LWN.net Logo

LWN Security Resources

LWN.net offers several security-related resources, including the security alert database, the vulnerability database, and the weekly edition security page.

The article index

See the LWN Security Article index for access to all LWN security articles, organized by topic.

Recent security alerts

DistributionIDPackageDate
openSUSE openSUSE-SU-2013:0813-1 clamav2013-05-21
Fedora FEDORA-2013-8212 krb52013-05-21
openSUSE openSUSE-SU-2013:0812-1 tiff2013-05-21
openSUSE openSUSE-SU-2013:0812-2 tiff2013-05-21
Fedora FEDORA-2013-7993 tomcat2013-05-21

View the full security alert database.

Recent vulnerabilities

The following vulnerabilities have recently seen updates or alerts.

IDUpdatePackage(s) Description
551277 May 21, 2013 krb5 krb5: UDP ping-pong flaw in kpasswd
551276 May 21, 2013 tomcat tomcat: information disclosure
548896 May 21, 2013 clamav clamav: multiple vulnerabilities
549859 May 21, 2013 libtiff libtiff: two vulnerabilities
550935 May 21, 2013 linux kernel: privilege escalation

View the full vulnerability database.

Recent LWN.net security pages

Here are the most recent LWN.net security pages, with a comprehensive roundup of a week's worth security-related information.

DateContents
May 15, 2013 Linux web servers pushing malware; New vulnerabilities in gpsd, httpd, java, kernel, ...
May 08, 2013 IBM's homomorphic encryption library; New vulnerabilities in kernel, mesa, phpmyadmin, xen, ...
May 01, 2013 Code authenticity checking; New vulnerabilities in clamav, kernel, qemu, strongswan, ...
Apr 24, 2013 Ubuntu app confinement; New vulnerabilities in java, kernel, mysql, xen, ...
Apr 17, 2013 Mixed web content; New vulnerabilities in curl, kernel, krb5, xen, ...
Apr 10, 2013 Entropy Broker; New vulnerabilities in asterisk, kernel, postgresql, samba, ...
Apr 03, 2013 Exploiting digital cameras; New vulnerabilities in bind, glibc, mantis, moodle, ...
Mar 27, 2013 OpenSSH 6.2; New vulnerabilities in gnome-online-accounts, kernel, libxml2, privoxy, ...
Mar 20, 2013 Mozilla Persona; New vulnerabilities in chromium, clamav, poppler, wireshark, ...
Mar 13, 2013 Hockeypuck key server; New vulnerabilities in gksu-polkit, kernel, openshift, puppet, ...
Mar 07, 2013 Oxford blocks Google Docs; New vulnerabilities in kernel, openafs, openjdk-6, sudo, ...
Feb 28, 2013 Android security underpinnings; New vulnerabilities in java, kernel, openssh, rails, ...
Feb 20, 2013 Three kernel vulnerabilities; New vulnerabilities in dbus-glib, java, mozilla, xen, ...
Feb 13, 2013 Recent Java vulnerabilities; LWN security survey; New vulnerabilities in drupal, gnutls, kernel, vlc, ...
Feb 06, 2013 CSP for cross-site scripting protection; New vulnerabilities in chromium, java, libupnp, samba, ...
Jan 30, 2013 Filtering SCSI commands; New vulnerabilities in drupal, inkscape, libvirt, samba4, ...
Jan 23, 2013 HTTPS interception in Nokia's mobile browser; New vulnerabilities in ganglia, kernel, mysql, nagios, ...
Jan 17, 2013 Keeping administrators up to date; New vulnerabilities in conga, java, mysql, rails, ...
Jan 09, 2013 Attacking full-disk encryption with Inception; New vulnerabilities in cups, inkscape, mozilla, rails, ...
Jan 03, 2013 Inferring TCP sequence numbers; New vulnerabilities in chromium, freetype2, gnupg, mahara, ...

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds