New gnutls packages are available for Slackware 15.0 and -current to fix security issues.
ImageMagick could be made to crash or run programs as your login if it opened a specially crafted file.
https://security-tracker.debian.org/tracker/DSA-6060-1
ESET researchers have discovered a network implant used by the China-aligned PlushDaemon APT group to perform adversary-in-the-middle attacks
An update that solves two vulnerabilities can now be installed.
* bsc#1250353 * bsc#1250354 Cross-References: * CVE-2025-59798
An update that solves five vulnerabilities can now be installed.
* bsc#1252931 * bsc#1252932 * bsc#1252933 * bsc#1252934 * bsc#1252935
New openvpn packages are available for Slackware 15.0 and -current to fix security issues.
Several security issues were fixed in the Linux kernel.
MGASA-2025-0305 – Updated thunderbird packages fix security vulnerabilities
MGASA-2025-0304 – Updated cups-filters packages fix security vulnerabilities
MGASA-2025-0303 – Updated flatpak & bubblewrap packages fix security vulnerability
Update to 142.0.7444.162 * High CVE-2025-13042: Inappropriate implementation in V8
Updated to latest upstream (145.0) Added fix for mzbz#1990430 (crashes) Updated to latest upstream (144.0)
New libarchive packages are available for Slackware 15.0 and -current to fix security issues.
Does your chatbot know too much? Think twice before you tell your AI companion everything.
* bsc#1103203 * bsc#1149841 * bsc#1230998 * bsc#1231204 * bsc#1231676
MGASA-2025-0302 – Updated postgresql15 & postgresql13 packages fix security vulnerabilities
MGASA-2025-0301 – Updated apache packages fix security vulnerabilities
Several security issues were fixed in Freeglut.
Update to 142.0.7444.162 * High CVE-2025-13042: Inappropriate implementation in V8
FVWM3 ver. 1.1.4
An update that solves 173 vulnerabilities, contains two features and has 19 security fixes can now be installed.
* bsc#1065729 * bsc#1205128 * bsc#1206893 * bsc#1207612 * bsc#1207619
An update that solves two vulnerabilities can now be installed.
* bsc#1251198 * bsc#1251199 Cross-References: * CVE-2025-61984
An update that solves two vulnerabilities can now be installed.
* bsc#1247850 * bsc#1249076 Cross-References: * CVE-2025-8732
https://security-tracker.debian.org/tracker/DSA-6058-1
Update to 142.0.7444.162 * High CVE-2025-13042: Inappropriate implementation in V8
Update to 9.21.14 (rhbz#2394406) Security Fixes: DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677) Address various spoofing attacks. (CVE-2025-40778) Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)
New upstream release v10 Fix: CVE-2025-11568
Update to 9.21.14 (rhbz#2394406) Security Fixes: DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677) Address various spoofing attacks. (CVE-2025-40778) Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)
New upstream release v10 Fix: CVE-2025-11568
https://security-tracker.debian.org/tracker/DSA-6059-1
New xpdf packages are available for Slackware 15.0 and -current to fix security issues.
