Product
Last Report

Click here to browse the Windows compatibility database

Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-05-08 10:41 | Last update:



2026-05-08

Fedora Linux 9344 Published by Philipp Esselbach 0

Remi Collet has released updated PHP packages ranging from version 8.2.31 to 8.5.6 for Fedora and Enterprise Linux distributions like RHEL, AlmaLinux, and Rocky. These releases patch between eight and thirteen security vulnerabilities per version, making immediate installation essential to prevent known exploits. Administrators can easily upgrade by switching the default PHP module through dnf or install a parallel instance using Software Collections for safe testing. The update also bundles newer backend libraries like libicu74 and oniguruma5php, with official Fedora repositories expected to roll out these versions in the near future.

Linux 3353 Published by Philipp Esselbach 0

The latest stable Linux kernel LTS releases patch a critical memory handling flaw that could corrupt encrypted UDP traffic during IPsec operations. When the network stack spliced shared pipe pages into sockets, it incorrectly assumed full ownership of the data and decrypted packets in place instead of making safe private copies. This update forces the system to trigger a proper copy-on-write routine whenever shared fragments are detected, preventing silent memory overwrites without impacting standard performance. Administrators and power users should apply these kernel updates immediately through their distribution package managers to maintain reliable network connectivity and prevent unexpected packet drops.

Linux 3353 Published by Philipp Esselbach 0

Linux Kernel 7.0.5 patches a critical IPsec bug that silently corrupted network traffic by decrypting shared UDP memory pages without proper ownership checks. The update adds missing safety flags to match TCP behavior and forces the kernel to copy data before modifying it, preventing silent packet loss and VPN instability. System administrators should verify their running kernel version includes this fix and monitor system logs for dropped packets after upgrading. Rolling out the patch ensures encrypted tunnels stay reliable without sacrificing performance on standard network configurations.

KDE 1721 Published by Philipp Esselbach 0

KDE neon 20260507 drops straight onto a stable Ubuntu LTS foundation and pushes unpatched Plasma updates the moment upstream developers release them. The distribution clearly targets desktop tinkerers who want bleeding edge tools, so anyone running mission critical work should probably stick to slower release cycles. Graphics driver support stays strictly limited to open source Nouveau, while traditional apt packages get filtered out in favor of Snap and Flatpak alternatives. Keeping the system from breaking requires running full-upgrade through the terminal or Discover, which means regular backups are basically mandatory before hitting refresh.

Reviews 52632 Published by Philipp Esselbach 0

Today's reviews roundup covers a bunch of new PC parts that should get any builder excited. The FSP M580 case catches your eye with its curved glass panels, and folks are already saying the Intel Core Ultra 5 needs to drop in price before you buy it. You can also grab some details on PNYs slim RTX 5080 card plus a super light wireless mouse that pushes a crazy fast polling rate. Rounding things out are two fresh Z890 motherboards that pack all the modern features without breaking the bank.

Casing:  FSP M580 Review
CPUs: Intel Core Ultra 5 225 review: Arrow Lake’s forgotten CPU needs a price cut
Graphics Cards: PNY GeForce RTX 5080 Slim OC Review - A Compact 4K Powerhouse
Input: SteelSeries Aerox 3 Wireless Gen 2 Ghost Review, lightweight wireless mouse with 4K polling and transparent shell, Epomaker TH80 V2 PRO Mechanical Keyboard Review
Motherboards: GIGABYTE Z890 AORUS Elite WiFi7 Plus Motherboard Review - Right in the sweet spot, ASRock Phantom Gaming Z890 Lightning Wi-Fi Review

KDE 1721 Published by Philipp Esselbach 0

KDE Gear 26.04.1 finally patches over one hundred eighty applications with a heavy emphasis on stability instead of chasing shiny new features. The Konsole update stops the middle mouse button from accidentally nuking open tabs, while Akonadi gets a long overdue fix for those pesky selection crashes that always seem to pop up during bulk contact management. Video editors and document viewers also benefit, as Kdenlive resolves macOS permission roadblocks and Okular patches dangerous memory overflow flaws in its fax handling routines. Android builds get cleaned up across the board to play nicely with Qt 6.11, so desktop users can finally stop worrying about background processes tripping over themselves during routine tasks. Grab the update when it hits your package manager and enjoy a quieter system while it lasts.

Debian 10895 Ubuntu 7078 Published by Philipp Esselbach 0

XanMod just dropped kernels 6.18.17 LTS and 7.0.4 to give Debian and Ubuntu users a noticeably snappier desktop experience without waiting on upstream updates. The build ships with Google multigenerational LRU memory management, Cloudflare TCP collapse, BBRv3 networking tweaks, and dedicated drivers for AMD 3D V-Cache and Steam Deck hardware. Proprietary modules like NVIDIA graphics or VirtualBox often break during compilation, so checking DKMS compatibility before swapping kernels is a must. The installation takes just three APT commands plus a few build dependencies, but running the update on a spare machine first will save you from a boot loop when a driver refuses to compile.

Software 44352 Published by Philipp Esselbach 0

Fish Shell 4.7.1 drops today to patch a regression in version 4.7.0 that completely broke the web configuration interface. Users who actually want to tweak their prompt or syntax highlighting should grab the official .tar.xz archive or prebuilt Linux binaries instead of the broken source package. The maintainers strongly recommend verifying the GPG signature before compiling, since terminal shells run with elevated privileges and unsigned archives are a security risk. Once installed, the update restores normal browser-based settings management without touching existing dotfiles or custom themes.

Software 44352 Published by Philipp Esselbach 0

Python 3.15 beta 1 just landed as the first feature freeze preview, dropping explicit lazy imports, frozen dictionaries, and a centralized profiling package that actually makes debugging slower scripts bearable. The JIT compiler now pulls an eight to thirteen percent speed boost across major platforms, while Windows binaries finally switch to the tail-calling interpreter by default so you stop fighting legacy performance quirks. Core developers are actively pushing third party maintainers to break things early since ABI stability is still being locked down before the August 2026 release candidate phase. Regular users should keep their production servers on stable builds and only test this beta in isolated environments until the final version ships next year.

Ubuntu 7078 Published by Philipp Esselbach 0

Ubuntu released a batch of security updates that address critical flaws across dozens of packages and multiple distribution versions. The Linux kernel receives the most extensive patching, covering specialized builds for cloud providers like Azure and AWS alongside standard desktop releases. Several widely used utilities and libraries also get fixed, including dpkg, vim, libpng, and PostfixAdmin, which previously allowed attackers to trigger crashes or execute malicious code through crafted files. Administrators should run their regular system upgrades immediately since most of these patches require a simple reboot to fully take effect.

[USN-8240-1] Swish-e vulnerabilities
[USN-8236-1] Slurm vulnerabilities
[USN-8245-1] Linux kernel vulnerabilities
[USN-8244-1] Linux kernel vulnerabilities
[USN-8241-1] Coin3D vulnerabilities
[USN-8243-1] Linux kernel (Azure) vulnerabilities
[USN-8235-1] ITK vulnerabilities
[USN-8179-4] Linux kernel (GCP) vulnerabilities
[USN-8250-1] Little CMS vulnerability
[USN-8249-1] dpkg vulnerability
[USN-8251-1] libpng vulnerabilities
[USN-8248-1] NASM vulnerabilities
[USN-8247-1] OWSLib vulnerability
[USN-8242-2] PostfixAdmin vulnerability
[USN-8242-1] CiviCRM vulnerability
[USN-8246-1] Vim vulnerabilities
[USN-8220-1] HtmlUnit vulnerability
[USN-8256-1] opam vulnerability
[USN-8259-1] OpenEXR vulnerabilities
[USN-8261-1] Linux kernel (Xilinx) vulnerabilities
[USN-8260-1] Linux kernel (Azure FIPS) vulnerabilities
[USN-8258-1] Linux kernel (Azure) vulnerabilities
[USN-8257-1] Linux kernel (Raspberry Pi) vulnerabilities
[USN-8255-1] Linux kernel vulnerabilities
[USN-8252-1] OpenJPEG vulnerability
[USN-8253-1] Postfix vulnerability
[USN-8254-1] Linux kernel vulnerabilities

SUSE 5640 Published by Philipp Esselbach 0

SUSE issued a series of security advisories to patch numerous vulnerabilities across its enterprise and community Linux distributions. These updates address critical flaws in widely used software like Java, Python frameworks, web browsers, and system libraries, with several patches carrying important ratings due to their potential for remote exploitation or service disruption. System administrators should apply the recommended fixes immediately through YaST or zypper commands to protect affected SUSE Linux Enterprise and openSUSE Leap installations. The release also bundles multiple kernel live patches that resolve high-risk networking and memory issues without forcing a full system restart.

SUSE-SU-2026:1753-1: important: Security update for 389-ds
SUSE-SU-2026:1755-1: important: Security update for freeipmi
SUSE-SU-2026:1744-1: moderate: Security update for python-pytest
SUSE-SU-2026:1732-1: important: Security update for java-17-openjdk
SUSE-SU-2026:1740-1: moderate: Security update for python-Django
SUSE-SU-2026:1749-1: moderate: Security update for webkit2gtk3
SUSE-SU-2026:1750-1: important: Security update for librsvg
SUSE-SU-2026:1735-1: important: Security update for the Linux Kernel (Live Patch 20 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1728-1: important: Security update for the Linux Kernel (Live Patch 17 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1736-1: important: Security update for the Linux Kernel (Live Patch 22 for SUSE Linux Enterprise 15 SP6)
SUSE-SU-2026:1733-1: important: Security update for the Linux Kernel (Live Patch 30 for SUSE Linux Enterprise 15 SP5)
openSUSE-SU-2026:10691-1: moderate: gnutls-3.8.13-1.1 on GA media
openSUSE-SU-2026:10690-1: moderate: cri-tools-1.36.0-1.1 on GA media
openSUSE-SU-2026:10696-1: moderate: nix-2.34.7-1.1 on GA media
openSUSE-SU-2026:10692-1: moderate: grafana-11.6.14+security01-3.1 on GA media
openSUSE-SU-2026:10694-1: moderate: libmariadbd-devel-11.8.6-1.1 on GA media
openSUSE-SU-2026:10695-1: moderate: mutt-2.3.2-1.1 on GA media
openSUSE-SU-2026:10689-1: moderate: chromedriver-148.0.7778.96-1.1 on GA media
openSUSE-SU-2026:10688-1: moderate: cf-cli-8.18.3+git.0.83ce51d9c-1.1 on GA media
openSUSE-SU-2026:10697-1: moderate: traefik-3.6.15-1.1 on GA media

Rocky Linux 904 Published by Philipp Esselbach 0

Rocky Linux administrators need to install multiple security patches right away since these updates fix serious flaws across versions eight through ten. You will find fixes for thunderbird, dovecot, and fence-agents alongside important library upgrades for libsoup and resource-agents. Every single advisory includes a CVSS rating that helps your team prioritize which vulnerabilities demand immediate attention.

RLSA-2026:13902: Important: resource-agents security update
RLSA-2026:13537: Important: thunderbird security update
RLSA-2026:13414: Important: tigervnc security update
RLSA-2026:13830: Important: dovecot security update
RLSA-2026:14087: Moderate: libsoup security update
RLSA-2026:13916: Important: fence-agents security update
RLSA-2026:12285: Important: thunderbird security update
RLSA-2026:13978: Moderate: libsoup security update
RLSA-2026:13857: Important: dovecot security update
RLSA-2026:13917: Important: fence-agents security update

Red Hat 9407 Published by Philipp Esselbach 0

Red Hat has rolled out a batch of security advisories targeting various components across its RHEL ecosystem and specialized services like OpenShift and Satellite. The majority of these patches carry an Important severity rating, though a handful involving libxml2, libpng, and freeipmi are classified as Moderate. Administrators managing different RHEL versions will find updates tailored to specific environments such as SAP Solutions, Telecommunications services, and extended lifecycle support tracks.

RHSA-2026:14673: Important: LibRaw security update
RHSA-2026:14656: Important: python3.12 security update
RHSA-2026:14652: Important: python3.11 security update
RHSA-2026:14929: Important: mingw-libtiff security update
RHSA-2026:14924: Important: openssh security update
RHSA-2026:14112: Important: OpenShift Container Platform 4.13.66 bug fix and security update
RHSA-2026:14925: Important: kernel security update
RHSA-2026:14926: Important: kernel update
RHSA-2026:14836: Important: nginx security update
RHSA-2026:14858: Moderate: libxml2 security update
RHSA-2026:14868: Important: buildah security update
RHSA-2026:14874: Important: Satellite 6.16.8 Async Update
RHSA-2026:14873: Important: Satellite 6.17.8 Async Update
RHSA-2026:14869: Important: kernel-rt security update
RHSA-2026:13885: Important: OpenShift Container Platform 4.17.53 bug fix and security update
RHSA-2026:14823: Important: kernel security update
RHSA-2026:14835: Important: Satellite 6.18.5 Async Update
RHSA-2026:14832: Moderate: libxml2 security update
RHSA-2026:13729: Important: OpenShift Container Platform 4.16.61 bug fix and security update
RHSA-2026:14791: Moderate: libpng security update
RHSA-2026:14819: Moderate: freeipmi security update
RHSA-2026:14659: Important: webkit2gtk3 security update
RHSA-2026:14653: Important: python3.11 security update
RHSA-2026:14655: Important: LibRaw security update
RHSA-2026:14790: Moderate: libpng security update

Oracle Linux 6480 Published by Philipp Esselbach 0

Oracle has rolled out a batch of updates across several Linux releases to patch security holes and resolve system instability. The git-lfs package for version nine was rebuilt using a newer Golang framework to close three separate vulnerabilities. A major kernel refresh for version eight addresses cryptographic flaws, memory handling errors, and storage driver bugs while also updating module signing certificates. Finally, older platforms receive targeted fixes that secure the libsoup library on release eight and patch legacy XML parsing weaknesses in the Perl tools for release seven.

ELSA-2026-14200 Important: Oracle Linux 9 git-lfs security update
ELBA-2026-13577-1 Oracle Linux 8 kernel bug fix update
ELSA-2026-14087 Moderate: Oracle Linux 8 libsoup security update
ELSA-2026-8578 Important: Oracle Linux 7 perl-XML-Parser security update

Fedora Linux 9344 Published by Philipp Esselbach 0

Fedora is rolling out important security patches across versions 42, 43, and 44 to address recent vulnerabilities in widely used packages. The perl-Starman update brings version 0.4018 to all three releases, fixing a header precedence flaw that previously allowed attackers to smuggle malicious HTTP requests through reverse proxies. Meanwhile, Fedora 42 gets a separate OpenSSL upgrade that patches an RSA encryption validation issue tied to CVE-2026-31790.

Fedora 42 Update: perl-Starman-0.4018-1.fc42
Fedora 42 Update: openssl-3.2.6-4.fc42
Fedora 43 Update: perl-Starman-0.4018-1.fc43
Fedora 44 Update: perl-Starman-0.4018-1.fc44

Debian 10895 Published by Philipp Esselbach 0

Debian issued a batch of security advisories and timezone updates for its LTS distributions. The tzdata package now incorporates the 2026b database, which shifts British Columbia to permanent standard time and refreshes its leap second records. Critical patches also addressed multiple vulnerabilities across several applications, ranging from buffer overflows in LibreOffice and integer overflow flaws in lcms2 to severe access control weaknesses in Prosody. Administrators should prioritize upgrading Chromium alongside these other tools since the browser update resolves dozens of critical issues that could allow arbitrary code execution or data leaks.

ELA-1712-1 libdatetime-timezone-perl new timezone database
ELA-1711-1 tzdata new timezone database
[DLA 4570-1] libdatetime-timezone-perl new timezone database
[DLA 4569-1] tzdata new timezone database
[DSA 6252-1] prosody security update
[DSA 6251-1] libreoffice security update
[DSA 6250-1] chromium security update
[DLA 4568-1] lcms2 security update

AlmaLinux 2558 Published by Philipp Esselbach 0

AlmaLinux released a moderate security update for version 8 to fix known issues in the libsoup HTTP library. The patch specifically targets CVE-2026-5119, an exploit that could leak sensitive cookie information while establishing HTTPS tunnels. You should install these refreshed packages right away to keep your systems safe from cleartext data exposure. Full technical reports and download links are available on the official errata website or by joining their community chat for support.

ALSA-2026:14087: libsoup security update (Moderate)
2026-05-07

Debian 10895 Ubuntu 7078 Arch Linux 957 Published by Philipp Esselbach 0

The first Liquorix kernel built around the Linux 7 series swaps standard power saving defaults for aggressive interactivity tweaks that keep desktops feeling snappy under heavy loads. It forces a two millisecond scheduling timeslice, switches to kyber or bfq disk schedulers, and rewrites CPU frequency scaling to stop idling during short bursts of activity. Installing it on Debian or Ubuntu systems takes just one curl command that handles dependencies and drops the new binaries straight into your package manager. Desktop users chasing smoother frame pacing or tighter audio latency will notice the difference immediately, though you should expect slightly higher power draw when the processor refuses to idle.

Software 44352 Published by Philipp Esselbach 0

Node.js 26.1.0 brings an experimental FFI module that allows JavaScript code to load dynamic libraries and invoke native symbols directly, but developers should note this feature requires explicit flags and carries inherent memory safety risks if misused. Core modules also saw meaningful upgrades throughout the release cycle including a fresh randomUUIDv7 function in crypto, cancellation signals for file system operations, and stricter option merging inside http requests. The testing framework gained mock timer support alongside randomized test ordering to help developers catch flaky failures more easily while several internal streams received important leak prevention fixes. Behind the scenes the update ships with refreshed dependencies like OpenSSL 3.5.6 and V8 14.6.202.34 along with various build system tweaks that keep compilation smooth across different operating systems without disrupting existing codebases.

Reviews 52632 Published by Philipp Esselbach 0

Dell returns to its flagship lineup with the XPS 16, offering premium build quality and strong performance at a high cost. PNY tackles the graphics market with a compact RTX 5080 that overclocks NVIDIA's latest chip for impressive 4K gaming without taking up much space. The SteelSeries Aerox 3 Wireless Gen 2 catches attention through its bold magenta aesthetic while maintaining reliable wireless connectivity for daily tasks. Meanwhile, the CPS PcCooler YT1000 provides modern ATX 3.1 stability and efficiency, though buyers should weigh those strengths against some brand pedigree concerns.

Computers: Dell XPS 16 (2026) Review: A flagship return to form
Graphics Cards: PNY GeForce RTX 5080 Slim OC Review - A Compact 4K Powerhouse
Input: SteelSeries Aerox 3 Wireless Gen 2 Review: The Bright and Bold
Power: CPS PcCooler YT1000 ATX 3.1 Power Supply Unit Review

Linux 3353 Published by Philipp Esselbach 0

The latest stable LTS kernel updates tackle a heavy batch of memory safety issues across the networking stack, patching use-after-free races and routing cache bugs that routinely crash systems under load. Storage and filesystem code gets tighter bounds checking to stop out-of-bounds reads on corrupted images while fixing deadlock loops in journaling and RAID stripe handling. Graphics and peripheral drivers finally resolve initialization crashes on RDNA4 hardware, clean up resource leaks during probe failures, and correct audio notification logic that was flooding userspace with false events. Security hardening rounds out the release with stricter crypto digest validation, KVM nested virtualization consistency checks, and relaxed userfaultfd restrictions to keep sandboxed workloads running smoothly.

Linux 3353 Published by Philipp Esselbach 0

The 7.0.4 kernel finally stops AMD RDNA4 graphics cards from tripping over empty memory tables during boot, so you can actually get past a black screen and into your desktop without staring at a kernel oops. Memory management got patched to keep the slab allocator from corrupting itself when non-maskable interrupts sneak in on single-processor systems, while the networking stack finally rejects malformed packet rules that used to trigger undefined behavior and silent crashes. Nested virtualization logic now properly syncs guest state before resuming execution, and filesystem drivers like NTFS3 and ext2 got stricter bounds checking to stop crafted disk images from reading past allocated buffers or triggering panic conditions. It is a solid stability bump that quietly patches the race conditions and buffer overflows most people never notice until their server decides to reboot itself, so just run your updates and get back to actually using your machine.

Software 44352 Published by Philipp Esselbach 0

Mesa 26.1.0 delivers a solid graphics stack update that finally gives Intel virtual machines faster VirtIO-GPU passthrough without the usual emulation overhead. The project officially drops support for VirGL, which means anyone still relying on that legacy translation layer needs to migrate to native Vulkan drivers before the code completely rots. Developers packed in dozens of new Vulkan and OpenGL extensions across AMD, Intel, PowerVR, and ARM hardware to close feature gaps that modern games and productivity apps actually need. The release also patches several driver crashes and enforces stricter build requirements like static C++ linking for Rusticl, so users can expect a noticeably more stable rendering pipeline without chasing experimental gimmicks.

Ubuntu 7078 Published by Philipp Esselbach 0

Ubuntu issued a series of security patches to fix critical flaws across several widely used software packages. The updates target WebKitGTK and Apache HTTP Server, which contain multiple vulnerabilities that could allow remote attackers to execute arbitrary code or crash the systems through malicious web content and network traffic. Additional fixes resolve issues in EditorConfig, Dynaconf, and nghttp2 that previously left these tools vulnerable to local crashes or unsafe template evaluation. System administrators should apply the recommended package updates immediately and restart any dependent applications to fully mitigate the risks across supported Ubuntu releases.

[USN-8237-1] WebKitGTK vulnerabilities
[USN-8238-1] EditorConfig vulnerability
[USN-8231-1] Dynaconf vulnerability
[USN-8239-1] Apache HTTP Server vulnerabilities
[USN-8233-2] nghttp2 vulnerability

SUSE 5640 Published by Philipp Esselbach 0

SUSE issued a comprehensive set of security patches that address numerous vulnerabilities across their Linux distributions. These updates tackle critical flaws in essential software like the Linux kernel live patch, Python three, Java twenty one OpenJDK, and curl, alongside moderate fixes for applications including Thunderbird, Erlang, and OpenSSL three. System administrators can mitigate risks involving privilege escalation, credential exposure, and remote service disruptions by running the provided zypper or YaST commands on their specific SUSE Linux Enterprise or openSUSE Leap installations. Each advisory includes detailed package lists and targeted installation steps to help organizations quickly secure their environments against these newly disclosed threats.

SUSE-SU-2026:1700-1: important: Security update for PackageKit
SUSE-SU-2026:1705-1: important: Security update for java-21-openjdk
openSUSE-SU-2026:10685-1: moderate: libthrift-0_23_0-0.23.0-1.1 on GA media
openSUSE-SU-2026:10683-1: moderate: skim-4.6.1-1.1 on GA media
openSUSE-SU-2026:10682-1: moderate: rclone-1.74.0-1.1 on GA media
openSUSE-SU-2026:10687-1: moderate: MozillaThunderbird-140.10.1-1.1 on GA media
openSUSE-SU-2026:10681-1: moderate: python311-social-auth-core-4.8.7-1.1 on GA media
openSUSE-SU-2026:10678-1: moderate: liblxc-devel-7.0.0-1.1 on GA media
SUSE-SU-2026:1715-1: important: Security update for python3
SUSE-SU-2026:1711-1: moderate: Security update for openssl-3
SUSE-SU-2026:1714-1: important: Security update for erlang
SUSE-SU-2026:1723-1: moderate: Security update for openCryptoki
SUSE-SU-2026:1717-1: important: Security update for curl
SUSE-SU-2026:1718-1: important: Security update for the Linux Kernel (Live Patch 40 for SUSE Linux Enterprise 15 SP4)

Rocky Linux 904 Published by Philipp Esselbach 0

Rocky Linux administrators must install several new security patches that fix vulnerabilities across versions 8 through 10. These updates cover critical software including the kernel, OpenSSH, Grafana, Go toolsets, and corosync while carrying moderate or important severity ratings. You can find detailed CVSS base scores for every listed vulnerability by visiting the official errata links provided in each advisory. Delaying these installations leaves your infrastructure open to known exploits that might disrupt daily operations or expose sensitive information.

RLSA-2026:13673: Moderate: corosync security update
RLSA-2026:13672: Important: fence-agents security update
RLSA-2026:13670: Moderate: python-tornado security update
RLSA-2026:13284: Important: LibRaw security update
RLSA-2026:13657: Moderate: corosync security update
RLSA-2026:13285: Important: libcap security update
RLSA-2026:13383: Important: openssh security update
RLSA-2026:13641: Moderate: python-tornado security update
RLSA-2026:13644: Moderate: corosync security update
RLSA-2026:13566: Important: kernel security update
RLSA-2026:13498: Important: dovecot security update
RLSA-2026:11712: Important: grafana security update
RLSA-2026:13515: Moderate: freeipmi security update
RLSA-2026:11881: Important: grafana-pcp security update
RLSA-2026:10217: Important: golang security update
RLSA-2026:11711: Important: grafana security update
RLSA-2026:13565: Important: kernel security update
RLSA-2026:10219: Important: golang security update
RLSA-2026:11704: Important: grafana-pcp security update
RLSA-2026:13578: Important: kernel-rt security update
RLSA-2026:11507: Important: grafana security update
RLSA-2026:10704: Important: go-toolset:rhel8 security update
RLSA-2026:11514: Important: grafana-pcp security update
RLSA-2026:13577: Important: kernel security update

Red Hat 9407 Published by Philipp Esselbach 0

Red Hat has released a series of security advisories to address critical vulnerabilities across its enterprise software ecosystem. These updates target widely used packages like Firefox, the Linux kernel, and OpenShift Container Platform while covering multiple RHEL versions from seven through ten. Most of the patches carry an Important severity rating, though a few components such as corosync and capstone are classified as Moderate based on their Common Vulnerability Scoring System metrics. Administrators should review the detailed references for each advisory to apply the necessary fixes before those vulnerabilities can be exploited in production environments.

RHSA-2026:13922: Important: firefox security update
RHSA-2026:13917: Important: fence-agents security update
RHSA-2026:13811: Important: OpenShift Container Platform 4.21.14 bug fix and security update
RHSA-2026:13977: Important: firefox security update
RHSA-2026:13936: Important: kernel security update
RHSA-2026:13923: Moderate: capstone security update
RHSA-2026:13916: Important: fence-agents security update
RHSA-2026:14303: Important: thunderbird security update
RHSA-2026:14276: Important: Red Hat AMQ Broker 7.12.7 release and security update
RHSA-2026:14272: Important: Red Hat AMQ Broker 7.13.5 release and security update
RHSA-2026:14230: Important: kernel security update
RHSA-2026:14224: Important: LibRaw security update
RHSA-2026:14213: Moderate: corosync security update
RHSA-2026:14212: Moderate: corosync security update
RHSA-2026:14216: Moderate: corosync security update
RHSA-2026:14214: Moderate: corosync security update
RHSA-2026:14215: Moderate: corosync security update
RHSA-2026:14205: Moderate: corosync security update
RHSA-2026:14200: Important: git-lfs security update
RHSA-2026:14437: Important: sudo security update
RHSA-2026:14339: Important: kernel security update
RHSA-2026:14391: Important: Red Hat build of Cryostat security update
RHSA-2026:13727: Important: OpenShift Container Platform 4.18.40 bug fix and security update
RHSA-2026:14301: Important: kernel-rt security update
RHSA-2026:14228: Important: sudo security update
RHSA-2026:14223: Important: thunderbird security update
RHSA-2026:14210: Moderate: corosync security update
RHSA-2026:14211: Moderate: corosync security update

Oracle Linux 6480 Published by Philipp Esselbach 0

Oracle has pushed out a massive wave of security patches and bug fixes across versions seven through ten of its Linux distribution. These updates tackle serious flaws in core packages like the kernel, OpenSSH, Dovecot, and systemd that could otherwise let attackers escalate privileges or crash systems entirely. System administrators running x86_64 or aarch64 hardware need to apply these changes right away because multiple advisories carry an important severity rating. Beyond the critical fixes, the release also bundles routine stability improvements for everyday tools like Samba, Thunderbird, and cloud-init.

ELSA-2026-13916 Important: Oracle Linux 10 fence-agents security update
ELSA-2026-13651 Moderate: Oracle Linux 10 systemd security update
ELSA-2026-13643 Important: Oracle Linux 10 osbuild-composer security update
ELSA-2026-13642 Important: Oracle Linux 10 image-builder security update
ELSA-2026-13566 Important: Oracle Linux 10 kernel security update
ELSA-2026-13641 Moderate: Oracle Linux 10 python-tornado security update
ELSA-2026-13498 Important: Oracle Linux 10 dovecot security update
ELBA-2026-13648 Oracle Linux 10 util-linux bug fix and enhancement update
ELSA-2026-13380 Important: Oracle Linux 10 openssh security update
ELBA-2026-13653 Oracle Linux 10 samba bug fix and enhancement update
ELBA-2026-13647 Oracle Linux 10 libguestfs bug fix and enhancement update
ELSA-2026-13515 Moderate: Oracle Linux 10 freeipmi security update
ELBA-2026-13652 Oracle Linux 10 libdnf bug fix and enhancement update
ELBA-2026-13646 Oracle Linux 10 virt-v2v bug fix and enhancement update
ELBA-2026-13645 Oracle Linux 10 passt bug fix and enhancement update
ELBA-2026-50252 Oracle Linux 10 oracle-indexhtml bug fix update
ELSA-2026-13857 Important: Oracle Linux 9 dovecot security update
ELSA-2026-13677 Moderate: Oracle Linux 9 systemd security update
ELSA-2026-13978 Moderate: Oracle Linux 9 libsoup security update
ELBA-2026-13678 Oracle Linux 9 samba bug fix and enhancement update
ELSA-2026-13671 Important: Oracle Linux 9 image-builder security update
ELSA-2026-13381 Important: Oracle Linux 9 openssh security update
ELSA-2026-13917 Important: Oracle Linux 9 fence-agents security update
ELSA-2026-13670 Moderate: Oracle Linux 9 python-tornado security update
ELSA-2026-13565 Important: Oracle Linux 9 kernel security update
ELBA-2026-13674 Oracle Linux 9 keylime bug fix and enhancement update
ELSA-2026-13577 Important: Oracle Linux 8 kernel security update
ELSA-2026-13830 Important: Oracle Linux 8 dovecot security update
ELSA-2026-13383 Important: Oracle Linux 8 openssh security update
ELSA-2026-13285 Important: Oracle Linux 8 libcap security update
ELSA-2026-13537 Important: Oracle Linux 8 thunderbird security update
ELSA-2026-13284 Important: Oracle Linux 8 LibRaw security update
ELSA-2026-13414 Important: Oracle Linux 8 tigervnc security update
ELBA-2026-13659 Oracle Linux 8 device-mapper-multipath bug fix and enhancement update
ELBA-2026-13662 Oracle Linux 8 dbus bug fix and enhancement update
ELBA-2026-13660 Oracle Linux 8 rng-tools bug fix and enhancement update
ELBA-2026-13658 Oracle Linux 8 krb5 bug fix and enhancement update
ELBA-2026-13656 Oracle Linux 8 lapack bug fix and enhancement update
ELBA-2026-13655 Oracle Linux 8 ksh bug fix and enhancement update
ELBA-2026-50248 Oracle Linux 8 cloud-init bug fix update
ELSA-2026-9614 Important: Oracle Linux 7 python security update
ELSA-2026-9745 Important: Oracle Linux 7 python3 security update

Fedora Linux 9344 Published by Philipp Esselbach 0

Fedora administrators need to apply a fresh batch of critical security patches for versions 42 through 44 right away. These updates cover essential network utilities and development tools including Kerberos, PowerDNS, Squid, and the official GitHub command line client. Each package closes specific loopholes that could let attackers crash services or run unauthorized code on your machines. You can push all these fixes to your system by running a simple dnf upgrade command in your terminal.

Fedora 43 Update: krb5-1.22.2-4.fc43
Fedora 43 Update: pyOpenSSL-26.1.0-1.fc43
Fedora 43 Update: forgejo-runner-12.7.3-2.fc43
Fedora 43 Update: squid-7.5-1.fc43
Fedora 43 Update: pdns-5.0.4-1.fc43
Fedora 42 Update: pdns-5.0.4-1.fc42
Fedora 42 Update: vim-9.2.390-1.fc42
Fedora 42 Update: xorg-x11-server-Xwayland-24.1.11-1.fc42
Fedora 43 Update: gnutls-3.8.13-1.fc43
Fedora 43 Update: nano-8.5-3.fc43
Fedora 43 Update: dovecot-2.4.3-2.fc43
Fedora 44 Update: gh-2.92.0-1.fc44
Fedora 44 Update: dovecot-2.4.3-2.fc44

Debian 10895 Published by Philipp Esselbach 0

A batch of urgent security updates rolled out covers several widely used tools including OpenJDK Java runtimes, Apache HTTP Server, Wireshark, lrzip, and ImageMagick. These patches fix serious flaws that could let attackers execute arbitrary code, leak private data, crash systems through denial of service attacks, or bypass Kerberos authentication checks. You should upgrade your affected packages right away since Debian has already released stable versions for all supported distributions. Detailed tracking pages and official documentation provide straightforward instructions for applying these critical fixes to your environment.

[DLA 4566-1] openjdk-11 security update
[DLA 4565-1] openjdk-17 security update
ELA-1708-1 openjdk-11 security update
[DSA 6248-1] apache2 security update
[DSA 6249-1] wireshark security update
[DLA 4567-1] lrzip security update
ELA-1710-1 imagemagick security update

AlmaLinux 2558 Published by Philipp Esselbach 0

AlmaLinux distributed a batch of security errata for versions 8 through 10 throughout. The updates address moderate and important vulnerabilities in widely used software including the Linux kernel, Tornado web framework, Dovecot mail server, and several cluster management utilities. These patches fix critical weaknesses that could otherwise allow attackers to launch denial of service attacks, inject cookies, or escalate system privileges. IT administrators should apply these updates immediately to keep their networks secure and prevent potential service disruptions.

ALSA-2026:13670: python-tornado security update (Moderate)
ALSA-2026:13657: corosync security update (Moderate)
ALSA-2026:13902: resource-agents security update (Important)
ALSA-2026:13651: systemd security update (Moderate)
ALSA-2026:3840: image-builder security update (Important)
ALSA-2026:1838: image-builder security update (Moderate)
ALSA-2026:13916: fence-agents security update (Important)
ALSA-2026:13642: image-builder security update (Important)
ALSA-2026:13515: freeipmi security update (Moderate)
ALSA-2026:13641: python-tornado security update (Moderate)
ALSA-2026:13643: osbuild-composer security update (Important)
ALSA-2026:13498: dovecot security update (Important)
ALSA-2026:13565: kernel security update (Important)
ALSA-2026:13566: kernel security update (Important)
ALSA-2026:13917: fence-agents security update (Important)
ALSA-2026:13857: dovecot security update (Important)
ALSA-2026:13978: libsoup security update (Moderate)
ALSA-2026:14200: git-lfs security update (Important)

[ Archive ]