* bsc#1236217 * bsc#1246118 * bsc#1247719 * bsc#1247720 * jsc#SLE-18320
* bsc#1245218 * bsc#1245350 * bsc#1247350 * bsc#1247351
* bsc#1244631 * bsc#1245218 * bsc#1245350 * bsc#1245989 * bsc#1247350
* bsc#1244337 * bsc#1247350 * bsc#1247351 Cross-References:
* bsc#1245218 * bsc#1245350 * bsc#1247350 * bsc#1247351
* bsc#1245218 * bsc#1245350 * bsc#1247350 * bsc#1247351
https://security-tracker.debian.org/tracker/DSA-5978-1
Update to upstream 1.4.2, fix CVE-2025-22870
* bsc#1245320 Cross-References: * CVE-2025-6032
* bsc#1245320 Cross-References: * CVE-2025-6032
Updated to 139.0.7258.127 * CVE-2025-8879: Heap buffer overflow in libaom * CVE-2025-8880: Race in V8 * CVE-2025-8901: Out of bounds write in ANGLE * CVE-2025-8881: Inappropriate implementation in File Picker
Updated to 139.0.7258.127 * CVE-2025-8879: Heap buffer overflow in libaom * CVE-2025-8880: Race in V8 * CVE-2025-8901: Out of bounds write in ANGLE * CVE-2025-8881: Inappropriate implementation in File Picker
An update that fixes 5 vulnerabilities is now available.
fix CVE-2025-46206 (rhbz#2386395)
fixes CVE-2025-8534: null pointer dereference in tiff2p fixes CVE-2024-13978: null pointer dereference in tiff2pdf
update MANUAL to cover threat related to user HTML iframe
Several security issues were fixed in AIDE.
* bsc#1222040 * bsc#1222041 * bsc#1222042 Cross-References:
https://security-tracker.debian.org/tracker/DSA-5975-1
https://security-tracker.debian.org/tracker/DSA-5974-1
Several security issues were fixed in Request Tracker.
Several security issues were fixed in Sidekiq.
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
https://security-tracker.debian.org/tracker/DSA-5976-1
https://security-tracker.debian.org/tracker/DSA-5977-1
Does your business truly understand its dependencies, and how to mitigate the risks posed by an attack on them?
Digital natives are comfortable with technology, but may be more exposed to online scams and other threats than they think
* bsc#1243747 Cross-References: * CVE-2025-48057
* bsc#1246397 Cross-References: * CVE-2025-48924
* bsc#1085999 * bsc#1246397 Cross-References: * CVE-2025-48924
* bsc#1247249 Cross-References: * CVE-2025-8194
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
ESET Research discovered a zero-day vulnerability in WinRAR being exploited in the wild in the guise of job application documents; the weaponized archives exploited a path traversal flaw to compromise their targets
