Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

An update that solves 11 vulnerabilities can now be installed.

Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For Debian 11 bullseye, these problems have been fixed in version 1:140.11.0esr-1~deb11u1. We recommend that you upgrade your thunderbird packages.

Path-to-Regexp could be made to crash if it received specially crafted network traffic.

An update that fixes 16 vulnerabilities is now available.

Evince could be made to run programs as your login if it opened a specially crafted file.

# Security update for container-suseconnect Announcement ID: SUSE-SU-2026:2042-1 Release Date: 2026-05-22T05:53:16Z Rating: important References:

# Security update for rekor Announcement ID: SUSE-SU-2026:2043-1 Release Date: 2026-05-22T05:54:19Z Rating: important References:

An update that can now be installed.

# Security update for rootlesskit Announcement ID: SUSE-SU-2026:2044-1 Release Date: 2026-05-22T05:54:39Z Rating: important References:

An update that can now be installed.

# Security update for rootlesskit Announcement ID: SUSE-SU-2026:2045-1 Release Date: 2026-05-22T05:55:22Z Rating: important References:

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

# Security update for kernel-livepatch-MICRO-6-0_Update_22 Announcement ID: SUSE-SU-2026:21723-1 Release Date: 2026-05-19T16:42:46Z Rating: important References:

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability and has three fixes can now be installed.

An update that solves 15 vulnerabilities, contains one feature and has two fixes can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

The following updated rpms for have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

An update that fixes 5 vulnerabilities is now available.

The 7.0.9-105/205 stable kernel updates contain a couple if important security fixes.

The 7.0.9-105/205 stable kernel updates contain a couple if important security fixes.

Automatic update for cockpit-362-1.fc44. Changelog for cockpit * Wed May 20 2026 Packit – 362-1 – Bug fixes and translation updates – Fix arbitrary code execution via specially crafted logs page link

Update to 20260519: ASoC: tas2783: Add Firmware files for tas2783A projects add firmware for MT7927 WiFi device Add HP ISH firmware for Intel Panther Lake systems ti: Add PCM6240 firmware with multiple audio profiles support

Several security issues were fixed in PostgreSQL.

Multiple vulnerabiliites have been discovered in the PowerDNS DNS server, which could result in denial of service or information disclosure. For the stable distribution (trixie), these problems have been fixed in version 4.9.15-0+deb13u1. We recommend that you upgrade your pdns packages.

Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, bypass of the same-origin policy, privilege escalation, information disclosure, spoofing or sandbox escape. For the oldstable distribution (bookworm), these problems have been fixed

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

# Security update for runc Announcement ID: SUSE-SU-2026:2031-1 Release Date: 2026-05-20T09:35:09Z Rating: important References:

# Security update for buildah Announcement ID: SUSE-SU-2026:2030-1 Release Date: 2026-05-20T09:33:19Z Rating: important References:

# Security update for distribution Announcement ID: SUSE-SU-2026:2032-1 Release Date: 2026-05-20T09:36:11Z Rating: important References:

# Security update for docker Announcement ID: SUSE-SU-2026:2033-1 Release Date: 2026-05-20T09:37:59Z Rating: important References:

An update that can now be installed.

An update that solves one vulnerability can now be installed.

An update that can now be installed.

# Security update for buildah Announcement ID: SUSE-SU-2026:2034-1 Release Date: 2026-05-20T09:38:26Z Rating: important References:

An update that solves one vulnerability can now be installed.

An update that can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 8 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 20 vulnerabilities can now be installed.

Several vulnerabilities were discovered in rsync, a fast, versatile, remote (and local) file-copying tool, which may result in local privilege escalation, bypass of intended access restrictions, remote memory disclosure to an authenticated daemon peer or denial of service. For Debian 11 bullseye, these problems have been fixed in version

Several security issues were fixed in OpenVPN.

Several security issues were fixed in Unbound.

Several security issues were fixed in rsync.

GStreamer Good Plugins could be made to crash or run programs if it opened a specially crafted file.

Several security issues were fixed in GnuTLS.

Several vulnerabilities were discovered in rsync, a fast, versatile, remote (and local) file-copying tool, which may result in local privilege escalation, bypass of intended access restrictions, remote memory disclosure to an authenticated daemon peer or denial of service. For the oldstable distribution (bookworm), these problems have been fixed

An update that solves three vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

https://security-tracker.debian.org/tracker/DSA-6285-1

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

Update to 2.92rel2 2.92 point release incorporating fixes for: CVE-2026-2291 CVE-2026-4890 CVE-2026-4891

An update that fixes 5 vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

New mozilla-firefox packages are available for Slackware 15.0 and -current to fix security issues.

New mozilla-thunderbird packages are available for Slackware 15.0 and -current to fix security issues.

New haveged packages are available for Slackware 15.0 and -current to fix a security issue.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

An update that solves two vulnerabilities can now be installed.

Risks of GitHub Repo Breach on Linux Supply Chain Security
Addressing Multi-Tenant Risks in Linux Workloads on the Cloud
Building trust through AI red teaming: Red Hat’s approach to testing model safety
Linux Server Advisory Unused Kernel Modules Threats CVE-2026-31431
Detecting Systemd Abuse on Linux Servers for Better Security
MXDR Provider Selection for Linux Environments and Security Services
Critical NGINX Vulnerability CVE-2026-42945: What Linux Admins Should Check Now
Effective File Integrity Monitoring Techniques for Linux Systems

https://security-tracker.debian.org/tracker/DSA-6286-1

https://security-tracker.debian.org/tracker/DSA-6287-1

https://security-tracker.debian.org/tracker/DSA-6288-1

Several vulnerabilities were discovered in BIND, a DNS server implementation, which may result in denial of service. For the oldstable distribution (bookworm), these problems have been fixed in version 1:9.18.49-1~deb12u1. For the stable distribution (trixie), these problems have been fixed in

https://security-tracker.debian.org/tracker/DSA-6281-1