Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability and has two fixes can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities and contains one feature can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

# Security update for kernel-livepatch-MICRO-6-0_Update_20 Announcement ID: SUSE-SU-2026:21638-1 Release Date: 2026-05-12T09:28:42Z Rating: moderate References:

# Security update for kernel-livepatch-MICRO-6-0-RT_Update_21 Announcement ID: SUSE-SU-2026:21639-1 Release Date: 2026-05-11T09:34:16Z Rating: important References:

An update that solves seven vulnerabilities, contains one feature and has four fixes can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

Linux Security Monitoring Challenges and EDR Visibility Gaps
Linux Kernel Fragnesia Critical Privilege Escalation CVE-2026-46300

https://security-tracker.debian.org/tracker/DSA-6273-1

https://security-tracker.debian.org/tracker/DSA-6274-1

https://security-tracker.debian.org/tracker/DSA-6275-1

Several vulnerabilities have been discovered in the FFmpeg multimedia framework, which could result in denial of service or potentially the execution of arbitrary code if malformed files/streams are processed. For the stable distribution (trixie), this problem has been fixed in version 7:7.1.4-0+deb13u1.

nginx could be made to crash or run programs if it received specially crafted network traffic.

Important: jq security update

Important: kernel security update

Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed in version 1:140.10.2esr-1~deb12u1. For the stable distribution (trixie), these problems have been fixed in

Important: jq security update

RubyGems Attack Highlights Open Source Supply Chain Risks for Linux Teams
Why CI/CD Pipelines Became Targets in Software Supply Chain Attacks

https://security-tracker.debian.org/tracker/DSA-6266-1

https://security-tracker.debian.org/tracker/DSA-6267-1

https://security-tracker.debian.org/tracker/DSA-6268-1

https://security-tracker.debian.org/tracker/DSA-6269-1

https://security-tracker.debian.org/tracker/DSA-6270-1

https://security-tracker.debian.org/tracker/DSA-6271-1

The path to zero trust: Bridging the gap between AI development and OpSec

Moderate: libsoup3 security update

Moderate: glib2 security update

Important: openexr security update

Moderate: freerdp security update

An update that fixes one vulnerability is now available.

An update that fixes 6 vulnerabilities is now available.

Securing Remote Access to Linux Servers: Best Practices for 2026
Why Runtime Monitoring Is Replacing Traditional Linux Logging
Debian 14 Makes Reproducible Builds Mandatory for Linux Packages
Linux AI Tools Require Enhanced Observability for Security

Several security issues were fixed in ImageMagick.

Update to 148.0.7778.96 CVE-2026-7896: Integer overflow in Blink CVE-2026-7897: Use after free in Mobile CVE-2026-7898: Use after free in Chromoting CVE-2026-7899: Out of bounds read and write in V8

Update NSS to 3.122.2 Updated to Firefox 150.0.1

Update NSS to 3.122.2 Updated to Firefox 150.0.1

Update NSS to 3.122.2 Update to Firefox 150.0.1

Update NSS to 3.122.2 Update to Firefox 150.0.1

https://security-tracker.debian.org/tracker/DSA-6265-1

Why Linux Servers Get Hacked More Often Than People Think
Linux Could Soon Disable Vulnerabilities Without a Reboot: Kernel Killswitch

Moderate: libpng security update

Moderate: libpng security update

Moderate: freeipmi security update

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves four vulnerabilities can now be installed.

https://security-tracker.debian.org/tracker/DSA-6264-1

https://security-tracker.debian.org/tracker/DSA-6263-1

https://security-tracker.debian.org/tracker/DSA-6262-1

https://security-tracker.debian.org/tracker/DSA-6261-1

https://security-tracker.debian.org/tracker/DSA-6260-1

Two security vulnerabilities were discovered in the Corosync cluster engine, which could result in denial of service or memory disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 3.1.7-1+deb12u2. For the stable distribution (trixie), these problems have been fixed in

Multiple security vulnerabilities were discovered in Tor, a connection- based low-latency anonymous communication system, which could result in denial of service. For the oldstable distribution (bookworm), these problems have been fixed in version 0.4.9.8-0+deb12u1.

MGASA-2026-0126 – Updated openvpn packages fix security vulnerabilities

33.0.3 Release

This is new version of exim fixing some security bugs.

Update to .NET SDK 10.0.107 and Runtime 10.0.7 Fixes: CVE-2026-40372 Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/10.0/10.0.7/10.0.107.md

Linux Firewall Rules Management Challenges Kubernetes Security

It was discovered that PyJWT, a Python implementation of JSON web tokens insufficiently validated the “crit” header parameter, which could result in incomplete enforcement of authentication settings. For the oldstable distribution (bookworm), this problem has been fixed in version 2.6.0-1+deb12u1.

A security vulnerability has been discovered in libpng, a library implementing an interface for reading and writing PNG (Portable Network Graphics) files, which could leading to corrupted chunk data and potential heap information disclosure. For Debian 11 bullseye, this problem has been fixed in version

Two vulnerabilities have been discovered in the Linux kernel that may lead to local privilege escalation. For the oldstable distribution (bookworm), these problems have been fixed in version 6.1.170-3. We recommend that you upgrade your linux packages.

https://security-tracker.debian.org/tracker/DSA-6258-1

https://security-tracker.debian.org/tracker/DSA-6259-1

Two vulnerabilities have been discovered in the Linux kernel that may lead to local privilege escalation. For Debian 11 bullseye, these problems have been fixed in version 5.10.251-4. We recommend that you upgrade your linux packages.

An update that solves two vulnerabilities can now be installed.

An update that solves three vulnerabilities can now be installed.

Linux Attackers Abuse Admin Tools For Stealthy Intrusions
Ubuntu Dirty Frag Important Local Privilege Escalation Exploit

Important: git-lfs security update

Multiple vulnerabilities have been discovered in the Apache HTTP server, which may result in remote code execution, privilege escalation, denial of service or information disclosure. For Debian 11 bullseye, these problems have been fixed in version 2.4.67-1~deb11u1.

Lua could be made to crash or run programs as your login if it opened a specially crafted file.

Starman versions before 0.4018 for Perl allows HTTP Request Smuggling via Improper Header Precedence. Starman incorrectly prioritizes “Content-Length” over “Transfer-Encoding: chunked” when both headers are present in an HTTP request. Per RFC 7230 3.3.3, Transfer-Encoding must take precedence. An attacker could exploit this to smuggle malicious HTTP requests via a front-end reverse

Validate RSA_public_encrypt() result in RSASVE

Starman versions before 0.4018 for Perl allows HTTP Request Smuggling via Improper Header Precedence. Starman incorrectly prioritizes “Content-Length” over “Transfer-Encoding: chunked” when both headers are present in an HTTP request. Per RFC 7230 3.3.3, Transfer-Encoding must take precedence. An attacker could exploit this to smuggle malicious HTTP requests via a front-end reverse

https://security-tracker.debian.org/tracker/DSA-6254-1

https://security-tracker.debian.org/tracker/DSA-6255-1

https://security-tracker.debian.org/tracker/DSA-6256-1

https://security-tracker.debian.org/tracker/DSA-6257-1

https://security-tracker.debian.org/tracker/DSA-6253-1

https://security-tracker.debian.org/tracker/DSA-6249-1

Container Security Misconfigurations That Still Go Unnoticed
CrackArmor AppArmor Flaws Put Linux Containers and Snap Sandboxes at Risk
Developing a Successful Open Source Security Information Management System

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.