-
Stay Vigilant with Timely Linux Security Advisories
Nov 15, 2025 | 19:49 pm
Keane O'Kelley discovered several vulnerabilities in lasso, a library implementing Liberty Alliance and SAML protocols, which could result in denial of service or the execution of arbitrary code.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 13, 2025 | 19:53 pm
A vulnerability was discovered in the ec2tokens and s3tokens APIs of Keystone, the OpenStack identity service, which may result in authorisation bypass or privilege escalation if /v3/ec2tokens or /v3/s3tokens are reachable by unauthenticated clients.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 13, 2025 | 19:52 pm
It was discovered that LXD, a system container and virtual machine manager, is prone to a local privilege escalation vulnerability if unprivileged users are allowed to access LXD through lxd-user.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 13, 2025 | 09:31 am
A security issue was discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 12, 2025 | 22:30 pm
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code or bypass of the same-origin policy.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 11, 2025 | 20:11 pm
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 11, 2025 | 19:23 pm
Two security issues were discovered in sudo-rs, a Rust-based implemention of sudo (and su), which could result in the local disclosure of partially typed passwords or an authentication bypass in some targetpw/rootpw configurations.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 10, 2025 | 19:49 pm
It was discovered that Incus, a system container and virtual machine manager, is prone to a local privilege escalation vulnerability unprivileged users are allowed access to Incus through incus-user.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 7, 2025 | 09:34 am
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 4, 2025 | 19:46 pm
A buffer overflow was discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malformed XWD images are opened.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Nov 3, 2025 | 22:02 pm
Multiple security issues were found in Rack, an interface for developing web applications in Ruby, which could result in denial of service or proxy bypass.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 30, 2025 | 19:54 pm
Leonardo Giovanni discovered that missing redaction of authentication data in the Squid proxy caching server could result in information disclosure.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 30, 2025 | 19:41 pm
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 29, 2025 | 22:06 pm
Two vulnerabiliites have been discovered in PDNS Recursor, a resolving name server: Delegation information was insufficiently validated, which could result in cache pollution.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 29, 2025 | 06:59 am
Jan-Niklas Sohn discovered several vulnerabilities in the Xorg X server, which may result in privilege escalation if the X server is running privileged.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 28, 2025 | 19:36 pm
Several vulnerabilities were discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malformed DICOM or DDS images are opened.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 28, 2025 | 10:57 am
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2025-43272 Big Bear discovered that processing maliciously crafted web content may lead to an unexpected process crash.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 27, 2025 | 16:15 pm
Xu Biang discovered a buffer overflow bug in the eap-mschapv2 plugin of strongSwan, an IKE/IPsec suite. The eap-mschapv2 plugin doesn't correctly check the length of an EAP-MSCHAPv2 Failure Request packet on the client, which can cause an integer underflow that[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 26, 2025 | 18:27 pm
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 26, 2025 | 18:20 pm
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect string equality checks, XML XXE/XEE attacks or incorrect certificate validation. For the stable distribution (trixie), these problems have been fixed in version 25.0.1+8-1~deb13u1.
Read more...