An update that solves six vulnerabilities can now be installed.
Several vulnerabilities have been found in aiohttp, an asynchronous HTTP client/server framework for asyncio and Python. CVE-2025-53643 Request smuggling vulnerability due to not parsing trailer sections of an HTTP request.
Update to 1.5.4. Fixes a buffer overflow caused by integer promotion rules in OFBMPImageFormatHandler and OFQOIImageFormatHandler. Update to 1.5.3
Update to 1.5.4. Fixes a buffer overflow caused by integer promotion rules in OFBMPImageFormatHandler and OFQOIImageFormatHandler. Update to 1.5.3
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 148.0.7778.215-1~deb12u1.
https://security-tracker.debian.org/tracker/DSA-6317-1
https://security-tracker.debian.org/tracker/DSA-6318-1
https://security-tracker.debian.org/tracker/DSA-6312-1
https://security-tracker.debian.org/tracker/DSA-6313-1
https://security-tracker.debian.org/tracker/DSA-6314-1
https://security-tracker.debian.org/tracker/DSA-6315-1
https://security-tracker.debian.org/tracker/DSA-6308-1
https://security-tracker.debian.org/tracker/DSA-6307-1
An update that solves 6 vulnerabilities can now be installed.
https://security-tracker.debian.org/tracker/DSA-6309-1
https://security-tracker.debian.org/tracker/DSA-6310-1
https://security-tracker.debian.org/tracker/DSA-6311-1
https://security-tracker.debian.org/tracker/DSA-6304-1
https://security-tracker.debian.org/tracker/DSA-6303-1
https://security-tracker.debian.org/tracker/DSA-6302-1
https://security-tracker.debian.org/tracker/DSA-6301-1
https://security-tracker.debian.org/tracker/DSA-6305-1
https://security-tracker.debian.org/tracker/DSA-6306-1
https://security-tracker.debian.org/tracker/DSA-6300-1
https://security-tracker.debian.org/tracker/DSA-6299-1
https://security-tracker.debian.org/tracker/DSA-6298-1
Several security issues were fixed in Samba.
Several vulnerabilities have been discovered in Samba, a SMB/CIFS file, print, and login server for Unix, which might result in bypass of access checks, overwrite of files in unintended situations using the WORM vfs module, installing CA certificates over http without verification when auto-enrollment GPO is enabled, denial of service or remote code
Dnsmasq could be made to crash or run programs if it received specially crafted network traffic.
libssh2 could be made to crash if it received specially crafted network traffic.
Multiple vulnerabilities were discovered in SPIP, a website engine for publishing, which may result in remote code execution or an open redirect. For the stable distribution (trixie), these problems have been fixed in version 4.4.15+dfsg-0+deb13u1.
Several security issues were fixed in the Linux kernel.
SimpleEval could be made to run programs if it received specially crafted input.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in Rclone.
ngtcp2 could be made to run programs as your login if it received specially crafted network traffic when qlog was enabled.
An update that solves one vulnerability can now be installed.
An update that solves 2 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 23 vulnerabilities can now be installed.
An update that solves 6 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 13 vulnerabilities and has 13 bug fixes can now be installed.
An update that solves 3 vulnerabilities and has 3 bug fixes can now be installed.
An update that solves one vulnerability and has 4 bug fixes can now be installed.
An update that solves one vulnerability and has one bug fix can now be installed.
An update that solves 5 vulnerabilities and has 5 bug fixes can now be installed.
An update that solves 6 vulnerabilities and has 6 bug fixes can now be installed.
An update that solves 20 vulnerabilities and has one bug fix can now be installed.
An update that solves one vulnerability and has one bug fix can now be installed.
An update that solves 5 vulnerabilities and has 5 bug fixes can now be installed.
MGASA-2026-0156 – Updated nginx packages fix security vulnerabilities
MGASA-2026-0155 – Updated x11-server, x11-server-xwayland & tigervnc packages fix security vulnerabilities
MGASA-2026-0154 – Updated perl-Imager packages fix security vulnerabilities
MGASA-2026-0153 – Updated ffmpeg packages fix security vulnerabilities
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
Update to 9.18.49 (rhbz#2480121) Security Fixes: Limit resolver server list size. (CVE-2026-3592) Fix GSS-API resource leak. (CVE-2026-3039) Disable recursion, UPDATE, and NOTIFY for non-IN views. (CVE-2026-5946)
Update to 9.18.49 (rhbz#2480121) Security Fixes: Limit resolver server list size. (CVE-2026-3592) Fix GSS-API resource leak. (CVE-2026-3039) Disable recursion, UPDATE, and NOTIFY for non-IN views. (CVE-2026-5946)
Update to 20260519: ASoC: tas2783: Add Firmware files for tas2783A projects add firmware for MT7927 WiFi device Add HP ISH firmware for Intel Panther Lake systems ti: Add PCM6240 firmware with multiple audio profiles support
Update to latest upstream release https://forum.torproject.org/t/security- release-0-4-8-25-and-0-4-9-8/21559
Update to 1.25.1 (rhbz#2480119) Fix CVE-2026-33278, Possible remote code execution during DNSSEC validation. Thanks to Qifan Zhang, Palo Alto Networks, for the report. Fix CVE-2026-42944, Heap overflow and crash with multiple nsid, cookie, padding EDNS options. Thanks to Qifan Zhang, Palo Alto Networks, for the report.
Update to latest upstream release https://forum.torproject.org/t/security- release-0-4-8-25-and-0-4-9-8/21559
https://security-tracker.debian.org/tracker/DSA-6297-1
Several security issues were fixed in NLTK.
Several security issues were fixed in Vim.
An update that solves 13 vulnerabilities can now be installed.
An update that solves two vulnerabilities and contains one feature can now be installed.
An update that solves six vulnerabilities can now be installed.
An update that solves six vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves four vulnerabilities can now be installed.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
New kernel packages are available for Slackware 15.0 and -current to fix a security issue.
An update that solves 5 vulnerabilities can now be installed.
An update that solves 6 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 4 vulnerabilities can now be installed.
