https://security-tracker.debian.org/tracker/DSA-5877-1
* bsc#1208995 * bsc#1220946 * bsc#1225742 * bsc#1232472 * bsc#1232919
* bsc#1208995 * bsc#1220946 * bsc#1224700 * bsc#1225742 * bsc#1232905
* bsc#1050081 * bsc#1051510 * bsc#1065729 * bsc#1100823 * bsc#1101669
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
* bsc#1237681 Cross-References: * CVE-2025-27144
* bsc#1237681 Cross-References: * CVE-2025-27144
* bsc#1236531 * bsc#1237681 Cross-References: * CVE-2023-45288
Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 * CVE-2025-1915: Improper Limitation of a Pathname to a Restricted Directory in DevTools * CVE-2025-1916: Use after free in Profiles
Unbundle libxml2.
Multiple security issues were discovered in Thunderbird, which could result in denial of service or the execution of arbitrary code. For the stable distribution (bookworm), these problems have been fixed in
Two vulnerabilities were discovered in openvpn, a virtual private network application which could result in authentication bypass or data injection.
High CVE-2025-1914: Out of bounds read in V8. Medium CVE-2025-1915: Improper Limitation of a Pathname to a Restricted Directory in DevTools. Medium CVE-2025-1916: Use after free in Profiles. Medium CVE-2025-1917: Inappropriate Implementation in Browser UI.
Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 * CVE-2025-1915: Improper Limitation of a Pathname to a Restricted Directory in DevTools * CVE-2025-1916: Use after free in Profiles
The newest upstream commit Security fix for CVE-2025-27423
update to version 2.25.1, CVE-2025-27154
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. (CVE-2023-5520) Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV. (CVE-2024-0321) Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
https://security-tracker.debian.org/tracker/DSA-5876-1
https://security-tracker.debian.org/tracker/DSA-5875-1
Several security issues were fixed in the Linux kernel.
Updated to latest upstream (136.0)
Refresh patches Add -std=gnu17 to CFLAGS to fix the build 042-man2html-CVE-2021-40647.patch Add more patches from Debian
Refresh patches Add -std=gnu17 to CFLAGS to fix the build 042-man2html-CVE-2021-40647.patch Add more patches from Debian
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
Several security issues were fixed in Ansible.
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code.
Updated to latest upstream (136.0)
The newest upstream commit Security fix for CVE-2025-27423
New mozilla-thunderbird packages are available for Slackware 15.0 and -current to fix security issues.
https://security-tracker.debian.org/tracker/DSA-5873-1
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code.
Several security issues were fixed in the Linux kernel.
* bsc#1237683 Cross-References: * CVE-2024-43097 * CVE-2025-1930
Several security issues were fixed in the Linux kernel.
A security issue was fixed in Linux kernel.
