Menu

Monthly Archives: August 2026

Oracle Linux 9 Java Moderate Vulnerability Advisory ELSA-2026-55798
Oracle Linux 9 Java-21-OpenJDK Moderate Security Advisory ELSA-2026-55787
Oracle Linux 9 Java Update Moderate Advisory ELSA-2026-55781 CVEs Info
Oracle Linux 9 Java Moderate Security Update ELSA-2026-55775
Oracle Linux 8 perl-Date-Manip Important ReDoS Fix ELSA-2026-57562
Oracle MySQL Critical Vulnerability Resolution Notice ELSA-2026-56936
Oracle Linux 8 Java 21 OpenJDK Moderate Security Advisory ELSA-2026-55787
Oracle Linux 8 java-17-openjdk Moderate Security Update ELSA-2026-55781
Oracle java-1.8.0-openjdk Moderate Threat Advisory ELSA-2026-55775
Oracle Linux 8 Perl 5.32 Important Denial of Service Fix ELSA-2026-48225
Oracle Linux 7 SSSD Important Security Fix CVE-2026-14474 CVE-2026-14476
Hackers poison popular Rust crates to steal developers’ credentials
Hackers slipped malware into several popular Rust packages this week, turning routine software builds into a route onto developers’ machines. The [...]
openSUSE Chromium Critical Buffer Overflow Issues Vuln 2026-0293-1
Salesforce wants to move AI coding into a shared workspace with Slack Code
Software development is rarely a one-person job. A request or an idea may begin with a product manager or another employee, before moving through [...]
openSUSE rsync Important Security Fix for 33 Issues Vuln 2026-3657-1
SUSE rsync Important Security Update for 33 Vulnerabilities 2026-3657-1
SUSE MozillaFirefox Important Security Update 2026-3658-1
openSUSE Kubernetes Old Important Security Update SUSE-SU-2026-3659-1
SUSE Kubernetes-Legacy Significant Security Update 2026-3659-1
openSUSE Kubernetes Significant Security Patch 2026-3660-1
SUSE Kubernetes Important Security Update Advisory 2026-3660-1
SUSE Helm Essential Security Patch Announcement for 2026-3661-1
openSUSE Podman Security Advisory CVE-2026-55686 CVE-2026-57231 Guide
SUSE Podman Important Security Fix for CVE-2026-55686 CVE-2026-57231
Oracle Linux glib2 Moderate D-Bus Buffer Overflow Patch ELSA-2026-57015
Oracle perl-Date-Manip Important DoS Fix ELSA-2026-56971
Oracle Linux PHP 8.4 Important Bug Fix Advisory ELSA-2026-56969
Oracle Linux 9 .NET 10.0 Bug Fix Important Advisory ELSA-2026-55857
Oracle Linux MySQL 8.4 Important Bug Fix Advisory ELSA-2026-56007
Oracle Linux curl Important Update ELSA-2026-55450 Fixing Multiple Issues
Oracle Linux 10 yggdrasil Important CVE-2026-33810 Advisory ELSA-2026-57126
Oracle Kernel Important Advisory ELSA-2026-38492 CVE-2026-43163
Oracle Linux Nodejs Important Memory Exhaustion Fix ELSA-2026-55603
Oracle Linux 9 ELSA-2026-55856 .NET 9.0 Important Security Advisory
Oracle Python3 Important CVE-2026-11940 Advisory ELSA-2026-56219
Oracle Gstreamer1 Plugins Good Moderate Buffer Overflow 2026-56966
Oracle Linux 9 Node.js Essential Update for CVE-2026-69192 ELSA-2026-55601
Oracle Linux 9 pcp Important Command Injection Issues ELSA-2026-55740
Oracle Linux 9 bind9 Important DNS Fixes ELSA-2026-55442
Oracle Linux 9 glib2 Moderate Security Update ELSA-2026-55440
Oracle curl Important Fix for ELSA-2026-55439 in Oracle Linux 9
Oracle Linux 8 Gstreamer1-Plugins-Bad-Free Key Updates ELSA-2026-56521
Oracle Linux 8 nghttp2 Moderate HTTP Smuggling Advisory ELSA-2026-55804
Oracle Linux 8 ELSA-2026-56133 attr Moderate Privilege Escalation
Oracle Linux 8 ELSA-2026-56131 pam Moderate Session Management Fix
Oracle 8 Kernel Moderate Update for CVE-2026-45991 ELSA-2026-54246
Oracle Linux 8 ELSA-2026-56130 sg3_utils Important Bug Fix
Oracle Linux 8 pcp Important Fixes for Vulnerabilities ELSA-2026-55560
Oracle Linux 8 ELSA-2026-55446 libXfont2 Important CVE Fix
Rocky Linux 8 GStreamer1 Plugins Experience Moderate Memory Growth Issue
Rocky Linux 8 java-21-openjdk Moderate HTTP TLS Upgrades RLSA-2026-55787
Slackware mozilla-thunderbird Critical Security Issues Fix 2026-231-02
Slackware Mozilla-Firefox Critical Security Fix SSA-2026-231-01
Gentoo acl attr Multiple Vulnerabilities GLSA-202608-20
Gentoo quickjs-ng High Multiple Code Execution Threat GLSA-202608-19
Rocky Linux 9 RLSA-2026-56973 MySQL Important Performance Issues
Gentoo Emacs High Arbitrary Code Execution Risk GLSA-202608-18
Gentoo libssh2 High Remote Code Execution Vulnerability GLSA-202608-17
Rocky Linux mysql Important Security Patch RLSA-2026-56936
Debian 12 Swift Security Update DLA-4746-1 Addresses SSRF DoS Risks
Debian Highlights Key DNS Hijacking Denial of Service CVEs 6452-1
Ubuntu nginx USN-8563-4 Regression Denial of Service Advisory
Ubuntu curl Important Sensitive Data Exposure USN-8651-1 CVE-2026-11856
Ubuntu libpng Critical DoS Threats Addressed USN-8639-1
Ubuntu 26.04 Cap’n Proto Important HTTP Request Smuggling Issues USN-8650-1
Debian DSA-6451-1 Firefox-esr Critical Code Execution Issues
SUSE open-iscsi Important Auth Bypass & Remote File Write Vuln 2026-3647-1
SUSE python311 Important Security Patch Regression Fix SUSE-SU-2026-3648-1
SUSE Python313 Important DoS and Injection Risks Fixed Advisory 2026-3649-1
Backdoored Rust packages hit crates.io, exposing developers to malware at build time
Malicious versions of three Rust packages, including the widely used arrayref, were published to the crates.io registry on August 20, carrying a backdoor [...]
Go hands-on with Python 3.15
Python can’t stop, won’t stop evolving. Python 3.15, due in fall 2026 but available now in its first release candidate, abounds with useful new features [...]
Neoclouds become AI’s new power brokers
The reported $10 billion deal between Anthropic and AI cloud startup Volta is more than just another big-number headline in the AI infrastructure race. [...]
Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5.
Cisco has revealed its Secure Workload Software, a micro-segmentation tool formerly known as Tetration that is supposed to stop attackers moving laterally [...]
Russian snoops add OAuth abuse to targeted phishing campaigns
Google is tracking three distinct suspected Russian cyber-spy groups that are targeting individuals in academia, aerospace, defense, government agencies, [...]
DSA-6456-1 spip – security update
Canonical and UK’s University of Bristol partner to investigate automated C to Rust translations
Rust is slated to play a huge part in Ubuntu’s future. As a language that allows programmers more control over resource use and performance as well as [...]
DSA-6452-1 designate – security update
US Bank investigates LockBit’s claims as ransomware crims set pay-or-leak deadline
US Bank says that it’s investigating ransomware crew LockBit’s claims that it breached the financial institution and stole data, which the crims [...]
Researcher tricks Apple’s Find My into sharing location data with Linux
A young security researcher figured out a way to enroll a Linux device into Apple’s Find My network and read live location data from it. Find My is Apple’s [...]
Ransomware crook poses as recovery firm to steal payments from fellow extortionists
A ransomware affiliate appears to have found a new way to squeeze victims for cash: pose as the good guy and undercut the criminals it was working with. [...]
Ubuntu PostgreSQL Critical Buffer Overflow SQL Injection Vuln 8653-1
Grok chat duped into swallowing injected instructions
xAI’s Grok web chat agent is currently vulnerable to a novel form of prompt injection, according to security researchers with Adversa AI. The [...]
TrueFoundry debuts open-source AI agent harness, claiming up to 75% lower costs
TrueFoundry has launched TrueForge, an open-source agent harness that lets developers build and run AI agents using models from different providers, [...]
French tax authority says break-in exposed data of 600K, including some private messages
France’s tax authority says attackers may have stolen the contents of messages exchanged with hundreds of taxpayers during the data raid it confirmed [...]
openSUSE openssl-3-livepatches Important DoS Patch 2026-3651-1
SUSE OpenSSL-3 Livepatches Important DoS Security Update 2026-3651-1
openSUSE Podman Important Environment Leak Access Risk 2026-3652-1
SUSE Podman Important Host Environment Leak and Symlink Issues 2026-3652-1
Anthropic’s Opus language problems may be creating a hidden cost for AI coding
AI coding assistants are supposed to reduce the work required to turn a developer’s intent into working software. But some users of Anthropic’s Opus 4.8 [...]
The five walls standing between a demo agent and a deployed one
Building an AI agent that looks impressive in a demo is now a weekend project. Building one that an enterprise will actually let touch its CRM, its data [...]
Introducing G#: A Go-like language for .NET
Microsoft’s open sourcing of .NET not only has sped up the development of the platform, but also has allowed new languages and features to be built on top [...]
Nobody’s agent fleet fails the way the vendors say it will
I run 49 scheduled AI agents on one laptop. Another 24 sit beside them, deliberately switched off. That distinction matters more than it sounds. After [...]
AI agent suggested installing a malware package. Engineer almost took its advice
PWNED Welcome back to PWNED, the column where we make fun of those who are security self-owned, so hopefully you don’t do the same. This week, we have a [...]
DSA-6454-1 sabnzbdplus – security update
DSA-6453-1 libgit2 – security update
Smashing Security podcast #481: Never say this to a robot dog
‘Not a theoretical risk,’ feds warn as attackers use AI-made code to hack critical infrastructure controllers
Attackers are using AI-generated exploitation scripts to break into internet-exposed Siemens S7 Series programmable logic controllers (PLCs) at water, [...]
DSA-6450-1 srt – security update
DSA-6449-1 swift – security update
Linux Identity, Privilege & Administrative Access
Access to a Linux system involves several connected decisions. The system must determine who or what is requesting access, verify that identity, decide [...]