Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

An update that solves 2 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 4 vulnerabilities can now be installed.

An update that solves 2 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

USN-6455-1 introduced a regression in Exim

An update that solves one vulnerability can now be installed.

An update that solves six vulnerabilities and has one security fix can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities and has one security fix can now be installed.

An update that solves two vulnerabilities and has one security fix can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 10 vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves two vulnerabilities and has one security fix can now be installed.

An update that solves two vulnerabilities and has one security fix can now be installed.

An update that solves three vulnerabilities and has one security fix can now be installed.

An update that solves three vulnerabilities and has one security fix can now be installed.

Several vulnerabilities have been discovered in dnsmasq, a caching DNS proxy and DHCP/TFTP server. CVE-2026-2291 dnsmasqs extract_name() function can be abused to cause a heap buffer overflow, allowing an attacker to inject false DNS cache entries,

Several security issues were fixed in Tomcat.

Security update

Security update

Security update

Security update

Security update

Security update

New upstream release (151.0.3)

Update to xserver 21.1.23, Security fixes for: ZDI-CAN-30136, ZDI-CAN-30159, ZDI-CAN-30160, ZDI-CAN-30161, ZDI-CAN-30163, ZDI-CAN-30164, ZDI-CAN-30165, ZDI-CAN-30168

This is an update fixing a pre-authentication information disclosure (CVE-2026-48840).

This is an update fixing several security related problems in putty.

Updated standalone web UI and HA Cluster Management Cockpit application to pcs- web-ui 0.1.24.3 (see CHANGELOG_WUI.md) Fixed a crash when running pcs resource|stonith list Fixed order of resources in sets when listing configuration of constraints

This is an update fixing a pre-authentication information disclosure (CVE-2026-48840).

This is an update fixing several security related problems in putty.

Updated standalone web UI and HA Cluster Management Cockpit application to pcs- web-ui 0.1.24.3 (see CHANGELOG_WUI.md) Fixed a crash when running pcs resource|stonith list Fixed order of resources in sets when listing configuration of constraints

Security update

Security update

Security update

Multiple vulnerabilities have been discovered in OpenSSL, a Secure Sockets Layer toolkit, which may result in denial of service, information leaks, or potentially remote code execution. Additional details can be found in the upstream advisory: https://openssl-library.org/news/secadv/20260609.txt

Several vulnerabilities were discovered in poppler, a PDF rendering library, which could result in denial of service, information disclosure, or potentially the execution of arbitrary code if a specially crafted file is processed. For the oldstable distribution (bookworm), these problems have been fixed

Security update

USN-8414-1 fixed several vulnerabilities in OpenSSL.

Go Networking could allow unintended access to network services.

Several security issues were fixed in Lodash.

GDK-PixBuf could be made to crash or run programs if it opened a specially crafted file.

USN-8398-1 introduced a regression in nginx

Several security issues were fixed in Cyborg.

Several security issues were fixed in QEMU.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves one vulnerability and has 6 bug fixes can now be installed.

An update that solves 4 vulnerabilities and has 4 bug fixes can now be installed.

An update that solves one vulnerability and has 4 bug fixes can now be installed.

alsa-lib could be made to crash or run programs if it opened a specially crafted file.

IPv4 vs. IPv6 Proxies in 2026: Which One Should You Run on Your Linux Stack?
How Supply Chain Attacks Continue to Threaten Open-Source Software

shell-quote could be made to crash or run programs as your login if it received specially crafted input.

How to Find and Remove Malicious Cron Jobs on Linux
Exploring AI Risks and Detection Solutions in Linux Open Source Software

Security update

Security update

Security update

Several security issues were fixed in Netatalk.

Update to 1.5.5, containing many bug fixes, some also security related.

Update to 1.5.5, containing many bug fixes, some also security related.

Update to 1.5.5, containing many bug fixes, some also security related.

Update to 1.5.5, containing many bug fixes, some also security related.

update to 1.98.4 Allow nftables to satisfy firewall dependency in lieu of iptables rhbz#2453924 Fix 45s timeout on shutdowns in certain cases rhbz#2440864 Fixes CVE-2026-34165 rhbz#2454571 Fixes CVE-2026-33762 rhbz#2454572

Update to 0.2.1

An update that fixes 20 vulnerabilities is now available.

https://security-tracker.debian.org/tracker/DSA-6327-1

An update that solves six vulnerabilities and has one security fix can now be installed.

An update that solves six vulnerabilities and has one security fix can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 10 vulnerabilities, contains one feature and has two security fixes can now be installed.

An update that solves one vulnerability and contains one feature can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities and contains one feature can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves eight vulnerabilities can now be installed.

An update that solves four vulnerabilities can now be installed.

An update that solves three vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities can now be installed.

Several vulnerabilities have been discovered in the GNU C Library, the C standard library implementation used by Debian. CVE-2025-8058 posix: Fix double-free after allocation failure in regcomp The regcomp function in the GNU C library version from 2.4 to 2.41 is

Multiple security issues were found in libxml2, the GNOME XML library, which could lead to Denial of Service. CVE-2025-8732 Catalog parsing functions were missing cycle detection. When a catalog file contains a CATALOG directive pointing to itself,

Cron Job Abuse For Linux Persistence Mechanisms Detection