Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

* bsc#1243648 Cross-References: * CVE-2024-56558

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Several security issues were fixed in Drupal.

Several security issues were fixed in the Linux kernel.

CHAOS RAT in AUR: When Trust in Open-Source Goes Too Far

* bsc#1194400 * bsc#1212493 * bsc#1219964 * bsc#1222539 * bsc#1229008

* bsc#1241865 Cross-References: * CVE-2025-22872

Update to 7.3.20 Security fixes for CVE-2025-47273, CVE-2024-47081 and CVE-2025-50181 (in pip and setuptools wheels)

Update to 7.3.20 Security fixes for CVE-2025-47273, CVE-2024-47081 and CVE-2025-50181 (in pip and setuptools wheels)

angular.js a popular JavaScript framework was affected by multiple vulnerabilities. CVE-2022-25844

Update to 138.0.7204.157 * CVE-2025-7656: Integer overflow in V8 * CVE-2025-7657: Use after free in WebRTC * CVE-2025-6558: Incorrect validation of untrusted input in ANGLE and GPU

Update to 1.23.1 (rhbz#2380450)

* bsc#1229008 * bsc#1241865 * bsc#1245087 Cross-References:

* bsc#1243450 Cross-References: * CVE-2024-23337

* bsc#1238912 * bsc#1241579 * bsc#1244337 Cross-References:

* bsc#1234854 * bsc#1234885 * bsc#1234892 * bsc#1235005 * bsc#1235769

Cryptomining Meets AI: H2Miners Multi-Platform Assault Unveiled

* bsc#1243767 Cross-References: * CVE-2025-5278

Reduce risk in Kubernetes: How to separate admin roles for safer, compliant operations

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. Google is aware that an exploit for CVE-2025-6558 exists in the wild.

The newest upstream commit Security fixes for CVE-2025-53906, CVE-2025-53905

https://security-tracker.debian.org/tracker/DSA-5963-1

New bind packages are available for Slackware 15.0 and -current to fix a security issue.

Several security issues were fixed in Apache HTTP Server.

Bind could be made to crash if it received specially crafted network traffic.

Multiple security issues were discovered in GNU TLS, which could result in denial of service. For the stable distribution (bookworm), these problems have been fixed in

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The Linux Kernel in 2025: Security Enhancements, Emerging Threats & Best Practices

https://security-tracker.debian.org/tracker/DSA-5962-1

Several security issues were fixed in libjxl.

* bsc#1244663 Cross-References: * CVE-2025-4565

* bsc#1244663 Cross-References: * CVE-2025-4565

* bsc#1244663 Cross-References: * CVE-2025-4565

Ransomwares New Frontier: Linux Systems Face Intensifying Attacks
Active Wing FTP Exploits Demand Immediate Action from Linux Admins

Several security issues were fixed in Nix.

Contains fixes for regressions introduced during CVE bugfix update (3007.4).

Update to 3.5.29, fixes CVE-2025-53367.

Update to 2.32.4. Fixes CVE-2024-47081.

This updates gnutls to the latest upstream release. Notable changes are: PKCS#11 cryptographic provider support Support for kTLS rekeying with kernel 6.14+ Support for the almost standardized ML-DSA private key formats This also fixes 4 CVEs (CVE-2025-32989, CVE-2025-6395, CVE-2025-32988, and

Update to chromium 138.0.7204.92

Update to version 4.34.0

PHP version 8.4.10 (03 Jul 2025) BcMath: Fixed bug GH-18641 (Accessing a BcMathNumber property by ref crashes). (nielsdos) Core:

Fixes CVE-2025-40909 – Clone dirhandles without fchdir

Fixes CVE-2025-40909 – Clone dirhandles without fchdir

Update to 20250708: Drop incorrect nvidia ghost entries xe: Add fan_control v203.0.0.0 for BMG Update AMD cpu microcode amdgpu: Add DCN 3.6/PSP 14.0.5/SDMA 6.1.3/GC 11.5.3

Fix CVE-2024-25176

Multiple vulnerabilities have been fixed in the email, calendar and contacts client Thunderbird. CVE-2025-5986

* bsc#1233012 * bsc#1243273 * bsc#1244032 * bsc#1244056 * bsc#1244059

Why Apache 2.4.64 Is a Must for Securing Linux Web Servers

Several security issues were fixed in resteasy, resteasy3.0.

Update to 128.12.0 https://www.thunderbird.net/en-US/thunderbird/128.12.0esr/releasenotes/ https://www.mozilla.org/en-US/security/advisories/mfsa2025-55/

USN-7626-1 introduced a regression in Git

* bsc#1245309 * bsc#1245310 * bsc#1245311 * bsc#1245314

* bsc#1065729 * bsc#1156395 * bsc#1193629 * bsc#1194869 * bsc#1198410

* bsc#1244081 Cross-References: * CVE-2025-5601

* bsc#1244081 Cross-References: * CVE-2025-5601

* bsc#1243902 Cross-References: * CVE-2025-40908

Now available: Red Hat Enterprise Linux Security Select Add-On
Breaking Down BERT Ransomware: Lessons for Linux & ESXi Defenders

The following updated rpms for have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

https://security-tracker.debian.org/tracker/DSA-5960-1

Several security issues were fixed in libssh.

Exploring Parrot OS 6.4: A Vital Release for Security-Centric Workflows

USN-7010-1 introduced a regression in DCMTK

Sekou Diakite from HPE discovered a mistake with permission handling for Coordinators within the accounting system of Slurm Workload Manager, a cluster resource management and job scheduling system, that it could allow a Coordinator to promote a user to Administrator.