Menu

Quote

Update to release v1.31.14 Resolves: rhbz#2398586, rhbz#2398847, rhbz#2399248, rhbz#2399521 Resolves: rhbz#2399702, rhbz#2399720, rhbz#2407787, rhbz#2408057 Resolves: rhbz#2408314, rhbz#2408608, rhbz#2408671, rhbz#2408729 Resolves: rhbz#2409236, rhbz#2409526, rhbz#2409787, rhbz#2410201

Several security issues were fixed in cups-filters.

An update that fixes two vulnerabilities is now available.

An update that fixes two vulnerabilities is now available.

Several security issues were fixed in libcupsfilters.

New gnutls packages are available for Slackware 15.0 and -current to fix security issues.

ImageMagick could be made to crash or run programs as your login if it opened a specially crafted file.

https://security-tracker.debian.org/tracker/DSA-6060-1

An update that solves two vulnerabilities can now be installed.

* bsc#1250353 * bsc#1250354 Cross-References: * CVE-2025-59798

An update that solves five vulnerabilities can now be installed.

* bsc#1252931 * bsc#1252932 * bsc#1252933 * bsc#1252934 * bsc#1252935

New openvpn packages are available for Slackware 15.0 and -current to fix security issues.

Several security issues were fixed in the Linux kernel.

MGASA-2025-0305 – Updated thunderbird packages fix security vulnerabilities

MGASA-2025-0304 – Updated cups-filters packages fix security vulnerabilities

MGASA-2025-0303 – Updated flatpak & bubblewrap packages fix security vulnerability

Update to 142.0.7444.162 * High CVE-2025-13042: Inappropriate implementation in V8

Updated to latest upstream (145.0) Added fix for mzbz#1990430 (crashes) Updated to latest upstream (144.0)

New libarchive packages are available for Slackware 15.0 and -current to fix security issues.

* bsc#1103203 * bsc#1149841 * bsc#1230998 * bsc#1231204 * bsc#1231676

MGASA-2025-0302 – Updated postgresql15 & postgresql13 packages fix security vulnerabilities

MGASA-2025-0301 – Updated apache packages fix security vulnerabilities

Several security issues were fixed in Freeglut.

Update to 142.0.7444.162 * High CVE-2025-13042: Inappropriate implementation in V8

FVWM3 ver. 1.1.4

An update that solves 173 vulnerabilities, contains two features and has 19 security fixes can now be installed.

* bsc#1065729 * bsc#1205128 * bsc#1206893 * bsc#1207612 * bsc#1207619

An update that solves two vulnerabilities can now be installed.

* bsc#1251198 * bsc#1251199 Cross-References: * CVE-2025-61984

An update that solves two vulnerabilities can now be installed.

* bsc#1247850 * bsc#1249076 Cross-References: * CVE-2025-8732

https://security-tracker.debian.org/tracker/DSA-6058-1

Update to 142.0.7444.162 * High CVE-2025-13042: Inappropriate implementation in V8

Update to 9.21.14 (rhbz#2394406) Security Fixes: DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677) Address various spoofing attacks. (CVE-2025-40778) Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)

New upstream release v10 Fix: CVE-2025-11568

Update to 9.21.14 (rhbz#2394406) Security Fixes: DNSSEC validation fails if matching but invalid DNSKEY is found. (CVE-2025-8677) Address various spoofing attacks. (CVE-2025-40778) Cache-poisoning due to weak pseudo-random number generator. (CVE-2025-40780)

New upstream release v10 Fix: CVE-2025-11568

https://security-tracker.debian.org/tracker/DSA-6059-1

New xpdf packages are available for Slackware 15.0 and -current to fix security issues.

MGASA-2025-0298 – Updated stardict packages fix security vulnerability

MGASA-2025-0297 – Updated yelp & yelp-xsl packages fix security vulnerability

MGASA-2025-0296 – Updated apache-commons-fileupload packages fix security vulnerability

MGASA-2025-0295 – Updated botan2 packages fix security vulnerabilitiy

MGASA-2025-0294 – Updated spdlog packages fix security vulnerability

MGASA-2025-0293 – Updated apache-commons-lang3 & apache-commons-lang packages fix security vulnerability

https://security-tracker.debian.org/tracker/DSA-6057-1

https://security-tracker.debian.org/tracker/DSA-6056-1

* bsc#1253092 * bsc#1253093 * bsc#1253094 * bsc#1253095

Update to 2.53.22

Update to v0.25.2 CVE-2025-58183; Resolves: rhbz#2412529 CVE-2025-58188; Resolves: rhbz#2412380, rhbz#2411476, rhbz#2410945 CVE-2025-58185; Resolves: rhbz#2410578, rhbz#2410299, rhbz#2410013 CVE-2025-61723; Resolves: rhbz#2409627, rhbz#2409349, rhbz#2409065

Update to release v1.3.3

Update to 2.83.0

Update to 2.9.0 Fixes CVE-2025-46705

https://security-tracker.debian.org/tracker/DSA-6054-1

A security issue was discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

Update to Rack 2.2.21

Update to WebKitGTK 2.50.1: Improve text rendering performance. Fix audio playback broken on instagram. Fix rendering of layers with fractional transforms. Fix several crashes and rendering issues.

Update to Rack 2.2.21

Security fix for CVE-2025-58189 and CVE-2025-61725

Updated to latest upstream (145.0)

https://security-tracker.debian.org/tracker/DSA-6055-1

https://security-tracker.debian.org/tracker/DSA-6053-1

https://security-tracker.debian.org/tracker/DSA-6052-1

* bsc#1229825 * bsc#1241880 * bsc#1243331 * bsc#1243486 * bsc#1243611

An update that solves two vulnerabilities can now be installed.

* bsc#1251198 * bsc#1251199 Cross-References: * CVE-2025-61984

An update that solves three vulnerabilities can now be installed.

* bsc#1253092 * bsc#1253093 * bsc#1253095 Cross-References:

* bsc#1253126 * bsc#1253132 Cross-References: * CVE-2024-25621

An update that solves five vulnerabilities and has one security fix can now be installed.

* bsc#1246019 * bsc#1248631 * bsc#1249207 * bsc#1249208 * bsc#1249847

An update that solves four vulnerabilities and has one security fix can now be installed.

* bsc#1248631 * bsc#1249207 * bsc#1249208 * bsc#1249847 * bsc#1252946

This is the October 2025 release of .NET 8. Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/8.0/8.0.21/8.0.121.md Runtime: https://github.com/dotnet/core/blob/main/release-

Update to 141.0.7390.122 High CVE-2025-12036 chromium: Inappropriate implementation in V8 High CVE-2025-11756: Use after free in Safe Browsing High CVE-2025-11458: Heap buffer overflow in Sync High CVE-2025-11460: Use after free in Storage

An update that solves one vulnerability can now be installed.

* bsc#1249473 Cross-References: * CVE-2025-48041

* bsc#1252414 * bsc#1252417 Cross-References: * CVE-2025-53057

An update that solves two vulnerabilities can now be installed.

* bsc#1252414 * bsc#1252417 Cross-References: * CVE-2025-53057

An update that solves five vulnerabilities and has one security fix can now be installed.

https://security-tracker.debian.org/tracker/DSA-6051-1

MGASA-2025-0271 – Updated opencontainers-runc packages fix security vulnerabilities

MGASA-2025-0270 – Updated xen packages fix security vulnerabilities

MGASA-2025-0269 – Updated libxml2 & libxslt packages fix security vulnerabilities

MGAA-2025-0092 – Updated qarte packages fix bug

This is the October 2025 release of .NET 9, updating the SDK to version 9.0.111 and runtime to version to 9.0.10. Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/9.0/9.0.10/9.0.111.md

Add CVE and bug fixes to bundled mbedtls in dolphin-emu

Rebuild with the latest golang in repos

New upstream stable version 1.22.5

Rebuild with the latest golang in repos

Upgrade to 4.3.4 upstream version. Build with Go 1.24.9 fixes multiple Go CVEs BZ#2408093 BZ#2408688 BZ#2409563 BZ#2410514 BZ#2411412

New version 3.0.2 (rhbz#2407048) Fixes CVE-2025-11232 (rhbz#2407228)

New upstream stable version 1.22.5

Several security issues were fixed in the Linux kernel.

An update that solves one vulnerability can now be installed.

* bsc#1252749 Cross-References: * CVE-2025-62594

An update that solves one vulnerability can now be installed.

* bsc#1239119 Cross-References: * CVE-2025-30258