Even Linux need some security updates. Here's a roundup of last week's Linux updates for Arch Linux, CentOS, Debian GNU/Linux, Fedora Linux, Gentoo Linux, Oracle Linux, Red Hat, Slackware Linux, SUSE Linux, and Ubuntu Linux.
Arch Linux
- ASA-202003-8: firefox: multiple issues
- ASA-202003-7: mbedtls: private key recovery
- ASA-202003-5: python-django: sql injection
- ASA-202003-6: linux: multiple issues
- ASA-202003-4: golang-golang-x-crypto: denial of service
- ASA-202003-3: ppp: arbitrary code execution
CentOS
- CESA-2020:0703 Important CentOS 7 http-parser Security Update
- CESA-2020:0704 Important CentOS 7 xerces-c Security Update
- CESA-2020:0702 Important CentOS 6 xerces-c Security Update
- CEBA-2020:0749 CentOS 6 nfs-utils BugFix Update
- CESA-2020:0775 Important CentOS 6 qemu-kvm Security Update
- CESA-2020:0726 Important CentOS 6 sudo Security Update
Debian GNU/Linux
- DSA 4637-1: network-manager-ssh security update
- DLA 2136-1: libvpx security update
- ELA-217-1 tomcat7 security update
- DSA 4638-1: chromium security update
- DSA 4639-1: firefox-esr security update
- DLA 2139-1: dojo security update
- DLA 2137-1: sleuthkit security update
- DLA 2138-1: wpa security update
- DLA 2140-1: firefox-esr security update
- DLA 2141-1: yubikey-val security update
- DLA 2142-1: slirp security update
Fedora
- Fedora 30 Update: podman-1.8.0-4.fc30
- Fedora 30 Update: cacti-spine-1.2.10-1.fc30
- Fedora 30 Update: cacti-1.2.10-1.fc30
- Fedora 31 Update: cacti-spine-1.2.10-1.fc31
- Fedora 31 Update: cacti-1.2.10-1.fc31
- Fedora 31 Update: python-psutil-5.6.7-1.fc31
- Fedora 30 Update: java-1.8.0-openjdk-aarch32-1.8.0.242.b07-1.fc30
- Fedora 30 Update: seamonkey-2.53.1-2.fc30
- Fedora 30 Update: mbedtls-2.16.5-1.fc30
- Fedora 30 Update: sympa-6.2.54-1.fc30
- Fedora 30 Update: zsh-5.7.1-6.fc30
- Fedora 31 Update: firefox-74.0-3.fc31
- Fedora 31 Update: java-1.8.0-openjdk-aarch32-1.8.0.242.b07-1.fc31
- Fedora 31 Update: monit-5.26.0-1.fc31
- Fedora 31 Update: mbedtls-2.16.5-1.fc31
- Fedora 31 Update: sympa-6.2.54-1.fc31
- Fedora 31 Update: zsh-5.7.1-6.fc31
- Fedora 31 Update: couchdb-3.0.0-1.fc31
- Fedora 31 Update: mediawiki-1.32.6-1.fc31
- Fedora 30 Update: mediawiki-1.32.6-1.fc30
- Fedora 30 Update: python3-typed_ast-1.4.0-2.fc30
Gentoo Linux
- GLSA 202003-08 : Chromium, Google Chrome: Multiple vulnerabilities
- GLSA 202003-07 : RabbitMQ C client: Arbitrary code execution
- GLSA 202003-06 : Ruby: Multiple vulnerabilities
- GLSA 202003-05 : e2fsprogs: Arbitrary code execution
- GLSA 202003-04 : Vim, gVim: Remote execution of arbitrary code
- GLSA 202003-03 : PostgreSQL: Multiple vulnerabilities
- GLSA 202003-02 : Mozilla Firefox: Multiple vulnerabilities
- GLSA 202003-01 : Groovy: Arbitrary code execution
- GLSA 202003-09 : OpenID library for Ruby: Server Side Request Forgery
- GLSA 202003-12 : sudo: Multiple vulnerabilities
- GLSA 202003-11 : SVG Salamander: Server-Side Request Forgery
- GLSA 202003-10 : Mozilla Thunderbird: Multiple vulnerabilities
- GLSA 202003-22 : WebkitGTK+: Multiple vulnerabilities
- GLSA 202003-21 : runC: Multiple vulnerabilities
- GLSA 202003-20 : systemd: Heap use-after-free
- GLSA 202003-19 : PPP: Buffer overflow
- GLSA 202003-18 : libvirt: Multiple vulnerabilities
- GLSA 202003-17 : nfdump: Multiple vulnerabilities
- GLSA 202003-16 : SQLite: Multiple vulnerabilities
- GLSA 202003-15 : ICU: Integer overflow
- GLSA 202003-14 : atftp: Multiple vulnerabilities
- GLSA 202003-13 : musl: Stack-based buffer overflow
Oracle Linux
- ELSA-2020-5562 Important: Oracle Linux 7 curl security update
- ELSA-2020-5561 Important: Oracle Linux 6 curl security update
- ELSA-2020-0708 Important: Oracle Linux 8 http-parser security update
- ELSA-2020-5562 Important: Oracle Linux 7 curl security update (aarch64)
- New Ksplice updates for UEKR4 4.1.12 on OL6 and OL7 (ELBA-2020-5557)
- ELBA-2020-0749 Oracle Linux 6 nfs-utils bug fix and enhancement update
- ELSA-2020-0775 Important: Oracle Linux 6 qemu-kvm security update
- ELBA-2020-0781 Oracle Linux 7 python-requests bug fix update
- New Ksplice updates for UEKR2 2.6.39 on OL5 and OL6 (ELSA-2020-5560)
- ELSA-2020-0790 Important: Oracle Linux 6 kernel security and bug fix update
- ELBA-2020-5565 Oracle Linux 8 gcc bug fix update
- ELBA-2020-0781 Oracle Linux 7 python-requests bug fix update (aarch64)
- New Ksplice updates for RHCK 6 (ELSA-2020-0790)
Red Hat
- RHSA-2020:0738-01: Important: chromium-browser security update
- RHSA-2020:0740-01: Important: kernel-alt security and bug fix update
- RHSA-2020:0689-01: Moderate: OpenShift Container Platform 4.2.22 skopeo security update
- RHSA-2020:0688-01: Moderate: OpenShift Container Platform 4.2.22 runc security update
- RHSA-2020:0775-01: Important: qemu-kvm security update
- RHSA-2020:0754-01: Moderate: novnc security update
- RHSA-2020:0756-01: Moderate: ansible security update
- RHSA-2020:0773-01: Important: qemu-kvm-rhev security update
- RHSA-2020:0779-01: Important: chromium-browser security update
- RHSA-2020:0681-01: Moderate: OpenShift Container Platform 4.3.5 security update
- RHSA-2020:0679-01: Moderate: OpenShift Container Platform 4.3.5 skopeo security update
- RHSA-2020:0680-01: Low: OpenShift Container Platform 4.3.5 podman security update
- RHSA-2020:0683-01: Moderate: OpenShift Container Platform 4.3.5 openshift-enterprise-ansible-operator-container security update
- RHSA-2020:0790-01: Important: kernel security and bug fix update
- RHSA-2020:0697-01: Moderate: OpenShift Container Platform 4.1.38 skopeo security update
- RHSA-2020:0695-01: Moderate: OpenShift Container Platform 4.1.38 security update
- RHSA-2020:0694-01: Moderate: OpenShift Container Platform 4.1.38 security update
- RHSA-2020:0813-01: Critical: Red Hat JBoss Enterprise Application Platform 7.2 security update
- RHSA-2020:0812-01: Critical: Red Hat JBoss Enterprise Application Platform 7.2 security update
- RHSA-2020:0804-01: Important: Red Hat JBoss Enterprise Application Platform 7.2.7 on RHEL 6 security update
- RHSA-2020:0805-01: Important: Red Hat JBoss Enterprise Application Platform 7.2.7 on RHEL 7 security update
- RHSA-2020:0811-01: Important: Red Hat JBoss Enterprise Application Platform 7.2.7 security update
- RHSA-2020:0806-01: Important: Red Hat JBoss Enterprise Application Platform 7.2.7 on RHEL 8 security update
Slackware Linux
SUSE Linux
- openSUSE-SU-2020:0320-1: moderate: Security update for yast2-rmt
- openSUSE-SU-2020:0314-1: moderate: Security update for ovmf
- openSUSE-SU-2020:0322-1: important: Security update for chromium
- openSUSE-SU-2020:0324-1: important: Security update for chromium
- openSUSE-SU-2020:0325-1: important: Security update for python-bleach
- openSUSE-SU-2020:0332-1: moderate: Security update for gd
- openSUSE-SU-2020:0331-1: Security update for postgresql10
- openSUSE-SU-2020:0336-1: important: Security update for the Linux Kernel
- openSUSE-SU-2020:0340-1: important: Security update for MozillaFirefox
Ubuntu Linux
- USN-4297-1: runC vulnerabilities
- USN-4298-1: SQLite vulnerabilities
- USN-4299-1: Firefox vulnerabilities