https://security-tracker.debian.org/tracker/DSA-6308-1
https://security-tracker.debian.org/tracker/DSA-6307-1
An update that solves 6 vulnerabilities can now be installed.
An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2025 and Q1 2026
https://security-tracker.debian.org/tracker/DSA-6311-1
https://security-tracker.debian.org/tracker/DSA-6310-1
https://security-tracker.debian.org/tracker/DSA-6309-1
https://security-tracker.debian.org/tracker/DSA-6304-1
https://security-tracker.debian.org/tracker/DSA-6303-1
https://security-tracker.debian.org/tracker/DSA-6302-1
https://security-tracker.debian.org/tracker/DSA-6301-1
Using chatbots for medical advice could elicit hallucinations and even expose you to security and privacy risks. Here’s what’s at stake and how to stay safe.
https://security-tracker.debian.org/tracker/DSA-6306-1
https://security-tracker.debian.org/tracker/DSA-6305-1
https://security-tracker.debian.org/tracker/DSA-6300-1
https://security-tracker.debian.org/tracker/DSA-6299-1
https://security-tracker.debian.org/tracker/DSA-6298-1
Several security issues were fixed in Samba.
Several vulnerabilities have been discovered in Samba, a SMB/CIFS file, print, and login server for Unix, which might result in bypass of access checks, overwrite of files in unintended situations using the WORM vfs module, installing CA certificates over http without verification when auto-enrollment GPO is enabled, denial of service or remote code
The malware pairs remote access capabilities with ready-made campaign tools, lowering the barrier for full device compromise
Dnsmasq could be made to crash or run programs if it received specially crafted network traffic.
libssh2 could be made to crash if it received specially crafted network traffic.
Multiple vulnerabilities were discovered in SPIP, a website engine for publishing, which may result in remote code execution or an open redirect. For the stable distribution (trixie), these problems have been fixed in version 4.4.15+dfsg-0+deb13u1.
Several security issues were fixed in the Linux kernel.
SimpleEval could be made to run programs if it received specially crafted input.
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in Rclone.
ngtcp2 could be made to run programs as your login if it received specially crafted network traffic when qlog was enabled.
An update that solves one vulnerability can now be installed.
An update that solves 2 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 23 vulnerabilities can now be installed.
An update that solves 6 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 13 vulnerabilities and has 13 bug fixes can now be installed.
An update that solves 3 vulnerabilities and has 3 bug fixes can now be installed.
An update that solves one vulnerability and has 4 bug fixes can now be installed.
An update that solves one vulnerability and has one bug fix can now be installed.
An update that solves 5 vulnerabilities and has 5 bug fixes can now be installed.
An update that solves 6 vulnerabilities and has 6 bug fixes can now be installed.
An update that solves 20 vulnerabilities and has one bug fix can now be installed.
An update that solves one vulnerability and has one bug fix can now be installed.
An update that solves 5 vulnerabilities and has 5 bug fixes can now be installed.
MGASA-2026-0156 – Updated nginx packages fix security vulnerabilities
MGASA-2026-0155 – Updated x11-server, x11-server-xwayland & tigervnc packages fix security vulnerabilities
