Product
Last Report

Click here to browse the Windows compatibility database

Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-06-05 19:45 | Last update:



2026-06-05

Software 44440 Published by Philipp Esselbach 0

The GNU project just released the first pretest for Emacs 31.1, giving developers a chance to catch regressions before the stable version ships. Running GPG signature checks alongside SHA hash verification prevents corrupted archives or tampered downloads from breaking local builds. Compiling in an isolated directory keeps custom extensions and system keybindings intact while exposing any API breakages early. Reporting issues through the official bug tracker helps maintainers patch performance glitches before they affect everyday editing workflows.

GNOME 3718 Published by Philipp Esselbach 0

GNOME 49.7 arrives as a straightforward maintenance release that patches interface glitches and crashes without introducing risky new features. Users will finally see screenshot selection boundaries work correctly, USB autorun notifications trigger properly, and search spinners stop resetting with every keystroke. The update also plugs security holes in Yelp and improves large file handling across core document libraries so routine tasks run smoothly. Distributions should push the release through standard package managers to keep systems stable without forcing manual configuration changes.

GNOME 3718 Published by Philipp Esselbach 0

The GNOME 50.2 update patches those lingering memory leaks in GLib while smoothing out the NVIDIA driver freezes that have been tripping up screen recorders lately. Interface quirks like the broken screenshot snapper and search spinner reset get corrected, so desktop navigation actually feels responsive again instead of fighting your keystrokes. Backend adjustments to Evolution-Data-Server and Orca keep email syncs stable and screen readers from double-speaking on Chromium tabs, which matters more than any flashy new feature ever could. Running a standard package manager upgrade will pull everything in cleanly, though rebuilding custom scripts against the updated pygobject and libadwaita versions prevents those pesky template crashes during daily workflows.

Software 44440 Published by Philipp Esselbach 0

The Document Foundation released LibreOffice 26.2.4 as a targeted maintenance update that patches stability issues and refines the Skia rendering engine across all platforms. This release also locks in improvements to Calc connector shapes, multi-user Base functionality, and faster EPUB export workflows introduced earlier this year. Users still running the 25.8.x branch need to upgrade immediately since that version hits end of life on June 12 and will stop receiving security patches. The update is available for Windows, macOS, and Linux through the official download page, with a major feature release expected in August.

Fedora Linux 9375 Published by Philipp Esselbach 0

Remi Collet just dropped fresh RPM builds of PHP 8.5.7 and 8.4.22 for Fedora and every major RHEL derivative, packing in JIT tracing fixes, OpenSSL 4.0 compatibility, and two critical URI parsing vulnerabilities. Administrators must reset the dnf module stream before enabling the new release, otherwise the package manager will stubbornly keep systems on legacy versions until dependencies are manually untangled. The updates also patch memory leaks in Opcache and DOM extensions while swapping out outdated regex libraries for more stable alternatives that actually play nice with modern enterprise builds. Parallel Software Collection installs remain an option for developers juggling multiple PHP versions, though a clean module switch is faster and far less likely to break existing web server configurations.

Software 44440 Published by Philipp Esselbach 0

The Apache HTTPD server 2.4.68 release candidate brings native OpenSSL 4.0 support to mod_ssl, which stops handshake failures when modern cryptographic libraries update in place. Stefan Eissing also patched three separate resource leaks in mod_http2 that quietly choke servers under heavy proxy workloads by leaving file descriptors open and miscounting cookie headers. Core logging gains millisecond timestamp precision while several older module crashes and conditional logic bugs get cleaned up for smoother daily operations. Server operators should run this build through a staging environment first since the crypto compatibility and handle leak fixes directly impact production stability.

Reviews 52656 Published by Philipp Esselbach 0

Today's reviews roundup brings together a wide array of tech evaluations that cover everything from protective phone cases to powerful laptops. The ASUS Zenbook A16 catches attention with its Snapdragon X2 Elite chip while the EPOMAKER Carbonis mouse offers solid gaming features for wireless users. You will also find detailed looks at the Ugreen MagFlow Air power bank and Cuktech 10 Ultra charger since both devices prioritize fast charging without sacrificing portability. Meanwhile the Satechi CubeDock merges Thunderbolt 5 connectivity with integrated SSD storage, and readers can track live coverage from day three of Computex 2026 in Taipei as well.

Casing: TRYX FLOVA F50 Review
Computers: ASUS Zenbook A16 Review: Snapdragon X2 Elite Ultralight Game Changer
Power: Ugreen MagFlow Air and Nexode Air Review: A Power Bank and Charger Built for iPhone, Cuktech 10 Ultra charger review: big display, four ports, 110W total power
Input: EPOMAKER Carbonis Wireless Mouse Review
Storage: Satechi CubeDock Review: A Thunderbolt 5 Dock That Doubles as an SSD Enclosure
Other: Computex 2026 Live: Day three in Taipei

Fedora Linux 9375 Published by Philipp Esselbach 0

Fedora administrators must apply these critical security patches immediately across all Fedora 43 and Fedora 44 systems. The release targets dozens of essential packages while fixing dangerous flaws in Transmission, Nextcloud, Samba, and several core Perl libraries. Developers specifically addressed arbitrary code execution through crafted log links alongside clickjacking attacks that previously compromised web interfaces. You can deploy these updates right now by running a standard dnf upgrade command with the advisory codes found in the official documentation.

Fedora 44 Update: transmission-4.1.2-1.fc44
Fedora 44 Update: libre-4.8.1-1.fc44
Fedora 44 Update: python-starlette-0.52.1-2.fc44
Fedora 44 Update: nextcloud-33.0.4-1.fc44
Fedora 44 Update: perl-Cpanel-JSON-XS-4.41-1.fc44
Fedora 44 Update: rubygem-yard-0.9.40-2.fc44
Fedora 44 Update: rust-sequoia-sq-1.3.1-12.fc44
Fedora 44 Update: rust-sequoia-wot-0.15.2-1.fc44
Fedora 44 Update: rust-sequoia-chameleon-gnupg-0.13.1-13.fc44
Fedora 44 Update: rust-sequoia-octopus-librnp-1.11.1-7.fc44
Fedora 44 Update: rust-sequoia-sop-0.37.3-4.fc44
Fedora 44 Update: rust-sequoia-cert-store-0.7.3-1.fc44
Fedora 44 Update: perl-Dist-Build-0.028-1.fc44
Fedora 44 Update: perl-Crypt-Argon2-0.031-1.fc44
Fedora 44 Update: perl-ExtUtils-Builder-Compiler-0.036-1.fc44
Fedora 44 Update: perl-ExtUtils-Builder-0.020-1.fc44
Fedora 43 Update: transmission-4.1.2-1.fc43
Fedora 43 Update: freeipa-4.13.1-7.fc43
Fedora 43 Update: samba-4.23.8-1.fc43
Fedora 43 Update: libre-4.8.1-1.fc43
Fedora 43 Update: python-starlette-0.52.1-2.fc43
Fedora 43 Update: nextcloud-33.0.4-1.fc43
Fedora 43 Update: perl-Cpanel-JSON-XS-4.41-1.fc43
Fedora 43 Update: rubygem-yard-0.9.37-5.fc43
Fedora 43 Update: rust-sequoia-wot-0.15.2-1.fc43
Fedora 43 Update: rust-sequoia-sq-1.3.1-12.fc43
Fedora 43 Update: rust-sequoia-chameleon-gnupg-0.13.1-13.fc43
Fedora 43 Update: rust-sequoia-sop-0.37.3-4.fc43
Fedora 43 Update: rust-sequoia-octopus-librnp-1.11.1-7.fc43
Fedora 43 Update: rust-sequoia-cert-store-0.7.3-1.fc43
Fedora 43 Update: perl-ExtUtils-Builder-Compiler-0.036-1.fc43
Fedora 43 Update: perl-Dist-Build-0.028-1.fc43
Fedora 43 Update: perl-ExtUtils-Builder-0.020-1.fc43
Fedora 43 Update: perl-Crypt-Argon2-0.031-1.fc43
Fedora 43 Update: jpegxl-0.11.2-1.fc43
Fedora 43 Update: perl-libwww-perl-6.83-1.fc43
Fedora 43 Update: perl-HTTP-Tiny-0.094-1.fc43
Fedora 43 Update: cockpit-362-1.fc43

Ubuntu 7111 Published by Philipp Esselbach 0

Ubuntu released a batch of security notices to address critical flaws across several widely used software packages. The Apache HTTP Server update fixes an HTTP cookie handling bug that could allow remote attackers to trigger resource exhaustion and cause service outages. Nano receives a separate patch that resolves unsafe directory permissions and status line bugs capable of causing crashes or leaking sensitive data. The majority of these notices target the Linux kernel across dozens of Ubuntu releases and cloud environments, where engineers corrected dangerous memory handling errors and logic flaws that could let local attackers escalate privileges or break out of containers.

[USN-8384-1] Apache HTTP Server vulnerability
[USN-8386-1] Nano vulnerabilities
[USN-8393-1] Linux kernel (Azure FIPS) vulnerabilities
[USN-8361-2] Linux kernel (FIPS) vulnerability
[USN-8388-1] Linux kernel vulnerabilities
[USN-8392-1] Linux kernel vulnerabilities
[USN-8391-1] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8390-1] Linux kernel vulnerability
[USN-8389-1] Linux kernel vulnerabilities

SUSE 5667 Published by Philipp Esselbach 0

SUSE rolled out a series of important security advisories to patch multiple high severity flaws across several widely used software packages. The updates address dangerous command injection vulnerabilities in vim and evince that could let attackers execute arbitrary code on affected machines. Meanwhile glibc receives fixes for remote crash triggers and Python Pillow gets patched against resource exhaustion bugs caused by malformed files.

SUSE-SU-2026:2265-1: moderate: Maintenance update for Multi-Linux Manager 4.3 Release Notes Release Notes
SUSE-SU-2026:2231-1: important: Security update for glibc
SUSE-SU-2026:2234-1: important: Security update for python-Pillow
SUSE-SU-2026:2235-1: important: Security update for evince
SUSE-SU-2026:2232-1: important: Security update for evince
SUSE-SU-2026:2236-1: important: Security update for vim

Slackware 1267 Published by Philipp Esselbach 0

Slackware Linux has released urgent security patches for libinput and dnsmasq to address critical vulnerabilities in versions 15.0 and the rolling current branch. The libinput update resolves an unescaped physical output flaw that could potentially allow arbitrary root code execution through malicious udev properties, though local access restrictions currently limit immediate exploitation risk. Meanwhile, the dnsmasq upgrade addresses a separate memory corruption flaw that triggers during unusually long domain lookups. Administrators should grab the new files from official FTP mirrors and run the standard root installation commands right away to keep their systems secure.

libinput (SSA:2026-155-02)
dnsmasq (SSA:2026-155-01)

Rocky Linux 924 Published by Philipp Esselbach 0

Rocky Linux has rolled out a fresh wave of security patches for version ten while also releasing one update for the previous release. These advisories cover a wide array of essential software ranging from the core kernel and httpd service to modern frameworks like .NET and Ruby. Each notification includes a CVSS base score that helps administrators quickly gauge whether the threat level sits at moderate or important. You should apply these fixes right away since delayed installation leaves your systems exposed to known exploits.

RLSA-2026:20693: Moderate: mysql8.4 security update
RLSA-2026:20600: Important: wireshark security update
RLSA-2026:21380: Important: firefox security update
RLSA-2026:21754: Important: .NET 9.0 security update
RLSA-2026:21286: Important: .NET 8.0 security update
RLSA-2026:20594: Moderate: glibc security update
RLSA-2026:21433: Important: httpd security update
RLSA-2026:21757: Important: flatpak security update
RLSA-2026:21676: Important: cockpit security update
RLSA-2026:21557: Important: kernel security update
RLSA-2026:20606: Important: ruby4.0 security update
RLSA-2026:20567: Important: qt6-qtdeclarative security update
RLSA-2026:21755: Important: flatpak security update

Red Hat 9429 Published by Philipp Esselbach 0

Red Hat recently published a large collection of security advisories that target numerous software packages across several Linux distributions. IT teams running RHEL 8, 9, or 10 need to install these fixes quickly because they patch core utilities like kernel modules, database servers, and container platforms. Some vulnerabilities carry only a low risk rating while others reach critical levels, so administrators should carefully check the CVSS scores before deploying changes. Ignoring these errata could leave production networks exposed to known exploits that threat actors frequently target.

RHSA-2026:23254: Important: tigervnc security update
RHSA-2026:23231: Important: unbound security update
RHSA-2026:23222: Important: libsndfile security update
RHSA-2026:23221: Important: libsndfile security update
RHSA-2026:23103: Important: delve security update
RHSA-2026:22969: Important: fence-agents security update
RHSA-2026:23259: Important: kernel-rt security update
RHSA-2026:23395: Important: kernel security update
RHSA-2026:22964: Important: kernel security update
RHSA-2026:23360: Important: bind9.16 security update
RHSA-2026:23228: Important: image-builder security update
RHSA-2026:21695: Important: OpenShift Container Platform 4.12.91 bug fix and security update
RHSA-2026:21690: Important: OpenShift Container Platform 4.13.67 bug fix and security update
RHSA-2026:23388: Important: php security update
RHSA-2026:23329: Important: kernel security update
RHSA-2026:23332: Moderate: mysql security update
RHSA-2026:23230: Important: expat security update
RHSA-2026:23229: Important: redis security update
RHSA-2026:23224: Important: kernel security update
RHSA-2026:23258: Important: kernel security update
RHSA-2026:23223: Important: libsndfile security update
RHSA-2026:23255: Important: tigervnc security update
RHSA-2026:22970: Important: fence-agents security update
RHSA-2026:23237: Important: kernel security update
RHSA-2026:23496: Important: tigervnc security update
RHSA-2026:23469: Important: kpatch-patch-5_14_0-284_104_1, kpatch-patch-5_14_0-284_117_1, kpatch-patch-5_14_0-284_134_1, kpatch-patch-5_14_0-284_148_1, and kpatch-patch-5_14_0-284_158_1 ...
RHSA-2026:23468: Important: kpatch-patch-5_14_0-570_17_1, kpatch-patch-5_14_0-570_39_1, kpatch-patch-5_14_0-570_66_1, and kpatch-patch-5_14_0-570_94_1 security update
RHSA-2026:23470: Important: kpatch-patch-4_18_0-553_109_1, kpatch-patch-4_18_0-553_40_1, kpatch-patch-4_18_0-553_53_1, kpatch-patch-4_18_0-553_72_1, and kpatch-patch-4_18_0-553_85_1 secu ...
RHSA-2026:23471: Important: kpatch-patch-4_18_0-477_107_1, kpatch-patch-4_18_0-477_120_1, kpatch-patch-4_18_0-477_130_1, kpatch-patch-4_18_0-477_89_1, and kpatch-patch-4_18_0-477_97_1 se ...
RHSA-2026:23417: Important: flatpak security update
RHSA-2026:23418: Important: flatpak security update
RHSA-2026:23419: Important: flatpak security update
RHSA-2026:23420: Important: flatpak security update

Oracle Linux 6492 Published by Philipp Esselbach 0

Oracle has released a major batch of security advisories covering multiple versions of its enterprise operating system to address numerous critical vulnerabilities across the Unbreakable Enterprise Kernel and several user-space applications. The kernel updates for Linux versions 7, 8, and 9 specifically target memory corruption flaws, network stack weaknesses, and hypervisor issues that could allow local privilege escalation or remote code execution. Beyond core system components, administrators must also deploy updated packages for Thunderbird, PHP version eight point two, and the expat XML parser to mitigate recently disclosed exploits in email clients and web development frameworks. Routine maintenance tools like crash and sos received minor bug fixes alongside these critical security patches, ensuring that system diagnostics remain reliable while infrastructure hardening takes place across all supported architectures.

ELSA-2026-50293 Important: Unbreakable Enterprise kernel security update
OLAMBA-2026-0014 Oracle Linux 8 ol-automation-manager bug fix update
ELSA-2026-50293 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
ELSA-2026-50294 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
ELSA-2026-50294 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
ELSA-2026-50294 Important: Oracle Linux 8 Unbreakable Enterprise kernel security update
ELSA-2026-22643 Important: Oracle Linux 8 thunderbird security update
ELSA-2026-22305 Important: Oracle Linux 8 php:8.2 security update
ELSA-2026-22721 Important: Oracle Linux 8 expat security update
ELSA-2026-50299 Important: Oracle Linux 8 Unbreakable Enterprise kernel security update
ELSA-2026-50299 Important: Oracle Linux 8 Unbreakable Enterprise kernel security update
ELBA-2026-50300 Oracle Linux 8 crash bug fix update
ELBA-2026-50296 Oracle Linux 8 sos bug fix update
ELSA-2026-50299 Important: Oracle Linux 7 Unbreakable Enterprise kernel security update

Debian 10941 Published by Philipp Esselbach 0

Debian and Freexian have released urgent security patches addressing critical vulnerabilities across sudo, GIMP, and FRRouting. The updated sudo package resolves a privilege escalation flaw that occurs when error handling fails during user permission drops before mail execution. Older GIMP releases now include fixes for dangerous buffer flaws that could allow attackers to trigger crashes or run malicious code through corrupted image files. System administrators should immediately upgrade FRRouting to patch numerous routing protocol weaknesses that expose BGP, OSPF, and babeld daemons to remote code execution and denial of service attacks.

[DLA 4614-1] sudo security update
ELA-1748-1 gimp security update (by )
ELA-1747-1 gimp security update (by )
[DSA 6322-1] frr security update

AlmaLinux 2575 Published by Philipp Esselbach 0

AlmaLinux released a batch of security advisories to address critical vulnerabilities across multiple software packages. The updates target widely used tools like Samba, Ruby, Unbound, and Vim while patching remote code execution flaws and denial of service risks that could compromise system integrity. Administrators managing AlmaLinux versions eight through ten should prioritize these patches immediately since several issues allow attackers to bypass authentication or trigger arbitrary file overwrites. Regular maintenance cycles remain essential for keeping network infrastructure secure against rapidly evolving threats.

ALSA-2026:22730: vim security update (Moderate)
ALSA-2026:23231: unbound security update (Important)
ALSA-2026:22715: expat security update (Important)
ALSA-2026:23102: delve security update (Important)
ALSA-2026:22717: vim security update (Moderate)
ALSA-2026:22551: mod_http2 security update (Moderate)
ALSA-2026:20606: ruby4.0 security update (Important)
ALSA-2026:22963: samba security update (Critical)
ALSA-2026:23258: kernel security update (Important)
2026-06-04

KDE 1732 Published by Philipp Esselbach 0

KDE neon 20260604 drops cutting-edge Plasma desktop tools directly onto a stable Ubuntu LTS foundation, giving enthusiasts immediate access to modern features without waiting for traditional distribution schedules. System administrators and casual users should think twice before installing since the rolling software model prioritizes fresh updates over long-term package stability. Graphics card owners will need to handle proprietary Nvidia drivers independently, as official support only covers open source alternatives and basic troubleshooting falls outside the project scope. Keeping the system current requires running sudo apt full-upgrade or using Plasma Discover to catch rapid framework changes before broken dependencies pile up.

Software 44440 Published by Philipp Esselbach 0

PostgreSQL 19 Beta 1 drops with parallel autovacuum workers, async I/O scaling, and faster foreign key inserts that actually cut down on midnight table bloat spikes. Developers get native partition management, SQL/PGQ support, and a WAIT FOR LSN command that stops stale reads on replicas without messy application workarounds. Monitoring and security tighten up with per-process logging controls, SNI certificate routing, and better WAL tracking so maintenance operations stop flooding storage logs. The update ships JIT disabled by default, drops RADIUS authentication entirely, and pushes database teams to stress test staging environments before the September release window opens.

KDE 1732 Published by Philipp Esselbach 0

The KDE Gear 26.04.2 update delivers over one hundred patched applications designed to eliminate launch hangs and timeline rendering glitches across desktop Linux systems. Developers prioritized backend stability by aligning framework dependencies and fixing critical crashes in tools like Kdenlive, Neochat, and Dolphin. Users can safely apply the patch through standard distribution package managers or Flatpak runtimes without risking dependency conflicts. Regular system backups remain essential before installing major framework shifts to preserve cached configurations and ensure smooth application handoffs.

Software 44440 Published by Philipp Esselbach 0

Zen Browser 1.20.2b finally patches two high severity security flaws that could let malicious scripts break out of standard sandbox boundaries. The update quietly upgrades the underlying engine to Firefox 151.0.3 while adding dark mode support for the Boost feature and fixing those annoying window focus glitches. Desktop shortcuts now display the correct app name instead of leaking Nightly build identifiers, which saves users from constant taskbar confusion. This release skips flashy experiments in favor of actual stability, making it a straightforward install for anyone who actually uses the browser daily.

Tails 91 Published by Philipp Esselbach 0

Tails 7.8.1 drops as an emergency patch to close a dangerous Linux kernel flaw that could let compromised apps steal root access and deanonymize users. The release also upgrades the Tor client to version 0.4.9.9, shutting down several network vulnerabilities that might leak traffic metadata or crash anonymity circuits. Operators should run the built-in updater or terminal sync command immediately before attackers start chaining exploits against isolated privacy setups. Temporary slowdowns during circuit rebuilds and routine Wi-Fi reconnections are normal after installation, but skipping this update leaves systems dangerously exposed to privilege escalation attacks.

Reviews 52656 Published by Philipp Esselbach 0

The HP ZBook Ultra G1a 14 workstation impresses reviewers with its compact chassis and powerful Strix Halo processor that handles demanding graphics tasks without overheating. Portable energy storage gets a practical upgrade through the Bluetti Elite 10 Mini, which easily powers Apple laptops during camping trips or sudden outages while doubling as a tidy desktop accessory. Gamers looking for desk-friendly audio will appreciate the EDIFIER HECATE G2000 PRO speakers since they combine surprisingly rich sound with customizable RGB lighting and straightforward USB connectivity. Industry watchers can also catch up on major Computex 2026 announcements that highlight Arm expanding into Windows computing, faster PCIe 6.0 storage drives, Intel refining its Arrow Lake lineup, and early details about Wi-Fi 8 technology.

Computers: HP ZBook Ultra G1a 14 Review - The Mighty Mini with Strix Halo
Power: Bluetti Elite 10 Mini Power Station Review: Small, Capable, and Apple-Friendly
Speakers: EDIFIER HECATE G2000 PRO 2.0 Gaming Speakers Review
Other: Computex 2026 Day One Wrap-Up: Arm makes a bold play for Windows PCs, PCIe 6.0 SSDs are coming, Asus embraces black and gold for ROG 20th, Computex 2026 Day Two Wrap-Up: Intel atones for Arrow Lake, Wi-Fi 8 comes into focus

Fedora Linux 9375 Published by Philipp Esselbach 0

The Fedora Respins SIG just released updated installation media that ships kernel 7.0.10 directly on the disc to skip routine post-install downloads. Fresh setups save roughly one gigabyte of package traffic, which actually matters when you are juggling multiple machines or slow internet connections. Users can pick from GNOME, KDE Plasma, Xfce, i3, or SOAS depending on their hardware age and workflow preferences. Grabbing these respins before flashing a drive makes sense for clean installs while existing systems already handle incremental updates without needing fresh media.

Software 44440 Published by Philipp Esselbach 0

Godot 4.7 beta 5 arrives as a targeted stability patch that squashes several editor crashes and animation glitches before the engine locks into release candidate mode. Developers testing complex scenes will see nested node selections and custom timeline branching behave correctly without breaking the project tree or dropping frames during playback. The update also stabilizes DirectX 12 rendering pipelines and Pulseaudio latency checks, which prevents sudden crashes when switching hardware or running multiple dynamic lights in tight spaces. Grabbing this snapshot now saves hours of debugging wasted on known regressions that the core team clearly prioritized over adding new features

Ubuntu 7111 Published by Philipp Esselbach 0

Ubuntu has rolled out a comprehensive set of security patches that address critical flaws in widely used software including GoBGP, nginx, MySQL, and Exim. Attackers could exploit these weaknesses to crash network services, leak confidential information, or run malicious code by sending specially crafted requests to vulnerable systems. IT teams need to upgrade their packages right away because the affected Ubuntu versions span from legacy 14.04 LTS releases all the way up to the latest 26.04 LTS builds. A routine system update will handle everything automatically and keep your servers secure against these newly disclosed threats.

[USN-8348-1] GoBGP vulnerabilities
[USN-8344-3] pip vulnerability
[USN-8130-2] GStreamer Base Plugins vulnerability
[USN-8375-1] nginx vulnerabilities
[USN-8363-2] MySQL vulnerabilities
[USN-8376-1] FRR vulnerabilities
[USN-8377-1] Template-Toolkit vulnerability
[USN-8379-1] urllib3 vulnerabilities
[USN-8380-1] Twisted vulnerability
[USN-8378-1] libwww-perl vulnerability
[USN-8382-1] Exim vulnerabilities

SUSE 5667 Published by Philipp Esselbach 0

SUSE has rolled out a fresh batch of security patches that address multiple vulnerabilities across both openSUSE and enterprise distributions. Administrators will find critical fixes for widely used tools like cloudflared, apptainer, memcached, and several Python libraries alongside moderate updates for services such as Tor and Apache SSHD. The advisory list highlights a mix of important and moderate risk levels to help system owners prioritize which packages require immediate attention on their servers. IT teams should verify their current software versions against these release notes and apply the corresponding updates through standard package managers before attackers can exploit the known flaws.

openSUSE-SU-2026:20893-1: important: Security update for cloudflared
openSUSE-SU-2026:20888-1: important: Security update for apptainer
openSUSE-SU-2026:20887-1: important: Security update for python-PyMuPDF
openSUSE-SU-2026:20892-1: important: Security update for yq
openSUSE-SU-2026:20885-1: moderate: Security update for python-Flask
openSUSE-SU-2026:20886-1: moderate: Security update for python-CairoSVG
openSUSE-SU-2026:20877-1: important: Security update for rsync
openSUSE-SU-2026:20884-1: important: Security update for memcached
openSUSE-SU-2026:20883-1: important: Security update for busybox
openSUSE-SU-2026:20878-1: important: Security update for sdbootutil
openSUSE-SU-2026:20880-1: moderate: Security update for python-pip
openSUSE-SU-2026:20871-1: important: Security update for python-urllib3_1
openSUSE-SU-2026:20875-1: important: Security update for ovmf
openSUSE-SU-2026:20860-1: important: Security update for helm
openSUSE-SU-2026:20891-1: moderate: Security update for vorbis-tools
openSUSE-SU-2026:20861-1: important: Security update for python-urllib3
openSUSE-SU-2026:20863-1: important: Security update for tree-sitter
openSUSE-SU-2026:20889-1: moderate: Security update for tor
openSUSE-SU-2026:20864-1: moderate: Security update for evolution-data-server
openSUSE-SU-2026:10917-1: moderate: libsoup-2_4-1-2.74.3-21.1 on GA media
openSUSE-SU-2026:10916-1: moderate: libgphoto2-6-2.5.34-1.1 on GA media
openSUSE-SU-2026:10915-1: moderate: bind-9.20.23-2.1 on GA media
openSUSE-SU-2026:10919-1: moderate: apache-sshd-2.18.0-1.1 on GA media
openSUSE-SU-2026:10913-1: moderate: golang-github-v2fly-v2ray-core-5.51.2-1.1 on GA media
openSUSE-SU-2026:10911-1: moderate: libsoup-3_0-0-3.6.6-5.1 on GA media
openSUSE-SU-2026:10912-1: moderate: restic-0.18.1-3.1 on GA media
openSUSE-SU-2026:10910-1: moderate: libjxl-devel-0.11.2-2.1 on GA media
openSUSE-SU-2026:10914-1: moderate: atril-1.28.4-1.1 on GA media
SUSE-SU-2026:2252-1: important: Security update for salt
SUSE-SU-2026:2256-1: important: Security update for salt
SUSE-SU-2026:2259-1: moderate: Security update for python3-pyOpenSSL
SUSE-SU-2026:2261-1: moderate: Security update for python-pyOpenSSL

Slackware 1267 Published by Philipp Esselbach 0

The Slackware Linux Security Team has released a comprehensive security advisory addressing multiple critical vulnerabilities across five core system packages. Administrators running Slackware 15.0 or the current development branch should immediately apply these patches to protect against resource exhaustion attacks, SQL injection flaws, and dangerous buffer overflow exploits in their web servers, FTP daemons, remote desktop clients, network utilities, and X window infrastructure.

httpd (SSA:2026-154-01)
proftpd (SSA:2026-154-03)
tigervnc (SSA:2026-154-05)
net-tools (SSA:2026-154-02)
xorg-server (SSA:2026-154-04)

Red Hat 9429 Published by Philipp Esselbach 0

Red Hat has released a batch of security advisories addressing vulnerabilities across multiple RHEL versions and specialized service tracks. The patches cover essential software like Firefox, Samba, the Linux kernel, and OpenShift Container Platform with severity ratings ranging from critical down to moderate. Teams must apply these fixes immediately since the affected packages power both routine workstations and high stakes production environments. Detailed vulnerability scores are provided through Common Vulnerability Scoring System references so administrators can quickly assess risk levels before deploying the updates.

RHSA-2026:22712: Important: firefox security update
RHSA-2026:22711: Moderate: vim security update
RHSA-2026:22710: Moderate: libsoup security update
RHSA-2026:22733: Important: osbuild-composer security update
RHSA-2026:22716: Moderate: libsoup security update
RHSA-2026:22714: Important: osbuild-composer security update
RHSA-2026:22713: Important: rhc security update
RHSA-2026:22709: Important: osbuild-composer security update
RHSA-2026:22708: Important: firefox security update
RHSA-2026:22529: Moderate: libexif security update
RHSA-2026:22551: Moderate: mod_http2 security update
RHSA-2026:21655: Important: OpenShift Container Platform 4.18.43 packages and security update
RHSA-2026:22847: Important: firefox security update
RHSA-2026:22730: Moderate: vim security update
RHSA-2026:21702: Important: OpenShift Container Platform 4.20.24 bug fix and security update
RHSA-2026:21701: Moderate: OpenShift Container Platform 4.20.24 packages and security update
RHSA-2026:22900: Important: kernel-rt security update
RHSA-2026:22717: Moderate: vim security update
RHSA-2026:21656: Important: OpenShift Container Platform 4.18.43 bug fix and security update
RHSA-2026:22721: Important: expat security update
RHSA-2026:22715: Important: expat security update
RHSA-2026:23102: Important: delve security update
RHSA-2026:22987: Important: fence-agents security update
RHSA-2026:22963: Critical: samba security update
RHSA-2026:22957: Important: libcap security update
RHSA-2026:22940: Important: kernel security update
RHSA-2026:22937: Important: image-builder security update

Oracle Linux 6492 Published by Philipp Esselbach 0

Oracle has published a series of critical security advisories for Linux versions eight and nine that target widespread vulnerabilities across core system libraries and services. The Apache HTTP server receives urgent patches to block memory exhaustion attacks and correct flawed retry logic in its ACME management module. Administrators should prioritize the extensive kernel updates since they resolve dozens of dangerous memory corruption bugs, race conditions, and network protocol flaws impacting Bluetooth drivers and SMB clients. These releases also deliver essential fixes for GnuTLS certificate handling, OpenSSL compatibility crashes, and a container networking adjustment that applies to both x86_64 and aarch64 systems.

ELSA-2026-22140 Important: Oracle Linux 8 httpd:2.4 security update
ELSA-2026-22315 Moderate: Oracle Linux 8 compat-openssl10 security update
ELSA-2026-21706 Important: Oracle Linux 8 kernel security update
ELBA-2026-21706-1 Oracle Linux 8 kernel bug fix update
ELBA-2026-50292 Oracle Linux 9 podman bug fix update
ELSA-2026-20611 Important: Oracle Linux 8 gnutls security update

Fedora Linux 9375 Published by Philipp Esselbach 0

System administrators managing Fedora 43 or 44 environments need to prioritize these urgent security patches right away. Xwayland gets critical fixes for eight separate Zero Day Initiative vulnerabilities while the PHP extension installer PIE closes dangerous privilege escalation holes and path traversal weaknesses that could compromise system integrity. Webmail operators should also upgrade RoundcubeMail to block stored XSS attacks alongside a necessary patch for Libsoup3 that stops cleartext cookie leakage during secure tunnel establishment. You can deploy all these essential updates quickly by running the standard dnf upgrade command with each advisory identifier listed in the official release notes.

Fedora 44 Update: xorg-x11-server-Xwayland-24.1.12-1.fc44
Fedora 44 Update: pie-1.4.5-1.fc44
Fedora 43 Update: pie-1.4.5-1.fc43
Fedora 43 Update: roundcubemail-1.6.16-1.fc43
Fedora 43 Update: libsoup3-3.6.6-3.fc43

Debian 10941 Published by Philipp Esselbach 0

Debian and Freexian have released urgent security advisories addressing critical flaws in both the Ceph distributed storage platform and the Corosync cluster engine. The Ceph update resolves multiple vulnerabilities that could enable privilege escalation or information disclosure across several distribution branches. Meanwhile, the Corosync patch fixes two distinct network weaknesses that allow unauthenticated attackers to trigger denial of service attacks using crafted UDP packets. Administrators should apply these package upgrades immediately and consult official security trackers for comprehensive version details.

[DSA 6321-1] ceph security update
ELA-1746-1 corosync security update

AlmaLinux 2575 Published by Philipp Esselbach 0

AlmaLinux released a comprehensive set of security errata to patch critical flaws across several major software packages. These updates directly address dangerous vulnerabilities in widely deployed applications like Mozilla Thunderbird, Apache HTTP Server, Samba, and OpenSSL. Administrators will find that the patches resolve severe issues including remote code execution, sandbox escapes, and memory corruption bugs that threaten system stability. You should apply these fixes immediately to protect your infrastructure from potential exploitation and maintain a secure computing environment.

ALSA-2026:22325: thunderbird security update (Important)
ALSA-2026:22553: libexif security update (Moderate)
ALSA-2026:22312: openssl security update (Moderate)
ALSA-2026:22721: expat security update (Important)
ALSA-2026:22644: samba security update (Important)
ALSA-2026:22140: httpd:2.4 security update (Important)
ALSA-2026:22315: compat-openssl10 security update (Moderate)
ALSA-2026:22643: thunderbird security update (Important)
ALSA-2026:22145: .NET 10.0 security update (Important)
ALSA-2026:22711: vim security update (Moderate)
ALSA-2026:22314: openssl security update (Moderate)

[ Archive ]