Menu

Latest articles

An update that solves 3 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

Crooks found a new way to collaborate using Teams – by hiding command-and-control traffic
Cisco SD-WAN Vulnerability: Why Security Starts With the Management Plane
Databricks pitches LTAP as a new foundation for agentic applications

An update that solves one vulnerability can now be installed.

Cardiac monitor maker’s security skips a beat as data thieves go for the jugular

Several security issues were fixed in FreeRDP.

Ruby could allow unintended access to network services.

USN-8349-1 introduced regressions in rsync.

Shipping enterprise-quality code with AI agents
Develop smarter AI agents with data fabrics
Nvidia PCs don’t need cloud for AI
DocLang aims to make documents readable by AI, not humans

Security update

Security update

Security update

Fixes CVE-2026-48092: Information disclosure in 32-bit builds Fixes CVE-2026-48095: Arbitrary code execution in NTFS handler Fixes CVE-2026-48101: Information disclosure in UEFI capsule parser Fixes CVE-2026-48102: Information disclosure and DOS via crafted UDF image

Update to 0.162.1 (rhbz#2455512)

This release of Mojo::JWT Improves the security of decode to prevent timing side-channel attacks in symmetric signatures

Fixes CVE-2026-48092: Information disclosure in 32-bit builds Fixes CVE-2026-48095: Arbitrary code execution in NTFS handler Fixes CVE-2026-48101: Information disclosure in UEFI capsule parser Fixes CVE-2026-48102: Information disclosure and DOS via crafted UDF image

Update to version 3.10.0

Update to 0.162.1 (rhbz#2455512)

This release of Mojo::JWT Improves the security of decode to prevent timing side-channel attacks in symmetric signatures

An update that solves one vulnerability can now be installed.

An update that solves three vulnerabilities and has one security fix can now be installed.

An update that solves seven vulnerabilities and has one security fix can now be installed.

An update that solves eight vulnerabilities can now be installed.

An update that solves eight vulnerabilities can now be installed.

An update that solves seven vulnerabilities and has one security fix can now be installed.

An update that solves seven vulnerabilities can now be installed.

An update that solves seven vulnerabilities can now be installed.

https://security-tracker.debian.org/tracker/DSA-6348-1

Cisco SD-WAN make-me-root bug under attack
Feds freaked over Fable 5 after simple ‘fix this code’ prompt, not jailbreak, says researcher

An update that solves five vulnerabilities and has one security fix can now be installed.

An update that solves nine vulnerabilities can now be installed.

An update that solves nine vulnerabilities can now be installed.

Multiple security vulnerabilities were discovered in the BIRD internet routing daemon, which could result in denial of service. For the stable distribution (trixie), this problem has been fixed in version 2.17.5-0+deb13u1. We recommend that you upgrade your bird2 packages.

Multiple security vulnerabilities were discovered in LibreOffice, which could result in denial of service or potentially the execution of arbitrary code if malformed files are opened. For the stable distribution (trixie), these problems have been fixed in version 4:25.2.3-2+deb13u5.

A flaw was discovered in libgd-perl, a Perl module wrapper for libgd, which may result in the execution of arbitrary shell commands or file overwrite when processing specially crafted file names. For the stable distribution (trixie), this problem has been fixed in version 2.78-1+deb13u1.

Council of Europe hacked in ShinyHunters’ PeopleSoft heist
Feds snooze as US datacenter law set to lapse with no replacement in site
Microsoft site throwing warnings after someone forgot to renew cert
PRC-linked spies hid inside medical and military networks for more than a year, snooping through Gmail and stealing data
Arch Linux locks down AUR signups amid wave of malicious commits
Maine forced to take down data breach portal after fake notices filed with authorities
33 LLM metrics to watch closely
AI needs young developers – and old developers

An update that solves 74 vulnerabilities can now be installed.

An update that solves 5 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 149.0.7827.114-1~deb12u1.

An update that solves 57 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 2 vulnerabilities can now be installed.

AI is code – and can’t be prompted into being smarter

Update to 149.0.7827.102 CVE-2026-11628: Use after free in Ozone CVE-2026-11629: Use after free in Ozone CVE-2026-11630: Use after free in File Input CVE-2026-11631: Use after free in Aura

Update to upstream 1.5.1. Fixes CVE-2026-48785

Version 2.10.1 – 2026-06-04 Security: Fixed shell escaping when opening an editor (#12903) Security: Verify backup phar signature before restoring it when using self- update –rollback (#12918) Fixed source-fallback also disabling fallbacks to dist install when source is

New upstream version which also includes a security update (CVE-2026-49452).

Update to xwayland 24.1.12, Security fixes for: ZDI-CAN-30136, ZDI-CAN-30159, ZDI-CAN-30160, ZDI-CAN-30161, ZDI-CAN-30163, ZDI-CAN-30164, ZDI-CAN-30165, ZDI-CAN-30168

An update that solves one vulnerability and has two fixes can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves nine vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities and has one fix can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves nine vulnerabilities can now be installed.

An update that solves 5 vulnerabilities and has 5 bug fixes can now be installed.

An update that solves 19 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 74 vulnerabilities and has one bug fix can now be installed.

An update that solves one vulnerability can now be installed.

# Security update for rpcbind Announcement ID: SUSE-SU-2026:22069-1 Release Date: 2026-06-04T13:00:55Z Rating: moderate References:

An update that solves one vulnerability can now be installed.

An update that solves 19 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

AI threats move fast. Your defenses should too.
Fedora AI Contributor Incident Highlights New Open Source Risks

Security update

Security update

Security update

Update to 149.0.7827.102 CVE-2026-11628: Use after free in Ozone CVE-2026-11629: Use after free in Ozone CVE-2026-11630: Use after free in File Input CVE-2026-11631: Use after free in Aura

Update to upstream 1.5.1. Fixes CVE-2026-48785

Version 2.10.1 – 2026-06-04 Security: Fixed shell escaping when opening an editor (#12903) Security: Verify backup phar signature before restoring it when using self- update –rollback (#12918) Fixed source-fallback also disabling fallbacks to dist install when source is

Update to 2.70.5

New upstream version which also includes a security update (CVE-2026-49452).

New upstream release varnish-8.0.2, a security release. Includes fix for VSV00019. Dependent packages are included in this update.