-
Stay Vigilant with Timely Linux Security Advisories
Oct 30, 2025 | 19:54 pm
Leonardo Giovanni discovered that missing redaction of authentication data in the Squid proxy caching server could result in information disclosure.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 30, 2025 | 19:41 pm
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 29, 2025 | 22:06 pm
Two vulnerabiliites have been discovered in PDNS Recursor, a resolving name server: Delegation information was insufficiently validated, which could result in cache pollution.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 29, 2025 | 06:59 am
Jan-Niklas Sohn discovered several vulnerabilities in the Xorg X server, which may result in privilege escalation if the X server is running privileged.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 28, 2025 | 19:36 pm
Several vulnerabilities were discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malformed DICOM or DDS images are opened.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 28, 2025 | 10:57 am
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2025-43272 Big Bear discovered that processing maliciously crafted web content may lead to an unexpected process crash.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 27, 2025 | 16:15 pm
Xu Biang discovered a buffer overflow bug in the eap-mschapv2 plugin of strongSwan, an IKE/IPsec suite. The eap-mschapv2 plugin doesn't correctly check the length of an EAP-MSCHAPv2 Failure Request packet on the client, which can cause an integer underflow that[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 26, 2025 | 18:27 pm
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 26, 2025 | 18:20 pm
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect string equality checks, XML XXE/XEE attacks or incorrect certificate validation. For the stable distribution (trixie), these problems have been fixed in version 25.0.1+8-1~deb13u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 25, 2025 | 15:23 pm
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in XML XXE/XEE attacks or incorrect certificate validation. For the oldstable distribution (bookworm), these problems have been fixed in version 17.0.17+10-1~deb12u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 24, 2025 | 20:13 pm
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect string equality checks, XML XXE/XEE attacks or incorrect certificate validation. For the stable distribution (trixie), these problems have been fixed in version 21.0.9+10-1~deb13u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 23, 2025 | 19:30 pm
A security issue was discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), this problem has been fixed in version 141.0.7390.122-1~deb12u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 23, 2025 | 19:07 pm
It was discovered that insecure path handling in the Python interface to the Internet Archive/archive.org could result in overwriting a user's files. For the oldstable distribution (bookworm), this problem has been fixed in version 3.3.0-2~deb12u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 23, 2025 | 18:18 pm
Brandon Da Costa and Mahdi Asfhar discovered a cross-site scripting vulnerability in the web client of the Tryton application platform. For the oldstable distribution (bookworm), this problem has been fixed in version 6.0.28+ds1-2+deb12u1. For the stable distribution (trixie), this problem[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 23, 2025 | 18:16 pm
Several vulnerabilities were discovered in BIND, a DNS server implementation, which may result in cache poisoning or denial of service. For the oldstable distribution (bookworm), these problems have been fixed in version 1:9.18.41-1~deb12u1. For the stable distribution (trixie), these problems[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 22, 2025 | 20:50 pm
It was discovered that Request Tracker, an extensible trouble-ticket tracking system is prone to a CSV injection via ticket values with special characters that are exported to a TSV from search results. For the oldstable distribution (bookworm), this problem has[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 22, 2025 | 20:43 pm
Multiple vulnerabilities have been discovered in Request Tracker, an extensible trouble-ticket tracking system, which could result in CSV injection via ticket values with special characters, or cross-site scripting via calendar invitations added to a ticket. For the oldstable distribution (bookworm),[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 22, 2025 | 16:39 pm
This update ships updated CPU microcode for some types of Intel CPUs and provides mitigations for security vulnerabilities which could result in privilege escalation or denial of service. For the oldstable distribution (bookworm), these problems have been fixed in version[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 20, 2025 | 16:02 pm
It was discovered that insecure path handling in the Ark archive utility could result in overwriting a user's files. For the oldstable distribution (bookworm), this problem has been fixed in version 4:22.12.3-1+deb12u1. We recommend that you upgrade your ark packages.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Oct 17, 2025 | 15:16 pm
Multiple security issues were discovered in LXD, a system container and virtual machine manager, which could result in file disclosure, information disclosure or or cross-site request forgery. For the oldstable distribution (bookworm), these problems have been fixed in version 5.0.2-5+deb12u1.
Read more...