https://security-tracker.debian.org/tracker/DSA-5994-1
https://security-tracker.debian.org/tracker/DSA-5993-1
* bsc#1243314 Cross-References: * CVE-2025-4945
* bsc#1230028 * bsc#1247207 Cross-References: * CVE-2024-58266
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
An update that fixes one vulnerability is now available.
An update that fixes four vulnerabilities is now available.
An update that fixes four vulnerabilities is now available.
* bsc#1249011 Cross-References: * CVE-2025-58160
* bsc#1246623 * jsc#PED-13306 Cross-References: * CVE-2025-40918
FFmpeg could be made to crash if it received specially crafted input.
A couple of vulnerabilities have been fixed in ClamAV, an anti-virus utility for Unix. CVE-2025-20128
* bsc#1246058 * bsc#1246059 Cross-References: * CVE-2025-32023
* bsc#1225905 Cross-References: * CVE-2024-35221
* bsc#1248810 Cross-References: * CVE-2025-57833
* bsc#1246088 Affected Products: * HPC Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
Two vulnerabilities have been fixed in the audio data read/write library libsndfile.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
* jsc#PED-11136 Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6
Several security issues were fixed in ImageMagick.
DoS with large SAML responses has been fixed in ruby-saml, a library implementing the client side of SAML authorization for the Ruby interpreter.
* bsc#1244270 * bsc#1244272 Cross-References: * CVE-2025-5914
Update to release v0.27.0 Resolves: rhvz#2388453, rhbz#2384137, rhbz#2384154 Upstream new features and fixes
Exiv2 0.28.6 + patch to fix silent abi breakage Exiv2 v0.28.6 (Fixes two low severity CVEs)
Update to 139.0.7258.154 CVE-2025-9478: Use after free in ANGLE
Several security issues were fixed in Open VM Tools.
Update to 139.0.7258.154 CVE-2025-9478: Use after free in ANGLE
CVE-2025-8067 Out-Of-Bounds Read in UDisks Daemon
CVE-2025-8010: Type Confusion in V8 CVE-2025-8011: Type Confusion in V8 CVE-2025-8576: Use after free in Extensions CVE-2025-8578: Use after free in Cast CVE-2025-8579: Inappropriate implementation in Gemini Live in Chrome
Update to release v0.27.0 Resolves: rhvz#2388453, rhbz#2384137, rhbz#2384154 Upstream new features and fixes
Remove prebuild libffts.a library
New udisks2 packages are available for Slackware 15.0 and -current to fix a security issue.
Update to latest upstream (142.0.1) Updated to new upstream release (142.0)
https://security-tracker.debian.org/tracker/DSA-5992-1
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
* bsc#1240414 Cross-References: * CVE-2025-31115
* bsc#1238078 * bsc#1243450 * bsc#1244116 Cross-References:
* bsc#1220262 Cross-References: * CVE-2023-50782
* bsc#1244270 * bsc#1244272 * bsc#1244273 * bsc#1244279 * bsc#1244336
* bsc#1248502 Cross-References: * CVE-2025-8067
* bsc#1248502 Cross-References: * CVE-2025-8067
* bsc#1248502 Cross-References: * CVE-2025-8067
* bsc#1248119 * bsc#1248120 * bsc#1248122 Cross-References:
https://security-tracker.debian.org/tracker/DSA-5990-1
https://security-tracker.debian.org/tracker/DSA-5991-1
https://security-tracker.debian.org/tracker/DSA-5988-1
https://security-tracker.debian.org/tracker/DSA-5987-1
* bsc#1246472 Cross-References: * CVE-2025-7519
* bsc#1244270 * bsc#1244272 * bsc#1244273 * bsc#1244279 * bsc#1244336
* bsc#1246597 Cross-References: * CVE-2025-6965
* bsc#1245573 Cross-References: * CVE-2025-6297
* bsc#1246232 * bsc#1246233 * bsc#1246267 * bsc#1246299
* bsc#1244554 * bsc#1244555 * bsc#1244557 * bsc#1244580 * bsc#1244700
https://security-tracker.debian.org/tracker/DSA-5989-1
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
fix CVE-2025-9165: memory leak in tiffcmp (rhbz#2389608)
Update to upstream version 0.2.8 Update idna dependency to a version not affected by CVE-2024-12224
fix CVE-2025-8534: null pointer dereference in tiff2ps (rhbz#2386494) fix CVE-2024-13978: null pointer dereference in tiff2pdf (rhbz#2386201)
An update that solves two vulnerabilities and has one errata is now available.
An update that solves two vulnerabilities and has one errata is now available.
* bsc#1248119 * bsc#1248120 * bsc#1248122 Cross-References:
* bsc#1248119 * bsc#1248120 * bsc#1248122 Cross-References:
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
https://security-tracker.debian.org/tracker/DSA-5986-1
* bsc#1232234 * bsc#1246221 Cross-References: * CVE-2024-10041
* bsc#1232234 * bsc#1246221 Cross-References: * CVE-2024-10041
* bsc#1234018 * bsc#1234019 * bsc#1234020 * bsc#1245313 * bsc#1246790
* bsc#1239547 * bsc#1239863 * bsc#1239864 * bsc#1247562 * bsc#1247563
https://security-tracker.debian.org/tracker/DSA-5985-1
