* bsc#1240958 * bsc#1240961 * bsc#1240962 * bsc#1240963 * bsc#1240964
* bsc#1240893 Cross-References: * CVE-2025-31492
* bsc#1240971 Cross-References: * CVE-2025-32464
* bsc#1240880 * bsc#1240881 Cross-References: * CVE-2025-32364
https://security-tracker.debian.org/tracker/DSA-5903-1
Academic institutions have a unique set of characteristics that makes them attractive to bad actors. What’s the right antidote to cyber-risk?
* bsc#1239826 * jsc#MSQA-936 Cross-References: * CVE-2025-23392
* bsc#1240893 Cross-References: * CVE-2025-31492
* bsc#1239863 * bsc#1239864 * bsc#1240958 * bsc#1240961 * bsc#1240962
* bsc#1224295 * bsc#1234840 * bsc#1239308 Cross-References:
* bsc#1239649 Cross-References: * CVE-2024-12088
* bsc#1065729 * bsc#1179878 * bsc#1180814 * bsc#1185762 * bsc#1195823
* bsc#1240971 Cross-References: * CVE-2025-32464
* bsc#1240958 * bsc#1240961 * bsc#1240962 * bsc#1240963 * bsc#1240964
* bsc#1228714 * bsc#1232818 * bsc#1235218 * bsc#1238788 * bsc#1238790
Perl could be made to crash or run programs if it processed specially crafted data.
* bsc#1065729 * bsc#1180814 * bsc#1183682 * bsc#1190336 * bsc#1190768
* bsc#1228714 * bsc#1232818 * bsc#1235218 * bsc#1238788 * bsc#1238790
* bsc#1228714 * bsc#1235218 Cross-References: * CVE-2024-41090
Multiple security issues were discovered in MediaWiki, a website engine for collaborative work, which could result in information disclosure, cross-site scripting or restriction bypass.
Update to 135.0.7049.84 * CVE-2025-3066: Use after free in Site Isolation
Update to 6.0.39 (CVE-2024-45700, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699)
Update to 135.0.7049.84 * CVE-2025-3066: Use after free in Site Isolation
https://security-tracker.debian.org/tracker/DSA-5902-1
https://security-tracker.debian.org/tracker/DSA-5901-1
Multiple vulnerabilities were found in wpa, a set of tools including the widely-used wpasupplicant client for authenticating with WPA and WPA2 wireless networks.
A floating-point exception in the PSStack::roll function of Poppler before 25.04.0 can cause an application to crash when handling malformed inputs associated with INT_MIN. (CVE-2025-32364) Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in
ReadJXLImage in JXL in GraphicsMagick before 1.3.46 lacks image dimension resource limits. (CVE-2025-27795) References: – https://bugs.mageia.org/show_bug.cgi?id=34163
https://security-tracker.debian.org/tracker/DSA-5900-1
https://security-tracker.debian.org/tracker/DSA-5899-1
Update to 1.34.5. Fixes CVE-2025-31498.
Limit the data stored in session state. Remove the empty area below the title bar in Web Inspector when not docked. Fix various crashes and rendering issues
Update to 135.0.7049.52 High CVE-2025-3066: Use after free in Navigations Medium CVE-2025-3067: Inappropriate implementation in Custom Tabs Medium CVE-2025-3068: Inappropriate implementation in Intents Medium CVE-2025-3069: Inappropriate implementation in Extensions
Update to 7.2.5 (CVE-2024-36469, CVE-2024-42325, CVE-2024-45700)
* bsc#1073014 Cross-References: * CVE-2017-17521
* bsc#1239618 * jsc#PED-12500 * jsc#SLE-21253 Cross-References:
For most of us, tax season is all about finding documents, filling out forms, and crossing your fingers you’re getting a refund. But while you’re busy trying to get your returns filed on time, tax scammers and identity thieves are busy trying to steal your precious personal information. During tax season, a vast amount of […]
