Product
Last Report

Click here to browse the Windows compatibility database

RTL-8851be
1 report Realtec
Anonymous
2026-07-19 18:49
P8Z77-V
1 report ASUS
Anonymous
2026-06-11 07:27
Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-08-02 00:37 | Last update:



2026-08-01

Fedora Linux 9438 Published by Philipp Esselbach 0

The Fedora Respins SIG released new bootable images on July 31 that bundle every package, kernel patch, and security fix since the April 28 base launch. Community packagers built these x86_64-only hybrid ISOs using automated pipelines, and they support both BIOS and UEFI systems without requiring manual system upgrades. Downloadable flavors range from GNOME Workstation at 2.7 GB down to the lightweight SOAS spin at 2.2 GB, giving users a faster alternative to running extended update cycles. The underlying Fedora 44 release also introduces GNOME 50, KDE Plasma 6.6 with an updated setup flow, default NTsync support for Wine and Steam, and MariaDB 11.8 as the new database standard.

Arch Linux 985 Published by Philipp Esselbach 0

Arch Linux released its archlinux-2026.08.01 ISO, a 1.5 GB x86_64 build shipping kernel 7.1.5 and approximately 16,031 packages across core, extra, and multilib repositories. Project lead Levente Polyák ("anthraxx") continues his second term following a June re-election, overseeing a year of aggressive upstream integration that includes switching iptables to nftables, adopting open NVIDIA kernel modules, and renaming Varnish to Vinyl Cache.

KDE 1757 Published by Philipp Esselbach 0

KDE's upcoming Plasma 6.8 release delivers a major overhaul of the KWin compositor that eliminates unnecessary frame copying between graphics chips, boosting eGPU performance by over 100 percent in demanding titles like Cyberpunk 2077. The update pairs this technical breakthrough with practical daily tweaks, including a resizable emoji selector, pixel-perfect monitor layout controls, and Spectacle's new ability to auto-detect QR codes in screenshots. While the performance gains currently apply strictly to Wayland-native applications, the patch resolves long-standing bottlenecks for Linux gamers and workstation users running dual GPU setups. Additional improvements in this development cycle include a modernized backup widget UI, a panel scripting API expansion, and several targeted bug fixes rolling out across Plasma 6.6.7, 6.7.4, and Frameworks 6.29.

Reviews 52705 Published by Philipp Esselbach 0

The Montech TG3 mid-tower case delivers solid value for entry-level and mid-range builders through its included ARGB lighting, BTF compatibility, and roomy ATX layout. Gamdias packages a surprisingly capable 120 millimeter fan in the Notus M1-1201, delivering precise RPM adjustment and a favorable performance-to-noise ratio at a budget price point. Independent testing shows AMD's Radeon RX 9050 trails Nvidia's GeForce RTX 5050 by up to twenty-seven percent in standard rendering tasks and falls even further behind when handling ray tracing workloads. The Fossibot F7200 targets heavy-duty users who need a seven-thousand-two-hundred watt portable power station capable of storing over five thousand two hundred watt-hours for sustained energy output.

Casing: Montech TG3 Mid-Tower Chassis Review
Cooling: Gamdias Notus M1-1201 120 mm Fan Review
Graphics Cards: Radeon RX 9050 review paints AMD's new GPU as up to 27% slower than GeForce RTX 5050
Power: Fossibot F7200 (7200W 5222.4Wh) power station

Software 44644 Published by Philipp Esselbach 0

Shelly v3.0.1+1 landed on August 1, 2026, as maintainer ZoeyErinBauer pushed a rapid hotfix to address regressions surfacing just two days after the v3.0.1 stabilization update. The patch contains 58 commits across 77 files to fix AppImage handling, close a use-after-free bug in the Flatpak backend, and polish the native Zig CLI. Early adopters on CachyOS and other Arch-based distributions have already flagged issues with tray icons and locale persistence, driving the team's aggressive iteration cycle. 

Linux 3398 Published by Philipp Esselbach 0

4MLinux 52.0 STABLE has officially launched, delivering kernel 6.18.38, Python 3.14.3, and PHP 8.5.4 into an ultra-lightweight live environment that boots on just 200 megabytes of RAM. Developer Karol Babinski packed the distro with modern essentials like Firefox 153.0, LibreOffice 26.2.5, and a built-in HTTP/FTP server, all accessible through a modular library of over 250 downloadable add-ons. The release specifically improves legacy GPU compatibility and streamlines wireless configuration, making it a sharp upgrade for IT professionals and privacy-conscious users alike. You can grab the ISO directly from 4mlinux.com or pull it straight from SourceForge, with drivers and development packages also available online.

Ubuntu 7172 Published by Philipp Esselbach 0

Ubuntu released security notices USN-8620-4 and USN-8620-3 to patch multiple kernel flaws in the linux-intel-iotg and linux-intel-iot-realtime packages for Ubuntu 20.04 and 22.04 LTS systems. The advisories explicitly highlight an NTFS file system parsing flaw that enables out-of-bounds memory reads, alongside two AMD processor vulnerabilities involving speculative execution data leaks and operation cache isolation failures that could allow privilege escalation. Beyond these highlighted flaws, the updated kernels address hundreds of additional CVEs spanning networking stacks, storage drivers, cryptographic libraries, GPU and USB subsystems, and various hardware interfaces across ARM, x86, MIPS, PowerPC, and S390 architectures. Administrators must apply the package updates through their standard system upgrade tools, reboot their machines to activate the changes, and rebuild any third-party kernel modules due to an unavoidable ABI version shift.

[USN-8620-4] Linux kernel (Intel IoTG) vulnerabilities
[USN-8620-3] Linux kernel (Intel IoTG) vulnerabilities

SUSE 5725 Published by Philipp Esselbach 0

SUSE published a wave of security advisories that address critical and moderate vulnerabilities across openSUSE and SLE distributions. The patches protect widely deployed tools including OpenSSH, BIND, Tomcat 11, OpenVPN, Google Guest Agent, and several Python libraries like NLTK and sqlparse. System administrators should apply these updates right away to block known exploits targeting network services, web frameworks, and image rendering components. Installing the fixes now maintains infrastructure stability and shuts down security gaps before threat actors can weaponize them.

openSUSE-SU-2026:21500-1: important: Security update for yq
openSUSE-SU-2026:21489-1: important: Security update for bind
openSUSE-SU-2026:21496-1: moderate: Security update for perl-Mojolicious
openSUSE-SU-2026:21482-1: important: Security update for ignition
openSUSE-SU-2026:21490-1: important: Security update for tomcat11
openSUSE-SU-2026:21485-1: important: Security update for valkey
openSUSE-SU-2026:21488-1: important: Security update for openvpn
openSUSE-SU-2026:21483-1: important: Security update for govulncheck-vulndb
openSUSE-SU-2026:21477-1: important: Security update for openssh
openSUSE-SU-2026:21476-1: important: Security update for google-guest-agent
openSUSE-SU-2026:21479-1: important: Security update for libpng16
openSUSE-SU-2026:11400-1: moderate: tomcat10-10.1.57-1.1 on GA media
openSUSE-SU-2026:11399-1: moderate: tomcat-9.0.120-1.1 on GA media
openSUSE-SU-2026:11403-1: moderate: traefik2-2.11.53-1.1 on GA media
openSUSE-SU-2026:0267-1: moderate: Security update for nano
openSUSE-SU-2026:0268-1: moderate: Security update for kronosnet
SUSE-SU-2026:3434-1: moderate: Security update for python-sqlparse
SUSE-SU-2026:3435-1: moderate: Security update for python-sqlparse
openSUSE-SU-2026:0269-1: important: Security update for python-nltk

Rocky Linux 969 Published by Philipp Esselbach 0

Rocky Linux administrators should apply the latest important security patches released under RLSA-2026 to address multiple vulnerabilities across their systems. The update package covers java-25-openjdk on version 9, along with nodejs24, nodejs22, fence-agents, vim, and osbuild-composer distributed for versions 8 and 10. Each identified flaw includes a Common Vulnerability Scoring System rating to help teams prioritize remediation efforts based on severity. Users can review the full advisory details and track progress through the official Rocky Linux errata portal.

RLSA-2026:42899: Important: java-25-openjdk security update
RLSA-2026:48034: Important: nodejs24 security update
RLSA-2026:48585: Important: fence-agents security update
RLSA-2026:48033: Important: nodejs22 security update
RLSA-2026:48703: Important: vim security update
RLSA-2026:48650: Important: vim security update
RLSA-2026:48790: Important: osbuild-composer security update

Red Hat 9476 Published by Philipp Esselbach 0

Red Hat has published a series of security advisories addressing vulnerabilities across multiple enterprise Linux components. The updates target core packages including the kernel, vim, python-pillow, libsolv, abrt, fence-agents, and OpenShift Container Platform alongside several specialized variants like osbuild-composer and freeipmi.

RHSA-2026:48815: Moderate: libsolv security update
RHSA-2026:48703: Important: vim security update
RHSA-2026:48760: Important: python-pillow security update
RHSA-2026:49031: Important: kernel security, bug fix, and enhancement update
RHSA-2026:48864: Important: abrt security update
RHSA-2026:48585: Important: fence-agents security update
RHSA-2026:43225: Important: OpenShift Container Platform 4.15.67 packages and security update
RHSA-2026:49030: Moderate: kernel security update
RHSA-2026:49032: Important: kernel security update
RHSA-2026:49033: Important: kernel security update
RHSA-2026:48386: Important: kernel security update
RHSA-2026:49214: Important: kernel security update
RHSA-2026:49213: Important: kernel-rt security update
RHSA-2026:48866: Important: abrt security update
RHSA-2026:48826: Moderate: freeipmi security update
RHSA-2026:48819: Important: abrt security update
RHSA-2026:48818: Moderate: libsolv security update
RHSA-2026:48865: Important: abrt security update
RHSA-2026:48814: Moderate: libsolv security update
RHSA-2026:49212: Important: kernel security update
RHSA-2026:49211: Important: kernel security, bug fix, and enhancement update
RHSA-2026:48817: Moderate: libsolv security update
RHSA-2026:48816: Moderate: libsolv security update
RHSA-2026:48811: Moderate: libsolv security update
RHSA-2026:48813: Moderate: libsolv security update
RHSA-2026:48650: Important: vim security update
RHSA-2026:48790: Important: osbuild-composer security update
RHSA-2026:48759: Important: python-pillow security update
RHSA-2026:43252: Important: OpenShift Container Platform 4.14.70 bug fix and security update
RHSA-2026:43226: Important: OpenShift Container Platform 4.15.67 bug fix and security update

Oracle Linux 6524 Published by Philipp Esselbach 0

Oracle Linux has released a batch of patches spanning versions 7 through 10 that address security vulnerabilities and resolve functional issues across multiple system components. Administrators can apply the glibc improvements instantly using Ksplice under ELSA-2026-42952, while other high-priority advisories target openssh, kernel, openssl, and firefox for Oracle Linux 8, 9, and 10. The update list also includes moderate patches for libgcrypt and glibc, along with bug fix releases for samba, coreutils, and the Unbreakable Enterprise kernel on Oracle Linux 8 and 9 systems. Package-level changes cover nodejs:22, nodejs:24, gstreamer1-plugins-bad-free, pipewire, and grafana, ensuring that developers and operations teams have access to the latest stable builds and security hardening across all supported releases.

New glibc updates available via Ksplice (ELSA-2026-42952)
ELSA-2026-47757 Important: Oracle Linux 10 openssh security update
ELSA-2026-47180 Important: Oracle Linux 10 gstreamer1-plugins-bad-free security update
ELSA-2026-47083 Important: Oracle Linux 10 pipewire security update
ELSA-2026-47085 Important: Oracle Linux 10 rest security update
ELSA-2026-47079 Important: Oracle Linux 10 libXfont2 security update
ELBA-2026-500051 Oracle Linux 8 oVirt 4.5 vdsm-jsonrpc-java bug fix update
ELSA-2026-47177 Important: Oracle Linux 8 yelp security update
ELSA-2026-47058 Important: Oracle Linux 9 nodejs:22 security update
ELSA-2026-47057 Important: Oracle Linux 9 nodejs:24 security update
ELSA-2026-47736 Important: Oracle Linux 8 fence-agents security update
ELSA-2026-47731 Important: Oracle Linux 8 gstreamer1-plugins-bad-free security update
ELSA-2026-47184 Important: Oracle Linux 8 libtiff security update
ELSA-2026-47183 Important: Oracle Linux 8 compat-libtiff3 security update
ELSA-2026-47117 Moderate: Oracle Linux 8 libgcrypt security update
ELSA-2026-47105 Important: Oracle Linux 8 firefox security update
ELSA-2026-47103 Important: Oracle Linux 8 libXfont2 security update
ELBA-2026-47122 Oracle Linux 8 samba bug fix and enhancement update
ELBA-2026-47115 Oracle Linux 8 coreutils bug fix and enhancement update
ELSA-2026-48703 Important: Oracle Linux 8 vim security update
ELSA-2026-48021 Important: Oracle Linux 8 python-pillow security update
ELSA-2026-46532 Important: Oracle Linux 8 dovecot security update
ELSA-2026-46990 Important: Oracle Linux 8 sssd security, bug fix, and enhancement update
ELSA-2026-46391 Important: Oracle Linux 8 grafana security, bug fix, and enhancement update
ELSA-2026-45115 Important: Oracle Linux 8 kernel security update
ELSA-2026-42733 Moderate: Oracle Linux 8 glibc security update
ELSA-2026-48585 Important: Oracle Linux 10 fence-agents security update
ELSA-2026-45114 Important: Oracle Linux 10 kernel security update
ELSA-2026-48650 Important: Oracle Linux 10 vim security update
ELSA-2026-36199 Important: Oracle Linux 10 buildah security update
ELSA-2026-25237 Important: Oracle Linux 10 openssl security update
ELSA-2026-21557 Important: Oracle Linux 10 kernel security update
ELBA-2026-46512 Oracle Linux 10 openssl bug fix and enhancement update
ELSA-2026-26168 Important: Oracle Linux 7 gimp security update
ELSA-2026-22146 Important: Oracle Linux 7 PackageKit security update
ELBA-2026-500093 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update
ELBA-2026-500092 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update
ELBA-2026-500093 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELBA-2026-500092 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELSA-2026-47982 Important: Oracle Linux 9 vim security update
ELSA-2026-47179 Important: Oracle Linux 9 gstreamer1-plugins-bad-free security update
ELSA-2026-47084 Important: Oracle Linux 9 libXfont2 security update
ELSA-2026-47178 Important: Oracle Linux 9 yelp security update
ELSA-2026-47104 Important: Oracle Linux 9 firefox security update
ELBA-2026-500093 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELBA-2026-500092 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELSA-2026-45192 Important: Oracle Linux 9 kernel security, bug fix, and enhancement update

Fedora Linux 9438 Published by Philipp Esselbach 0

Fedora 44 administrators can now apply a batch of security patches, covering seven major system packages. The updates address critical vulnerabilities across fuse-overlayfs, Python 3.12, PHP 8.5.9, Nextcloud 34.0.2, Exim 4.99.5, PostgreSQL 16.14, and RabbitMQ Server 4.2.9 by patching privilege escalation risks, arbitrary code execution flaws, SQL injection vectors, and cross-site scripting issues. System operators can install the corrected versions through the dnf package manager using their respective advisory identifiers. These patches prevent potential system compromise and keep containerized environments, web servers, and database services running securely on Fedora 44.

Fedora 44 Update: fuse-overlayfs-1.17-1.fc44
Fedora 44 Update: python3.12-3.12.13-6.fc44
Fedora 44 Update: php-8.5.9-1.fc44
Fedora 44 Update: nextcloud-34.0.2-1.fc44
Fedora 44 Update: exim-4.99.5-1.fc44
Fedora 44 Update: postgresql16-16.14-1.fc44
Fedora 44 Update: rabbitmq-server-4.2.9-2.fc44

Debian 11018 Published by Philipp Esselbach 0

Debian administrators received a coordinated batch of security advisories, covering python-authlib, the Linux kernel, Chromium, Poppler, Incus, and PHP 8.4. The released patches resolve dozens of CVEs that could let remote attackers execute arbitrary code, bypass authentication checks, forge digital signatures, trigger denial-of-service crashes, or extract sensitive data through crafted file inputs. Operators need to upgrade their systems immediately to the specific Debian bullseye, bookworm, and trixie package versions listed in each advisory to close these vulnerabilities. Full vulnerability details and ongoing status tracking remain available on the official Debian security tracker for every affected component.

[DLA 4708-1] python-authlib security update
[DSA 6405-1] linux security update
[DSA 6408-1] chromium security update
[DLA 4709-1] poppler security update
[DSA 6407-1] incus security update
[DSA 6406-1] php8.4 security update

AlmaLinux 2617 Published by Philipp Esselbach 0

AlmaLinux distributed a batch of security errata, targeting both the AlmaLinux 9 and AlmaLinux 10 distributions. The patches address dozens of known vulnerabilities across core system components including unbound DNS resolver, .NET versions 8 through 10, the Linux kernel, OpenSSH client and server, Vim editor, PipeWire, fence-agents, and qemu-kvm. Attack vectors covered by these fixes span memory corruption flaws, denial-of-service conditions, privilege escalation paths, arbitrary code execution risks via crafted files, and sandbox escape techniques in multimedia services.

ALSA-2026:36320: unbound security update (Important)
ALSA-2026:41897: .NET 10.0 security, bug fix, and enhancement update (Important)
ALSA-2026:41895: .NET 9.0 security, bug fix, and enhancement update (Important)
ALSA-2026:45192: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:36777: unbound security update (Important)
ALSA-2026:41898: .NET 10.0 security, bug fix, and enhancement update (Important)
ALSA-2026:39311: qemu-kvm security update (Low)
ALSA-2026:41896: .NET 9.0 security, bug fix, and enhancement update (Important)
ALSA-2026:41894: .NET 8.0 security, bug fix, and enhancement update (Important)
ALSA-2026:47756: openssh security update (Important)
ALSA-2026:41893: .NET 8.0 security, bug fix, and enhancement update (Important)
ALSA-2026:47982: vim security update (Important)
ALSA-2026:48585: fence-agents security update (Important)
ALSA-2026:47083: pipewire security update (Important)
ALSA-2026:45114: kernel security update (Important)
2026-07-31

Arch Linux 985 Published by Philipp Esselbach 0

Arch Linux disabled package adoption on the Arch User Repository on July 30 following a third sustained wave of malicious takeovers dubbed "Atomic Arch." The campaign began in late May when attackers started adopting orphaned packages and embedding compiled ELF binaries directly into build scripts, effectively bypassing the npm and JavaScript-based detection methods that caught the earlier waves. Despite Arch developers declaring the repository clean in mid-June after purging more than 1,900 compromised packages, the threat quickly escalated with obfuscated downloaders and static payloads that execute during the makepkg build phase. The ongoing crisis has exposed the fundamental tension between an open, community-maintained repository and supply-chain security, leaving adoption temporarily frozen while the ecosystem develops more robust trust and detection mechanisms.

MaboxLinux 31 Published by Philipp Esselbach 0

Mabox Linux 26.07 is delivering a downstream patch to tint2 that resolves system-tray freezes triggered by Steam, Lutris, and other X11 status icon applications. The release also upgrades the default FSearch utility to version 0.3, introducing real-time inotify-based filesystem monitoring and per-folder indexing schedules. Under the hood, the ISO inherits Manjaro Stable updates that bring new Mesa drivers, VirtualBox, and System76's COSMIC 1.2 session into an Openbox-focused environment. Available in both Linux 6.18 LTS and 6.6 LTS variants, the build continues the project's monthly cadence for efficiency-driven desktop users.

Software 44644 Published by Philipp Esselbach 0

Devolutions just dropped UniGetUI v2026.2.7, a maintenance patch arriving just two days after the previous update to keep pace with the project's weekly release cadence. The refresh brings configurable environment variable syntax for install paths, clickable operation cards that open live logs directly, and the return of the desktop shortcut prompt that went missing in an earlier release. Developers also squashed a text input bug blocking immersive dialogs during multi-step wizards and rolled out several localization fixes following the recent WinUI-to-Avalonia migration. You can grab the ~27 MB portable build via winget install marticliment.UniGetUI or pull it directly from the GitHub releases page.

Software 44644 Published by Philipp Esselbach 0

pgAdmin 4 v9.17 dropped on July 30, 2026, addressing seven security vulnerabilities including critical command injection and credential cloning flaws, with three stemming from incomplete patches in the previous release. The update introduces four practical enhancements, led by a new row count cap for the View Data action that helps prevent accidental full-table scans on large databases. Under the hood, the application upgrades to Electron 43.1.1, pins Yarn to 4.15.0, and implements stricter supply chain hardening across the macOS build process and GitHub Actions. Operators running server mode, especially those using shared servers or external authentication, should apply the patch immediately.

Debian 11018 Ubuntu 7172 Arch Linux 985 Published by Philipp Esselbach 0

Liquorix linux-liquorix 7.1-7 released on July 31, 2026, bringing a single focused packaging change: stripping out the irqbalance recommendation and disabling the service during installation. The kernel remains based on Linux 7.1.5, continuing a rapid 18-day sprint that has produced seven releases as the project aggressively converges scheduler logic with upstream mainline. Available now for Debian and Ubuntu on amd64, the update is the latest step in an enthusiast kernel built specifically for interactive responsiveness and gaming workloads over background automation.

KDE 1757 Published by Philipp Esselbach 0

KDE neon has released its latest build, dated 20260730-0522, continuing to deliver rolling KDE software straight from upstream on a stable Ubuntu 24.04 LTS base. The distribution maintains multiple edition tracks, including stable, testing, unstable, and developer variants, while officially supporting only Intel and AMD graphics with open-source drivers.

Reviews 52705 Published by Philipp Esselbach 0

The ASUS Zenbook A16 uses a Snapdragon X2 Elite processor and a 16-inch 3K OLED panel to deliver lightweight performance for mobile professionals. Minisforum builds the MS-02 Ultra as a compact desktop station featuring a 285HX chip, 25-Gigabit networking ports, and plenty of internal expansion slots. Noctua NL-LC1-24 AIO coolers beat top air designs by six degrees Celsius under heavy workloads while operating significantly quieter at the same time. ASUS ROG Strix X870E-A Gaming WiFi7 Neo boards pair solid thermal management with a bright aesthetic to support next-generation AMD processors for custom desktops.

Computers: ASUS Zenbook A16 (UX3607OA) Review - Snapdragon Laptops are Getting Better and Better, Minisforum MS-02 Ultra Test: Workstation Mini-PC with 285HX
Cooling: Noctua NL-LC1-24 Review
Motherboards: ASUS ROG Strix X870E-A Gaming WiFI7 Neo Review - A New Enticing Option

Software 44644 Published by Philipp Esselbach 0

Ungoogled Chromium 151.0.7922.71-1 has been released, delivering the exact same rendering engine and 370 upstream security fixes as Google's latest Stable channel release. The build gutters every Google service integration at compile time, including telemetry, Safe Browsing, and AI features, while replacing the default domain routing with a private pseudo-TLD. Linux users can grab the archive straight from the project's CI artifacts today, though Windows and macOS builds will lag slightly behind for the upcoming .72 patch. A growing Speedometer benchmark gap suggests the patch layer still carries noticeable overhead, but the privacy baseline keeps drawing a steady crowd to the repository.

Fedora Linux 9438 Published by Philipp Esselbach 0

PHP's July 30 security release fixes three CVEs, including a SQL injection in PostgreSQL extensions and a stack overflow in Phar archives. Remi Collet published corresponding RPM packages for Fedora ≥42 and Enterprise Linux ≥8 on July 31, covering PHP 8.5.9, 8.4.24, 8.3.33, and 8.2.33. The updates are available via remi-modular repository or as parallel Software Collections installations. PHP 8.1 has reached end-of-life, so users should upgrade to at least 8.2.33 immediately.

Ubuntu 7172 Published by Philipp Esselbach 0

Ubuntu published security notices covering four separate vulnerabilities across its long-term support releases. Ruby-sinatra requires an update to block remote denial of service attacks caused by malformed header parsing. Desktop environments need patches for a libinput privilege escalation flaw, while older Python installations must address resource exhaustion and HTML parser crashes. The OpenSSL update resolves the HollowByte memory allocation bug that enables network-based denial of service attacks, though Ubuntu 22.04 and newer users must reboot their machines to apply the changes.

[USN-8624-1] Sinatra vulnerability
[USN-8602-1] libinput vulnerability
[USN-8614-1] Python vulnerabilities
[USN-8625-1] OpenSSL vulnerability

SUSE 5725 Published by Philipp Esselbach 0

SUSE issued multiple security advisories, patching vulnerabilities across a wide range of software including Python libraries, Kubernetes components, Apache Tomcat, OpenJDK 25, and graphics tools like ImageMagick. The updates span low to important severity levels, with notable fixes targeting the Xen hypervisor, Apptainer container tool, and cryptographic libraries such as liboqs and s2n to address known exploits. Infrastructure teams managing SUSE Linux Enterprise or openSUSE distributions need to apply these patches immediately to maintain secure operations across their systems. The release also covers routine maintenance for container utilities like Helm and Kubevirt, alongside web frameworks and media encoders, ensuring broader platform hardening across all supported releases.

SUSE-SU-2026:3424-1: low: Security update for python3-pyOpenSSL
SUSE-SU-2026:3425-1: important: Security update for python-urwid
SUSE-SU-2026:3429-1: moderate: Security update for libarchive
SUSE-SU-2026:3430-1: important: Security update for tomcat11
openSUSE-SU-2026:21473-1: important: Security update for apptainer
openSUSE-SU-2026:21471-1: low: Security update for keybase-client
openSUSE-SU-2026:21474-1: moderate: Security update for s2n
openSUSE-SU-2026:21468-1: low: Security update for GraphicsMagick
openSUSE-SU-2026:21467-1: important: Security update for java-25-openjdk
openSUSE-SU-2026:21459-1: important: Security update for python313, python3
openSUSE-SU-2026:11393-1: moderate: logcli-3.7.4-1.1 on GA media
openSUSE-SU-2026:11392-1: moderate: kubevirt1.8-container-disk-1.8.4-3.1 on GA media
openSUSE-SU-2026:11384-1: moderate: ffmpeg-7-7.1.5-1.1 on GA media
openSUSE-SU-2026:11389-1: moderate: kubernetes1.34-apiserver-1.34.10-1.1 on GA media
openSUSE-SU-2026:11391-1: moderate: kubernetes1.36-apiserver-1.36.3-1.1 on GA media
openSUSE-SU-2026:11390-1: moderate: kubernetes1.35-apiserver-1.35.7-1.1 on GA media
openSUSE-SU-2026:11386-1: moderate: helm-4.2.3-4.1 on GA media
openSUSE-SU-2026:11385-1: moderate: freerdp-3.30.0-1.1 on GA media
SUSE-SU-2026:3413-1: moderate: Security update for ImageMagick
SUSE-SU-2026:3415-1: important: Security update for perl-DBI
SUSE-SU-2026:3417-1: important: Security update for apptainer
SUSE-SU-2026:3420-1: important: Security update for liboqs, oqs-provider
SUSE-SU-2026:3422-1: important: Security update for python-sh
SUSE-SU-2026:3423-1: important: Security update for xen

Rocky Linux 969 Published by Philipp Esselbach 0

Rocky Linux has issued multiple security advisories affecting kernel, OpenSSH, Perl, Firefox, nodejs-nodemon, vim, fence-agents, python-pillow, and firewalld across versions 8, 9, and 10. Most updates carry an important severity rating, including patches for perl:5.32 which encompasses a wide range of sub-modules, while two items, the firewalld fix on Rocky Linux 10 and the OpenSSH update on Rocky Linux 8, hold moderate ratings. Each advisory provides Common Vulnerability Scoring System base scores linked to specific CVE identifiers so system administrators can assess the exact risk level for their environments. Users should install these errata promptly to address security flaws and incorporate the reported bug fixes and enhancements into their systems.

RLSA-2026:47040: Important: kernel security, bug fix, and enhancement update
RLSA-2026:47756: Important: openssh security update
RLSA-2026:47757: Important: openssh security update
RLBA-2026:28238: Moderate:firewalld bug fix and enhancement update
RLSA-2026:47101: Important: firefox security update
RLSA-2026:48032: Important: nodejs-nodemon security update
RLSA-2026:47982: Important: vim security update
RLSA-2026:47736: Important: fence-agents security update
RLSA-2026:47755: Moderate: openssh security update
RLSA-2026:48021: Important: python-pillow security update
RLSA-2026:48225: Important: perl:5.32 security update

Red Hat 9476 Published by Philipp Esselbach 0

Red Hat has issued a collection of security advisories rated Important for Red Hat Enterprise Linux versions 8, 9, and 10, targeting vulnerabilities across core system components and developer tools. The errata address issues within packages such as hplip, fence-agents, openssh, the kernel, golang, grafana, python3.12, nodejs24, vim, kpatch-patch, Cryostat, and OpenJDK for Windows builds. Multiple advisories also bundle bug fixes and enhancements alongside security patches, with specific releases designed for SAP Solutions services, Extended Update Support channels, and the Red Hat build of Quarkus and Apache Camel. Each advisory provides a Common Vulnerability Scoring System base score linked through CVE references so administrators can determine the precise severity rating for every identified flaw before deployment.

RHSA-2026:48603: Important: hplip security update
RHSA-2026:48615: Important: fence-agents security update
RHSA-2026:48606: Important: hplip security, bug fix, and enhancement update
RHSA-2026:47757: Important: openssh security update
RHSA-2026:47736: Important: fence-agents security update
RHSA-2026:47633: Important: kernel security, bug fix, and enhancement update
RHSA-2026:47172: Important: Red Hat build of Quarkus 3.33.2.SP3 security update
RHSA-2026:47756: Important: openssh security update
RHSA-2026:47739: Important: kernel security, bug fix, and enhancement update
RHSA-2026:48171: Important: hplip security update
RHSA-2026:47712: Important: golang security, bug fix, and enhancement update
RHSA-2026:47716: Important: grafana-pcp security, bug fix, and enhancement update
RHSA-2026:47910: Important: osbuild-composer security update
RHSA-2026:47714: Important: grafana security, bug fix, and enhancement update
RHSA-2026:47721: Important: grafana-pcp security, bug fix, and enhancement update
RHSA-2026:48222: Important: kernel-rt security update
RHSA-2026:47939: Important: python3.12 security update
RHSA-2026:48021: Important: python-pillow security update
RHSA-2026:47719: Important: golang security, bug fix, and enhancement update
RHSA-2026:47717: Important: gstreamer1-plugins-bad-free security update
RHSA-2026:48151: Important: Red Hat build of Cryostat security update
RHSA-2026:47982: Important: vim security update
RHSA-2026:48034: Important: nodejs24 security update
RHSA-2026:48095: Important: RHCS 10.8 bug fix and enhancement update
RHSA-2026:48032: Important: nodejs-nodemon security update
RHSA-2026:47981: Important: kpatch-patch security update
RHSA-2026:48118: Important: Red Hat Build of Apache Camel 4.18.3 for Quarkus 3.33 update is now available (RHBQ 3.33.2.SP3)
RHSA-2026:48605: Important: fence-agents security update
RHSA-2026:48586: Important: hplip security update
RHSA-2026:48604: Important: fence-agents security update
RHSA-2026:48845: Important: OpenJDK 25.0.4 Security Update for Windows Builds

Fedora Linux 9438 Published by Philipp Esselbach 0

Fedora released security patches for versions 43 and 44 targeting unbound, dokuwiki, pack, nasm, valkey, lego, and libnbd to address over thirty confirmed CVEs. The vulnerabilities span denial of service attacks through DNS-over-QUIC pressure, remote code execution via TLS connection flaws in Valkey, cache poisoning exploits in Unbound, and privilege escalation risks within containerd used by Pack. System administrators can apply the fixes immediately by running the corresponding DNF advisory commands for each affected package. Delaying these installations leaves servers exposed to memory corruption, unauthorized command execution, and data integrity breaches that attackers could exploit without authentication.

Fedora 43 Update: unbound-1.25.2-1.fc43
Fedora 43 Update: dokuwiki-20250514b-4.fc43
Fedora 43 Update: pack-0.40.8-1.fc43
Fedora 43 Update: nasm-2.16.03-5.fc43
Fedora 43 Update: valkey-8.1.9-1.fc43
Fedora 43 Update: lego-5.3.1-2.fc43
Fedora 43 Update: libnbd-1.24.3-1.fc43
Fedora 44 Update: dokuwiki-20250514b-6.fc44
Fedora 44 Update: pack-0.40.8-1.fc44
Fedora 44 Update: valkey-9.0.5-1.fc44

Debian 11018 Published by Philipp Esselbach 0

Debian issued security advisories addressing critical vulnerabilities in the expat, libraw, imagemagick, gsasl, and ruby-rack packages. The patches resolve integer overflows, heap buffer overflows, memory disclosure flaws, and arbitrary code execution risks that could allow attackers to crash systems or run unauthorized commands via malformed inputs. Detailed findings include multipart smuggling and denial-of-service vectors in ruby-rack, regex injection flaws in imagemagick and libraw, and missing input sanitization in the gsasl NTLM client.

[DSA 6404-1] expat security update
ELA-1790-1 libraw security update (by )
ELA-1789-1 imagemagick security update (by )
[DLA 4707-1] gsasl security update
[DLA 4706-1] ruby-rack security update

AlmaLinux 2617 Published by Philipp Esselbach 0

AlmaLinux issued five security errata addressing critical vulnerabilities in Node.js versions 22 and 24, OpenSSH clients, and Vim across its Linux distributions. The advisories resolve denial-of-service flaws in the brace-expansion and tar libraries that impact Node.js packages, while a distinct Vim patch targets arbitrary code execution risks arising from malicious Python docstrings and crafted tags files used during omni-completion. OpenSSH updates mitigate severe threats including remote man-in-the-middle attacks via X11 forwarding, client-side denials of service triggered by double-free errors in DH-GEX validation, heap out-of-bounds reads in GSSAPI cleanup, use-after-free conditions during host key re-exchange, and scp file misplacement issues.

ALSA-2026:48034: nodejs24 security update (Important)
ALSA-2026:48032: nodejs-nodemon security update (Important)
ALSA-2026:48033: nodejs22 security update (Important)
ALSA-2026:47757: openssh security update (Important)
ALSA-2026:48703: vim security update (Important)
ALSA-2026:47755: openssh security update (Moderate)

[ Archive ]