July 3rd, 2024

Alpine Linux is a security-oriented, lightweight Linux distribution

Alpine Linux, known for its lightweight and security focus, faces a restart requirement for sshd post-upgrade, releases Alpine 3.20.1, and addresses a backdoor in xz package source. Ongoing upgrades and fixes support loongarch64.

Read original articleLink Icon
Alpine Linux is a security-oriented, lightweight Linux distribution

Alpine Linux is a lightweight and security-oriented distribution based on musl libc and busybox. Recent news includes a restart requirement for sshd after upgrading to 9.8_p1 on the edge version, the release of Alpine 3.20.1, and the discovery of a backdoor in the xz package source. The latest development involves upgrades and fixes for various packages like sing-box, plasma5support, and lowjs to support loongarch64. The Alpine Linux Development Team manages these updates and developments.

Related

Aeon: OpenSUSE for Lazy Developers

Aeon: OpenSUSE for Lazy Developers

The openSUSE project introduces Aeon Desktop for developers, offering automated updates through atomic snapshots. Aeon features a minimal GNOME desktop, automatic updates, and optimized packages, catering to a distraction-free development environment.

Canonical's 'distroless' Linux images are a game-changer for enterprises

Canonical's 'distroless' Linux images are a game-changer for enterprises

Canonical introduces 'distroless' Linux images with long-term support, enhancing security by reducing attack surface. Plans include supporting various platforms and adding open-source components to Ubuntu Pro subscriptions, emphasizing AI/ML tools. Collaboration with Microsoft for .NET containers solidifies Canonical's commitment to rapid security resolutions.

RegreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems

RegreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems

A vulnerability in OpenSSH's server on glibc-based Linux systems (CVE-2024-6387) allows remote code execution. Exploiting this flaw requires precise timing. The advisory discusses exploitation details, success rates, and contacting developers for related issues.

OpenSSH Race condition resulting in potential remote code execution

OpenSSH Race condition resulting in potential remote code execution

OpenSSH 9.8, released on July 1, 2024, addresses critical security issues like ObscureKeystrokeTiming vulnerabilities in sshd(8) and ssh(1), plans to deprecate DSA support, and introduces penalties for failed authentications. Various improvements included.

Booting Linux Off of Google Drive

Booting Linux Off of Google Drive

A programmer's competitiveness leads to booting Linux from Google Drive, facing challenges like networking setup and mounting an Arch Linux root from an S3 bucket. Despite setbacks, Linux boots successfully, integrating Google Drive but facing performance issues and complexities.

Link Icon 1 comments