All Questions
142
questions
0
votes
0
answers
28
views
Is it "illegal" to attach and detach ubuntu-pro licenses for the security updates? [closed]
I need to keep my servers update with the security features from "esm-apps" and "esm-infra" those updates can only be achieved via the ubuntu-pro licensing. If i detach the license ...
0
votes
0
answers
44
views
Apparmor "Complain mode" and SSSD not active
I just updated my RPI5 today. Using Ubuntu 24.04 LTS. During the upgrade I got errors messages saying that Apparmor had some problems about sssd.service (/etc/sssd/conf.d)...
First time it happened.. ...
2
votes
1
answer
155
views
How do I apply only security updates in terminal? [duplicate]
My server uses the ubuntu operating system. After a while, I saw a lot of update notifications. But I only want to update the security part, so how do I use the command?
0
votes
1
answer
669
views
Jenkins Installation errors on local Ubuntu
I am installing jenkin on my local ubuntu I recieved these errors>
: GPG error: https://pkg.jenkins.io/debian-stable binary/ Release: The following signatures couldn't be verified because the ...
4
votes
0
answers
69
views
Are security updates phased too?
I just noticed today that some Nvidia-related updates were being phased.
The thing is, these are security updates.
Until now, I was thinking security updates would never be phased, for… well, security ...
1
vote
1
answer
211
views
Sources.list Critical Vulnerability link update
This question is related to this GitHub post.
I just wanted to make sure if I got the link correctly and not made an error I replace the ma.archiveUbuntu links with http://security.ubuntu.com/ubuntu
...
1
vote
1
answer
206
views
Security update missing (apt update) [duplicate]
As a sysadmin, I'm pretty aggressive about the security updates. I'm looking for the best practices when an update is missing in the official repository.
Example
Sept. 1st, CISA releases a security ...
0
votes
0
answers
23
views
Command to list and install Ubuntu Security Updates [duplicate]
Could you please suggest the commands in Ubuntu similar to below Centos YUM commands.
yum --security check-update ## To list security updates
yum --security update ## To install security updates
...
0
votes
1
answer
174
views
When performing security updates that apply to all Ubuntu versions, do the latest releases get priority over older, still supported ones?
At the time of writing (2023-08-12), the Downfall attack on Intel CPUS (CVE-2022-40982) is ongoing and in the process of being patched.
Based on the Linux package page, it looks like only "The ...
0
votes
0
answers
116
views
Unexpected changes to InRelease (on gb.archive.ubuntu.com)
On running sudo apt update I've just been issued the following warnings:
E: Repository 'http://gb.archive.ubuntu.com/ubuntu jammy-updates InRelease' changed its 'Origin' value from 'code stable' to '...
2
votes
1
answer
647
views
best practice updating apps installed from .deb?
I know two sources of software: from a repository or a .deb file.
Repositories are maintained, and are updated every time the system updates - its automatic. (i.e sudo apt update && sudo apt ...
0
votes
0
answers
44
views
Patch management and cautious upgrades
My company runs a handful of Ubuntu servers which are considered mission critical. We can only take them offline for maintenance on very rare occasions. We have had problems in the past with the ...
0
votes
1
answer
565
views
Future Security Update to openssh-server on Ubuntu Server 20.04 LTS?
As per:
https://launchpad.net/ubuntu/focal/+source/openssh/+changelog
and
https://ubuntu.com/blog/what-is-an-ubuntu-lts-release
and
https://ubuntu.com/about/release-cycle
" For each Ubuntu LTS ...
1
vote
0
answers
131
views
Can I use PHP 7.4.x with Ubuntu 20.04
This is a question to better understand security update policy of the Ubuntu LTS distributions.
I understand that a certain Ubuntu version (such as 20.04 LTS) will not upgrade from PHP 7.4 to PHP 8.x ...
-1
votes
0
answers
588
views
Ubuntu Pro Withholding Security Updates [duplicate]
This has been talked about many times over the past few months, but I wanted to mention some specific packages that are available only through Ubuntu Pro, despite being high/critical security ...
1
vote
2
answers
303
views
Why are kernel updates no longer categorized as "security updates" in focal?
After upgrading to Focal, I noticed that kernel updates show up in the GUI under "other updates" instead of "security updates". This can lead to delayed notification of critical ...
-1
votes
1
answer
224
views
Install only Security packages in Ubuntu
I hope you're doing fine,
I'm looking for a way to install manually only security updates in an ubuntu machine
Anyone can help? thanks
0
votes
1
answer
132
views
Security update that doesnt look right
An update for Ubuntu is showing this:
Samba core libraries:
* SECURITY UPDATE: Multiple regressions (LP: #2003867) (LP: #2003891)
- debian/patches/series: disable all security fixes from the ...
0
votes
0
answers
113
views
Unusual activity on my Ubuntu
I am running a device with Ubuntu installed, this device hasn’t been connected to the internet for few months. I have installed Ubuntu on a different device, then used a usb to transfer files between ...
0
votes
0
answers
38
views
security updates not installing - missing directory
I have just updated from 21.04 to 22.04.
A couple of times after booting I get a requestor about updates.
I click the "INSTALL" and it goes off and starts to do it's thing.
Then says "...
0
votes
2
answers
183
views
Update Ubuntu Server
I am attempting to install security updates for installed packages on Ubuntu 22.04 LTS, however when running sudo apt-get update / upgrade and dist-upgrade everything comes back clear like it is ...
-2
votes
2
answers
99
views
Inconsistent messaging about Multiverse repo
The /etc/apt/sources.list file contains: please note that software in multiverse WILL NOT receive any review or updates from the Ubuntu security team.
The UpdateProcedures wiki contains: The Ubuntu ...
0
votes
0
answers
126
views
install security updates without destroying cuda
I need to find a good way how to install Ubuntu (e.g. 18.04) security updates without destroying my Nvidia / CUDA configuration.
Here is what usually happens
I need to use CUDA in very specific ...
0
votes
0
answers
149
views
How to install patch CVE-2022-0847? [duplicate]
I see a new security patch update: CVE-2022-0847 for my Ubuntu 20.04. I need to install it or check it for updates. Due to the article I see keyword - Linux and I tried to install patch using the ...
1
vote
1
answer
458
views
Is it safe to use Ubuntu desktop when it is in ESM stage? [closed]
Question in short
What are the real life (security) risks of using Ubuntu ESM for personal use (Ubuntu for desktop) and what to look out for in general to keep the system secure? Do I need to do ...
2
votes
0
answers
79
views
is it possible to upgrade to kernel 5.14? [duplicate]
is it possible to upgrade to kernel 5.14 ?
what happens if I did it while now am using 21.04 with kernel 5.11.0.34 and kernel 5.14 is not supported in public?
should I always install other security ...
0
votes
1
answer
230
views
Ubuntu release update packages
How often does Ubuntu release update packages, is there a procedure or stipulated time to release these updates? My question is focused on if the manufacturer (Ubuntu) has any policy to release ...
3
votes
1
answer
2k
views
Extended Security Maintenance settings for Ubuntu 18.04
Οut of curiosity Ι tried researching what options I have if I still use my Ubuntu 18.04 after April 2023. So I came across Extended Security Maintenance, which is free for 3 devices for personal use, ...
0
votes
0
answers
128
views
Security-wise, is it safe to remove ubuntu-* packages
I have been cleaning up and organizing packages on my computer, and have discovered the various metapackages like ubuntu-standart and ubuntu-minimal. As they contained a lot of packcages I had no need ...
5
votes
1
answer
370
views
Cannot login in normal mode after security update (Ubuntu 20.04) 😤
It happened again. I installed a security update (I restrain the updates to Security updates only) on Ubuntu 20.04 and, after that installation the boot stalls and login never appears. I could login ...
0
votes
1
answer
1k
views
Update failure due to checksum mismatch
I am using ubuntu 18.04. When I tried to update the software using sudo apt update && sudo apt upgrade, I get a checksum mismatch error:
Get:1 http://archive.ubuntu.com/ubuntu bionic-updates/...
2
votes
0
answers
2k
views
Extended Security Maintenance (ESM) for focal fossa (20.04)
I just ran ubuntu-security-status on a 20.04 installation learnt to enable ESM to get more security updates:
4667 packages installed, of which:
1962 receive package updates with LTS until 4/2025
2694 ...
-2
votes
2
answers
67
views
How secure are official updates by UBUNTU's Update Management?
Untill now I receive my updates on a regular basis through UBUNTU's official Update Management, as provided in the package.
Being aware of threats of malware of any kind I wonder if malificent people ...
2
votes
3
answers
5k
views
How to get the latest dnsmasq version?
I'd like to update to the latest version of dnsmasq (2.83). I used sudo apt update followed by sudo apt upgrade in an attempt to update the software and libraries installed on the machine. I then ...
1
vote
0
answers
134
views
How to fix Linux kernel (HWE) vulnerabilities (USN-3980-2) (MDSUM/RIDL) on Ubuntu 18.04.2 LTS
When I performed a Tenable scan on my Ubuntu 18.04.2 LTS machine it reported the below vulnerability.
Ubuntu 18.04 LTS : Linux kernel (HWE) vulnerabilities (USN-3980-2) (MDSUM/RIDL) (MFBDS/RIDL/...
4
votes
1
answer
125
views
Which CVE notice applies?
I'm new to Ubuntu and I'm finding the notices related to CVEs to be confusing. For example, when I look at a specific CVE detailed at https://people.canonical.com/~ubuntu-security/cve/2019/CVE-2019-...
0
votes
0
answers
265
views
Ensuring latest security updates on Xubuntu with an unsecured connection to the sources
I have Xubuntu 18.04.3 LTS installed on a live USB with persistence. With apt using http sources instead of https. How can I confirm that I am getting all the security updates? According to the ...
6
votes
2
answers
941
views
Is updating Ubuntu riskier than not?
In the past six months, my computer became unusable twice (couldn't login) as a consequence of an update. (A regular update, done by apt-get upgrade in the terminal).
I was able to troubleshoot and ...
4
votes
0
answers
109
views
What is the difference between http://archive.ubuntu.com/ubuntu/dists/bionic-security and http://security.ubuntu.com/ubuntu/dists/bionic-security [duplicate]
I am trying to understand how security updates work for the ubuntu package mirror. I see here that the recommendation is to set up security.ubuntu.com as the apt source for the security pocket, and to ...
0
votes
2
answers
852
views
Ubuntu 14.04.5 LTS Security Patches End Date [duplicate]
What is the end of life for security patches-updates for ubuntu 14.04.5 LTS?
I have seen that EOL for standard support is 2022. Does this apply to security updates too?
Details of OS:
DISTRIB_ID=...
4
votes
1
answer
4k
views
How to update binutils to pick up security patches on Ubuntu Xenial
I have several servers running with Xenial (16.04 LTS). I ran a security scanning tool (AWS Inspector) that shows a list of unpatched CVE vulnerabilities on the server. A lot of them relate to ...
5
votes
3
answers
515
views
Is it safe to update ubuntu over public Wifi?
Is it safe to install ubuntu updates over public Wifi?
Does ubuntu make sure that fake updates don't get installed.
Is it possible that some updates can be compromised?
4
votes
1
answer
390
views
Ubuntu security risk due to default VLC 3.0.4 package?
This is latest security advisory from VLC
Security Advisory 1901
Summary : Read buffer overflow & double free Date
: June 2019 Affected versions : VLC media player 3.0.6 and ...
2
votes
1
answer
2k
views
What is the content of mod_evasive Log File
After the configuration of the mod_evasive. I found a log file there with the name of
dos-172.15.156.125
and the content was in the file is
15243
Could you please help me out what is this no. ...
5
votes
1
answer
426
views
When precisely will security support for Ubuntu GNOME 16.04 LTS end?
Security support for Ubuntu GNOME 16.04 LTS is supposed to end in April 2019, that is, this month. However, I couldn’t find any information regarding when exactly in April this will happen. On what ...
4
votes
1
answer
735
views
Is it safe to automatically install security updates?
In the "Software & Updates" preferences, there is an option to automatically download and install security updates:
It seems like this is a very reasonable option. I won't have to bother with ...
1
vote
0
answers
115
views
How can I tell what software and updates must be checked or unchecked?
Is there a comprehensive list detailing the software and updates somewhere?
I obviously want my pc as secure as possible but also want everything running smoothly.
In Ubuntu software - everything ...
6
votes
1
answer
2k
views
Inconsistency between unattended-upgrade and debsecan
To install security updates automatically I use unattended-upgrade:
$ sudo unattended-upgrade -d | tail -1
No packages found that can be upgraded unattended and no pending auto-removals
I also tried ...
0
votes
1
answer
92
views
Make 50unattended-upgrades writable
I'm trying to follow this guide to setup automatic security updates to my server:
https://www.howtoforge.com/tutorial/how-to-setup-automatic-security-updates-on-ubuntu-1604/
I'm at step 2 and trying ...
0
votes
1
answer
98
views
Support for the tomcat8 package
On Ubuntu 16.04 I've been using the tomcat8 package. I enjoyed an automatic installation process and was guaranteed to receive packaged security updates for 5 years courtesy of Canonical. So, even ...