An update that solves four vulnerabilities can now be installed.
An update that solves four vulnerabilities can now be installed.
An update that solves eight vulnerabilities can now be installed.
An update that solves eight vulnerabilities can now be installed.
New upstream release (#2442363) fixing various security issues
Update to latest upstream
https://security-tracker.debian.org/tracker/DSA-6205-1
An update that solves six vulnerabilities can now be installed.
An update that solves six vulnerabilities can now be installed.
An update that solves eight vulnerabilities can now be installed.
An update that solves eight vulnerabilities can now be installed.
Important: fontforge security update
Moderate: ncurses security update
https://security-tracker.debian.org/tracker/DSA-6201-1
Important: fontforge security update
Important: fontforge security update
Moderate: crun security update
Moderate: kernel security update
Moderate: crun security update
Moderate: kernel security update
https://security-tracker.debian.org/tracker/DSA-6202-1
https://security-tracker.debian.org/tracker/DSA-6197-2
33.0.1 release
Update to 9.6.0. Fixes rhbz#2452087
Moderate: kernel-rt security update
Moderate: kernel-rt security update
Moderate: 389-ds:1.4 security update
Important: python3.12 security update
An update that solves six vulnerabilities can now be installed.
An update that solves eight vulnerabilities can now be installed.
An update that solves five vulnerabilities can now be installed.
An update that solves three vulnerabilities and has two security fixes can now be installed.
An update that solves eight vulnerabilities can now be installed.
Several security issues were fixed in SPIP.
https://security-tracker.debian.org/tracker/DSA-6196-1
Update to 1.94.1
Backport fixes for multiple CVEs.
Update to gstreamer-1.26.11.
Update to gstreamer-1.26.11.
Update to gstreamer-1.26.11.
Update to gstreamer-1.26.11.
https://security-tracker.debian.org/tracker/DSA-6197-1
https://security-tracker.debian.org/tracker/DSA-6198-1
https://security-tracker.debian.org/tracker/DSA-6199-1
https://security-tracker.debian.org/tracker/DSA-6200-1
https://security-tracker.debian.org/tracker/DSA-6195-1
It was discovered that libxml-parser-perl, a Perl module for parsing XML files, was prone to an off-by-one heap buffer overflow in `st_serial_stack()`. This update also includes a follow-up improvement change for CVE-2006-10002 (buffer overwrite in `parse_stream()`.) For Debian 11 bullseye, these problems have been fixed in version
Security fix for CVE-2026-4519
The update fixes CVS-2026-25061
GSSAPI server: Boundary check gss_wrap token (read OOB)
Security fix for CVE-2026-4519.
Security fix for CVE-2026-4519.
https://security-tracker.debian.org/tracker/DSA-6192-1
It was discovered that pyasn1, a generic ASN.1 library for Python, is prone to a denial of service vulnerability when decoding ASN.1 data with deeply nested structures. For the oldstable distribution (bookworm), this problem has been fixed in version 0.4.8-3+deb12u2.
Several vulnerabilities were discovered in the inetutils implementation of telnetd and telnet, which may result in privilege escalation or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 2:2.4-2+deb12u3.
Update to upstream 2.5.2, including fixes for CVE-2026-33757 and CVE-2026-33758
Update to 9.21.20 (rhbz#2440560) Security Fixes: Fix unbounded NSEC3 iterations when validating referrals to unsigned delegations. (CVE-2026-1519) Fix memory leaks in code preparing DNSSEC proofs of non-existence.
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 146.0.7680.177-1~deb12u1.
https://security-tracker.debian.org/tracker/DSA-6193-1
https://security-tracker.debian.org/tracker/DSA-6194-1
https://security-tracker.debian.org/tracker/DSA-6191-1
https://security-tracker.debian.org/tracker/DSA-6190-1
An update that solves two vulnerabilities can now be installed.
Moderate: mariadb:10.11 security update
Undertow would allow unintended access to user sessions over the network.
CVE-2026-4897 aisle.com fix of unsanitized getline
Security fix for CVE-2026-4519
Automatic update for crun-1.27-1.fc43. Changelog for crun * Wed Mar 25 2026 Packit – 1.27-1 – Update to 1.27 upstream release * Mon Dec 22 2025 Packit – 1.26-1
Fix CVE-2026-31812: Bump tar-rs to .5.45 – Closes rhbz#2449672
https://security-tracker.debian.org/tracker/DSA-6189-1
https://security-tracker.debian.org/tracker/DSA-6188-1
Tornado is a scalable, non-blocking Python web framework and asynchronous networking library. CVE-2026-31958 Introduce new limits on the size and complexity of multipart bodies, including a default limit of 100 parts per request to mitigate a
An update that solves three vulnerabilities and has one security fix can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves nine vulnerabilities can now be installed.
An update that solves two vulnerabilities can now be installed.
An update that solves nine vulnerabilities can now be installed.
Several security issues were fixed in Pillow.
An update that solves 25 vulnerabilities can now be installed.
An update that solves 25 vulnerabilities can now be installed.
Several security issues were fixed in pyasn1.
Several security issues were fixed in ImageMagick.
MGAA-2026-0024 – Updated zynaddsubfx packages fix bug
Multiple vulnerabilities were discovered in asterisk, an Open Source Private Branch Exchange (PBX) and telephony toolkit. CVE-2026-23738 XSS vulnerability in the /httpstatus page. Cookie names/values and GET parameter names/values are rendered without HTML-escaping, allowing
An update that solves 655 vulnerabilities, contains four features and has 57 fixes can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves two vulnerabilities can now be installed.
An update that solves eight vulnerabilities can now be installed.
An update that solves seven vulnerabilities can now be installed.
https://security-tracker.debian.org/tracker/DSA-6187-1
https://security-tracker.debian.org/tracker/DSA-6186-1
https://security-tracker.debian.org/tracker/DSA-6185-1
https://security-tracker.debian.org/tracker/DSA-6184-1
https://security-tracker.debian.org/tracker/DSA-6183-1
MGASA-2026-0073 – Updated python-ujson packages fix security vulnerabilities
MGASA-2026-0072 – Updated strongswan packages fix security vulnerability
Security fix for CVE-2026-4519.
