<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>nixCraft &#187; important security</title> <atom:link href="http://www.cyberciti.biz/tips/tag/important-security/feed" rel="self" type="application/rss+xml" /><link>http://www.cyberciti.biz/tips</link> <description>This is a Linux sys admin journal by Vivek about sys admin work, Linux tips &#38; tricks, hacks, news and more.</description> <lastBuildDate>Fri, 03 Feb 2012 22:45:35 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>Important: Openssl Security Update [CVE-2008-5077]</title><link>http://www.cyberciti.biz/tips/cve20085077-important-openssl-security-update.html</link> <comments>http://www.cyberciti.biz/tips/cve20085077-important-openssl-security-update.html#comments</comments> <pubDate>Thu, 08 Jan 2009 21:58:45 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[CentOS]]></category> <category><![CDATA[Debian Linux]]></category> <category><![CDATA[fedora linux]]></category> <category><![CDATA[FreeBSD]]></category> <category><![CDATA[GNU/Open source]]></category> <category><![CDATA[Howto]]></category> <category><![CDATA[Linux]]></category> <category><![CDATA[News]]></category> <category><![CDATA[RedHat/Fedora Linux]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[Slackware]]></category> <category><![CDATA[Suse Linux]]></category> <category><![CDATA[Sys admin]]></category> <category><![CDATA[asc]]></category> <category><![CDATA[attacker]]></category> <category><![CDATA[certificate chain]]></category> <category><![CDATA[CVE-2008-5077]]></category> <category><![CDATA[digital signature]]></category> <category><![CDATA[dsa]]></category> <category><![CDATA[evp]]></category> <category><![CDATA[fedora]]></category> <category><![CDATA[general purpose]]></category> <category><![CDATA[google]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[industry strength]]></category> <category><![CDATA[malicious server]]></category> <category><![CDATA[man in the middle attack]]></category> <category><![CDATA[openssl project]]></category> <category><![CDATA[patch cd]]></category> <category><![CDATA[secure sockets layer]]></category> <category><![CDATA[security issue]]></category> <category><![CDATA[security team]]></category> <category><![CDATA[transport layer security]]></category> <category><![CDATA[yum]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=4283</guid> <description><![CDATA[<div
style='float:right;margin-top:0px;margin-left:5px;'><a
href='http://www.cyberciti.biz/tips/category/unix' title='See all UNIX(R) related articles/tips'><img
src='http://files.cyberciti.biz/cbzcache/3rdparty/unix-logo.gif' border='0' /></a></div> Linux / BSD and UNIX like operating systems includes software from the OpenSSL Project. The OpenSSL is commercial-grade, industry-strength,  full-featured Open Source toolkit implementing the Secure Sockets Layer (SSL v2/v3) and Transport Layer Security (TLS v1) protocols as well as general purpose cryptography library. <br
/><br
/> The Google security team discovered a flaw in the way OpenSSL checked the verification of certificates. An attacker in control of a malicious server,  or able to effect a "man in the middle" attack, could present a malformed SSL/TLS signature from a certificate chain to a vulnerable client and bypass validation. <br
/><br
/> This update has been rated as having important security impact on FreeBSD, all version of Ubuntu / Debian, Red Hat (RHEL), CentOS, Fedora and other open source operating system that depends upon OpenSSL.]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/cve20085077-important-openssl-security-update.html/feed</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>Debian GNU/Linux 4.0 Update 6 Released</title><link>http://www.cyberciti.biz/tips/debian-linux-4-update-6-released.html</link> <comments>http://www.cyberciti.biz/tips/debian-linux-4-update-6-released.html#comments</comments> <pubDate>Thu, 18 Dec 2008 14:07:25 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[Debian Linux]]></category> <category><![CDATA[Linux distribution]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[apt-get command]]></category> <category><![CDATA[aptitude]]></category> <category><![CDATA[arbitrary code execution]]></category> <category><![CDATA[architectures]]></category> <category><![CDATA[debian project]]></category> <category><![CDATA[gnu linux]]></category> <category><![CDATA[how to upgrade debian]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[kernels]]></category> <category><![CDATA[package archive]]></category> <category><![CDATA[security problems]]></category> <category><![CDATA[stable distribution]]></category> <category><![CDATA[stable release]]></category> <category><![CDATA[upgrade debian]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=4012</guid> <description><![CDATA[<p><div
style='float:right;margin-top:0px;margin-left:5px;'><a
href='http://www.cyberciti.biz/tips/category/debian-linux' title='See all Debian/Ubuntu Linux related tips/articles'><img
src='http://files.cyberciti.biz/cbzcache/3rdparty/debianlogo.gif' border='0' /></a></div> Didn't take long to release new <a
href="http://www.cyberciti.biz/tips/debian-gnulinux-40-update-5-available.html">updated version</a>. <br
/> The Debian project is pleased to announce the sixth update of its stable distribution Debian GNU/Linux 4.0 (codename "etch").  This update mainly adds corrections for security problems to the stable release, along with a few adjustment to serious problems. This update has been rated as having important security impact. You are advised to upgrade system ASAP.</p>]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/debian-linux-4-update-6-released.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Security Update: Debian Linux Kernel Local / Remote Vulnerabilities</title><link>http://www.cyberciti.biz/tips/linux-2624-packages-fix-several-vulnerabilities.html</link> <comments>http://www.cyberciti.biz/tips/linux-2624-packages-fix-several-vulnerabilities.html#comments</comments> <pubDate>Thu, 04 Dec 2008 18:54:14 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[Debian Linux]]></category> <category><![CDATA[kernel]]></category> <category><![CDATA[Linux distribution]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[CVE-2008-3528]]></category> <category><![CDATA[CVE-2008-4554]]></category> <category><![CDATA[CVE-2008-4576]]></category> <category><![CDATA[CVE-2008-4618]]></category> <category><![CDATA[CVE-2008-4933]]></category> <category><![CDATA[CVE-2008-4934]]></category> <category><![CDATA[CVE-2008-5025]]></category> <category><![CDATA[CVE-2008-5029]]></category> <category><![CDATA[CVE-2008-5134]]></category> <category><![CDATA[CVE-2008-5182]]></category> <category><![CDATA[CVE-2008-5300]]></category> <category><![CDATA[denial of service]]></category> <category><![CDATA[distros]]></category> <category><![CDATA[escalation]]></category> <category><![CDATA[eugene teo]]></category> <category><![CDATA[ext2]]></category> <category><![CDATA[ext3]]></category> <category><![CDATA[filesystem]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[infinite loop]]></category> <category><![CDATA[kernel panic]]></category> <category><![CDATA[linux kernel]]></category> <category><![CDATA[memory corruption]]></category> <category><![CDATA[milos]]></category> <category><![CDATA[offsets]]></category> <category><![CDATA[output error messages]]></category> <category><![CDATA[problem description]]></category> <category><![CDATA[security holes]]></category> <category><![CDATA[security updates]]></category> <category><![CDATA[semantics]]></category> <category><![CDATA[stable distribution]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=3774</guid> <description><![CDATA[<div
style='float:right;margin-top:0px;margin-left:5px;'><a
href='http://www.cyberciti.biz/tips/category/debian-linux' title='See all Debian/Ubuntu Linux related tips/articles'><img
src='http://files.cyberciti.biz/cbzcache/3rdparty/debianlogo.gif' border='0' /></a></div> Debian project today released a pair of security updates to plug at least ten security holes in its core called Linux kernel. Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or privilege escalation. This update has been rated as having important security impact.]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/linux-2624-packages-fix-several-vulnerabilities.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Red Hat Enterprise Linux 5 IMPORTANT Security Update [ 4-Nov-2008 ]</title><link>http://www.cyberciti.biz/tips/red-hat-enterprise-linux5-critical-security.html</link> <comments>http://www.cyberciti.biz/tips/red-hat-enterprise-linux5-critical-security.html#comments</comments> <pubDate>Tue, 04 Nov 2008 21:35:30 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[kernel]]></category> <category><![CDATA[Linux]]></category> <category><![CDATA[News]]></category> <category><![CDATA[RedHat/Fedora Linux]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[checks]]></category> <category><![CDATA[cr4]]></category> <category><![CDATA[critical security]]></category> <category><![CDATA[CVE-2006-5755 CVE-2007-5907 CVE-2008-2372 CVE-2008-3276 CVE-2008-3527 CVE-2008-3833 CVE-2008-4210 CVE-2008-4302]]></category> <category><![CDATA[denial of service]]></category> <category><![CDATA[enterprise linux]]></category> <category><![CDATA[failure]]></category> <category><![CDATA[implementation]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[kernel updates]]></category> <category><![CDATA[linux kernel]]></category> <category><![CDATA[page cache]]></category> <category><![CDATA[privileged information]]></category> <category><![CDATA[privileges]]></category> <category><![CDATA[reboot]]></category> <category><![CDATA[red hat enterprise]]></category> <category><![CDATA[rhel 5]]></category> <category><![CDATA[security flaws]]></category> <category><![CDATA[setuid]]></category> <category><![CDATA[system kernel]]></category> <category><![CDATA[tavis]]></category> <category><![CDATA[yum]]></category> <category><![CDATA[yum command]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=3434</guid> <description><![CDATA[<div
style='float:right;margin-top:0px;margin-left:5px;'><a
href='http://www.cyberciti.biz/tips/category/redhatfedora-linux' title='See all Redhat/CentOS/Fedora Core related tips/articles'><img
src='http://files.cyberciti.biz/cbzcache/3rdparty/rhlogo.gif' border='0' /></a></div> Red Hat today released kernel updates to fix at least 15 security flaws in its core called Linux kernel. RHEL users can grab the latest updates from RHN website or by simply running yum update command. This update has been rated as having important security impact.]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/red-hat-enterprise-linux5-critical-security.html/feed</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>Critical Red Hat Enterprise Linux Kernel Update</title><link>http://www.cyberciti.biz/tips/critical-red-hat-enterprise-linux-kernel-update.html</link> <comments>http://www.cyberciti.biz/tips/critical-red-hat-enterprise-linux-kernel-update.html#comments</comments> <pubDate>Wed, 01 Oct 2008 08:44:57 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[GNU/Open source]]></category> <category><![CDATA[Linux]]></category> <category><![CDATA[Linux distribution]]></category> <category><![CDATA[package management]]></category> <category><![CDATA[RedHat/Fedora Linux]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[CVE-2007-6417]]></category> <category><![CDATA[CVE-2007-6716]]></category> <category><![CDATA[CVE-2008-2931]]></category> <category><![CDATA[CVE-2008-3272]]></category> <category><![CDATA[CVE-2008-3275]]></category> <category><![CDATA[denial of service]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[information leak]]></category> <category><![CDATA[kernel package]]></category> <category><![CDATA[linux kernel]]></category> <category><![CDATA[overrun]]></category> <category><![CDATA[packet loss]]></category> <category><![CDATA[reboot]]></category> <category><![CDATA[red hat]]></category> <category><![CDATA[samba servers]]></category> <category><![CDATA[security fixes]]></category> <category><![CDATA[security holes]]></category> <category><![CDATA[stopping traffic]]></category> <category><![CDATA[tobias klein]]></category> <category><![CDATA[virtual machines]]></category> <category><![CDATA[yum]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=3002</guid> <description><![CDATA[<div
style='float:right;margin-top:0px;margin-left:5px;'><a
href='http://www.cyberciti.biz/tips/category/redhatfedora-linux' title='See all Redhat/CentOS/Fedora Core related tips/articles'><img
src='http://files.cyberciti.biz/cbzcache/3rdparty/rhlogo.gif' border='0' /></a></div> Red Hat issued an update version of Linux operating system core called kernel that plugs various security holes for RHEL 5.x. This update has been rated as having important security impact. All users are advised to upgrade kernel package. ]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/critical-red-hat-enterprise-linux-kernel-update.html/feed</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>Security Alert: Update FireFox 3.x and 2.x Versions</title><link>http://www.cyberciti.biz/tips/security-alert-update-firefox-3x-and-2x-versions.html</link> <comments>http://www.cyberciti.biz/tips/security-alert-update-firefox-3x-and-2x-versions.html#comments</comments> <pubDate>Thu, 03 Jul 2008 06:49:57 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[GNU/Open source]]></category> <category><![CDATA[Howto]]></category> <category><![CDATA[Linux]]></category> <category><![CDATA[Linux desktop]]></category> <category><![CDATA[Linux distribution]]></category> <category><![CDATA[Mozilla]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[Suse Linux]]></category> <category><![CDATA[Windows]]></category> <category><![CDATA[windows vista]]></category> <category><![CDATA[critical security]]></category> <category><![CDATA[CVE-2008-2798]]></category> <category><![CDATA[CVE-2008-2799]]></category> <category><![CDATA[CVE-2008-2800]]></category> <category><![CDATA[CVE-2008-2801]]></category> <category><![CDATA[CVE-2008-2802]]></category> <category><![CDATA[CVE-2008-2803]]></category> <category><![CDATA[CVE-2008-2805]]></category> <category><![CDATA[CVE-2008-2806]]></category> <category><![CDATA[CVE-2008-2807]]></category> <category><![CDATA[CVE-2008-2808]]></category> <category><![CDATA[CVE-2008-2809]]></category> <category><![CDATA[CVE-2008-2810]]></category> <category><![CDATA[CVE-2008-2811]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[mozialla]]></category> <category><![CDATA[mozilla firefox]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[security issue]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=2433</guid> <description><![CDATA[An updated firefox package that fixes several security issues is now available for various Linux distributions. All Mozilla Firefox users should upgrade to this updated package as update has been rated as having critical security impact.]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/security-alert-update-firefox-3x-and-2x-versions.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Security Update for Red Hat Linux Kernel</title><link>http://www.cyberciti.biz/tips/security-update-for-red-hat-linux-kernel.html</link> <comments>http://www.cyberciti.biz/tips/security-update-for-red-hat-linux-kernel.html#comments</comments> <pubDate>Fri, 27 Jun 2008 09:22:49 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[kernel]]></category> <category><![CDATA[Linux]]></category> <category><![CDATA[Linux distribution]]></category> <category><![CDATA[package management]]></category> <category><![CDATA[RedHat/Fedora Linux]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[cluster administration]]></category> <category><![CDATA[cman]]></category> <category><![CDATA[CVE-2008-0598]]></category> <category><![CDATA[CVE-2008-1367]]></category> <category><![CDATA[CVE-2008-2365]]></category> <category><![CDATA[CVE-2008-2729]]></category> <category><![CDATA[dlm]]></category> <category><![CDATA[gfs]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[red hat]]></category> <category><![CDATA[virtualization]]></category> <category><![CDATA[yum]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=2414</guid> <description><![CDATA[Red Hat has issued a security update for its kernel package. The patch plugs a critical flaw that Red Hat said attackers could use to take control of a vulnerable system.]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/security-update-for-red-hat-linux-kernel.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Security Alert: rhpki-common &#8211; the Red Hat PKI Common Framework</title><link>http://www.cyberciti.biz/tips/cve-2008-1676-redhat-rhpki-common.html</link> <comments>http://www.cyberciti.biz/tips/cve-2008-1676-redhat-rhpki-common.html#comments</comments> <pubDate>Tue, 03 Jun 2008 09:35:04 +0000</pubDate> <dc:creator>Vivek Gite</dc:creator> <category><![CDATA[CentOS]]></category> <category><![CDATA[Howto]]></category> <category><![CDATA[kernel]]></category> <category><![CDATA[Linux]]></category> <category><![CDATA[Linux distribution]]></category> <category><![CDATA[package management]]></category> <category><![CDATA[RedHat/Fedora Linux]]></category> <category><![CDATA[Security Alert]]></category> <category><![CDATA[attacker]]></category> <category><![CDATA[ca certificate]]></category> <category><![CDATA[ca certificates]]></category> <category><![CDATA[certificate authorities]]></category> <category><![CDATA[certificate authority]]></category> <category><![CDATA[certificate status]]></category> <category><![CDATA[CVE-2008-1676]]></category> <category><![CDATA[enterprise software system]]></category> <category><![CDATA[important security]]></category> <category><![CDATA[infrastructure pki]]></category> <category><![CDATA[key service]]></category> <category><![CDATA[protocol manager]]></category> <category><![CDATA[public key infrastructure]]></category> <category><![CDATA[red hat security]]></category> <category><![CDATA[security response team]]></category> <category><![CDATA[urgent security]]></category> <category><![CDATA[yum]]></category> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/?p=2434</guid> <description><![CDATA[Updated rhpki-common packages that fix a security issue are now available for Red Hat Certificate System 7.2. ]]></description> <wfw:commentRss>http://www.cyberciti.biz/tips/cve-2008-1676-redhat-rhpki-common.html/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
