A vulnerability was discovered in MariaDB, a SQL database server compatible with MySQL. A privileged attacker could cause a Denial-of-Service (DoS) of the MariaDB server.
A reachable assertion in FFmpeg git-master commit N-113007-g8d24a28d06 allows attackers to cause a Denial of Service (DoS) via opening a crafted AAC file. (CVE-2025-22919) A heap buffer overflow vulnerability in FFmpeg before commit 4bf784c allows attackers to trigger a memory corruption via supplying a crafted
nm >=2.43 is affected by: Incorrect Access Control. The type of exploitation is: local. The component is: `nm –without-symbol-version` function. (CVE-2024-57360) GNU Binutils objdump.c disassemble_bytes stack-based overflow. (CVE-2025-0840)
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
https://security-tracker.debian.org/tracker/DSA-5872-1
Update to chromium-133.0.6943.141
CVE-2023-40022 rizin: Integer Overflow in C++ demangler logic CVE-2024-31669 rizin: Uncontrolled Resource Consumption via bin_pe_parse_imports CVE-2024-31670 rizin: buffer overflow via create_cache_bins CVE-2024-31668 rizin: improper neutralization of special elements via meta_set function
CVE-2023-40022 rizin: Integer Overflow in C++ demangler logic CVE-2024-31669 rizin: Uncontrolled Resource Consumption via bin_pe_parse_imports CVE-2024-31670 rizin: buffer overflow via create_cache_bins CVE-2024-31668 rizin: improper neutralization of special elements via meta_set function
New version 4.2.11
Update to WebKitGTK 2.46.6: Fix a crash when enabling Skia CPU rendering. Fix several crashes and rendering issues. Fix CVE-2024-54543, CVE-2025-24143, CVE-2025-24150, CVE-2025-24158, CVE-2025-24162
deadlock potential with VT-d and legacy PCI device pass-through [XSA-467, CVE-2025-1713]
https://security-tracker.debian.org/tracker/DSA-5871-1
* bsc#1237093 Cross-References: * CVE-2025-1094
* bsc#1237431 Cross-References: * CVE-2025-26597
* bsc#1237431 Cross-References: * CVE-2025-26597
https://security-tracker.debian.org/tracker/DSA-5870-1
Several security issues were fixed in PHP.
Multiple vulnerabilities were discovered in GNU Emacs, the extensible, customisable, self-documenting, real-time display editor. CVE-2023-28617
Libxmltok could be made to crash if it opened a specially crafted file.
Merge branch ‘f42’ into f41 Merge branch ‘rawhide’ into f41 Fix merge conflict
A heap-based buffer overflow flaw in the decoding functions of openh264, a codec library which supports H.264 encoding and decoding, may allow a remote attacker to cause a denial of service or the execution of arbitrary code if a specially crafted video is processed.
New emacs packages are available for Slackware 15.0 and -current to fix security issues.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
Cross-References: * CVE-2020-13936 CVSS scores:
Upstream kernel version 6.6.79 fixes bugs and vulnerabilities. The kmod-virtualbox and kmod-xtables-addons packages have been updated to work with this new kernel. For information about the vulnerabilities see the links.
Vanilla upstream kernel version 6.6.79 fixes bugs and vulnerabilities. For information about the vulnerabilities see the links. References: – https://bugs.mageia.org/show_bug.cgi?id=34024
Several security issues were fixed in the Linux kernel.
* bsc#1237058 * bsc#1237062 Cross-References: * CVE-2025-24031
* bsc#1227320 * bsc#1227371 * bsc#1228585 * bsc#1236783
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in the Linux kernel.
* bsc#1233296 * bsc#1236278 * bsc#1236470 Cross-References:
* bsc#1233296 * bsc#1236278 * bsc#1236470 Cross-References:
* bsc#1236783 Cross-References: * CVE-2024-53104
* bsc#1227320 * bsc#1227371 * bsc#1228585 * bsc#1236783
