Menu

Category Archives: GNU/Linux

Everything about GNU+Linux security

* bsc#1246974 * bsc#1249375 Cross-References: * CVE-2025-8114

An update that solves two vulnerabilities can now be installed.

* bsc#1246001 * bsc#1246356 * bsc#1247499 Cross-References:

An update that solves three vulnerabilities can now be installed.

Top Linux Malware Scanners for Detection and System Hardening

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Two vulnerabilities were found in libxslt, an XSLT 1.0 processing library, which could lead to to denial of service or information disclosure.

https://security-tracker.debian.org/tracker/DSA-5979-2

https://security-tracker.debian.org/tracker/DSA-6010-1

https://security-tracker.debian.org/tracker/DSA-6011-1

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

* bsc#1246001 * bsc#1246356 * bsc#1247499 Cross-References:

* bsc#1231862 * bsc#1246001 * bsc#1246356 * bsc#1247499

* bsc#1246001 * bsc#1247499 Cross-References: * CVE-2025-38181

Several security issues were fixed in the Linux kernel.

Disk Encryption: An Authoritative Guide for Linux Users
Configuring Proxy Servers on Linux for Enhanced Security and Privacy
Top Synthetic Data Generation Tools for AI and Testing in 2025

https://security-tracker.debian.org/tracker/DSA-6009-1

https://security-tracker.debian.org/tracker/DSA-6008-1

Several security issues were fixed in pip.

What Is a Speculative Execution Linux Security Vulnerability?

* bsc#1235237 Cross-References: * CVE-2024-55553

An update that solves two vulnerabilities can now be installed.

* bsc#1242617 * bsc#1243862 Cross-References: * CVE-2024-12224

* bsc#1246602 * bsc#1246604 * bsc#1247938 * bsc#1247939

* bsc#1246602 * bsc#1246604 * bsc#1247938 * bsc#1247939

Full Disk Encryption: What It Is, How It Works, and Why It Matters for Linux Security in 2025

* bsc#1249391 Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5

An update that contains one feature can now be installed.

* jsc#PED-11136 Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6

An update that solves one vulnerability can now be installed.

* bsc#1248252 Cross-References: * CVE-2025-53192

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

An update that solves 2 vulnerabilities can now be installed.

An update that solves 2 vulnerabilities can now be installed.

An update that solves 11 vulnerabilities can now be installed.

Multiple vulnerabilities were found in PAM namespace module used to configure private namespaces for user sessions. CVE-2024-22365

https://security-tracker.debian.org/tracker/DSA-6007-1

Everything You Need to Know About Linux Proxy Servers (2025 Guide)

Fix Out of bounds read for cookie path (CVE-2025-9086) Fix predictable WebSocket mask (CVE-2025-10148)

New upstream release fixing the following security weaknesses (CVE-2025-8114, CVE-2025-8277)

* bsc#1247589 Cross-References: * CVE-2025-50422

* bsc#1248461 Cross-References: * CVE-2025-9301

Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, sandbox escape, information disclosure or bypass of the same-origin policy.

The system could be made to crash or run programs as an administrator.

The system could be made to crash or run programs as an administrator.

The system could be made to crash or run programs as an administrator.

The system could be made to crash or run programs as an administrator.

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. Google is aware that an exploit for CVE-2025-10585 exists in the wild.

https://security-tracker.debian.org/tracker/DSA-6004-1

https://security-tracker.debian.org/tracker/DSA-6005-1

https://security-tracker.debian.org/tracker/DSA-6006-1

* bsc#1233421 Cross-References: * CVE-2024-52615

* bsc#1246197 * bsc#1249191 * bsc#1249348 * bsc#1249367 * jsc#PED-13055

* bsc#1246197 * bsc#1249191 * bsc#1249348 * bsc#1249367 * jsc#PED-13055

https://security-tracker.debian.org/tracker/DSA-6003-1

* bsc#1236851 * bsc#1248070 Cross-References: * CVE-2025-23419

* bsc#1235673 * bsc#1235674 Cross-References: * CVE-2024-57822

* bsc#1243581 * bsc#1248410 * bsc#1248687 Cross-References:

* bsc#1237208 * bsc#1247528 * bsc#1247529 * bsc#1247530 * bsc#1247531

What Is a Checksum? Meaning, Examples & Why You Should Use Them
Preparing your organization for the quantum future

This update upgrade the package to version 0.44. This version fixes CVE-2025-40924 by using Crypt::SysRandom to generate properly random session IDs.

This update upgrade the package to version 0.36. This version fixes CVE-2025-40923 by using Crypt::SysRandom to generate secure session IDs.

This update upgrade the package to version 1.019. This version fixes CVE-2025-40920 by using Crypt::SysRandom to generate nonces instead of Data::UUID.

Update to 140.0.7339.127 CVE-2025-10200: Use after free in Serviceworker CVE-2025-10201: Inappropriate implementation in Mojo

2.4.14 (fixes CVE-2025-58060 and CVE-2025-58364)

Fix crash with spice GL (bz 2391334) Update to 10.1.0 GA release Automatic update for qemu-10.1.0-0.4.rc4.fc43.

https://security-tracker.debian.org/tracker/DSA-6002-1

The EU Cyber Resilience Act’s impact on open source security

https://security-tracker.debian.org/tracker/DSA-6001-1

https://security-tracker.debian.org/tracker/DSA-6000-1

https://security-tracker.debian.org/tracker/DSA-5999-1

Navigating AI risk: Building a trusted foundation with Red Hat

https://security-tracker.debian.org/tracker/DSA-5997-1

https://security-tracker.debian.org/tracker/DSA-5996-1

https://security-tracker.debian.org/tracker/DSA-5998-1

https://security-tracker.debian.org/tracker/DSA-5995-1

Important: postgresql:15 security update

Important: postgresql:16 security update

Important: mingw-sqlite security update

Important: kernel-rt security update

Moderate: kernel-rt security update

Moderate: kernel-rt security update

What Are Container Escape Vulnerabilities?