Security update
An update that fixes one vulnerability is now available.
An update that contains security fixes can now be installed.
An update that fixes one vulnerability is now available.
An update that solves 19 vulnerabilities and has 7 bug fixes can now be installed.
An update that solves 4 vulnerabilities and has 4 bug fixes can now be installed.
An update that solves 11 vulnerabilities and has 12 bug fixes can now be installed.
————————————————————-
An update that solves one vulnerability and has one bug fix can now be installed.
An update that solves one vulnerability and has one bug fix can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 4 vulnerabilities can now be installed.
An update that solves 7 vulnerabilities can now be installed.
An update that solves 7 vulnerabilities can now be installed.
An update that solves 5 vulnerabilities can now be installed.
An update that solves 5 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 7 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
New libinput packages are available for Slackware 15.0 and -current to fix a security issue.
New dnsmasq packages are available for Slackware 15.0 and -current to fix a security issue.
YARD could be made to expose sensitive information over the network.
Dirk Mueller discovered that a flaw in the function performing a credential check on the command socket of haveged, a userspace entropy daemon, may result in local privilege escalation. For Debian 11 bullseye, this problem has been fixed in version 1.9.14-1+deb11u1.
Warisjeet Singh discovered that Exim, a mail transport agent, does not properly handle PROXY frames whose declared payload length is too short for the claimed address family, which may result in information disclosure in configurations with SUPPORT_PROXY and ‘host_proxy’ set. For Debian 11 bullseye, this problem has been fixed in version
Postfix could be made to crash if it received specially crafted network traffic.
Several security issues were fixed in Robocode.
Several security issues were fixed in Exim.
Several security issues were fixed in Tomcat.
4.1.2, fix for CVE-2026-38978
libre v4.8.1 (2026-05-28) fmt/pl: add pl_strip_html() sys/fs: add getpwuid fallback for fs_gethome tls: remove unused include rsa.h ice: check source address of incoming application packets
33.0.4 Release
Backport fix for CVE-2026-48710
This update addresses a number of bugs including these security issues: Fix BOM-shift PV-corruption SIGABRT (CVE-2026-9516) Fix dupkeys_as_arrayref type confusion (CVE-2026-9334)
Backport 0.9.41 / 0.9.44 fixes for possible path traversal issues
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
4.1.2, fix for CVE-2026-38978
Update to Samba 4.23.8 – Security fix for CVE-2026-4480, CVE-2026-2340, CVE-2026-3012, CVE-2026-1933, CVE-2026-4408, and CVE-2026-3238
Update to Samba 4.23.8 – Security fix for CVE-2026-4480, CVE-2026-2340, CVE-2026-3012, CVE-2026-1933, CVE-2026-4408, and CVE-2026-3238
libre v4.8.1 (2026-05-28) fmt/pl: add pl_strip_html() sys/fs: add getpwuid fallback for fs_gethome tls: remove unused include rsa.h ice: check source address of incoming application packets
Backport fix for CVE-2026-48710
33.0.4 Release
This update addresses a number of bugs including these security issues: Fix BOM-shift PV-corruption SIGABRT (CVE-2026-9516) Fix dupkeys_as_arrayref type confusion (CVE-2026-9334)
Backport 0.9.41 / 0.9.44 fixes for possible path traversal issues
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update the sequoia-wot crate to version 0.15.2. Update the sequoia-keystore crate to version 0.7.3. This includes a rebuild of all dependent applications to address three low- severity security vulnerabilities in sequoia-wot: https://gitlab.com/sequoia-pgp/sequoia-wot/-/commit/77605b2f
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
Update to 0.031 #2477035 #2481131 fixes CVE-2026-8463
Update to version 0.11.2. Resolves CVE-2025-12474 and CVE-2026-1837. Release notes: https://github.com/libjxl/libjxl/releases/tag/v0.11.2
Changes: 6.83 2026-05-12 11:41:48Z – LWP::UserAgent now strips Authorization and Proxy-Authorization headers on cross-origin redirects (a different scheme, host, or port) to prevent credential leakage to the redirect target. Same-origin redirects retain
Automatic update for cockpit-362-1.fc43. Changelog for cockpit * Wed May 20 2026 Packit – 362-1 – Bug fixes and translation updates – Fix arbitrary code execution via specially crafted logs page link
0.094 – fix to prevent invalid characters in all headers, and prevent header smuggling (CVE-2026-7010)
Several security issues were fixed in the Linux kernel.
The system could be compromised under certain conditions.
Several security issues were fixed in the Linux kernel.
https://security-tracker.debian.org/tracker/DSA-6322-1
https://security-tracker.debian.org/tracker/DSA-6321-1
An update that solves 203 vulnerabilities, contains six features and has 41 security fixes can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves two vulnerabilities and contains one feature can now be installed.
An update that solves five vulnerabilities can now be installed.
Your child’s first data breach may happen before they’ve even opened a bank account. Here’s how to keep their digital life safe.
