Multiple security issues were discovered in LXD, a system container and virtual machine manager, which could result in a bypass of security restrictions or the execution of arbitrary commands. For the stable distribution (trixie), these problems have been fixed in version 5.0.2+git20231211.1364ae4-9+deb13u7.
Multiple security vulnerabilities were discovered in Tor, a connection- based low-latency anonymous communication system, would could result in denial of service. For the stable distribution (trixie), this problem has been fixed in version 0.4.9.11-0+deb13u1.
Paul Johnson discovered that libhtml-parser-perl, a collection of modules that parse HTML text documents, read freed heap memory in _decode_entities(). For Debian 11 bullseye, this problem has been fixed in version 3.75-1+deb11u1.
Moderate: autotrace security update
Moderate: autotrace security update
Important: pandoc security update
Moderate: autotrace security update
Moderate: lynx security update
Important: pandoc security update
Moderate: autotrace security update
Moderate: lynx security update
Important: mysql:8.0 security, bug fix, and enhancement update
Low: libpq security update
Moderate: gcc-toolset-12-binutils security update
Important: mysql:8.0 security, bug fix, and enhancement update
Low: libpq security update
Moderate: gcc-toolset-12-binutils security update
chromium-149.0.7827.196 security release * CVE-2026-13028: Use after free in WebGL * CVE-2026-13032: Use after free in WebGL * CVE-2026-13033: Out of bounds read in Blink>InterestGroups * CVE-2026-13038: Use after free in Autofill
Update to release v29.6.0 Resolves: rhbz#2490590 Resolves CVE-2026-39828: rhbz#2489945 Resolves CVE-2026-39829: rhbz#2490099 Resolves CVE-2026-39830: rhbz#2490466
Update to .NET SDK 8.0.128 and Runtime 8.0.28 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/8.0/8.0.28/8.0.128.md
Fix CVE-2026-42144: integer overflow
Update to .NET SDK 9.0.118 and Runtime 9.0.17 Fixes: CVE-2026-45490,CVE-2026-45491,CVE-2026-45591 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/9.0/9.0.17/9.0.118.md
Update to pgadmin-9.16.
Security fix for CVE-2026-44898 by updating to 3.2.1.
https://security-tracker.debian.org/tracker/DSA-6373-1
https://security-tracker.debian.org/tracker/DSA-6372-1
https://security-tracker.debian.org/tracker/DSA-6370-1
Moderate: libxslt security update
Moderate: keylime security update
Important: skopeo security update
Moderate: libpng security update
Important: containernetworking-plugins security update
Moderate: golang security, bug fix, and enhancement update
Important: thunderbird security update
Important: runc security update
Important: buildah security update
Important: tigervnc security update
Important: nginx security update
Important: buildah security update
Moderate: golang security, bug fix, and enhancement update
Moderate: python27:2.7 security update
Moderate: freeradius:3.0 security update
Moderate: python-wheel security update
Moderate: libxslt security update
Moderate: keylime security update
Important: skopeo security update
Moderate: libpng security update
Important: containernetworking-plugins security update
Moderate: golang security, bug fix, and enhancement update
Important: thunderbird security update
Important: runc security update
Important: buildah security update
Important: tigervnc security update
Important: nginx security update
Important: buildah security update
Moderate: python27:2.7 security update
Moderate: freeradius:3.0 security update
Moderate: python-wheel security update
Moderate: libxslt security update
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For Debian 12 bookworm, these problems have been fixed in version 149.0.7827.196-1~deb12u1.
Your business may be small, but its attack surface is anything but. Readiness is the first step to resilience.
Security update
An update that solves 21 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 3 vulnerabilities can now be installed.
An update that solves 5 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
Important: python3.14 security, bug fix, and enhancement update
Important: kernel security, bug fix, and enhancement update
Important: python3.14 security, bug fix, and enhancement update
Important: kernel security, bug fix, and enhancement update
Several vulnerabilities were discovered in the Xorg X server, which may result in privilege escalation if the X server is running privileged. For the stable distribution (trixie), these problems have been fixed in version 2:21.1.16-1.3+deb13u3. We recommend that you upgrade your xorg-server packages.
Moderate: wayland security, bug fix, and enhancement update
Moderate: libfastjson security update
Moderate: wayland security, bug fix, and enhancement update
Moderate: libfastjson security update
Important: flac security update
Moderate: qt5 security and bug fix update
Moderate: protobuf-c security update
Moderate: coreutils security update
Moderate: libxslt security update
Moderate: keylime security update
Important: skopeo security update
Important: kernel security, bug fix, and enhancement update
Moderate: libmicrohttpd security update
Moderate: librabbitmq security update
Important: flac security update
Moderate: qt5 security and bug fix update
Moderate: protobuf-c security update
Moderate: coreutils security update
Moderate: libxslt security update
Moderate: keylime security update
Important: skopeo security update
Important: kernel security, bug fix, and enhancement update
Moderate: libmicrohttpd security update
Moderate: librabbitmq security update
