https://security-tracker.debian.org/tracker/DSA-6226-1
https://security-tracker.debian.org/tracker/DSA-6227-1
https://security-tracker.debian.org/tracker/DSA-6228-1
https://security-tracker.debian.org/tracker/DSA-6223-1
https://security-tracker.debian.org/tracker/DSA-6224-1
https://security-tracker.debian.org/tracker/DSA-6225-1
An attack is what you see, but a business operation is what you’re up against
Andrew Nesbitt discovered that .install file directives were insufficiently restricted in OPAM, a package manager for OCaml. This could result in directory traversal out of the package area. For Debian 11 bullseye, this problem has been fixed in version 2.0.8-1+deb11u1.
Yarden Porat found a heap-based buffer overwrite in MuPDF, a lightweight PDF viewer, which may result in denial of service or the execution of arbitrary code if malformed documents are opened. For Debian 11 bullseye, this problem has been fixed in version 1.17.0+ds1-2+deb11u2.
# Security update for rootlesskit Announcement ID: SUSE-SU-2026:1493-1 Release Date: 2026-04-20T15:58:01Z Rating: important References:
An update that can now be installed.
# Security update for rootlesskit Announcement ID: SUSE-SU-2026:1494-1 Release Date: 2026-04-20T15:58:21Z Rating: important References:
# Security update for containerd Announcement ID: SUSE-SU-2026:1495-1 Release Date: 2026-04-20T16:00:19Z Rating: important References:
https://security-tracker.debian.org/tracker/DSA-6221-1
https://security-tracker.debian.org/tracker/DSA-6222-1
An update that solves one vulnerability can now be installed.
An update that solves two vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves three vulnerabilities can now be installed.
An update that solves three vulnerabilities can now be installed.
An update that solves two vulnerabilities can now be installed.
https://security-tracker.debian.org/tracker/DSA-6220-1
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
https://security-tracker.debian.org/tracker/DSA-6219-1
https://security-tracker.debian.org/tracker/DSA-6217-1
https://security-tracker.debian.org/tracker/DSA-6216-1
https://security-tracker.debian.org/tracker/DSA-6215-1
Ignoring a real breach notification invites risk, but falling for a bogus one could be even worse. Stop reacting on autopilot.
MGASA-2026-0101 – Updated rsync packages fix security vulnerability
Backport patch for CVE-2026-20884. Backport fixes for CVE-2026-20889 CVE-2026-21413 CVE-2026-24450 CVE-2026-24660 Update to libraw-0.21.5.
Update to version 4.0.6
Fix access/use of uninitialized memory in stb_image
Latest Monkey’s Audio Codec release. Changes: https://monkeysaudio.com/versionhistory.html .
Latest Monkey’s Audio Codec release. Changes: https://monkeysaudio.com/versionhistory.html .
https://security-tracker.debian.org/tracker/DSA-6218-1
Your biggest risk may be a vendor you trust. How can SMBs map their third-party blind spots and build operational resilience?
Several security issues were fixed in the Linux kernel.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that has one security fix can now be installed.
# Security update for smc-tools Announcement ID: SUSE-SU-2026:1422-1 Release Date: 2026-04-17T07:21:34Z Rating: moderate References:
Several security issues were fixed in the Linux kernel.
https://security-tracker.debian.org/tracker/DSA-6214-1
