Menu

Quote

It was discovered that incorrect request handling in the internal web server of the PowerDNS DNS server could result in denial of service. For the stable distribution (trixie), this problem has been fixed in version 4.9.16-0+deb13u1. We recommend that you upgrade your pdns packages.

Multiple security vulnerabilities were discovered in the dnsdist DNS loadbalancer, which could result in denial of service, information disclosure or bypass of security rules. For the stable distribution (trixie), these problems have been fixed in version 1.9.15-0+deb13u1.

A use-after-free issue was found in libtext-csv-xs-perl, a Perl C/XS module to process Comma-Separated Value files, which may yield type confusion or memory corruption when registered callbacks extend the Perl argument stack. For Debian 11 bullseye, this problem has been fixed in version

Multiple security vulnerabilities were discovered in the SOGo groupware server, which could result in cross-site scripting or SQL injection. For the stable distribution (trixie), these problems have been fixed in version 5.12.1-3+deb13u2. We recommend that you upgrade your sogo packages.

Multiple security vulnerabilities were discovered in libssh2, a client-side C library implementing the SSH2 protocol which could result in memory disclosure, denial of service or potentially the execution of arbitrary code. For the stable distribution (trixie), these problems have been fixed in

Several security issues were fixed in AMD Microcode.

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the stable distribution (trixie), these problems have been fixed in version 149.0.7827.196-1~deb13u1.

An update that solves five vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves 23 vulnerabilities can now be installed.

Addresses CVE-2026-47895 which is a theoretical RCE Fixes CVE-2026-25075, CVE-2026-35328, CVE-2026-35329, CVE-2026-35330, CVE-2026-35331, CVE-2026-35332, CVE-2026-35333, CVE-2026-35334 Update to address CVE-2025-9615 and CVE-2025-62291

new version 2.4.68 fixes various security issues

Several security issues were fixed in xrdp.

Update goose to 1.36.0

Important: skopeo security update

Moderate: libxslt security update

Moderate: keylime security update

Moderate: coreutils security update

Moderate: protobuf-c security update

Important: kernel security, bug fix, and enhancement update

Moderate: libreoffice security update

Moderate: libfastjson security update

Important: nginx:1.26 security update

Low: gmp security and enhancement update

Important: flac security update

Moderate: qt5 security and bug fix update

Moderate: librabbitmq security update

Moderate: libmicrohttpd security update

Moderate: wireshark security update

Moderate: ctags security update

Moderate: freerdp security update

Moderate: samba security, bug fix, and enhancement update

Moderate: emacs security update

An update that solves 5 vulnerabilities can now be installed.

An update that solves 3 vulnerabilities can now be installed.

An update that solves 5 vulnerabilities can now be installed.

An update that solves 2 vulnerabilities can now be installed.

An update that solves 2 vulnerabilities can now be installed.

An update that solves 5 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 3 vulnerabilities can now be installed.

An update that solves 11 vulnerabilities can now be installed.

cpp-httplib could mishandle HTTP requests if it received specially crafted network traffic.

NSD could be made to crash or run programs if it received specially crafted network traffic.

Several security issues were fixed in ImageMagick.

Apache MINA could be made to run programs if it received specially crafted network traffic.

pbkdf2 could be made to generate predictable cryptographic keys if it received specially crafted input.

Several security issues were fixed in containerd.

Several security issues were fixed in containerd.

Several security issues were fixed in containerd.

An update that fixes two vulnerabilities is now available.

An update that fixes 6 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

Important: kernel security update

Important: xorg-x11-server security, bug fix, and enhancement update

Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update

Important: 389-ds:1.4 security update

Important: xorg-x11-server security, bug fix, and enhancement update

Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update

Important: dracut security update

Important: hplip security update

Moderate: yggdrasil-worker-package-manager security update

Important: dracut security update

Important: 389-ds-base security, bug fix, and enhancement update

Important: postfix security update

Important: rsync security, bug fix, and enhancement update

Several security issues were fixed in FFmpeg.

An update that solves five vulnerabilities can now be installed.

An update that solves five vulnerabilities and has one security fix can now be installed.

An update that solves five vulnerabilities and has one security fix can now be installed.

Moderate: opencryptoki security update

Important: python-urllib3 security update

Moderate: libpng security update

Important: memcached security update

Important: xorg-x11-server-Xwayland security, bug fix, and enhancement update

Moderate: libsolv security update

Low: libtasn1 security update

Important: firefox security update

Moderate: vim security update

Important: postgresql16 security update

Moderate: golang-github-openprinting-ipp-usb security update

Low: libxml2 security update

Important: postgresql18 security update

Important: python3.14-urllib3 security update

Important: python-urllib3 security update

Moderate: opencryptoki security update

Moderate: libpng security update

Low: libtasn1 security update

Moderate: libpng15 security update

Important: firefox security update

An update that solves 2 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 9 vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

Several security issues were fixed in Perl.

An update that solves four vulnerabilities can now be installed.