Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

Update to security release 4.3.5a

Rebuilt with latest patched stb_image: memory-safety fixes

https://security-tracker.debian.org/tracker/DSA-6069-1

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2025-43392

Rebuilt with stb_image patched for two new security bugs.

Patch two newly-reported memory-safety bugs in stb_image: https://github.com/nothings/stb/issues/1860 https://github.com/nothings/stb/issues/1861

https://security-tracker.debian.org/tracker/DSA-6070-1

https://security-tracker.debian.org/tracker/DSA-6068-1

https://security-tracker.debian.org/tracker/DSA-6067-1

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

KDE Connect could allow authentication of impersonated devices.

Frequently asked questions about Red Hat Ansible Automation Platform 2.6
Confidential computing on AWS Nitro Enclave with Red Hat Enterprise Linux
Tracking event-driven automation with Red Hat Lightspeed and Red Hat Ansible Automation Platform 2.6
9 strategic articles defining the open hybrid cloud and AI future
Integrating Red Hat Lightspeed in 2025: From observability to actionable automation
Automation unleashed: Introducing the new Red Hat Certified Ansible Collection amazon.ai for generative AI

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Out-of-Bounds Read Bugs Add Quiet Pressure on Linux Security

Several security issues were fixed in CRaC JDK 17.

Several security issues were fixed in CRaC JDK 25.

Several security issues were fixed in CRaC JDK 21.

update to version 2.25.2

Update to 1.24.2 (rhbz#2417261) Additional fix for CVE-2025-11411 https://nlnetlabs.nl/projects/unbound/download/#unbound-1-24-2

Prevent unsafe URI schemes from participating in media playback. Make jsc_value_array_buffer_get_data() function introspectable. Fix logging in to Google accounts that have a WebAuthn second factor configured. Fix loading webkit://gpu when there are no threads configured for GPU rendering. Fix rendering gradients that use the CSS hue interpolation method.

A local file inclusion vulnerability has been discovered in mistral- dashboard, the OpenStack Workflow as a Service dashboard plugin, that may result in disclosure of arbitrary local files content through the

A local file inclusion vulnerability has been discovered in python- mistralclient, the OpenStack Workflow as a Service client, that may result in disclosure of arbitrary local files content through the

Multiple vulnerabilities have been discovered in Pagure, a Git-centered code hosting system (forge).

A possible remote code execution (RCE) vulnerability has been discovered in pytorch, an open source machine learning framework.

Update to pgadmin-9.10

Update to 2.86.2 Fix CVE-2025-13601 or #YWH-PGM9867-134

Version 0.18.1 Security Fixed critical issue where PKESK (public-key encrypted) session keys were generated as all-zero, allowing trivial decryption of messages encrypted with public keys only (CVE-2025-13402)

An update that solves 2 vulnerabilities can now be installed.

An update that solves 2 vulnerabilities can now be installed.

An update that solves 9 vulnerabilities can now be installed.

Update to 20251125: Revert “amdgpu: update GC 11.0.1 firmware” QCA: Add Bluetooth firmware for WCN685x uart interface qcom: Add ADSP firmware for qcs6490-thundercomm-rubikpi3 qcom: venus-5.4: update firmware binary for v5.4

Update to 4.19.0 Address CVEs by rebuilding with Go 1.24.10

https://security-tracker.debian.org/tracker/DSA-6066-1

* bsc#1253757 Cross-References: * CVE-2025-11563

* bsc#1245953 * bsc#1252930 * bsc#1252931 * bsc#1252932 * bsc#1252933

Comprehending Fingerprinting Risks Faced by Linux Users Today

A race condition was discovered in Qt, a cross-platform C++ application framework. Code to make security-relevant decisions about an established HTTP2 connection may execute too early, because the encrypted() signal has not yet been emitted and processed.

What Is a Side-Channel Attack? A Linux Security Overview

* bsc#1249537 Cross-References: * CVE-2025-38616

New libxslt packages are available for Slackware 15.0 and -current to fix security issues.

Several security vulnerabilities were discovered in the server of the Tryton application platform, which could lead to information disclosure. For Debian 11 bullseye, these problems have been fixed in version

The Ultimate Handbook for Linux Security Tools and Hardening Tips 2026

* bsc#1252110 * bsc#1252232 Cross-References: * CVE-2025-31133

* bsc#1215199 * bsc#1218644 * bsc#1230062 * bsc#1234634 * bsc#1234693

* bsc#1249191 * bsc#1249348 * bsc#1249367 * bsc#1253757

* bsc#1218644 * bsc#1238472 * bsc#1239206 * bsc#1241166 * bsc#1241637

* bsc#1253278 * bsc#1253642 * bsc#1253703 * jsc#PED-9265

* bsc#1252414 * bsc#1252417 * bsc#1252418 * jsc#PED-14233

Everything You Need to Know About Linux Proxy Servers (2026 Guide)
Full Disk Encryption: What It Is, How It Works, and Why It Matters for Linux Security in 2026
UNC2891 Hackers Use Linux Malware in Major Banking Security Heists
How Holiday Leave Exposes Linux Security Gaps in Docker and Kubernetes Environments

https://security-tracker.debian.org/tracker/DSA-6065-1

https://security-tracker.debian.org/tracker/DSA-6064-1

Optimizing Linux Security 2026: Key Strategies for Modern Threats

Several vulnerabilities have been found in libssh, a tiny C SSH library. CVE-2025-4877

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves 83 vulnerabilities and has 101 bug fixes can now be installed.

FFmpeg could be made to crash if it opened a specially crafted file.

An update that solves two vulnerabilities can now be installed.

* bsc#1248672 * bsc#1249537 Cross-References: * CVE-2025-38500

https://security-tracker.debian.org/tracker/DSA-6062-1

https://security-tracker.debian.org/tracker/DSA-6061-1

An update that solves 573 vulnerabilities and has 669 bug fixes can now be installed.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

An update that solves one vulnerability can now be installed.

* bsc#1251983 Cross-References: * CVE-2023-53673

https://security-tracker.debian.org/tracker/DSA-6063-1

An update that contains one feature can now be installed.

* jsc#PED-11136 Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6

An update that solves two vulnerabilities can now be installed.

* bsc#1251305 * bsc#1252974 Cross-References: * CVE-2025-6075

* bsc#1252379 * bsc#1252380 Cross-References: * CVE-2025-40778

* bsc#1252931 * bsc#1252932 * bsc#1252933 * bsc#1252934 * bsc#1252935

Key Linux Features Boosting Security Measures for the Year 2026

Several security issues were fixed in cups-filters.

An update that solves nine vulnerabilities can now be installed.

* bsc#1231032 * bsc#1231033 * bsc#1232855 * bsc#1236496 * bsc#1236497

An update that solves four vulnerabilities can now be installed.

* bsc#1237236 * bsc#1237240 * bsc#1237241 * bsc#1237242

* bsc#1065729 * bsc#1199304 * bsc#1205128 * bsc#1206893 * bsc#1210124

An update that solves 3 vulnerabilities can now be installed.

An update that solves 6 vulnerabilities can now be installed.

Update to release v1.32.10 Resolves: rhbz#2414539 Resolves: rhbz#2398587, rhbz#2398848, rhbz#2399249, rhbz#2399522 Resolves: rhbz#2399703, rhbz#2399721, rhbz#2407788, rhbz#2408058 Resolves: rhbz#2408315, rhbz#2408609, rhbz#2408672, rhbz#2408730

Update to the 3.8.11 release with a fix for CVE-2025-9820 and several enhancements.

MGASA-2025-0310 – Updated kernel-linus packages fix security vulnerabilities

MGASA-2025-0309 – Updated kernel, kmod-xtables-addons & kmod-virtualbox packages fix security vulnerabilities