https://security-tracker.debian.org/tracker/DSA-5947-1
Update to 137.0.7151.119 * CVE-2025-6191: Integer overflow in V8 * CVE-2025-6192: Use after free in Profiler
Harden temporary private mounts (#2373301)
4.9.0
This is the .NET monthly update for June 2025. Release Notes: SDK: https://github.com/dotnet/core/blob/main/release-notes/9.0/9.0.6/9.0.107.md Runtime: https://github.com/dotnet/core/blob/main/release- notes/9.0/9.0.6/9.0.6.md
Fix improper access control vulnerability Resolves: CVE-2025-48734
https://lists.wikimedia.org/hyperkitty/list/mediawiki- announce@lists.wikimedia.org/thread/OXIGQIHBL26HFKG6TT5SWSH7K7W6RO4H/ https://phabricator.wikimedia.org/T382326
https://security-tracker.debian.org/tracker/DSA-5946-1
https://security-tracker.debian.org/tracker/DSA-5945-1
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
* bsc#1241158 * bsc#1241160 * bsc#1243282 * bsc#1243286 * bsc#1243288
* bsc#1234449 Cross-References: * CVE-2024-47606
* bsc#1239192 Cross-References: * CVE-2025-22868
* bsc#1227690 Cross-References: * CVE-2024-38526
* bsc#1233012 * bsc#1243273 * bsc#1244401 Cross-References:
https://security-tracker.debian.org/tracker/DSA-5944-1
It was discovered that an Out Of Memory error may occur when attempting to initialize a huge byte array, even when maxFrameSize is set. For Debian 11 bullseye, this problem has been fixed in version
* bsc#1234415 * bsc#1234450 * bsc#1234453 * bsc#1234455 * bsc#1234456
Several security issues were fixed in Samba.
Several security issues were fixed in Express.
* bsc#1238681 * bsc#1239192 Cross-References: * CVE-2025-22868
https://security-tracker.debian.org/tracker/DSA-5943-1
* bsc#1154353 * bsc#1156395 * bsc#1170891 * bsc#1173139 * bsc#1184350
* bsc#1244039 Cross-References: * CVE-2024-47081
* bsc#1244039 Cross-References: * CVE-2024-47081
* bsc#1244039 Cross-References: * CVE-2024-47081
Ready, set, pack! Summer travel season is here and that means family road trips, beach vacations, international adventures and more. While summertime is prime time for getaways, did you know it’s also prime time for online fraud? Scammers are targeting the travel industry, putting millions of travelers at increased risk. Research shows that the travel […]
* bsc#1223096 * bsc#1223809 * bsc#1224013 * bsc#1224597 * bsc#1224757
Django could be made to log injection if received specially crafted input.
Update to 128.11.1 https://www.mozilla.org/en-US/security/advisories/mfsa2025-49/
Fixes CVE-2025-32873: Denial-of-service possibility in strip_tags() Fixes CVE-2025-48432: Potential log injection via unescaped request path
Rebuild against idna 1.0+ for CVE-2024-12224
Rebuild for CVE-2024-12224, CVE-2025-4574
* bsc#1215935 * bsc#1215936 * bsc#1233606 * bsc#1233608 * bsc#1233609
* bsc#1242015 Cross-References: * CVE-2025-3891
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
