Menu

Latest articles

Fedora 43 BuildStream Critical Symlink Escape CVE-2026-82331
Fedora 43 Unbound Medium Heap Overflow RCE Vuln 2026-41f949afc4
Fedora 44 Firefox Update Information Vuln 2026-913130e4f5
Fedora 44 libX11 Critical Heap Overflow CVE-2026-88806 Advisory
Fedora 44 OpenSSL 3.5.9 Update Advisory FEDORA-2026-12f3f3d569
Fedora 44 docker-distribution Severe Denial of Service CVE-2026-41178
Fedora 44 Erlang Important Backported Fixes CVE-2026-65634, 68956, 89422
Fedora 44 cockpit-machines Important Data Exposure Fix 2026-57e39fc2fa
Fedora 44 Cockpit-Files CVE-2026-91202-91205 Security Advisory
Fedora 44 hplip Security Flaw Remote Code Execution Privilege Escalation
Fedora 44 Fetchmail Update CVE-2026-94184 Remote Code Issue 2026-ffdc059b16
Fedora WordPress Critical Path Traversal RCE Vuln 2026-7f9c69a63c
Fedora Buildstream 2.8.1 Moderate Tar Symlink Escape Vulnerability Warning
Fedora 44 WeasyPrint Update CVE-2026-55073 Critical SSRF Fix
Fedora 44 python-cssselect2 CVE-2026-55073 Fix for SSRF Vulnerability
Fedora 44 python-httpx2 Important Denial of Service Security Fix Released
Fedora 44 Xen Important Memory Leak DoS CVE-2026-62437 CVE-2026-79602
Fedora 45 Firefox Update Advisory FEDORA-2026-06aa513df8
Fedora 45 xdg-dbus-proxy Important Message Filtering Bypass 2026-f10257ca80
Fedora 45 Zypper Important Code Execution Risk CVE-2026-84975
Fedora 45 yelp-tools Arbitrary Code Execution Fix 2026-91259c13b9
Fedora 45 Zabbix Important Arbitrary Code Execution Fix CVE-2026-84975
Fedora 45 Yelp Critical Fix for Code Execution CVE-2026-84975
DSA-6542-1 ruby-rack-session – security update
DSA-6541-1 wireshark – security update
ShinyHunters Suspect “Rey” Detained in Jordan, Reportedly Helping FBI
DSA-6534-2 webkit2gtk – regression update
Debian LTS FreeCAD Critical Code Exec Remote Request DLA-4815-1
Rocky Linux 9 RLSA-2026-74457 Ghostscript Heap Overflow CVE-2026-39919
Rocky Linux 9 libvirt Important Buffer Overflow Fix CVE-2026-18917
Rocky Linux 9 Kernel Moderate Bug Fix and Security Advisory RLSA-2026-74438
openSUSE Leap 16.0 rustup Important Code Execution Issues Vuln 2026-22016-1
openSUSE Leap 16.0 Jline3 Moderate Buffer Overflow SSH Threat 2026-22009-1
openSUSE Tumbleweed Gnumeric Moderate Fix CVE-2026-97222
openSUSE Tumbleweed Firefox-ESR Moderate Update Advisory 2026-11917-1
openSUSE Tumbleweed bind 9.20.29-1.1 Moderate Security Issues 2026-11916-1
openSUSE binaryen Moderate Security Notice 2026-11915-1
openSUSE Tumbleweed libwireshark Moderate Security Threat Update 2026-11912
openSUSE xdg-dbus-proxy Moderate Vulnerability Fix 2026-11913-1
openSUSE amazon-ecs-init Moderate Security Issues Fixed 2026-11914-1
Anthropic’s super bug-hunting model Mythos is hardcore good at math, as latest vuln under attack shows
The second Anthropic-linked vulnerability known to have been exploited in the wild saw initial activity from an IP address in China targeting vulnerable [...]
Dutch Institute for Vulnerability Disclosure Breached via Zammad 0-Days
What enterprises need to know about the software they depend on
Knowing an application contains open source components is not the same as understanding the software and communities behind them.For many organizations, [...]
What enterprises need to know about the Cyber Resilience Act and software supply chain risk
In part 1 of this series, we examined why enterprises need more than an inventory of the open source components in their software. Understanding where [...]
Debian Redis High Severity Denial of Service Code Execution DSA-6538-1
Rocky Linux 9 libpcap Important Memory Access Threat CVE-2026-0799
Rocky Linux gvfs Security Notice Important Buffer Overflow and Local Root
Debian LTS firefox-esr Important Code Execution Risks DLA-4814-1
Ubuntu 26.04 Linux Kernel Security Advisory USN-8816-4 Released Today
Ubuntu Linux Kernel Critical Network Issues Advisory USN-8851-2
Ubuntu 22.04 LTS Linux Kernel Critical Memory Protection Issues USN-8818-6
Ubuntu Linux Kernel Update Security Advisory USN-8864-1 CVE-2025-38724
Debian open-iscsi Significant ICMP Vulnerabilities Resolution DLA-4813-1
Mageia Wireshark Critical Buffer Overflow Loop Issues 2026-0465
Mageia python-urwid Security Issue Revealed CVE-2026-9323 MGASA-2026-0466
Mageia 10 Libgcrypt Critical Marvin Attack CVE-2024-2236
Mageia 10 Python-Tornado Vital Access Management Memory Flaw 2026-0467
N0n ransomware: what you need to know
DSA-6537-1 libpng1.6 – security update
DSA-6536-1 thunderbird – security update
DSA-6535-1 chromium – security update
DSA-6534-1 webkit2gtk – security update
Debian radsecproxy Important Denial of Service Code Issue DSA-6540-1
Debian php-mongodb Severe Injection Denial of Service Problems DSA-6539-1
OpenAI alerts 100+ orgs that its ‘misaligned models’ attempted to break in – or worse
OpenAI’s agents have repeatedly strayed beyond their intended scope. Two separate reports detail the activity, including one from Sam Altman’s [...]
openSUSE openssl-3 Important Six Issues Fix Advisory 2026-4412-1
SUSE openssl-3 Important Fix for Six Vulnerabilities 2026-4412-1
openSUSE openssl-3 Important CVE-2026-35189 DoS Security Patch 2026-4413-1
SUSE OpenSSL-3 Important Updates Fix Critical Memory Issues 2026-4413-1
SUSE openssl-3 Important Security Fix Advisory 2026-4414-1
Rocky Linux 10 RLSA-2026-74442 libpcap Important Memory Access Issue
Rocky Linux Ruby Important Denial of Service Fix RLSA-2026-72785
Rocky Linux 10 Ghostscript Moderate Buffer Overflow RLSA-2026-74464
Rocky Linux gawk Moderate Memory Corruption DoS Vulnern RLSA-2026-73511
Mageia 10 PHP 8.5 Bugfix Advisory Updated for 2026-0145 Release
openSUSE libvlc Moderate CVE-2026-56711 Security Update 2026-11910-1
openSUSE Python313 Django Allauth Moderate Security Update CVE-2026-97764
Californian accused of shipping $300M worth of Nvidia chips to China without Uncle Sam’s approval
A California business owner was arrested on Thursday after being charged with allegedly smuggling Nvidia hardware to China without the proper export [...]
OpenAI’s wandering AI agents earn it a California subpoena
California’s attorney general has subpoenaed OpenAI as the state investigates what happens when the AI lab’s models escape their testing [...]
IBM’s Bob wants to move in: Agent available for on-prem deployment
Bob, IBM’s agentic software development platform is now available to run on premises and in private clouds, sovereign clouds, and air-gapped environments [...]
367,000-Ship Study Finds Global GPS Spoofing, Red Sea Activity Before Grounding
Fortinet sounds the alarm over actively exploited FortiMail zero-day
Fortinet is warning customers to lock down FortiMail after attackers started exploiting a critical bug that lets them write files to vulnerable systems [...]
AI is less dangerous than humans
Over the past few weeks, people have been pushing a stack of reports at me as evidence that AI is dangerous to humanity. The OpenAI incident disclosures, [...]
AI could boost software engineer productivity by 32.6%
Tools such as Anthropic Claude Code or OpenAI Codex have changed the face of software development, and all the signs are that this investment is set to [...]
Debian libio-compress-perl Critical CPU Exhaustion and Code Exec DLA-4812-1
Fedora 44 sos CVE-2026-79655 Path Traversal Security Fix
SUSE libX11 Important Buffer Overflow and Out-of-Bounds Issues 2026-4410-1
SUSE Python Moderate Denial of Service Security Patch 2026-4411-1
Proposed Linux IPsec Fix Addresses IP-TFS Packet Cleanup Race
Linux developers have proposed an IPsec fix after reproducing a memory error in IP-TFS, a mode that groups and pads encrypted traffic to make traffic [...]
DSA-6540-1 radsecproxy – security update
DSA-6539-1 php-mongodb – security update
DSA-6538-1 redis – security update
Proposed Linux FastRPC Fix Addresses Shared-Buffer Cleanup Race
Linux developers have proposed a FastRPC fix for a race that can leave the kernel using memory after it has been released.
Proposed Linux QNX6 Fixes Address Filesystem Memory Errors
Linux developers have proposed six fixes for the driver that reads QNX6 filesystems, a disk format associated with the QNX operating system.
LightLLM Profiling Flaw Allows Code Execution Without a Login
LightLLM, software used to serve AI models, can expose Linux AI servers to remote code execution when operators enable its profiling mode, a tool for [...]
Debian Bookworm Chromium Security Vulnerability Poses Code Execution Risk
Debian LTS DLA-4810-1 Thunderbird Security Vulnerabilities Addressed
ModSecurity Updates Fix WAF Bypasses on Linux Web Servers
ModSecurity has released fixes for a group of web application firewall (WAF) weaknesses that can let dangerous input reach Linux-hosted applications [...]
Rocky Linux 8 Kernel-rt Moderate Security Updates RLSA-2026-74132
Rocky Linux Thunderbird Significant Security Patch RLSA-2026-73971