2025-08-15 09:51
2025-08-15 09:51
2024-07-07 07:01
2024-02-07 19:23
2026-07-19 18:49
2026-06-11 07:27
2026-05-02 06:47
2019-11-27 17:19
2019-11-11 09:02
2019-07-21 13:03
Debian and Ubuntu users pulling from DEB.SURY.ORG received a coordinated batch of PHP updates across all active branches, led by PHP 8.4.24 and the development release 8.5.9. The July 30 patch cycle addresses high-severity vulnerabilities including a BCMath out-of-bounds write and a PostgreSQL SQL injection via pg_query(), alongside significant opcache stability fixes for the JIT. This three-week gap from the previous release indicates an emergency response to newly disclosed critical CVEs, prompting SURY to push security-only updates to both current stable and end-of-life approaching branches. Operators should upgrade immediately via apt-get update and verify GPG signatures, though 8.5 users are advised to test carefully due to the heavy changes to the tracing JIT and default OpCache behavior.
HestiaCP 1.10-alpha has landed on the beta apt server, bringing official support for Debian 13 and Ubuntu 26.04 to the open-source control panel. The release also delivers a major behind-the-scenes overhaul with a QEMU-driven build pipeline that finally enables ARM64 packages to compile directly from standard x86-64 hardware. While the installer scripts now recognize the new codenames, the team is clear that this is strictly a testing channel, so you should keep it off production boxes until the final version ships.
Node.js v24.19.0 and v26.6.0 landed on August 3, 2026, delivering security and performance updates to the LTS and Current branches. The v26 release restructures the internal crypto module into three distinct backends and overhauls streams performance with ring buffers and reduced allocations. v24.19.0 LTS gains blockList release candidate status, stable stream.compose, and TLS improvements including certificate compression and negotiated group reporting. The new versions also introduce enhanced test runner logging, FFI event loop awareness, and hardware-accelerated crypto for RISC-V platforms.
NVIDIA has released driver version 610.57.04 for Linux, launching as the first point release in its new R610 feature branch alongside the quietly patched 595.91.07 stable build. The update brings full support for the GeForce RTX 50 series, patches rendering corruption and crashes in over twenty popular titles, and resolves lingering Vulkan semaphore and X11 modeset display bugs. Community feedback highlights a mix of smooth Turing-era driver installations and persistent variable refresh rate friction on Wayland, with synthetic benchmarks still catching up to real-world stability. Users can grab the ~442 MB installer directly from NVIDIA’s servers, where it supports DKMS, RPM, and deb package formats out of the box.
Greg Kroah-Hartman and Sasha Levin delivered stable point updates for three active LTS kernels on August 3, 2026, introducing v6.18.42, v6.12.101, and v6.6.148 to the stable queue. These builds prioritize security and stability, packing critical patches for ksmbd ACL validation, dm-verity buffer overflows, and BPF memory safety issues across all tracks. Driver maintainers focused heavily on reliability, notably converting BUG_ON() calls to WARN_ON() in the AMDGPU subsystem from gfx8 to gfx12 and backporting a major 1,900-line refactor of the DRM buddy allocator. With the mainline kernel advancing toward v7.2-rc6, these updates ensure existing LTS deployments continue receiving vital fixes well past December 2027.
Neowin reports that the GEEKOM IT13 Max mini PC handles everyday computing tasks efficiently thanks to its $735 price point, 24GB of DDR5 memory, and extensive port selection. Hardware Busters highlights the Cooler Master V8 ACE 3DHP as a renewed take on the brand's classic cooling line, featuring a hybrid thermal architecture designed for improved heat dissipation. Club386 notes that the iiyama G-Master GOB2701QSC-B1 delivers strong OLED gaming performance with a tandem panel design that keeps costs reasonable for gamers. IgorsLAB finds that the Creality K2 Pro Combo produces large multi-material prints successfully, though users may notice minor ghosting artifacts and inconsistent chamber heating during operation.
Computers: GEEKOM IT13 Max mini PC review: Tricked out with 24GB of DDR5 memory at just $735
Cooling: Cooler Master V8 ACE 3DHP CPU Cooler Review
Displays: iiyama G-Master GOB2701QSC-B1 review: excellent OLED gaming at an appealing price
Printers: Creality K2 Pro Combo review: 3D printer with 300 mm
openSUSE-SU-2026:21508-1: important: Security update for webkit2gtk3
openSUSE-SU-2026:21509-1: moderate: Security update for warewulf4
openSUSE-SU-2026:11419-1: moderate: python313-GitPython-3.1.56-1.1 on GA media
openSUSE-SU-2026:11422-1: moderate: python313-huggingface-hub-1.26.0-1.1 on GA media
openSUSE-SU-2026:11418-1: moderate: php8-8.5.9-1.1 on GA media
openSUSE-SU-2026:11420-1: moderate: python313-asteval-1.0.9-1.1 on GA media
openSUSE-SU-2026:11417-1: moderate: libntpc1-1.2.5-1.1 on GA media
openSUSE-SU-2026:11421-1: moderate: python313-certifi-2026.7.22-1.1 on GA media
openSUSE-SU-2026:11416-1: moderate: gdk-pixbuf-loader-libheif-1.23.1-1.1 on GA media
openSUSE-SU-2026:11415-1: moderate: gio-branding-upstream-2.88.3-1.1 on GA media
RHSA-2026:49523: Important: perl-Archive-Tar security update
RHSA-2026:49525: Important: perl-Archive-Tar security update
RHSA-2026:49514: Important: perl-DBI security update
RHSA-2026:49524: Important: perl-Archive-Tar security update
RHSA-2026:49513: Important: dovecot security update
RHSA-2026:49519: Important: tigervnc security update
RHSA-2026:49508: Important: gstreamer1-plugins-good security update
RHSA-2026:49509: Important: rhc security update
RHSA-2026:49512: Important: mingw-glib2 security update
Fedora 43 Update: goaccess-1.11-1.fc43
Fedora 43 Update: nsd-4.15.0-1.fc43
Fedora 44 Update: borgbackup-1.4.5-1.fc44
Fedora 44 Update: goaccess-1.11-1.fc44
[SECURITY] [DLA 4715-1] kissfft security update
[SECURITY] [DSA 6410-1] libssh security update
ALSA-2026:49214: kernel security update (Important)
ALSA-2026:49213: kernel-rt security update (Important)
ALSA-2026:37282: unbound security update (Important)
ALSA-2026:41899: .NET 9.0 security, bug fix, and enhancement update (Important)
ALSA-2026:47736: fence-agents security update (Important)
ALSA-2026:41901: .NET 8.0 security, bug fix, and enhancement update (Important)
ALSA-2026:41900: .NET 10.0 security, bug fix, and enhancement update (Important)
ALSA-2026:48225: perl:5.32 security update (Important)
ALBA-2026:47115: coreutils bug fix and enhancement update (None)
ALSA-2026:48021: python-pillow security update (Important)
ALSA-2026:48790: osbuild-composer security update (Important)
ALSA-2026:47017: kernel security, bug fix, and enhancement update (Important)
This week brought a massive wave of Linux security advisories with critical patches targeting the Linux kernel, glibc, OpenSSH, Node.js, and OpenSSL. Debian, Red Hat, Fedora, and Ubuntu alone pushed dozens of updates for infrastructure staples like Samba, Unbound, and Chromium, while Qubes OS addressed four specific Xen vulnerabilities that could allow malicious VMs to escape isolation. Beyond the standard patching cycle, Ubuntu rolled out specialized cloud kernel updates for Azure, AWS, and Oracle environments. With nearly identical CVEs surfacing across multiple distros, system administrators should prioritize OpenSSH, glibc, Node.js, and Chromium first, then plan dedicated maintenance windows to handle the heavy restart volume without breaking production.
openSUSE-SU-2026:11411-1: moderate: dnsdist-2.0.7-1.1 on GA media
openSUSE-SU-2026:11408-1: moderate: libblkid-devel-2.42.2-1.1 on GA media
openSUSE-SU-2026:11406-1: moderate: PackageKit-1.3.6-1.1 on GA media
openSUSE-SU-2026:11404-1: moderate: warewulf4-4.7.0-4.1 on GA media
openSUSE-SU-2026:11405-1: moderate: ImageMagick-7.1.2.28-1.1 on GA media
openSUSE-SU-2026:0272-1: Security update for keybase-client
openSUSE-SU-2026:0271-1: important: Security update for chromium
RLSA-2026:49211: Important: kernel security, bug fix, and enhancement update
RLSA-2026:49212: Important: kernel security update
ELBA-2026-46513 Oracle Linux 9 openssl bug fix and enhancement update
ELBA-2026-500111 Oracle Linux 9 xfsprogs bug fix update
ELBA-2026-500113 xfsprogs bug fix update
ELBA-2026-500112 Oracle Linux 9 xfsprogs bug fix update
ELSA-2026-47040 Important: Oracle Linux 9 kernel security, bug fix, and enhancement update
ELSA-2026-42899 Important: Oracle Linux 10 java-25-openjdk security update
ELSA-2026-47755 Moderate: Oracle Linux 8 openssh security update
ELSA-2026-35841 Important: Oracle Linux 10 nodejs24 security, bug fix, and enhancement update
ELSA-2026-47011 Important: Oracle Linux 8 kernel security update
ELSA-2026-47017 Important: Oracle Linux 10 kernel security, bug fix, and enhancement update
Fedora 43 Update: rust-libgit2-sys-0.18.7-1.fc43
Fedora 43 Update: libgit2-1.9.6-1.fc43
Fedora 43 Update: nextcloud-34.0.2-1.fc43
Fedora 43 Update: exim-4.99.5-1.fc43
Fedora 43 Update: GitPython-3.1.55-1.fc43
Fedora 43 Update: lemonldap-ng-2.23.2-1.fc43
Fedora 43 Update: postgresql16-16.14-1.fc43
Fedora 43 Update: coturn-4.15.0-1.fc43
Fedora 44 Update: curl-8.18.0-8.fc44
Fedora 44 Update: gh-2.97.0-2.fc44
Fedora 44 Update: xen-4.21.2-1.fc44
Fedora 44 Update: lemonldap-ng-2.23.2-1.fc44
Fedora 44 Update: coturn-4.15.0-1.fc44
[DLA 4712-1] node-tar security update
[DLA 4711-1] starlette security update
[DSA 6409-1] libgd2 security update
[DLA 4710-1] chromium security update
[DLA 4713-1] sslh security update
[DLA 4714-1] libmodbus security update
ALSA-2026:47040: kernel security, bug fix, and enhancement update (Important)
[ Archive ]