Product
Last Report

Click here to browse the Windows compatibility database

RTL-8851be
1 report Realtec
Anonymous
2026-07-19 18:49
P8Z77-V
1 report ASUS
Anonymous
2026-06-11 07:27
Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-08-12 18:53 | Last update:



2026-08-12

Software 44706 Published by Philipp Esselbach 0

Mesa 26.1.7 landed today, delivering a tight cluster of memory safety patches, compiler corrections, and driver-level workarounds to the stable 26.1.x maintenance branch. The update addresses long-standing buffer object refcounting bugs across the DRM shim, fixes float-to-int conversion artifacts in the NIR pipeline, and adds missing hardware stepping workarounds for Intel Arc and RDNA graphics. OpenCL developers also get a structural bump as Rusticl pivots to a community-maintained libclc fork verified against the official conformance suite. The maintenance branch will continue receiving stability-only patches through August 26, while feature development remains firmly locked to the newer 26.2.x track.

Software 44706 Published by Philipp Esselbach 0

Shelly ALPM v3.0.4 shipped today, introducing the project's first dedicated terminal interface alongside a completely redesigned unified search flow for the AUR, official repositories, and Flatpak. The drop arrives just five days after v3.0.3, continuing a breakneck six-release cadence in two weeks following the July 29 Zig rewrite that completely eliminated the .NET runtime. Flatpak users get end-of-life detection, remote branch resolution, and a cleaner uninstall workflow, while polished shell completions and new CLI man pages target terminal power users who prefer direct libalpm integration. The update is live now for CachyOS via sudo pacman -S shelly and is also available through the AUR or as standalone tarballs on GitHub.

Software 44706 Published by Philipp Esselbach 0

Zed Editor v1.15.0 ships with self-hosted sweep-next-edit model support for private AI inference, a new git.diff_base setting to toggle diff baselines against default branches, and Wayland drag-and-drop for Linux. The update brings linked editing for custom JSX/TSX elements, Emmet completions in arrow functions, and 11 contributions from the Zed Guild community. Copilot users must re-authenticate as Zed decouples session management for chat and edit predictions to reduce credential blast radius. The release underscores Zed's continued sprint toward production parity, combining tighter Git workflows with expanded private inference options.

Software 44706 Published by Philipp Esselbach 0

Bazaar 0.9.3 is a maintenance update for the Flatpak-first app store, arriving just seven days after the feature-heavy 0.9.2 release to stabilize the newly introduced background daemon. The update brings Flathub's curated topic sections to the home page for improved discovery, alongside significant accessibility improvements led by contributor Alexander Vanhee, such as fixing screen reader button double-reading. Released on August 12, 2026, this rapid iteration addresses post-launch bugs in the auto-update system and autostart services, reflecting the project's active development cycle. Users can upgrade immediately via Flathub, GitHub Actions, or Debian and Arch repositories, keeping their alternative to GNOME Software and KDE Discover up to date.

Guides 11794 Published by Philipp Esselbach 0

Fail2Ban is an open-source intrusion prevention daemon that scans service logs for attack patterns and automatically blocks offending IPs through firewall rules. Debian 13 Trixie modernizes the package by defaulting to the systemd journal backend, switching to nftables for ban actions, and requiring Python 3.12. Administrators configure it through a layered override system of *.conf, *.local, and jail.d/ drop-in files, replacing legacy log paths with journalmatch directives. Production deployments combine targeted SSH, web, and mail jails with a long-term recidive jail, all validated through fail2ban-regex and managed via the daemon's client/server architecture.

Software 44706 Published by Philipp Esselbach 0

Mango Wayland Compositor 0.16.0 has been released, adding native touch input and improved XWayland scaling to its dwl-inspired design. Key features include real-time overview updates, xdg_activation_v1 support to stop focus stealing, and a force_render rule for smoother animations. The update also addresses critical stability issues, fixing crashes after system suspend and increasing buffer limits for XWayland clients. Available for Arch, NixOS, and other distributions, the project now sits at roughly 3,456 stars and continues to grow its community ecosystem.

Software 44706 Published by Philipp Esselbach 0

Visual Studio Code 1.133 introduces a dedicated Agent Host process that decouples AI agents from the editor, enabling shared multi-window sessions and remote execution. Microsoft pairs this architectural shift with an open Agent Host Protocol (AHP) spec, positioning the communication layer alongside LSP and DAP to support extensible third-party tooling. The update also delivers developer-friendly features like mixed Anthropic and Copilot model switching in Claude sessions, an experimental toggle to skip GitHub sign-in, and auto-reloading HTML in the integrated browser. The update is now rolling out to Windows, macOS, and Linux, with early testing available through the Insiders build.

Manjaro Linux 178 Published by Philipp Esselbach 0

Manjaro Linux 26.1.0 is now live on SourceForge, bringing Linux 7.1 to the default kernel lineup. The release drops all 5.x kernel options entirely, meaning hardware from the mid-2010s will no longer be supported. You can grab the new ISOs for KDE Plasma, GNOME, or Xfce today, though the official download page still lists the previous 26.0.4 build. This shift marks a major step forward for the rolling distribution, trading legacy compatibility for modern scheduler and memory management improvements.

Software 44706 Published by Philipp Esselbach 0

Open-source Linux gaming tool Bottles released version 66.1, just hours after its major v66.0 launch. The initial release shipped with two critical regressions that broke game launching inside Flatpak sandboxes and crashed the custom UMU prefix picker. Lead developer Mirko Brombin addressed both issues with a two-commit emergency patch that adjusts Flatpak path resolution and corrects a mismatched method reference in the UMU integration code. The rapid sub-two-hour turnaround highlights both the responsiveness of the single-maintainer project and the ongoing friction of shipping major gaming features to a sandboxed Linux ecosystem.

Software 44706 Published by Philipp Esselbach 0

LACT 0.10.0 has been released, delivering major Nvidia GPU support to the open-source Linux controller tool with new overclocking features including PowerMizer Mode and a Voltage Boost slider comparable to MSI Afterburner. The update brings first-class monitoring for NVIDIA's Blackwell architecture, resolving bogus temperature readings and enabling per-chip memory temperature sensors for GDDR6x and GDDR7 modules on RTX 50-series cards. Usability receives a boost through an interactive setup wizard, Polkit integration for standard authentication, and a new CLI command allowing GPUs to be detached and reattached for virtual machine passthrough workflows. Now available on major Linux distributions and Flathub, this release significantly expands LACT from an AMD-focused utility into a comprehensive multi-vendor GPU management application.

Reviews 52714 Published by Philipp Esselbach 0

AIO coolers are fully embracing personality panels and daisy-chain ecosystems, with MSI’s MPG CORELIQUID P22 360 W, be quiet!’s Light Loop IO LCD 360, and Arctic’s Bionix P12 and P14 A-RGB fans all landing in this week's roundup. Razer upped the customization ante with the 23-button Naga V3 Pro, positioning it as the default peripheral for MMO and RTS players who actually want to map out their loadouts. The budget crowd keeps winning, as the Valkyrie B12 ARGB, EPOMAKER GX1 headset, and MSI’s display-equipped AIO all deliver solid performance without the usual flagship tax. While DeepCool’s woodgrain AK620 G2 and Id-Cooling’s visual "hybrid" design try to shake up the thermal market, premium acoustics and clean cable management. 

GNOME 3729 Published by Philipp Esselbach 0

The GNOME Shell development team has published a comprehensive roadmap outlining nine major design improvements for the desktop environment, ranging from a spatial search overlay to mobile-inspired quick settings. The most immediate update is a new search interface that spawns results as an overlay from the search field, a change currently in progress via Merge Request #4307 and expected to ship in GNOME 51 this fall. While the design team emphasizes that developer capacity remains the primary bottleneck, they plan to use community extensions like MosaicWM to prototype complex tiling and window management concepts before integrating them into the core Mutter compositor. Other proposals, including a visual login grid, dynamic battery icons, and a transparent panel system, are still in early stages and will likely span multiple release cycles as the desktop focuses on incremental refinement rather than structural overhaul.

Software 44706 Published by Philipp Esselbach 0

QEMU 11.1.0 has officially landed, wrapping up roughly 3,500 commits and over 111,000 lines of code from 285 contributors. The release is squarely focused on hardening host-mode QEMU, patching at least 12 assigned CVEs across virtio, 9pfs, the dmg parser, and NVMe subsystems. Beyond the security work, you can now hotplug NVMe namespaces at runtime, enable the new sp-mem device for Intel accelerator workloads, and dynamically manage QMP monitors without restarting the daemon. While the new RISC-V IOMMU and VT100 terminal emulator round out the feature set, production deployments should prioritize this update immediately to close out-of-bounds access and memory exhaustion vulnerabilities.

Software 44706 Published by Philipp Esselbach 0

Microsoft released Visual Studio Code 1.132.1 on Tuesday to address seven security vulnerabilities across the Chat, Terminal, Electron, and network subsystems. The patch arrives just six days after the feature-rich 1.132 release, which introduced a major architectural shift via the new Agent Host Protocol. Critical remote code execution flaws were patched in the integrated browser and web URL payloads, while four additional fixes target the expanding AI agent attack surface. Users should force a check for updates immediately to secure their development environment.

Software 44706 Published by Philipp Esselbach 0

Bottles 66.0 drops on Linux desktops with native UMU integration that finally removes the need for external game launchers and separate Wine scripts. The update swaps in ProtoSoda as the default runtime for UMU launches and adds an adaptive launch feature that auto-tunes performance parameters based on the detected application. A new experimental cpak package format offers a lightweight, self-contained alternative to Flatpak without breaking existing sandboxed installations. Flatpak users get quiet but important fixes for NVK detection, SOCKS proxy downloads, and Proton 11 compatibility alongside cleaner onboarding flows and official runner branding.

Debian 11036 Ubuntu 7180 Arch Linux 989 Published by Philipp Esselbach 0

Liquorix Kernel 7.1-11 drops a focused stability fix that hardens memory protection in the cgroup/dmem and drm/ttm subsystems to prevent race conditions during high-contention scenarios. The update builds on upstream Linux 7.1.8 and applies a single defensive patch to the scheduler and GPU buffer management paths, which helps gamers and video editors avoid sudden freezes or kernel panics while streaming or rendering. Debian and Ubuntu users can grab the package through the official PPA via a one-line install script, while Arch Linux builders pull the linux-lqx package straight from the AUR without relying on third-party wrapper tools.

Software 44706 Published by Philipp Esselbach 0

The PHP project released PHP 8.4.25 RC1 and PHP 8.5.10 RC1 for testing, introducing substantial security hardening across both active branches. The patch sets focus heavily on preventing stack overflows in recursive functions like array_walk_recursive() and DOM operations, while also resolving critical use-after-free vulnerabilities in core extensions. Additional fixes address JIT deoptimizer register corruption, session heap corruption in mod_mm, and various edge cases in PDO_PGSQL, PCRE, and Reflection that previously caused silent memory issues.

SUSE 5735 Published by Philipp Esselbach 0

SUSE issued a batch of security advisories to address dozens of vulnerabilities across essential system packages. The updates focus on high-risk components including bind, erlang26, Python 3.11, Python 3.12, Perl, and the Chromium browser driver, carrying importance ratings from moderate to important. System administrators running SUSE Linux Enterprise Server 15 or any openSUSE Leap and Tumbleweed variant should deploy the fixes through YaST or zypper patch to neutralize attack vectors like buffer overflows and authentication bypasses. Additional advisories cover support libraries and utilities such as ImageMagick, xmlrpc-c, and the himmelblau authentication daemon to seal specific exploitation pathways.

SUSE-SU-2026:3549-1: moderate: Security update for python3-sqlparse
SUSE-SU-2026:3554-1: important: Security update for bind
SUSE-SU-2026:3558-1: important: Security update for perl
SUSE-SU-2026:3560-1: important: Security update for python311
SUSE-SU-2026:3561-1: moderate: Security update for PackageKit
SUSE-SU-2026:3569-1: important: Security update for python312
openSUSE-SU-2026:11487-1: moderate: java-1_8_0-openj9-1.8.0.502-1.1 on GA media
openSUSE-SU-2026:11490-1: moderate: libpcp-devel-6.3.8-3.1 on GA media
openSUSE-SU-2026:11482-1: moderate: wild-0.10.0-2.1 on GA media
openSUSE-SU-2026:11488-1: moderate: java-21-openj9-21.0.12.0-1.1 on GA media
openSUSE-SU-2026:11491-1: moderate: python313-Django5-5.2.17-1.1 on GA media
openSUSE-SU-2026:11489-1: moderate: java-25-openj9-25.0.4.0-1.1 on GA media
openSUSE-SU-2026:11486-1: moderate: java-17-openj9-17.0.20.0-1.1 on GA media
openSUSE-SU-2026:11485-1: moderate: java-11-openj9-11.0.32.0-1.1 on GA media
openSUSE-SU-2026:11484-1: moderate: chromedriver-151.0.7922.108-1.1 on GA media
openSUSE-SU-2026:11483-1: moderate: zpaqfranz-64.8-1.1 on GA media
SUSE-SU-2026:3571-1: moderate: Security update for ImageMagick
SUSE-SU-2026:3572-1: moderate: Security update for xmlrpc-c
SUSE-SU-2026:3573-1: moderate: Security update for gstreamer-plugins-bad
SUSE-SU-2026:3575-1: moderate: Security update for libarchive
SUSE-SU-2026:3576-1: important: Security update for himmelblau, himmelblau.SUSE_SLE-15-SP5_Update
SUSE-SU-2026:3577-1: important: Security update for snpguest
openSUSE-SU-2026:0280-1: important: Security update for go-sendxmpp
SUSE-SU-2026:3579-1: important: Security update for erlang26
SUSE-SU-2026:3588-1: moderate: Security update for python3-pip
SUSE-SU-2026:3589-1: moderate: Security update for python-pip

Slackware 1285 Published by Philipp Esselbach 0

The Slackware Linux Security Team released updated packages for Slackware 15.0 and -current to patch known vulnerabilities in the expat XML parser and OpenSSH. The expat refresh resolves CVE-2026-72522 by correcting an out-of-bounds read that causes an infinite loop when the parser processes low Unicode surrogates. The OpenSSH upgrade pushes the software to version 10.5p1, which ships with several security hardening patches and routine bug fixes. Users can download the new builds from the official Slackware FTP mirrors and apply them with the upgradepkg command before restarting the sshd daemon.

expat (SSA:2026-223-01)
openssh (SSA:2026-223-02)

Rocky Linux 976 Published by Philipp Esselbach 0

Rocky Linux has released a collection of security errata targeting Rocky Linux versions 8, 9, and 10, addressing vulnerabilities across key system packages. Important severity patches now include vim updates for all three supported releases, plus fixes for nodejs-nodemon on Rocky Linux 10 and perl-DBI on Rocky Linux 8. Moderate updates resolve issues within the kernel and kernel-rt packages on Rocky Linux 8, while libarchive receives security corrections for both Rocky Linux 9 and Rocky Linux 10.

RLSA-2026:52674: Moderate: libarchive security update
RLBA-2022:3897: new packages: libarchive
RLSA-2026:52761: Moderate: kernel-rt security update
RLSA-2026:52772: Important: perl-DBI:1.641 security update
RLSA-2026:52765: Moderate: kernel security update
RLSA-2026:52841: Important: nodejs-nodemon security update
RLSA-2026:38509: Important: vim security update
RLSA-2026:52675: Moderate: libarchive security update
RLSA-2026:38511: Important: vim security update
RLSA-2026:38510: Important: vim security update

Red Hat 9485 Published by Philipp Esselbach 0

Red Hat Product Security published a series of errata that patch security flaws in Thunderbird, the Linux kernel, OpenShift Container Platform, and JBoss Enterprise Application Platform on Red Hat Enterprise Linux. The advisories span numerous RHEL version streams and specialized support tracks, with the company classifying most notices as important and two gstreamer1-plugins-good releases as moderate. Each notice provides Common Vulnerability Scoring System ratings tied directly to specific CVE identifiers for detailed severity analysis. IT teams managing these environments should install the listed RHSA packages promptly to maintain system integrity.

RHSA-2026:53455: Important: thunderbird security update
RHSA-2026:53446: Important: thunderbird security update
RHSA-2026:53444: Important: thunderbird security update
RHSA-2026:53475: Important: thunderbird security update
RHSA-2026:53452: Moderate: gstreamer1-plugins-good security update
RHSA-2026:53435: Important: udisks2 security update
RHSA-2026:53445: Important: thunderbird security update
RHSA-2026:53412: Important: opentelemetry-collector security update
RHSA-2026:53413: Important: opentelemetry-collector security update
RHSA-2026:53365: Important: fence-agents security update
RHSA-2026:51036: Important: OpenShift Container Platform 4.22.9 packages and security update
RHSA-2026:53330: Important: kernel security, bug fix, and enhancement update
RHSA-2026:53806: Important: Red Hat JBoss Enterprise Application Platform 7.4.25 security update
RHSA-2026:53644: Important: Red Hat JBoss Enterprise Application Platform 7.4.25 security pdate
RHSA-2026:53454: Important: thunderbird security update
RHSA-2026:53453: Important: thunderbird security update
RHSA-2026:53451: Moderate: gstreamer1-plugins-good security update
RHSA-2026:53329: Important: kernel security, bug fix, and enhancement update
RHSA-2026:53363: Important: fence-agents security update
RHSA-2026:53374: Important: rhc security update
RHSA-2026:53364: Important: resource-agents security update
RHSA-2026:53298: Important: nodejs22 security update
RHSA-2026:53416: Important: host-metering security update
RHSA-2026:53402: Important: ldns security update
RHSA-2026:53990: Important: kernel security, bug fix, and enhancement update
RHSA-2026:53989: Important: kernel security update
RHSA-2026:51422: Important: Red Hat build of MicroShift 4.19.42 security update
RHSA-2026:53844: Important: iscsi-initiator-utils security, bug fix, and enhancement update
RHSA-2026:53845: Important: iscsi-initiator-utils security, bug fix, and enhancement update
RHSA-2026:53848: Important: isns-utils security update
RHSA-2026:53847: Important: isns-utils security update
RHSA-2026:53450: Important: xorg-x11-server-Xwayland security update
RHSA-2026:53415: Important: opentelemetry-collector security update
RHSA-2026:53846: Important: isns-utils security update

Fedora Linux 9448 Published by Philipp Esselbach 0

Fedora published security updates for versions 43 and 44 on August 12, 2026, addressing critical vulnerabilities in the ClamAV antivirus toolkit, the libidn internationalized domain name library, and the Domoticz home automation system. The ClamAV updates to version 1.4.6 resolve multiple denial-of-service risks stemming from crafted InstallShield, 7z, PESpin, FSG, and DMG files, alongside an error handling flaw in the HTML CSS module related to UTF-8 string splitting. The libidn release fixes a CVE that allows out-of-bounds reads within the ToUnicode APIs, while the Domoticz version 2026.3 update patches significant security weaknesses in its web server and API infrastructure.

Fedora 43 Update: clamav-1.4.6-1.fc43
Fedora 43 Update: libidn-1.44-1.fc43
Fedora 44 Update: clamav-1.4.6-1.fc44
Fedora 44 Update: libidn-1.44-1.fc44
Fedora 44 Update: domoticz-2026.3-1.fc44

Debian 11036 Published by Philipp Esselbach 0

Debian has released six security patches released to address critical flaws across NSS, Postfix, PHP 7.4, PHP 8.2, OpenJDK 25, and libgd2. These updates resolve CVEs that enable arbitrary code execution through malformed certificates, SQL injection via backslash escaping errors, denial of service from unbounded recursion, and invalid certificate validation in Java archives. The advisory provides exact version numbers for Debian Stretch through Trixie, ensuring each affected package receives a targeted version bump. Users should deploy these patches through their standard package managers to eliminate the identified vulnerabilities across their respective operating systems.

ELA-1800-1 nss security update (by )
[DSA 6430-1] postfix security update
[DLA 4733-1] php7.4 security update
[DLA 4732-1] php8.2 security update
[DSA 6431-1] openjdk-25 security update
[DLA 4731-1] libgd2 security update
2026-08-11

Software 44706 Published by Philipp Esselbach 0

PHP 8.6.0 Beta 1 was tagged on August 11, 2025, introducing Partial Function Application, a native Io\Poll I/O API, and a dedicated Time\Duration class. The release enforces stricter error handling across the standard library, replacing silent truncation with ValueError and TypeError exceptions while validating NUL bytes in string arguments. Session security defaults now enable use_strict_mode and cookie_httponly by default, and dozens of legacy functions are officially deprecated ahead of PHP 9.0. 

Software 44706 Published by Philipp Esselbach 0

Samba 4.25.0rc1 has arrived as the first release candidate for the next major version of the Samba file server, bringing a significant suite of new features for clustering and security. The headline addition is experimental SMB3 Persistent Handles, which enable transparent failover for high-availability workloads, alongside a mandatory shift to AES-only domain encryption to address CVE-2026-20833. Clustering receives a new functional level mechanism to facilitate controlled rolling upgrades, while global rate limiting and improved CTDB path management further enhance infrastructure reliability. Keep in mind that the persistent handles feature enforces SMB-exclusive access and disables local POSIX client support on affected shares, so administrators should test these changes carefully before deploying to production.

Guides 11794 Published by Philipp Esselbach 0

Debian GNU/Linux 13 Trixie arrives with UFW version 0.36.2, delivering a pre-hardened default configuration where incoming traffic is denied and outgoing traffic is permitted by default. This tutorial shows you how to install and configure it. The tool handles both IPv4 and IPv6 through a hierarchical loading system of before.rules, user.rules, and after.rules, while application profiles provide pre-configured access for common services like Nginx and MySQL. For optimal security, set logging to medium and utilize rate limiting to block brute-force attempts without saturating disk space with excessive log entries.

Software 44706 Published by Philipp Esselbach 0

Flatpak released version 1.18.1, a critical security patch addressing ten CVEs that include full sandbox escapes and arbitrary root privilege escalation. The update closes vulnerabilities ranging from symlink attacks on app data directories to an anti-downgrade policy bypass, making an immediate upgrade essential for anyone running OCI images or untrusted apps. Bundled alongside the stability fix, the 1.19.0 pre-release introduces Polkit-authenticated system-wide downgrades, a new coredump listing command for debugging, and a bytes-per-second progress API for UI development. While the 1.18.1 build should be applied across all distributions immediately, developers should test the 1.19.0 candidate in isolated environments before adopting it for production workloads.

Software 44706 Published by Philipp Esselbach 0

GloriousEggroll released GE-Proton11-5 as a rapid hotfix to resolve a critical Easy Anti-Cheat loading regression introduced by the GE-Proton11-4 build. Rebased on Valve's upstream Proton 11 branch, the update restores compatibility for kernel-level anti-cheat middleware required by multiplayer titles such as Monster Hunter Wilds and Hunt: Showdown. The patch arrived just three hours after the previous release and has already accumulated nearly 4,000 downloads on x86_64 systems. Users can update immediately through the protonup utility or by manually placing the archives into their Steam runtime directory.

Reviews 52714 Published by Philipp Esselbach 0

Today's hardware coverage features two new laptops, starting with Acer's $799 Swift Go 16 AI which trades peak performance for a large display and strong value, followed by XMG's Apex 17 powered by an RTX 5070 GPU for heavy gaming and creative work. The peripherals section highlights a pink Epomaker TH65 keyboard that successfully merges a bright exterior with remarkably quiet tactile switches. Smartphone buyers interested in durable gear should examine the FOSSiBOT F116 Pro, a compact 5G device built for drop resistance and mounted-camera functionality. Finally, PC builders looking to minimize costs can rely on the MSI Z890 Gaming Plus WIFI6E to deliver a complete feature set for under two hundred dollars.

Computers: Acer Swift Go 16 AI (AMD Gorgon Point) Review: A balanced, affordable, big-screen portable, XMG Apex 17 (M25) Review - RTX 5070 12 GB Tested
Input: Epomaker TH65 Review
Mobile: FOSSiBOT F116 Pro Mini Rugged Smartphone Review
Motherboards: MSI Z890 Gaming Plus WIFI6E Review - Z890 for under $200

Software 44706 Published by Philipp Esselbach 0

OpenSSH 10.5 drops just five weeks after 10.4, with the team explicitly crediting a surge of AI-discovered vulnerabilities for triggering faster, on-demand release cycles. The update patches three security flaws, including a critical ssh-agent locking bypass, a realloc use-after-free bug in remote forwarding, and a tunnel restriction gap in authorized_keys. New features include FIDO key usability improvements, an ssh -Z debugging flag, and a hard requirement for NIST P-521 ECC support in default builds. Operators should patch immediately to close active exploitation paths and audit legacy PermitTunnel configurations that previously bypassed restrict keywords.

Debian 11036 Ubuntu 7180 Arch Linux 989 Published by Philipp Esselbach 0

Steven Barrett has released linux-liquorix 7.1-10, a performance-focused kernel package built on top of upstream Linux v7.1.8 for Debian and Ubuntu users. The release re-applies a scheduler patch that disables the TTWU wakelist code path, prioritizing lower latency for gaming and real-time audio workloads over theoretical throughput gains. While the upstream merge brings standard security updates and hardware enablement, the maintainer continues to fine-tune the kernel for deterministic responsiveness.

Software 44706 Published by Philipp Esselbach 0

GloriousEggroll released GE-Proton11-4, a community Proton build for Linux gaming with a focus on controller support. The Controller fixup adds three environment variable modes to use DualShock 4, DualSense and DualSense Edge outside Steam Input, including DS4 spoof, XInput conversion and Steam Input fallback. The build updates Wine, DXVK, VKD3D-Proton and adds Wayland patches, plus video and audio fixes that resolve Street Fighter 6 cutscene crashes and improve Monster Hunter Wilds controller handling. Game-specific patches for Star Citizen, Assassin’s Creed titles, Cyberpunk 2077 and others are included, with ARM64X support and PipeWire ALSA plugin packaging for broader Linux compatibility.

SparkyLinux 94 Published by Philipp Esselbach 0

SparkyLinux 8.4 "Seven Sisters" has officially landed, built on the Debian 13 Trixie foundation with refreshed kernels and current desktop environments. Most notably, the quarterly update restores 32-bit Live and install images after Debian officially dropped legacy ISO support roughly a year ago. Users can now choose between the new MinimalGUI Openbox edition and a text-based CLI variant, though the Calamares graphical installer remains excluded for i686-pae builds.

Ubuntu 7180 Published by Philipp Esselbach 0

Ubuntu released security notices USN-8626-1 and USN-8592-1 to address critical flaws in systemd and ImageMagick. The systemd patches resolve three vulnerabilities that could allow local attackers to escalate privileges, terminate privileged processes, or crash system services through improperly validated requests. The ImageMagick updates fix four separate issues involving malformed image handling, out-of-bounds heap writes, and integer overflows that could lead to arbitrary code execution or denial of service.

[USN-8626-1] systemd vulnerabilities
[USN-8592-1] ImageMagick vulnerabilities

SUSE 5735 Published by Philipp Esselbach 0

SUSE released a series of security patches covering multiple enterprise and open-source distributions. The updates address critical vulnerabilities in core components like the Linux kernel, Python 3.11, FFmpeg, OpenSSH libraries, and OpenSSL live patches. System administrators can apply the fixes using standard YaST or zypper commands across SUSE Linux Enterprise versions ranging from 15 SP4 through SP7, as well as openSUSE Leap and Tumbleweed. The combined patches resolve dozens of CVEs that could otherwise allow remote code execution, memory corruption, denial of service, or unauthorized system access.

SUSE-SU-2026:3533-1: important: Security update for openssl-1_1-livepatches
SUSE-SU-2026:3536-1: important: Security update for podman
openSUSE-SU-2026:11477-1: moderate: librest-1_0-0-0.10.2-2.1 on GA media
openSUSE-SU-2026:11480-1: moderate: vlang-0.5.2-2.1 on GA media
openSUSE-SU-2026:11476-1: moderate: kernel-devel-7.1.7-1.1 on GA media
openSUSE-SU-2026:11478-1: moderate: python313-pymongo-4.17.0-1.1 on GA media
openSUSE-SU-2026:11479-1: moderate: libsdb2_5_0-6.2.0-1.1 on GA media
openSUSE-SU-2026:11473-1: moderate: dhcpcd-10.5.0-1.1 on GA media
openSUSE-SU-2026:11481-1: moderate: weechat-4.10.0-1.1 on GA media
openSUSE-SU-2026:11472-1: moderate: agama-web-ui-23+75.1a877fb50-50.1 on GA media
openSUSE-SU-2026:11474-1: moderate: gitoxide-0.56.0-1.1 on GA media
openSUSE-SU-2026:11475-1: moderate: kak-lsp-21.0.2-1.1 on GA media
SUSE-SU-2026:3541-1: important: Security update for libssh2_org
SUSE-SU-2026:3542-1: important: Security update for ffmpeg-4
SUSE-SU-2026:3547-1: moderate: Security update for suseconnect-ng
SUSE-SU-2026:3548-1: important: Security update for python311

Red Hat 9485 Published by Philipp Esselbach 0

Red Hat released a batch of security advisories for Red Hat Enterprise Linux 8, 9, and 10 addressing vulnerabilities across the kernel, PostgreSQL, Java, MariaDB, libgcrypt, and Node.js. The updates span 30 separate advisories, with Red Hat Product Security rating most of them as Important and a smaller subset as Moderate. Each advisory includes a Common Vulnerability Scoring System score and direct references to the associated CVE identifiers for detailed severity analysis.

RHSA-2026:52649: Important: kernel security update
RHSA-2026:52551: Important: python-pillow security update
RHSA-2026:52395: Important: postgresql security update
RHSA-2026:52396: Important: postgresql:12 security update
RHSA-2026:52398: Important: xorg-x11-server-Xwayland security update
RHSA-2026:52391: Important: osbuild-composer security update
RHSA-2026:52394: Important: nodejs-nodemon security update
RHSA-2026:52772: Important: perl-DBI:1.641 security update
RHSA-2026:52765: Moderate: kernel security update
RHSA-2026:52674: Moderate: libarchive security update
RHSA-2026:52761: Moderate: kernel-rt security update
RHSA-2026:52675: Moderate: libarchive security update
RHSA-2026:52667: Important: kernel security, bug fix, and enhancement update
RHSA-2026:52764: Important: kernel security, bug fix, and enhancement update
RHSA-2026:52832: Important: RHELAI 3.0 Backport fixes for CVE-2026-64835 and CVE-2026-58049
RHSA-2026:52833: Important: RHELAI 3.2 Backport fixes for CVE-2026-64835 and CVE-2026-58049
RHSA-2026:52848: Important: mariadb:10.11 security update
RHSA-2026:52930: Important: postgresql-jdbc security update
RHSA-2026:52929: Important: postgresql-jdbc security update
RHSA-2026:52928: Important: postgresql-jdbc security update
RHSA-2026:52950: Moderate: libgcrypt security update
RHSA-2026:52953: Moderate: libgcrypt security update
RHSA-2026:52952: Moderate: libgcrypt security update
RHSA-2026:52978: Important: postgresql-jdbc security update
RHSA-2026:52951: Moderate: libgcrypt security update
RHSA-2026:52948: Important: java-21-ibm-semeru-certified-jdk security update
RHSA-2026:52949: Important: java-1.8.0-ibm security update
RHSA-2026:52841: Important: nodejs-nodemon security update
RHSA-2026:52826: Important: ignition security update

Oracle Linux 6531 Published by Philipp Esselbach 0

Oracle Linux just released a broad batch of errata covering versions seven through ten, delivering security patches and routine maintenance across the operating system. The updates touch core infrastructure, including the mainline and Unbreakable Enterprise kernels, Ruby, PHP, Node.js, libpng12, timezone databases, and SELinux policy sets. Security researchers should prioritize the fixes for dozens of tracked vulnerabilities that affect KVM virtualization, the IPv6 networking stack, cryptographic routines, and USB device handling.

ELBA-2026-47011-1 Oracle Linux 8 kernel bug fix update
ELSA-2026-43702 Moderate: Oracle Linux 7 libpng12 security update
ELBA-2026-51070 Oracle Linux 7 tzdata bug fix and enhancement update
ELSA-2026-33685 Important: Oracle Linux 10 kernel security, bug fix, and enhancement update
ELSA-2026-52841 Important: Oracle Linux 10 nodejs-nodemon security update
ELBA-2026-50154-0 Oracle Linux 10 linux-firmware bug fix and enhancement update
ELBA-2026-50146-0 Oracle Linux 10 selinux-policy bug fix and enhancement update
ELSA-2026-51295 Moderate: Oracle Linux 10 kernel security, bug fix, and enhancement update
ELBA-2026-500139 Oracle Linux 10 nodejs22 bug fix update
ELSA-2026-52675 Moderate: Oracle Linux 10 libarchive security update
ELBA-2026-500144 Oracle Linux 10 nodejs24 bug fix update
ELSA-2026-500150 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
ELBA-2026-500147 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELSA-2026-50828 Important: Oracle Linux 9 ruby:3.3 security, bug fix, and enhancement update
ELBA-2026-500147 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELSA-2026-50827 Important: Oracle Linux 9 ruby:4.0 security, bug fix, and enhancement update
ELSA-2026-48197 Low: Oracle Linux 9 php:8.3 security, bug fix, and enhancement update
ELSA-2026-51153 Important: Oracle Linux 9 gpsd-minimal security update
ELBA-2026-500152 Oracle Linux 9 xfsprogs bug fix update
ELBA-2026-500120 Oracle Linux 9 leapp-repository bug fix update
ELBA-2026-49214-1 Oracle Linux 8 kernel bug fix update
ELBA-2026-47121 Oracle Linux 8 linux-firmware bug fix and enhancement update

Fedora Linux 9448 Published by Philipp Esselbach 0

Debian 11036 Published by Philipp Esselbach 0

Debian issued security patches for a wide range of packages including Chromium, Thunderbird, Icinga 2, OpenJDK 21, NSS, WordPress, Caddy, libyaml-syck-perl, and libinput to address dozens of new CVEs. The updates mitigate risks ranging from arbitrary code execution and denial of service to privilege escalation and information disclosure, with Chromium resolving 57 vulnerabilities and Thunderbird fixing over 30 flaws across multiple Debian versions. Users should upgrade to the recommended versions immediately, keeping in mind that Icinga 2 and Caddy require manual intervention for specific configuration changes related to logrotate files and header handling. Legacy systems remain protected as well, with extended support advisories releasing fixes for libinput on Debian 9, 10, and 11 to patch local privilege escalation and code execution flaws.

[DLA 4728-1] chromium security update
[DLA 4727-1] thunderbird security update
[DSA 6426-1] icinga2 security update
[DSA 6425-1] openjdk-21 security update
[DLA 4729-1] nss security update
[DSA 6427-1] wordpress security update
[DSA 6429-1] caddy security update
[DLA 4730-1] libyaml-syck-perl security update
[DSA 6428-1] libyaml-syck-perl security update
ELA-1799-1 libinput security update (by )
ELA-1798-1 libinput security update (by )

AlmaLinux 2624 Published by Philipp Esselbach 0

AlmaLinux has issued security errata for versions 9 and 10 addressing vulnerabilities across libarchive, gpsd, the kernel, perl-DBI, golang, and tomcat9. The patches resolve command injection flaws in gpsd packages and a double-free error in libarchive used for RAR5 decompression, alongside fixes for XFS data corruption and cryptographic state handling within the kernel. Golang updates advance AlmaLinux 10 systems to version 1.26.5, remediating privilege escalation risks in Punycode label processing and directory traversal via symlinks. Tomcat 9 installations gain protections against information disclosure caused by a padding oracle flaw in EncryptInterceptor and bypassed encryption of sensitive data.

ALSA-2026:52674: libarchive security update (Moderate)
ALSA-2026:51153: gpsd-minimal security update (Important)
ALSA-2026:51075: gpsd security update (Important)
ALSA-2026:39494: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:45114: kernel security update (Important)
ALSA-2026:38513: perl-DBI security update (Important)
ALSA-2026:37436: golang security, bug fix, and enhancement update (Important)
ALSA-2026:36790: tomcat9 security, bug fix, and enhancement update (Important)

[ Archive ]