It was discovered that incorrect request handling in the internal web server of the PowerDNS DNS server could result in denial of service. For the stable distribution (trixie), this problem has been fixed in version 4.9.16-0+deb13u1. We recommend that you upgrade your pdns packages.
Multiple security vulnerabilities were discovered in the dnsdist DNS loadbalancer, which could result in denial of service, information disclosure or bypass of security rules. For the stable distribution (trixie), these problems have been fixed in version 1.9.15-0+deb13u1.
A use-after-free issue was found in libtext-csv-xs-perl, a Perl C/XS module to process Comma-Separated Value files, which may yield type confusion or memory corruption when registered callbacks extend the Perl argument stack. For Debian 11 bullseye, this problem has been fixed in version
Multiple security vulnerabilities were discovered in the SOGo groupware server, which could result in cross-site scripting or SQL injection. For the stable distribution (trixie), these problems have been fixed in version 5.12.1-3+deb13u2. We recommend that you upgrade your sogo packages.
Multiple security vulnerabilities were discovered in libssh2, a client-side C library implementing the SSH2 protocol which could result in memory disclosure, denial of service or potentially the execution of arbitrary code. For the stable distribution (trixie), these problems have been fixed in
Several security issues were fixed in AMD Microcode.
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the stable distribution (trixie), these problems have been fixed in version 149.0.7827.196-1~deb13u1.
An update that solves five vulnerabilities can now be installed.
An update that solves five vulnerabilities can now be installed.
An update that solves five vulnerabilities can now be installed.
An update that solves 23 vulnerabilities can now be installed.
Addresses CVE-2026-47895 which is a theoretical RCE Fixes CVE-2026-25075, CVE-2026-35328, CVE-2026-35329, CVE-2026-35330, CVE-2026-35331, CVE-2026-35332, CVE-2026-35333, CVE-2026-35334 Update to address CVE-2025-9615 and CVE-2025-62291
new version 2.4.68 fixes various security issues
Several security issues were fixed in xrdp.
Update goose to 1.36.0
Important: skopeo security update
Moderate: libxslt security update
Moderate: keylime security update
Moderate: coreutils security update
Moderate: protobuf-c security update
Important: kernel security, bug fix, and enhancement update
Moderate: libreoffice security update
Moderate: libfastjson security update
Important: nginx:1.26 security update
Low: gmp security and enhancement update
Important: flac security update
Moderate: qt5 security and bug fix update
Moderate: librabbitmq security update
Moderate: libmicrohttpd security update
Moderate: wireshark security update
Moderate: ctags security update
Moderate: freerdp security update
Moderate: samba security, bug fix, and enhancement update
Moderate: emacs security update
An update that solves 5 vulnerabilities can now be installed.
An update that solves 3 vulnerabilities can now be installed.
An update that solves 5 vulnerabilities can now be installed.
An update that solves 2 vulnerabilities can now be installed.
An update that solves 2 vulnerabilities can now be installed.
An update that solves 5 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 3 vulnerabilities can now be installed.
An update that solves 11 vulnerabilities can now be installed.
cpp-httplib could mishandle HTTP requests if it received specially crafted network traffic.
NSD could be made to crash or run programs if it received specially crafted network traffic.
Several security issues were fixed in ImageMagick.
Apache MINA could be made to run programs if it received specially crafted network traffic.
pbkdf2 could be made to generate predictable cryptographic keys if it received specially crafted input.
Several security issues were fixed in containerd.
Several security issues were fixed in containerd.
Several security issues were fixed in containerd.
An update that fixes two vulnerabilities is now available.
An update that fixes 6 vulnerabilities is now available.
An update that fixes one vulnerability is now available.
Important: kernel security update
Important: xorg-x11-server security, bug fix, and enhancement update
Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update
Important: 389-ds:1.4 security update
Important: xorg-x11-server security, bug fix, and enhancement update
Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update
Important: dracut security update
Important: hplip security update
Moderate: yggdrasil-worker-package-manager security update
Important: dracut security update
Important: 389-ds-base security, bug fix, and enhancement update
Important: postfix security update
Important: rsync security, bug fix, and enhancement update
Several security issues were fixed in FFmpeg.
An update that solves five vulnerabilities can now be installed.
An update that solves five vulnerabilities and has one security fix can now be installed.
An update that solves five vulnerabilities and has one security fix can now be installed.
Moderate: opencryptoki security update
Important: python-urllib3 security update
Moderate: libpng security update
Important: memcached security update
Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update
Moderate: libsolv security update
Low: libtasn1 security update
Important: firefox security update
Moderate: vim security update
Important: postgresql16 security update
Moderate: golang-github-openprinting-ipp-usb security update
Low: libxml2 security update
Important: postgresql18 security update
Important: python3.14-urllib3 security update
Important: python-urllib3 security update
Moderate: opencryptoki security update
Moderate: libpng security update
Low: libtasn1 security update
Moderate: libpng15 security update
Important: firefox security update
An update that solves 2 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 9 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
Several security issues were fixed in Perl.
An update that solves four vulnerabilities can now be installed.
