The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Oracle Linux 7 has released GIMP updates to fix multiple CVEs, including vulnerabilities in image parsing, by updating relevant RPM packages on the Unbreakable…
Multiple vulnerabilities in the poppler PDF rendering library have been fixed in Debian bullseye and bookworm, addressing issues ranging from signature forgery…
A security update for nodejs22 on Rocky Linux 10 addresses vulnerabilities causing Denial of Service, with CVSS scores indicating significant risk. Details are…
Rocky Linux 8 has released a security update for vim, addressing vulnerabilities including denial of service and arbitrary code execution with various CVE scor…
Oracle Linux has released updated vim packages addressing multiple security vulnerabilities identified by CVEs, enhancing security for version 9 on both x86_64…
Oracle Linux 9 has updated gstreamer1 plugins addressing CVE-2026-59691 and CVE-2026-59692, improving handling issues in the rfbsrc plugin and fixing a buffer …
Oracle Linux has released updates for yelp packages to address CVE-2026-13601, available for multiple architectures through the Unbreakable Linux Network.
Oracle Linux updated Firefox packages for version 9, addressing multiple CVEs. The release includes changes to default preferences and incorporates debranding …
Oracle Linux has released updated RPM packages for version 9, addressing vulnerabilities CVE-2026-56001, CVE-2026-56002, and CVE-2026-56003.
Oracle Linux 9 updates include a new kernel version with several security fixes related to various CVEs, alongside modifications to signing keys and certificat…
Debian has issued a security advisory regarding Incus, addressing multiple vulnerabilities that could lead to privilege escalation or security restriction bypa…
Debian Security Advisory DSA-6406-1 addresses multiple vulnerabilities in PHP 8.4 that could lead to denial of service, SQL injection, and arbitrary code execu…
openSUSE has released a security update for python-nltk addressing a vulnerability (CVE-2025-71408) by replacing eval() with getattr() in the collocations CLI.
Every Linux security patch contains more than a bug fix. It records exactly what assumptions changed, which validation failed, and which code path developers c…
Rocky Linux 9 has released a critical update for java-25-openjdk, addressing multiple security vulnerabilities and improving package management and performance…
An important openSUSE security update for yq addresses two vulnerabilities, introduces several bug fixes, and enhances functionality while improving dependency…
openSUSE has released a security update for perl-Mojolicious addressing a CSRF vulnerability and various bugs, enhancing security and functionality in version …
openSUSE has released a security update for tomcat11 addressing two vulnerabilities and offering bug fixes, specifically for openSUSE Leap 16.0, with instructi…
openSUSE released a security update for bind, addressing nine vulnerabilities and including bug fixes, requiring users to upgrade to version 9.20.26 for improv…
openSUSE released a security update for openvpn, addressing two vulnerabilities related to denial of service, applicable to openSUSE Leap 16.0 with recommended…
openSUSE announces a security update for valkey addressing two critical vulnerabilities and includes bug fixes, affecting openSUSE Leap 16.0, encouraging users…
openSUSE released a security update addressing two vulnerabilities in ignition for Leap 16.0, enhancing security against potential exploitation and infinite lo…
openSUSE has released a security update for libpng16, version 1.6.58, addressing various issues and recommending installation via YaST or zypper for affected u…
openSUSE released a security update for OpenSSH addressing eight vulnerabilities, including pre-authentication denial of service and improper file handling in …