Product
Last Report

Click here to browse the Windows compatibility database

Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-04-11 18:54 | Last update:



2026-04-11

Software 44274 Published by Philipp Esselbach 0

This update to the Krita AI Diffusion plugin targets the visual artifacts and model errors that often plague generative painting sessions. Artists using Flux models will finally get relief from the border glitches that left ugly lines after internal resizing. Custom workflow creators benefit from a new reset button while seed controls expand to support much larger numbers for precise randomness. Legacy users get a reprieve as the installer attempts pulling older PyTorch versions for GTX cards that typically fail with newer builds.

Linux 3334 Published by Philipp Esselbach 0

Linux Kernel 6.1.168, 6.6.134, 6.12.81, 6.18.22, and 6.19.12 are now available. The USB gadget subsystem took the biggest hit with patches fixing race conditions that caused crashes when users unbound devices or entered suspend modes. Kernel memory safety also gets a boost by ensuring kallsyms and thermal zones handle module removal and power events without dangling pointers. It is exactly the kind of boring update that keeps systems from spontaneously rebooting during critical operations.

Reviews 52609 Published by Philipp Esselbach 0

Hardware reviewers are testing a new Shuttle barebone PC that accommodates modern Intel processors alongside improved cooling systems for the chassis. While budget builders appreciate the MSI air cooler, overclockers might find better value in a Silverstone liquid solution designed for RAM overclocking. The display market sees two significant QD-OLED updates from MSI, both offering high refresh rates and 4K resolution at lower price points than their predecessors. The roundup concludes with praise for Death Stranding 2 as a smarter sequel and an updated entry-level phone that improves specs without increasing costs.

Computers: Shuttle XPC slim DH810 Barebone Review
Cooling: MSI MAG COREFROZR AA13 CPU Cooler Review, Silverstone IceMyst Pro 360 Pro Review: Designed for RAM overclocking
Displays: MSI MPG 322UR QD-OLED X24 Review - Less Expensive and Even Better, MSI MAG 272UP X24 Review (4K/240Hz QD-OLED)
Gaming: Death Stranding 2: On the Beach Review – A brilliant sequel that I warmed up to surprisingly quickly
Mobile: iPhone 17e Review: Apple Just Perfected Its Entry-Level Phone
Power: Cooler Master MWE Bronze V2 230V 650W power supply review: A competent entry-level choice
Speakers: Creative Pebble Nova Review

Ubuntu 7047 Published by Philipp Esselbach 0

Ubuntu issued two security advisories fixing critical flaws in both MongoDB and QEMU software packages. The first notice warns that unauthenticated attackers might access sensitive data through a memory buffer issue within older MongoDB versions supported by Ubuntu 18.04 and 20.04 LTS. The QEMU virtualizer faces several distinct vulnerabilities across Ubuntu 22.04, 24.04, and 25.10 that could allow guest attackers to execute code or crash the system.

[USN-8160-1] MongoDB vulnerability
[USN-8161-1] QEMU vulnerabilities

SUSE 5615 Published by Philipp Esselbach 0

New security advisories have been released for both SUSE Linux Enterprise and openSUSE systems to address various vulnerabilities. Critical kernel live patches are available for multiple service pack levels including the latest updates for SP4 through SP6. Administrators must apply important fixes to specific packages like openssl, tigervnc, and various Python Django versions found on general media immediately. Moderate severity warnings also exist for openSUSE software releases that need attention too.

SUSE-SU-2026:1237-1: important: Security update for the Linux Kernel (Live Patch 47 for SUSE Linux Enterprise 15 SP4)
SUSE-SU-2026:1239-1: important: Security update for the Linux Kernel (Live Patch 10 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1254-1: important: Security update for the Linux Kernel (Live Patch 32 for SUSE Linux Enterprise 15 SP5)
SUSE-SU-2026:1257-1: important: Security update for openssl-1_1
SUSE-SU-2026:1252-1: important: Security update for tigervnc
SUSE-SU-2026:1248-1: important: Security update for the Linux Kernel (Live Patch 28 for SUSE Linux Enterprise 15 SP5)
openSUSE-SU-2026:10514-1: moderate: go1.25-1.25.9-1.1 on GA media
openSUSE-SU-2026:10517-1: moderate: python313-Django6-6.0.4-1.1 on GA media
openSUSE-SU-2026:10513-1: moderate: fontforge-20251009-6.1 on GA media
openSUSE-SU-2026:10516-1: moderate: python311-Django4-4.2.30-1.1 on GA media
openSUSE-SU-2026:10511-1: moderate: MozillaFirefox-149.0.2-1.1 on GA media
openSUSE-SU-2026:10510-1: moderate: sudo-1.9.17p2-2.1 on GA media
SUSE-SU-2026:1242-1: important: Security update for the Linux Kernel (Live Patch 45 for SUSE Linux Enterprise 15 SP4)

Rocky Linux 885 Published by Philipp Esselbach 0

Rocky Linux administrators need to apply new security patches for multiple packages including git-lfs and grafana variants. These advisories apply to systems running operating system versions eight through ten. While most notices are marked as important, a single update concerning libtiff is rated moderately due to lower risk factors. Detailed severity scores derived from the Common Vulnerability Scoring System list remain available for every identified issue via the official links.

RLSA-2026:7005: Important: git-lfs security update
RLSA-2026:7081: Moderate: libtiff security update
RLSA-2026:7259: Important: git-lfs security update
RLSA-2026:7011: Important: grafana security update
RLSA-2026:7009: Important: grafana-pcp security update

Red Hat 9386 Published by Philipp Esselbach 0

Security updates for cockpit are now available to address a serious flaw affecting Red Hat Enterprise Linux versions nine through ten. Attackers could potentially execute remote code without authentication by exploiting an injection vulnerability within SSH command line arguments. Red Hat Product Security has officially rated this issue as critical because of the high risk it poses to system integrity.

RHSA-2026:7382: Critical: cockpit: Unauthenticated remote code execution due to SSH command-line argument injection
RHSA-2026:7384: Critical: cockpit: Unauthenticated remote code execution due to SSH command-line argument injection
RHSA-2026:7383: Critical: cockpit: Unauthenticated remote code execution due to SSH command-line argument injection
RHSA-2026:7381: Critical: cockpit: Unauthenticated remote code execution due to SSH command-line argument injection

Debian 10857 Published by Philipp Esselbach 0

Debian security teams have released urgent updates for firefox-esr, chromium, and libyaml-syck-perl across several distributions. Firefox users need to install the new version to stop flaws that might enable arbitrary code execution through browser exploits. Across stable distributions, Chromium requires a massive patch covering dozens of CVEs designed to prevent denial of service attacks or data leaks. The perl library update fixes critical memory issues where missing terminators could allow attackers to read adjacent variables unexpectedly.

Debian GNU/Linux 10 (Buster) ELTS:
ELA-1679-1 libyaml-syck-perl security update

Debian GNU/Linux 11 (Bullseye) LTS:
[DLA 4526-1] firefox-esr security update

Debian GNU/Linux 12 (Bookworm) and 13 (Trixie):
[DSA 6205-1] chromium security update

AlmaLinux 2538 Published by Philipp Esselbach 0

AlmaLinux has issued numerous security updates for versions eight through ten. Covering applications ranging from database servers to font editors, these advisories highlight critical flaws that allow attackers to execute arbitrary code on vulnerable systems. Specific vulnerabilities include heap buffer overflows and uninitialized variables that enable remote code execution alongside denial of service attacks. System administrators should review the linked CVE pages to understand the impact and apply the necessary fixes immediately through their package managers.

ALSA-2026:6799: freerdp security update (Important)
ALSA-2026:6906: nginx security update (Important)
ALSA-2026:7080: nodejs22 security update (Important)
ALSA-2026:6463: openssh security update (Important)
ALSA-2026:7081: libtiff security update (Moderate)
ALSA-2026:6631: fontforge security update (Important)
ALSA-2026:6766: python3.9 security update (Important)
ALSA-2026:6923: nginx:1.24 security update (Important)
ALSA-2026:6462: openssh security update (Important)
ALSA-2026:6628: fontforge security update (Important)
ALSA-2025:4049: libtasn1 security update (Moderate)
ALSA-2025:4063: ruby:3.1 security update (Moderate)
ALSA-2025:2872: pcs security update (Important)
ALSA-2025:11047: pcs security update (Moderate)
ALSA-2025:3210: container-tools:rhel8 security update (Important)
ALSA-2025:3026: kernel security update (Important)
ALSA-2024:10987: pcs security update (Moderate)
ALSA-2025:3027: kernel-rt security update (Important)
ALSA-2025:3388: python-jinja2 security update (Important)
ALSA-2025:4048: xmlrpc-c security update (Moderate)
ALSA-2025:8254: pcs security update (Important)
ALSA-2025:12527: virt:rhel and virt-devel:rhel security update (Moderate)
ALSA-2026:6750: gstreamer1-plugins-bad-free, gstreamer1-plugins-base, and gstreamer1-plugins-good security update (Important)
ALSA-2026:6949: go-toolset:rhel8 security update (Important)
ALSA-2026:6915: vim security update (Important)
ALSA-2026:6918: freerdp security update (Important)
ALSA-2026:6391: mysql:8.4 security update (Moderate)
ALSA-2026:6435: mariadb:10.11 security update (Moderate)
ALSA-2026:6461: openssh security update (Important)
2026-04-10

Fedora Linux 9309 Published by Philipp Esselbach 0

Remi Collet has pushed out PHP 8.5.5 and 8.4.20 packages for Fedora Linux and RHEL-based systems through the remi-modular repository. Security fixes are absent this month so legacy versions stay put while admins plan their upgrades without urgency. Installation options include switching system defaults via dnf module commands or running parallel builds as Software Collections for safer testing. Verification of application compatibility remains essential before replacing the standard library on any production server.

KDE 1715 Published by Philipp Esselbach 0

KDE Frameworks 6.25.0 arrived with the usual monthly schedule but focuses on stability tweaks instead of flashy new features for desktop users. Developers squashed memory leaks in KIO and Baloo while locking in support for the mandatory Qt 6.9.0 requirement. Regular Linux folks will likely see fewer random crashes during file operations without noticing any dramatic changes to their desktop layout. Those building from source must update their Qt libraries first or face unnecessary compilation headaches during installation.

GNOME 3712 Published by Philipp Esselbach 0

Bazaar 0.7.14 lands with practical improvements like search filters and EULA buttons that help users spot proprietary apps before installing them. Developers gain a performance boost from new regex checks which skip unnecessary processes to save resources on complex hook lists. The interface feels less dated thanks to updated gradients and colors that align better with modern GNOME standards. These fixes resolve jittering issues while keeping the core Flatpak experience stable for daily use.

Reviews 52609 Published by Philipp Esselbach 0

Here is a roundup of today's reviews. Tom's Hardware highlights the Acer Predator X27 X1 as a solid value option for gamers seeking OLED performance on a 27 inch screen. Corsair trades extreme lightweight design for a more rigid magnesium build while Epomaker surprises with carbon fiber durability in their latest peripheral. Cherry XTRFY introduces new technology trends in a compact keyboard and the ASUS router delivers high speeds despite weaknesses on lower bands. Readers will find that trade offs between weight and refinement define much of this week’s hardware landscape across various categories.

Displays: Acer Predator X27 X1 27-inch 240 Hz OLED gaming monitor review: Blending performance and value
Input: Corsair Sabre V2 Pro MG + CF Mice Review, Epomaker Carbon X Gaming Mouse Review, Cherry XTRFY K5 Pro TMR Compact Review - Compact Gaming Keyboard with New TMR Technology and 8K Polling Rate
Networking: ASUS ROG Rapture GT-BE19000AI Gaming Router Review: Shiny and fast (except when it isn't)

Software 44274 Published by Philipp Esselbach 0

Godot 4.7 Dev 4 arrives just as contributors race to lock features before the final freeze, so these updates are likely set in stone. Rendering fans get what they want with nearest-neighbor scaling for 3D viewports that keeps pixel-art looking crisp without performance hits. Editor pain points like wasted inspector space and confusing drag-and-drop indicators finally see fixes to streamline the workflow. Power users should test this build immediately because some particle changes break compatibility to match documentation standards.

Software 44274 Published by Philipp Esselbach 0

The FEX-2604 update delivers significant memory savings by enabling Dynamic L1 lookup caches and optimizing Transparent Huge Page usage, which helps systems with limited RAM like those with 8GB or 16GB. Performance sees a major boost for games using x87 transcendental operations as SIN, COS, and TAN functions are now inlined within the JIT for an average speed increase of 3.7 times. Several critical bugs have been resolved including a workaround for Docker seccomp filter crashes and a fix for a pseudo-memory leak in the thread-pool allocator that previously ballooned resource usage during heavy threading. Advanced users can now utilize a new FEXGetConfig option to visualize memory alignment faults on ARM hardware, providing better insight into emulation performance gaps compared to native x86 behavior.

Ubuntu 7047 Published by Philipp Esselbach 0

Canonical has released new security notices for Ubuntu Linux addressing several critical vulnerabilities. Most entries concern different Linux kernel variants like Azure FIPS and NVIDIA Tegra while others focus on HWE or Intel IoTG real time builds. You will also find important fixes for Django and OpenSSL libraries included in this batch. System administrators should prioritize installing these fixes to maintain the integrity of their infrastructure against recent threats.

[USN-8163-1] Linux kernel (Azure FIPS) vulnerabilities
[USN-8162-1] Linux kernel (NVIDIA Tegra) vulnerabilities
[USN-8145-4] Linux kernel (HWE) vulnerabilities
[USN-8165-1] Linux kernel (Azure FIPS) vulnerabilities
[USN-8164-1] Linux kernel (Intel IoTG Real-time) vulnerabilities
[USN-8154-2] Django vulnerabilities
[USN-8155-2] OpenSSL vulnerabilities

SUSE 5615 Published by Philipp Esselbach 0

New security advisories have been published for both SUSE Linux Enterprise and openSUSE distributions covering a wide range of software packages. Several updates carry an important rating and include fixes for the Linux Kernel Live Patches on various service packs. Beyond the kernel, important fixes address services like bind while users should also note moderate severity updates for tools like mapserver. Administrators should review the full list of referenced IDs and apply these patches promptly to maintain system security.

SUSE-SU-2026:1220-1: moderate: Security update for python-poetry
SUSE-SU-2026:1222-1: important: Security update for the Linux Kernel (Live Patch 40 for SUSE Linux Enterprise 15 SP4)
SUSE-SU-2026:1225-1: important: Security update for the Linux Kernel (Live Patch 15 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1236-1: important: Security update for the Linux Kernel (Live Patch 12 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1230-1: important: Security update for bind
SUSE-SU-2026:1231-1: important: Security update for the Linux Kernel (Live Patch 48 for SUSE Linux Enterprise 15 SP4)
openSUSE-SU-2026:20477-1: important: Security update for aws-c-event-stream
openSUSE-SU-2026:20465-1: important: Security update for tigervnc
openSUSE-SU-2026:20476-1: moderate: Security update for mapserver
openSUSE-SU-2026:20464-1: important: Security update for cockpit-repos
openSUSE-SU-2026:20466-1: important: Security update for libpng16
openSUSE-SU-2026:10507-1: moderate: python311-lupa-2.7-1.1 on GA media
openSUSE-SU-2026:10501-1: moderate: MozillaThunderbird-140.9.1-1.1 on GA media
openSUSE-SU-2026:10505-1: moderate: libIex-3_4-33-3.4.9-1.1 on GA media
openSUSE-SU-2026:10504-1: moderate: corepack24-24.14.1-1.1 on GA media
openSUSE-SU-2026:10502-1: moderate: dcmtk-3.7.0-2.1 on GA media
openSUSE-SU-2026:10503-1: moderate: firefox-esr-140.9.1-1.1 on GA media
openSUSE-SU-2026:10506-1: moderate: jupyter-jupyterlab-templates-0.5.3-1.1 on GA media
openSUSE-SU-2026:10500-1: moderate: 389-ds-3.1.4+e2562f589-1.1 on GA media

Slackware 1244 Published by Philipp Esselbach 0

Slackware users running version 15.0 or the current branch should upgrade libpng to fix a medium severity security vulnerability. This update addresses use-after-free errors within specific functions that could potentially lead to corrupted chunk data and heap information disclosure. Additional hardening was applied to append-style setters to protect against theoretical variants of this same aliasing pattern during the patch process. You can download the corrected packages from the official FTP site or find additional mirrors near you on the main website before installing them as root.

libpng (SSA:2026-099-01)

Rocky Linux 885 Published by Philipp Esselbach 0

Rocky Linux users need to install multiple security patches across versions eight, nine, and ten. These updates address serious vulnerabilities found in essential software components such as the kernel, nginx, openssh, and various Python or nodejs modules that power many systems today. Most advisories carry an important severity rating, although a handful of moderate warnings exist for tools like rsync and ncurses. Users can review detailed vulnerability ratings from the CVE list by accessing the specific errata links provided in each notice to understand the full scope of the fixes.

RLSA-2026:6470: Important: perl-YAML-Syck security update
RLSA-2026:6439: Important: libpng15 security update
RLSA-2026:6750: Important: gstreamer1-plugins-bad-free, gstreamer1-plugins-base, and gstreamer1-plugins-good security update
RLSA-2026:6907: Important: nginx:1.24 security update
RLSA-2026:6445: Important: libpng12 security update
RLSA-2026:6918: Important: freerdp security update
RLSA-2026:6461: Important: openssh security update
RLSA-2026:6436: Moderate: rsync security update
RLSA-2026:6915: Important: vim security update
RLSA-2026:6631: Important: fontforge security update
RLSA-2026:6388: Important: grafana-pcp security update
RLSA-2026:6817: Important: capstone security update
RLSA-2026:6622: Moderate: crun security update
RLSA-2026:5941: Important: golang security update
RLSA-2026:6342: Important: thunderbird security update
RLSA-2026:6825: Moderate: rsync security update
RLSA-2026:6799: Important: freerdp security update
RLSA-2026:6906: Important: nginx security update
RLSA-2026:6053: Moderate: kernel security update
RLSA-2026:6344: Important: grafana security update
RLSA-2026:6259: Important: gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free security update
RLSA-2026:5931: Important: firefox security update
RLSA-2026:5913: Moderate: ncurses security update
RLSA-2026:6766: Important: python3.9 security update
RLSA-2026:7343: Important: nginx:1.26 security update
RLSA-2026:7350: Important: nodejs:24 security update
RLSA-2026:7302: Important: nodejs:22 security update

Red Hat 9386 Published by Philipp Esselbach 0

Red Hat Product Security has released numerous updates addressing critical vulnerabilities in software like Python, nodejs, and OpenShift Container Platform across various Linux distributions. While most advisories carry an Important severity rating, some packages such as libtiff are classified only as Moderate based on Common Vulnerability Scoring System scores. These security patches target specific versions of Red Hat Enterprise Linux including the Extended Update Support tracks for RHEL 10 and older systems like version seven. System administrators need to consult the reference links for detailed CVSS data before applying these necessary fixes to their environments.

RHSA-2026:7244: Important: python3.12 security update
RHSA-2026:6492: Important: OpenShift Container Platform 4.12.87 bug fix and security update
RHSA-2026:7310: Important: nodejs22 security update
RHSA-2026:7304: Moderate: libtiff security update
RHSA-2026:7302: Important: nodejs:22 security update
RHSA-2026:7292: Important: freerdp security update
RHSA-2026:7259: Important: git-lfs security update
RHSA-2026:6552: Moderate: OpenShift Container Platform 4.18.37 packages and security update
RHSA-2026:6553: Important: OpenShift Container Platform 4.18.37 bug fix and security update
RHSA-2026:7350: Important: nodejs:24 security update
RHSA-2026:7343: Important: nginx:1.26 security update
RHSA-2026:7342: Important: kea security update
RHSA-2026:7328: Important: rhc security update
RHSA-2026:7315: Important: rhc security update

Fedora Linux 9309 Published by Philipp Esselbach 0

Fedora users on versions 42 and 43 must apply security updates immediately. The advisories cover a wide range of issues including memory corruption, buffer overflows, and privilege escalation found in tools like opensc and dnsdist among others. Specific CVE identifiers have been resolved through new upstream releases for components such as libpng12, mbedtls, and util-linux. System owners can install these patches using the standard dnf upgrade command with the provided advisory references.

Fedora 42 Update: opensc-0.27.1-1.fc42
Fedora 42 Update: dnsdist-1.9.12-1.fc42
Fedora 42 Update: doctl-1.154.0-1.fc42
Fedora 42 Update: libcgif-0.5.3-1.fc42
Fedora 42 Update: libpng12-1.2.57-25.fc42
Fedora 42 Update: libpng15-1.5.30-25.fc42
Fedora 42 Update: crun-1.27-1.fc42
Fedora 43 Update: cockpit-360-1.fc43
Fedora 43 Update: mbedtls-3.6.6-1.fc43
Fedora 43 Update: dnsdist-2.0.3-1.fc43
Fedora 43 Update: util-linux-2.41.4-7.fc43
Fedora 43 Update: doctl-1.154.0-1.fc43
Fedora 43 Update: libpng12-1.2.57-25.fc43
Fedora 43 Update: fido-device-onboard-0.5.5-8.fc43
Fedora 43 Update: libcgif-0.5.3-1.fc43
Fedora 43 Update: libpng15-1.5.30-25.fc43

Debian 10857 Published by Philipp Esselbach 0

Debian released security patches for PostgreSQL to fix four vulnerabilities involving memory disclosure and arbitrary code execution risks within the database engine. A separate advisory targets an OpenSSH GSSAPI Key Exchange flaw that enables remote code execution or denial of service if the setting remains active. Administrators should also upgrade libyaml-syck-perl because the package contains high-severity heap buffer overflows and memory corruption bugs discovered within its YAML emitter functions. Finally, BIND9 users need to apply patches for cache poisoning vulnerabilities that might let attackers inject forged data into name server caches on older distributions like buster.

Debian GNU/Linux 10 (Buster) ELTS:
ELA-1678-1 bind9 security update

Debian GNU/Linux 11 (Bullseye) LTS:
[DLA 4524-1] postgresql-13 security update
[DLA 4525-1] libyaml-syck-perl security update

Debian GNU/Linux 12 (Bookworm) and 13 (Trixie):
[DSA 6204-1] openssh security update

[ Archive ]