Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

Internet Routing Attack Sent Malicious Updates to Linux Servers
Virtualizor has confirmed that a BGP hijack redirected traffic for part of its update infrastructure and allowed an attacker-controlled server to deliver a [...]
Why DNS Attacks Can Outrun Linux Security Monitoring
A Linux host intrusion prevention system can fail even when the protected server still has spare CPU. If its logging path cannot record and move events as [...]
Linux Patch Addresses Network Code Bug That Reads Past Memory
A Linux kernel patch series submitted on Sep 1, 2026, stops an out-of-service Logical Link Control socket from indexing below two connection-state tables. [...]
Continuous Linux Security: Why a Hardening Checklist Is Not Enough
A Linux server can be carefully hardened before it reaches production and still become less secure over time. Hardening means reducing unnecessary [...]
Oracle Linux 9 wget Moderate Buffer Overflow Fix ELSA-2026-62143-0
Oracle Linux 9 gimp Important Fixes for Vulnerabilities ELSA-2026-61587-0
Oracle Linux 9 iperf3 Important JSON Value Check Fix ELSA-2026-61389-0
Oracle Linux 9 nodejs Important Security Patch ELSA-2026-61386-0
Oracle Linux 9 Nodejs Security Advisory ELSA-2026-61383 Critical CVEs
Oracle Linux 9 freerdp Important CWCVEs Buffer Overflow ELSA-2026-61379-0
Oracle Linux 9 xmlrpc-c Important HTML Injection Fix ELSA-2026-61316-0
Oracle Linux 9 Pipewire Moderate Security Advisory ELSA-2026-61240-0
Oracle Linux 9 Golang Important Bug Fix Advisory ELSA-2026-60304-0
Oracle Nginx Important Denial of Service Fix ELSA-2026-59490
Important CVEs for Oracle Linux 9 xorg-x11-server-Xwayland ELSA-2026-38490
Oracle Linux 10 wget Moderate Bug Fixes Advisory ELSA-2026-62142-0
Fedora 45 Dracut Essential Root Privilege Correction 2026-5bf73fe397
Fedora 44 Syncthing CVE-2026-40898 Denial of Service Advisory
Fedora 44 Firefox Important Heap Buffer Overflow Vuln 2026-42a3a95e62
Fedora 44 NSS Heap Buffer Overflow Patch Update 2026-42a3a95e62
Fedora 44 mingw-gstreamer1-plugins-bad-free Critical Remote Code Execution
Fedora 44 mingw-gstreamer1 Critical Remote Code Exec Issues 2026-e6ca27403f
Fedora 44 mingw-gstreamer1-plugins-base Has Serious Remote Code Exec Risks
Fedora 44 mingw-gstreamer1-plugins-good Remote Code Execution Vulnerability
Fedora 44 mingw-expat Denial of Service Fix Update 2026-f5e2a6b9b5
Fedora 44 mingw-openexr Update Addresses Integer Overflow Vulnerability
Fedora 44 ProFTPD Security Bugfix Advisory 2026-f073efe2f3
Fedora 43 Exiv2 Bugfix Denial of Service Issues 2026-2854e48ee4
Fedora 43 gvfs Critical Heap Overflow Disclosures and Fixes 2026-571b7e1505
Fedora 43 Firefox Heap Overflow Security Advisory 2026-208add2041
Fedora 43 nss Important Heap Buffer Overflow Advisory 2026-208add2041
Fedora 43 FreeRDP Update to 3.31.0 Advisory FEDORA-2026-e0f5d28f57
Fedora 43 mingw-gstreamer1 Plugins Vulnerability High Risk RCE Alert
Fedora 43 mingw-gstreamer1-plugins-base Critical RCE Vulnerability Update
Fedora 43 mingw-openexr Denial of Service and Overflow Vulnerabilities
Fedora 43 mingw-expat Update Denial of Service CVE-2026-72522 Advisory
Fedora 43 ProFTPD Update Important FTP Bugfixes FEDORA-2026-0abbe10cdc
SUSE Texlive Moderate Heap Use-After-Free CVE-2026-63729 2026-3924-1
SUSE Bzip2 Low Off-By-One Error Issue Vulnerability 2026-3925-1
DSA-6482-1 chromium – security update
Why Patched Linux Servers Still Fail a Penetration Test
A patched Linux server can still fail a penetration test because patch status cannot show whether an attack path remains open.
How to Prevent DNS Leaks and Secure Proxy Credentials on Linux Systems
Using a proxy on Linux changes how web traffic reaches its destination, but it does not automatically protect every part of the connection. DNS requests [...]
Rocky Linux 10 Kernel Advisory RLSA-2026-61887 Important Security Fixes
Rocky Linux GIMP Important Remote Code Exec Advisory RLSA-2026-62507
Rocky Linux Nodejs Key Filesystem Access Memory Issues RLSA-2026-62583
Ubuntu 18.04 LTS Linux Kernel Important WiFi Injection Threat USN-8715-1
Ubuntu 20.04 18.04 Kernel Important Threat Correction USN-8714-1
Ubuntu 20.04 Linux Kernel Important WiFi Issue USN-8661-4
Debian Firefox-ESR Critical Issues Execution CVE-2026-16365 DSA-6481-1
DSA-6480-1 keystone – security update
SUSE dovecot22 Critical Denial of Service Issues Fix Advisory 2026-3919-1
SUSE libgcrypt Moderate DoS Issue Fix Advisory SUSE-SU-2026-3921-1
SUSE vim Key Security Update Mitigates Risks of Code Execution 2026-23391-1
SUSE Linux Micro 6.2 Gzip Moderate Buffer Overflow Vuln 2026-23392-1
SUSE vim Important Security Fixes Advisory 2026-23393-1 CVE-2026-73070
SUSE dhcpcd Moderate Memory Leak and DoS Vuln 2026-23400-1
SUSE Python Cryptography Moderate PKCS#7 Timing CVE-2026-69247
SUSE udisks2 Significant Local Privilege Escalation Patch 2026-23405-1
5 ways to augment security risk management in the AI era
IT operations and security teams receive thousands of alerts every day from threat intelligence sources, such as vulnerability scanners, observability [...]
Oracle Linux 10 Nodejs Key Security Update ELSA-2026-61376-0 CVEs
Oracle Linux 10 ELSA-2026-38489 Important Xwayland CVE Fix
Oracle Linux 9 Gzip Moderate Buffer Overflow Vuln ELSA-2026-61623-0
Oracle glib2 Moderate Buffer Overflow Fix ELSA-2026-61766-0 CVE-2026-15588
Oracle Linux 8 mingw-sqlite Important Update for CVE-2026-11822
Oracle 8 xorg-x11-server Important CVE-2026-55999 ELSA-2026-38487 Fix
Linux Patch Addresses SA2UL Stack Overflow Found in IPsec Setup
A version 2 Linux kernel patch posted on August 31 fixes a stack overflow in the SA2UL hardware crypto driver. The Kernel Address Sanitizer, or KASAN, [...]
Linux Patch Targets RxRPC Teardown Race During Namespace Exit
RxRPC is a Linux kernel transport for remote procedure calls. A teardown race reported in August shows that its network namespace cleanup can still reach a [...]
Linux Patch Proposes Landlock Policy Objects for eBPF at Exec
A version 2 Linux kernel patch series posted on August 31 proposes a new eBPF security interface for applying Landlock policy during program execution. The [...]
Slackware pcre2 Security Update Advisory 2026-244-01 Released Today
Fedora 44 Cockpit Important Memory Leak Fix Advisory 2026-4ca90cfeb9
Fedora 44 gdk-pixbuf2 CVE-2026-81893 Critical Invalid Write
Fedora 44 OpenSSL 3.5.8 Security Update Advisory 2026-51251b4657
Fedora 44 Emacs Critical Local Command Injection CVE-2026-79992
Fedora 44 python-linkify-it-py Security Fix CVE-2026-48801 CVE-2026-59887
Fedora 44 python-llm Arbitrary Code Execution Advisory 2026-4f3301f569
Fedora 44 rkcommon Critical Buffer Overflow Advisory 2026-9f32915b09
Fedora 44 openvkl Important Heap Overflow Vulnern CVE-2026-21399
Fedora 43 Bubblewrap Update Resolves SIGCHLD Subprocess Management Issue
Ubuntu 26.04 LTS SSSD Crash Due to Smartcard Interaction USN-8672-1
SUSE yast2-auth-client Important Command Injection Advisory 2026-3914-1
SUSE 2026-3915-1 Important apache2-mod_auth_openidc Out-of-Bounds Issue
SUSE Terraform Important File Access Issues Advisory 2026-3916-1
SUSE ucode-intel Important Security Update September 2026-3917-1
SUSE cups-filters Moderate Infinite Loop and Print Job Issues 2026-3918-1
SUSE Linux Micro 6.0 Kernel Important Security Update 2026-23366-1
SUSE Linux Micro 6.0 Kernel Security Important Patch 2026-23367-1
SUSE Micro 6.0 Kernel RT Important Security Update 2026-23368-1
SUSE Linux Micro 6.0 Delivers Essential Kernel RT Security Fix 2026-23369-1
SUSE Linux Micro 6.0 Kernel RT Important Security Update 2026-23370-1
SUSE Linux Micro 6.0 Kernel RT Key Update for Security Issue 2026-23371-1
SUSE Linux Micro 6.0 Important Kernel RT Security Update 2026-23372-1
SUSE Linux Micro 6.0 Kernel RT Important Security Update 2026-23373-1
SUSE Linux Micro 6.0 Important Kernel RT Security Update 2026-23374-1
SUSE Linux Micro 6.0 Security Update 2026-23375-1 Essential Kernel Patch
SUSE Linux Micro 6.0 Kernel RT Live Patch 21 Important Fixes 2026-23376-1
SUSE Kernel RT Live Patch 22 Important Security Update 2026-23377-1
SUSE Micro 6.0 Kernel Live Patch Important Security Update 2026-23378-1
SUSE Linux Micro 6.0 Kernel RT Important Vuln Fix 2026-23379-1
SUSE Linux Micro 6.0 Kernel RT Important Security Update 2026-23380-1
SUSE Linux Micro Important Kernel RT Issues Resolved 2026-23381-1