tool are highlighted as urgent. Additionally, Oracle, Fedora, and AlmaLinux have also issued multiple updates to address various vulnerabilities across their systems. Users running these distributions are advised to apply the updates promptly and reboot as necessary, while those on older Ubuntu versions should note that many fixes require a subscription for access
Linux Security Roundup: 153-Vuln Kernel, 30-CVE Unbound, and RHEL Batch
This week's Linux security roundup highlights significant updates across various distributions, including Debian, Fedora, Red Hat, and SUSE. Debian and Freexian issued advisories for a 6.12 kernel patch and a DNS resolver with 30 CVEs, while Fedora addressed vulnerabilities in doctl among other packages. Red Hat released a substantial batch of 32 advisories, impacting kernel, OpenSSH, and Rust, whereas SUSE's updates included a kernel-devel package with 153 vulnerabilities. Users are urged to promptly upgrade affected packages to mitigate potential security risks
Linux Security Roundup: Chromium's 230 CVEs, Empty-Key JWT Flaw, and More Distro Patches
Linux distributions, including Fedora, Debian, Oracle, and Ubuntu, have issued security advisories, with a notable update for Chromium that addresses 230 CVEs, alongside other important fixes. A significant flaw was discovered in Debian's ruby-jwt, where an empty key can validate as a legitimate HMAC secret, allowing attackers to forge tokens. Additionally, Fedora's update for Dovecot includes critical vulnerabilities related to arbitrary code execution and authentication bypass, while Oracle has rolled out ten advisories addressing various networking bugs across multiple versions. Other updates include fixes for Ubuntu's rclone, which improperly managed unauthenticated calls, allowing arbitrary command execution, emphasizing the need for users to apply these updates promptly
Exim 4.100.1 Released: Four Vulnerabilities Patched with No Workarounds
Exim has released version 4.100.1, addressing four vulnerabilities related to heap corruption, a use-after-free bug, a stack-data leak, and SMTP smuggling, with no workarounds for three of them. The vulnerabilities affect a wide range of Exim versions, from 4.83 (2014) to 4.100, putting many production mail servers at risk. The Exim Project has opted to track these issues using their own Global CVE Allocation System rather than the traditional MITRE CVE program. Due to the severity of the flaws, especially the heap over-read and stack leak, users are strongly advised to upgrade to 4.100.1 to mitigate risks
Linux Security Roundup: Browser CVEs Explode Across Eight Distro Updates
Recent Linux security updates have affected eight distributions, with browsers like Chromium and Firefox facing a significant number of vulnerabilities. SUSE reported 230 CVEs for Chromium, while Debian listed 266, raising concerns about the accuracy of these figures. Kernel updates, particularly in AlmaLinux and Oracle, added numerous CVEs related to memory safety and use-after-free issues, highlighting the importance of timely patches. Additionally, Ubuntu's recent updates included a retraction of a fix that disrupted certain applications, emphasizing the need for careful review of security advisories before applying updates
Linux Security Roundup: nginx, Mozilla, and .NET Vulnerabilities Span RHEL, Fedora, Debian, and Ubuntu
Recent Linux security updates have highlighted vulnerabilities across major distributions, including RHEL, Fedora, Debian, and Ubuntu, particularly affecting nginx, Mozilla, and .NET. RHEL has issued 48 advisories, 40 rated Important, including critical updates for gstreamer and corosync, necessitating immediate attention and potential reboots. Fedora's updates, while fewer, include significant patches for the open62541 library and RoundCube, addressing critical security flaws such as arbitrary code execution and various injection vulnerabilities. Other distributions like Ubuntu, Rocky, SUSE, and Slackware also released updates addressing numerous security issues, emphasizing the importance of prioritizing updates based on severity rather than convenience
ISC Patches 14 BIND 9 Vulnerabilities in 9.20.29 and 9.21.26
ISC has announced the release of BIND versions 9.20.29 (stable) and 9.21.26 (development), addressing 14 security vulnerabilities, including eight rated as high severity related to cache poisoning and denial-of-service attacks. While ISC reported no known active exploitation of these vulnerabilities, they recommend users upgrade to the nearest patched version as soon as possible. The vulnerabilities span several versions, affecting 9.18, 9.20, and 9.21, with 9.20.29 closing all 14 security issues, while 9.21.26 resolves 13. The updates also include performance improvements and fixes for various bugs, emphasizing the importance of maintaining secure and efficient DNS operations