Product
Last Report

Click here to browse the Windows compatibility database

RTL-8851be
1 report Realtec
Anonymous
2026-07-19 18:49
P8Z77-V
1 report ASUS
Anonymous
2026-06-11 07:27
Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-07-23 15:53 | Last update:



2026-07-23

Reviews 52697 Published by Philipp Esselbach 0

Today’s hardware reviews highlight standout options across multiple PC building and peripheral categories. The Gamdias Atlas P6 CG case and Noctua NH-D15 G2 chromax.black cooler earn strong marks for their thermal efficiency, cable routing, and consistent performance under load. Flight simulator enthusiasts will find the Thrustmaster T.Flight HOTAS 5 MSFS Edition accessible for beginners, while competitive players continue to praise the Wooting 60HE V2 keyboard for its rapid trigger response and magnetic switch design. The audio segment rounds out the coverage with the Edifier WH950NB Rev 2, SteelSeries Arctis Nova Pro Omni, and SteelSeries Arctis Nova 7 Wireless Gen 2, all of which balance long battery life, active noise cancellation, and premium sound output at competitive price points.

Casing: Gamdias Atlas P6 CG Review
Cooling: Noctua NH-D15 G2 chromax.black CPU Tower Cooler Review – The Return of the King in Black
Gaming: Thrustmaster T.Flight HOTAS 5 MSFS Edition Review
Headphones: Edifier WH950NB (Rev 2) Review - Revised evergreen as a long-term performer among Bluetooth headphones, SteelSeries Arctis Nova Pro Omni Wireless Headset Review - One Headset to Rule Them All, SteelSeries Arctis Nova 7 Wireless Gen 2 Headset Review - New and Improved, But Is It Enough?
Input: Wooting 60HE V2 Keyboard Review

Drivers 3045 Published by Philipp Esselbach 0

Intel has published v1.35.0-rc1 of its Linux NPU driver, delivering the first public preview of support for Wildcat Lake, the chipmaker's upcoming next-generation AI processor. The 90-file update also bumps the Level Zero dependency to v1.28.2, modernizes the NPU compiler API, and replaces external build submodules with local copies for improved build reproducibility. Developers will find a new dynamic shape optimization flag for generative workloads alongside thread-aware tracing and a freshly gutted stats subsystem. The release candidate is now available on GitHub for those looking to validate Wildcat Lake silicon ahead of hardware.

Ubuntu 7159 Published by Philipp Esselbach 0

Ubuntu issued security notices covering vulnerabilities in Exim, tar, Kerberos, GStreamer, HTML-Parser, libgphoto2, GIFLIB, Apache HTTP Server, gawk, libarchive, and aiohttp across multiple long-term support releases. Vulnerabilities in Exim allowed local privilege escalation and unauthorized file access, while weaknesses in Apache's mod_ldap and mod_auth_digest enabled remote attackers to execute arbitrary code or bypass digest authentication using timing attacks. Multiple packages received fixes for issues where crafted inputs caused crashes, denial of service, or arbitrary code execution in GIFLIB, aiohttp, GStreamer plugins, gawk, and libarchive, alongside potential sensitive data leaks in HTML-Parser and libgphoto2. A dedicated update resolves a regression in tar that broke extraction of archives with nonzero directory entry sizes, affecting Ubuntu versions from 14.04 through 26.04 LTS following an incomplete fix in a previous advisory.

[USN-8590-1] Exim vulnerabilities
[USN-8477-3] tar regression
[USN-8585-1] Kerberos vulnerabilities
[USN-8584-1] GStreamer Good Plugins vulnerabilities
[USN-8587-1] HTML-Parser vulnerability
[USN-8586-1] libgphoto2 vulnerabilities
[USN-8583-1] GIFLIB vulnerabilities
[USN-8589-1] Apache HTTP Server vulnerabilities
[USN-8588-1] Gawk vulnerabilities
[USN-8581-1] libarchive vulnerabilities
[USN-8591-1] AIOHTTP vulnerabilities

SUSE 5716 Published by Philipp Esselbach 0

SUSE deployed a coordinated batch of security patches targeting multiple components across openSUSE Leap and SUSE Linux Enterprise environments. The updates resolve denial-of-service flaws in python-sqlparse, heap overflow risks in multipath-tools, and twenty-three distinct vulnerabilities in ImageMagick that include policy bypasses and memory leaks. A separate critical patch for the System Security Services Daemon addresses privilege escalation through sudo LDAP searches and Kerberos authentication bypasses via unsanitized path traversal.

SUSE-SU-2026:3179-1: moderate: Security update for python-sqlparse
SUSE-SU-2026:3180-1: moderate: Security update for python-sqlparse
SUSE-SU-2026:3184-1: moderate: Security update for multipath-tools
SUSE-SU-2026:3181-1: moderate: Security update for python3-sqlparse
openSUSE-SU-2026:11319-1: moderate: 7zip-26.02-1.1 on GA media
openSUSE-SU-2026:11323-1: moderate: python313-bleach-6.4.0-1.1 on GA media
openSUSE-SU-2026:11321-1: moderate: perl-YAML-1.320.0-1.1 on GA media
SUSE-SU-2026:3193-1: moderate: Security update for ImageMagick
SUSE-SU-2026:3195-1: important: Security update for sssd

Rocky Linux 962 Published by Philipp Esselbach 0

New security errata are now available for Rocky Linux versions 8, 9, and 10, covering packages with severity ratings from moderate to important across a wide range of system components. Key affected software includes the kernel for Rocky Linux 9, acl builds for Rocky Linux 8 and 10, python3.14 for all three releases, plus infrastructure tools like httpd, sssd, glibc, libtiff, dovecot, and webkit2gtk3. The pki-deps:10.6 update targets Rocky Linux 8 and modifies numerous dependencies such as javassist, apache-commons-collections, xsom, slf4j, and glassfish-jaxb-api to close security gaps referenced by CVE identifiers.

RLBA-2026:39332: Important:kernel bug fix and enhancement update
RLSA-2026:42739: Important: acl security update
RLSA-2026:40833: Important: pacemaker security update
RLSA-2026:41937: Important: sssd security update
RLSA-2026:41892: Important: libtiff security, bug fix, and enhancement update
RLSA-2026:42694: Moderate: glibc security update
RLSA-2026:41988: Important: dovecot security update
RLSA-2026:42063: Important: glib2 security update
RLSA-2026:40856: Important: python3.14 security update
RLSA-2026:42096: Important: c-ares security update
RLSA-2026:42736: Important: acl security update
RLSA-2026:42089: Important: glib2 security update
RLSA-2026:42062: Important: webkit2gtk3 security update
RLSA-2026:41905: Important: dovecot security update
RLSA-2026:41949: Important: python3.14 security update
RLSA-2026:41906: Important: httpd security, bug fix, and enhancement update
RLSA-2026:42668: Important: libtiff security update
RLSA-2026:42122: Important: sssd security update
RLSA-2026:43218: Important: pki-deps:10.6 security update
RLSA-2026:42550: Important: kernel-rt security, bug fix, and enhancement update
RLSA-2026:43218: Important: pki-deps:10.6 security update

Red Hat 9468 Published by Philipp Esselbach 0

Red Hat issued a large batch of RHSA-2026 security advisories targeting systems running RHEL versions 7 through 10. The updates resolve multiple common vulnerabilities across core components including the Linux kernel, Java 17 OpenJDK, .NET 8 through 10, OpenShift Container Platform, and JBoss Web Server. Red Hat Product Security rated the majority of these patches as carrying an Important severity level, with a handful of libraries like glibc and libpng12 receiving Moderate ratings instead. Infrastructure teams should install these errata immediately to close known CVEs before attackers can exploit them.

RHSA-2026:43711: Important: RHEL AI 3.5 RPM runtime CVE fix - ffmpeg
RHSA-2026:43702: Moderate: libpng12 security update
RHSA-2026:43537: Moderate: libtiff security update
RHSA-2026:43575: Moderate: gnutls security update
RHSA-2026:43505: Important: mariadb-connector-c security update
RHSA-2026:43513: Moderate: openssl security update
RHSA-2026:40762: Important: OpenShift Container Platform 4.19.39 bug fix and security update
RHSA-2026:43401: Important: Red Hat JBoss Web Server 6.2.4 release and security update
RHSA-2026:43402: Important: Red Hat JBoss Web Server 6.2.4 release and security update
RHSA-2026:43425: Important: libreoffice security update
RHSA-2026:43307: Important: kernel security, bug fix, and enhancement update
RHSA-2026:43460: Important: libreoffice security update
RHSA-2026:43424: Important: libreoffice security update
RHSA-2026:43461: Important: libreoffice security update
RHSA-2026:43423: Important: libreoffice security update
RHSA-2026:43420: Important: acl security update
RHSA-2026:43400: Important: dogtag-pki security update
RHSA-2026:43398: Important: evince security update
RHSA-2026:43290: Moderate: libinput security update
RHSA-2026:43231: Important: kernel security, bug fix, and enhancement update
RHSA-2026:43218: Important: pki-deps:10.6 security update
RHSA-2026:42952: Moderate: glibc security update
RHSA-2026:43606: Important: pacemaker security update
RHSA-2026:42887: Important: java-17-openjdk security update
RHSA-2026:44064: Important: jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base security update
RHSA-2026:44066: Important: pki-deps:10.6 security update
RHSA-2026:44065: Important: jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base security update
RHSA-2026:44061: Important: pki-deps:10.6 security update
RHSA-2026:44004: Important: kpatch-patch-4_18_0-553_109_1, kpatch-patch-4_18_0-553_125_1, kpatch-patch-4_18_0-553_53_1, kpatch-patch-4_18_0-553_72_1, and kpatch-patch-4_18_0-553_85_1 sec ...
RHSA-2026:44063: Important: jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base security update
RHSA-2026:44062: Important: pki-deps:10.6 security update
RHSA-2026:44007: Important: kpatch-patch-5_14_0-570_116_1, kpatch-patch-5_14_0-570_17_1, kpatch-patch-5_14_0-570_39_1, kpatch-patch-5_14_0-570_66_1, and kpatch-patch-5_14_0-570_94_1 secu ...
RHSA-2026:44006: Important: kpatch-patch-5_14_0-427_100_1, kpatch-patch-5_14_0-427_113_1, kpatch-patch-5_14_0-427_126_1, kpatch-patch-5_14_0-427_68_2, and kpatch-patch-5_14_0-427_84_1 se ...
RHSA-2026:44003: Important: kpatch-patch-5_14_0-284_117_1, kpatch-patch-5_14_0-284_134_1, kpatch-patch-5_14_0-284_148_1, kpatch-patch-5_14_0-284_158_1, and kpatch-patch-5_14_0-284_172_1 ...
RHSA-2026:43847: Important: kpatch-patch-4_18_0-477_107_1, kpatch-patch-4_18_0-477_120_1, kpatch-patch-4_18_0-477_130_1, kpatch-patch-4_18_0-477_143_1, and kpatch-patch-4_18_0-477_97_1 s ...
RHSA-2026:43825: Important: kpatch-patch-5_14_0-687_10_1 security update
RHSA-2026:43826: Important: kpatch-patch-6_12_0-211_16_1 security update
RHSA-2026:41898: Important: .NET 10.0 security, bug fix, and enhancement update
RHSA-2026:41896: Important: .NET 9.0 security, bug fix, and enhancement update
RHSA-2026:41894: Important: .NET 8.0 security, bug fix, and enhancement update
RHSA-2026:41901: Important: .NET 8.0 security, bug fix, and enhancement update
RHSA-2026:41897: Important: .NET 10.0 security, bug fix, and enhancement update
RHSA-2026:41900: Important: .NET 10.0 security, bug fix, and enhancement update
RHSA-2026:41895: Important: .NET 9.0 security, bug fix, and enhancement update

Oracle Linux 6519 Published by Philipp Esselbach 0

Oracle Linux released a comprehensive batch of errata covering versions 7 through 10 that deliver critical security patches for .NET SDKs, PostgreSQL databases, glibc libraries, and numerous other packages across all supported distributions. The updates address over two dozen CVEs in .NET 8, 9, and 10 related to memory safety issues, while PostgreSQL 16 and 18 receive fixes for data integrity risks and privilege escalation vulnerabilities found in recent versions. Bug fix advisories resolve functional problems in the Linux kernel with improvements to KVM shadow paging and IOMMU flush notifications, alongside enhancements to systemd logging, libvirt CPU feature sorting, and qemu-kvm live migration reliability for SCSI reservation handling.

ELBA-2026-39305 Oracle Linux 10 iptables bug fix and enhancement update
ELBA-2026-39295 Oracle Linux 10 libvirt bug fix and enhancement update
ELBA-2026-39294 Oracle Linux 10 numpy bug fix and enhancement update
ELBA-2026-39293 Oracle Linux 10 qemu-kvm bug fix and enhancement update
ELBA-2026-34484 Oracle Linux 10 fontawesome4-fonts bug fix and enhancement update
ELBA-2026-28580 Oracle Linux 10 rust-podman-sequoia bug fix and enhancement update
ELBA-2026-28587 Oracle Linux 10 gdm bug fix and enhancement update
ELBA-2026-26196 Oracle Linux 10 openscap bug fix and enhancement update
ELBA-2026-25921 Oracle Linux 10 scap-security-guide bug fix and enhancement update
ELBA-2026-25224 Oracle Linux 10 aide bug fix and enhancement update
ELBA-2026-22537 Oracle Linux 10 cyrus-sasl bug fix and enhancement update
ELBA-2026-22533 Oracle Linux 10 haproxy bug fix and enhancement update
ELBA-2026-22532 Oracle Linux 10 nmstate bug fix and enhancement update
ELBA-2026-22525 Oracle Linux 10 squid bug fix and enhancement update
ELBA-2026-22524 Oracle Linux 10 gnome-desktop3 bug fix and enhancement update
ELBA-2026-19140 Oracle Linux 10 bootc bug fix and enhancement update
ELBA-2026-19804 Oracle Linux 10 python-pip bug fix and enhancement update
ELBA-2026-500007 Oracle Linux 10 sos bug fix update
ELSA-2026-42668 Important: Oracle Linux 9 libtiff security update
ELSA-2026-42089 Important: Oracle Linux 9 glib2 security update
ELSA-2026-42736 Important: Oracle Linux 9 acl security update
ELSA-2026-42062 Important: Oracle Linux 9 webkit2gtk3 security update
ELSA-2026-41906 Important: Oracle Linux 9 httpd security, bug fix, and enhancement update
ELSA-2026-41905 Important: Oracle Linux 9 dovecot security update
ELSA-2026-41898 Important: Oracle Linux 9 .NET 10.0 security, bug fix, and enhancement update
ELSA-2026-38796 Important: Oracle Linux 9 plexus-utils security update
ELSA-2026-41896 Important: Oracle Linux 9 .NET 9.0 security, bug fix, and enhancement update
ELBA-2026-42071 Oracle Linux 9 qemu-kvm bug fix and enhancement update
ELSA-2026-41894 Important: Oracle Linux 9 .NET 8.0 security, bug fix, and enhancement update
ELBA-2026-39310 Oracle Linux 9 papi bug fix and enhancement update
ELBA-2026-28258 Oracle Linux 9 systemd bug fix and enhancement update
ELBA-2026-28249 Oracle Linux 9 cloud-init bug fix and enhancement update
ELBA-2026-50369 Oracle Linux 9 image-builder bug fix update
ELBA-2026-39179-1 Oracle Linux 8 kernel bug fix update
ELBA-2026-39083-1 Oracle Linux 8 kernel bug fix update
ELSA-2026-42090 Important: Oracle Linux 8 glib2 security update
ELSA-2026-42088 Important: Oracle Linux 8 webkit2gtk3 security update
ELSA-2026-41899 Important: Oracle Linux 8 .NET 9.0 security, bug fix, and enhancement update
ELSA-2026-41901 Important: Oracle Linux 8 .NET 8.0 security, bug fix, and enhancement update
ELSA-2026-41900 Important: Oracle Linux 8 .NET 10.0 security, bug fix, and enhancement update
ELSA-2026-39322 Important: Oracle Linux 8 pacemaker security update
ELSA-2026-35838 Important: Oracle Linux 7 python3 security update
ELSA-2026-30843 Important: Oracle Linux 7 perl-IO-Compress security update
ELSA-2026-27743 Important: Oracle Linux 10 postgresql16 security update
ELBA-2026-25084 Oracle Linux 10 guestfs-tools bug fix and enhancement update
ELSA-2026-27742 Important: Oracle Linux 10 postgresql18 security update
ELSA-2026-38513 Important: Oracle Linux 10 perl-DBI security update
ELSA-2026-39296 Moderate: Oracle Linux 10 libinput security update
ELSA-2026-39272 Important: Oracle Linux 10 git-lfs security update
ELSA-2026-19125 Important: Oracle Linux 10 xorg-x11-server-Xwayland security update
ELSA-2026-28234 Low: Oracle Linux 10 libxml2 security update
ELSA-2026-38499 Important: Oracle Linux 10 openexr security update
ELSA-2026-18139 Moderate: Oracle Linux 10 glibc security update

Fedora Linux 9426 Published by Philipp Esselbach 0

Fedora released a coordinated set of security advisories covering both Fedora 43 and Fedora 44 distributions. The updates upgrade core infrastructure and popular applications including the Linux kernel, Nginx web server stack, Chromium browser, libssh library, LLVM compiler tools, Fractal messaging client, Perl DBI and YAML::Syck packages, along with collectl system monitoring utilities. Each advisory contains patches for multiple actively exploited or high-risk vulnerabilities spanning memory corruption flaws, remote code execution pathways, denial-of-service conditions, and sensitive information exposure vectors.

Fedora 44 Update: kernel-7.1.4-204.fc44
Fedora 44 Update: llvm-22.1.8-4.fc44
Fedora 44 Update: fractal-14.1-1.fc44
Fedora 44 Update: srt-1.5.6-1.fc44
Fedora 44 Update: libssh-0.12.1-1.fc44
Fedora 44 Update: chromium-150.0.7871.128-1.fc44
Fedora 44 Update: nginx-mod-vts-0.2.4-13.fc44
Fedora 44 Update: perl-DBI-1.651-1.fc44
Fedora 44 Update: nginx-mod-headers-more-0.40-3.fc44
Fedora 44 Update: nginx-mod-js-challenge-0^20230517.gitda6852d-11.fc44
Fedora 44 Update: nginx-mod-naxsi-1.6-21.fc44
Fedora 44 Update: nginx-mod-fancyindex-0.6.0-8.fc44
Fedora 44 Update: nginx-mod-modsecurity-1.0.4-16.fc44
Fedora 44 Update: nginx-1.30.4-1.fc44
Fedora 44 Update: nginx-mod-brotli-1.0.0~rc-13.fc44
Fedora 44 Update: perl-YAML-Syck-1.47-1.fc44
Fedora 44 Update: collectl-4.3.20.3-1.fc44
Fedora 43 Update: kernel-7.1.4-104.fc43
Fedora 43 Update: fractal-14.1-1.fc43
Fedora 43 Update: libssh-0.11.5-1.fc43
Fedora 43 Update: srt-1.5.6-1.fc43
Fedora 43 Update: chromium-150.0.7871.128-1.fc43
Fedora 43 Update: perl-DBI-1.651-1.fc43
Fedora 43 Update: perl-YAML-Syck-1.47-1.fc43
Fedora 43 Update: collectl-4.3.20.3-1.fc43

Debian 11005 Published by Philipp Esselbach 0

Debian released a batch of security advisories addressing critical flaws in the NSS cryptographic libraries, Firefox ESR web browser, Chromium browser, and BIND9 DNS server across both current stable and legacy Long Term Support distributions. The NSS update patches four CVEs that could allow denial of service or arbitrary code execution for Debian 11, Debian 12, and older Stretch/Buster releases managed by Freexian, while Firefox ESR and Chromium fixes address over 40 vulnerabilities linked to privilege escalation, sandbox escapes, and data leaks. BIND9 administrators must install the new package version immediately to prevent DNSSEC validation bypasses, cache poisoning attacks, and service disruptions identified in nine separate security issues.

[DLA 4694-1] nss security update
ELA-1781-1 nss security update
ELA-1780-1 nss security update
[DSA 6394-1] firefox-esr security update
[DSA 6396-1] chromium security update
[DSA 6395-1] bind9 security update
[DLA 4695-1] firefox-esr security update

AlmaLinux 2609 Published by Philipp Esselbach 0

AlmaLinux published a batch of security errata on July 22, 2026, targeting widely used system components across versions 8, 9, and 10 to patch critical vulnerabilities. The updates address Important and Moderate severity flaws in packages including Apache HTTP Server, glibc, the Go toolset, Grafana, SSSD, Dovecot, libtiff, and Jackson-databind. Attackers could exploit unpatched systems through symlink traversal privilege escalation, heap-based buffer overflows, arbitrary code execution via polymorphic type validation bypasses, and denial of service conditions triggered by malformed network requests or TLS messages.

ALSA-2026:43420: acl security update (Important)
ALSA-2026:43218: pki-deps:10.6 security update (Important)
ALSA-2026:42733: glibc security update (Moderate)
ALSA-2026:41948: javapackages-tools:201801 security update (Important)
ALSA-2026:42828: httpd:2.4 security, bug fix, and enhancement update (Important)
ALSA-2026:11507: grafana security update (Important)
ALSA-2026:11514: grafana-pcp security update (Important)
ALSA-2026:10704: go-toolset:rhel8 security update (Important)
ALSA-2026:42694: glibc security update (Moderate)
ALSA-2026:35826: grafana-pcp security update (Important)
ALSA-2026:35832: golang-github-openprinting-ipp-usb security update (Important)
ALSA-2026:36189: perl-HTTP-Daemon security update (Important)
ALSA-2026:35827: grafana security update (Important)
ALSA-2026:41937: sssd security update (Important)
ALSA-2026:43400: dogtag-pki security update (Important)
ALSA-2026:42739: acl security update (Important)
ALSA-2026:41905: dovecot security update (Important)
ALSA-2026:42736: acl security update (Important)
ALSA-2026:42668: libtiff security update (Important)
2026-07-22

Software 44604 Published by Philipp Esselbach 0

System76 has released COSMIC Epoch 1.4.0, the fifth incremental update to its Rust-native Wayland desktop, with stability fixes landing on July 22, 2026. The update introduces a dedicated cosmic-sound-theme package and delivers 13 patches to cosmic-comp, including fixes for game fullscreen modes, fractional scaling pointer accuracy, and artifact-causing redraws. User-facing improvements span the ecosystem, featuring an MTP fallback in cosmic-files, a search reset in the launcher, and crash prevention in the panel component. 

Manjaro Linux 175 Published by Philipp Esselbach 0

Manjaro Linux 26.1 "Bian-May" RC2 has been announced as a preview release on July 22, 2026, following the January launch of version 26.0 "Anh-Linh" and continuing the project's roughly biannual release schedule. The build provides three kernel choices—Linux 7.1, 6.18 LTS, and 6.12 LTS, while the GNOME 50 edition introduces Big Linux-derived parental controls, improved variable refresh rate stability, and hardware-accelerated remote desktop support for NVIDIA users. KDE Plasma 6.6 and XFCE 4.20 editions also land with updates, adding day/night theme switching, accessibility filters, and pixel-based panel configuration.

Software 44604 Published by Philipp Esselbach 0

Gear Lever 4.6.2 has been released to resolve a crash when importing AppImages containing literal percent signs like %F or %U in their metadata. The patch disables Python's configparser interpolation in ini_config.py by passing interpolation=None, preventing ValueError exceptions during the save process. Maintainer Lorenzo Paderi merged the one-line fix from PR #489 just ten hours after the issue was reported on Arch Linux. The update arrives during a rapid release cycle for the tool, following 4.6.0 and 4.6.1 earlier in July, and is available now via Flathub.

Software 44604 Published by Philipp Esselbach 0

Visual Studio Code 1.130 introduces the Agent Host Protocol, decoupling AI agent sessions from individual editor windows so they can run simultaneously across multiple panes. The new process model brings worktree isolation to Claude and Codex harnesses, aligns the Copilot SDK with its standalone products, and adds AI-gated risk evaluation to slash manual approval prompts. Beyond the agent overhaul, Microsoft bundles TypeScript 7 into the repository, patches terminal diff link resolution for mnemonic prefixes, and surfaces aggregate AI credit usage for Copilot Business and Enterprise teams. You can opt into the new architecture starting today by flipping chat.agentHost.enabled in your settings.

Software 44604 Published by Philipp Esselbach 0

Exim 4.99.5 dropped today to patch two privilege escalation flaws affecting mail server versions 4.82 through 4.99.4. The high-severity bug allows directory traversal through queue name arguments, while the medium-severity issue exploits .forward file expansion when force_command is enabled on a pipe transport. In a first for the project, the advisory credits "authors ingested as the training corpus," highlighting how automated LLM analysis is increasingly surfacing legacy security issues. Administrators should upgrade immediately and audit their pipe transport configurations to eliminate the exploit window.

Software 44604 Published by Philipp Esselbach 0

ISC has officially released BIND 9.20.26 and 9.21.24 to patch a severe cluster of vulnerabilities in the named daemon. The stable branch update targets critical DNSSEC validation bypasses, use-after-free flaws in DNS-over-HTTPS, and memory exhaustion bugs that could allow cache poisoning or remote code execution. Recursive resolvers and authoritative servers running versions older than 9.20.20 are sitting in the blast radius and need an immediate upgrade. 

Software 44604 Published by Philipp Esselbach 0

Mesa 26.2.0 RC2 has landed, bringing a heavy batch of AV1 and H.265 Vulkan video fixes alongside a significant performance push for the open-source NVIDIA NVK driver that's narrowing the gap with proprietary stacks. Developed by Eric Engestrom with contributions from over thirty-five developers, the release also introduces OpenCL 3.1 support across multiple drivers, broad 32-bit target capabilities via Rusticl, and a consolidation of the Intel "Jay" shader backend. The update includes targeted workarounds for titles like Cyberpunk 2077 and Blockland, while simultaneous releases from DXVK, D7VK, and Firefox 153 indicate a coordinated push for better Linux graphics compatibility.

Reviews 52697 Published by Philipp Esselbach 0

Today’s hardware coverage features hands-on testing of several new components, starting with the Gamdias Atlas P6 CG chassis that adds curved glass to improve airflow and aesthetics. Cooling enthusiasts will find detailed performance data on the Noctua NH-D15 G2 chromax.black tower cooler alongside efficiency reports for two new ATX 3.1 power supplies from Seasonic and Gigabyte. Graphics cards also take center stage, with reviewers examining gaming benchmarks, ray tracing capabilities, and thermal management on the compact ASUS ProArt RTX 5080 OC model. The roundup rounds out with entertainment and office gear, covering the Splatoon Raiders looter-shooter spinoff and an ergonomic chair built for taller adults.

Casing: Gamdias Atlas P6 CG PC Case Review
Cooling: Noctua NH-D15 G2 chromax.black CPU Tower Cooler Review – The Return of the King in Black
Furniture: Boulies OP180 Review
Gaming: Splatoon Raiders Review – A More Narrowly-Targeted Spinoff that Hits the Looter-Shooter Spot
Graphics Cards: ASUS ProArt GeForce RTX 5080 OC Review: Compact Blackwell Power
Power: Seasonic Prime TX-1600W Noctua Edition Review, Gigabyte AE850PM PG5 850W ATX v3.1 PSU Review

Bazzite 42 Published by Philipp Esselbach 0

Bazzite Linux 44.20260721 dropped on July 21, delivering an accelerated kernel jump to 7.1.3-ogc5.1, dual Nvidia driver branches, and a host of gaming stack updates including Gamescope and Bazaar. The release reflects the Open Gaming Collective's push to upstream gaming patches across member distros, while giving GeForce users a clear choice between bleeding-edge open drivers and stability-focused LTS options. As a leading non-Valve gaming Linux distro, the immutable build continues to refine its support for handhelds like the Steam Deck and Legion Go, though community discussions are already highlighting sleep cycle quirks and Flatpak hang issues.

Software 44604 Published by Philipp Esselbach 0

GOverlay 1.8.9 shipped on July 22, 2026, delivering the per-game MangoHud blacklist support the Linux gaming community has wanted since the project's early days. The update also aligns global and per-game configuration paths, patches a Flatpak sandbox bug for non-Steam titles, and finally clears up a changelog fetch deadlock that could previously freeze the app on startup. Developer Benjamim Gois continues his rapid mid-2026 release cadence across the unified Vulkan overlay manager, which now consolidates MangoHud, vkBasalt, vkSumi, OptiScaler, and Proton tweaks behind a single card-based interface. You can grab the new build as an AppImage, Flatpak, deb, or rpm straight from the official GitHub releases page.

Software 44604 Published by Philipp Esselbach 0

OBS Studio 32.2.0 is now available and brings critical updates for Linux users, including a major PipeWire fix for NVIDIA GPUs that resolves long-standing screen capture issues on Wayland. The release also adds VAAPI AV1 support for WHIP streaming, allowing hardware-accelerated encoding to function properly with modern streaming workflows. A redesigned source dialog, copy/paste API improvements, and dynamic bitrate support round out the feature list, though the official packaging remains limited to Ubuntu 24.04 and 26.04. While Wayland flickering on high-end NVIDIA cards remains an unresolved issue, switching to X11 or safe mode provides a reliable workaround.

Ubuntu 7159 Published by Philipp Esselbach 0

Ubuntu published a batch of security notices to patch critical flaws across snapd, multiple Linux kernel variants, AccountsService, OpenSSH, CUPS, ImageMagick, and jbig2dec. The patches address local privilege escalation risks in snapd and AccountsService, memory safety bugs that trigger crashes or arbitrary code execution in ImageMagick and jbig2dec, and information disclosure flaws tied to AMD processor behavior inside the kernel. OpenSSH users on Ubuntu 16.04 LTS receive a correction for improper certificate principal matching, while CUPS administrators get protection against control character injection that previously allowed unauthenticated command execution as the lp user.

[USN-8579-1] snapd vulnerabilities
[USN-8576-1] Linux kernel (NVIDIA Tegra) vulnerabilities
[USN-8575-1] Linux kernel vulnerabilities
[USN-8574-1] Linux kernel (GCP FIPS) vulnerabilities
[USN-8580-1] AccountsService vulnerabilities
[USN-8577-1] OpenSSH vulnerability
[USN-8578-1] CUPS control character injection vulnerability
[USN-8580-2] AccountsService vulnerabilities
[USN-8558-1] ImageMagick vulnerabilities
[USN-8582-1] jbig2dec vulnerabilities

SUSE 5716 Published by Philipp Esselbach 0

SUSE published a batch of security updates for openSUSE and SUSE Linux Enterprise distributions, identifying flaws in packages ranging from the Linux Kernel and Chromium to LibreOffice and ImageMagick. Administrators should prioritize the important advisories affecting sssd, libreoffice, libkrun, go1.25-openssl, aws-nitro-enclaves-cli, python-aiohttp, vim, opam, chromium, and the Linux Kernel. Moderate-severity fixes are also available for beets, nghttp2, python-tornado6, php7, avahi, kubevirt container disk, acl, iscsiuio, libsoup, libgit2, and MozillaFirefox.

openSUSE-SU-2026:21383-1: moderate: Security update for beets
openSUSE-SU-2026:21382-1: important: Security update for chromium
openSUSE-SU-2026:21380-1: important: Security update for opam
openSUSE-SU-2026:21372-1: important: Security update for python-aiohttp
openSUSE-SU-2026:21374-1: important: Security update for vim
openSUSE-SU-2026:11317-1: moderate: iscsiuio-0.7.8.8-112.1 on GA media
openSUSE-SU-2026:11316-1: moderate: libsoup-3_0-0-3.6.6-7.1 on GA media
openSUSE-SU-2026:11315-1: moderate: libgit2-1_9-1.9.6-1.1 on GA media
openSUSE-SU-2026:11311-1: moderate: MozillaFirefox-152.0.6-1.1 on GA media
openSUSE-SU-2026:11313-1: moderate: avahi-0.8-45.1 on GA media
openSUSE-SU-2026:11314-1: moderate: kubevirt1.8-container-disk-1.8.4-2.1 on GA media
openSUSE-SU-2026:11312-1: moderate: acl-2.4.0-1.1 on GA media
openSUSE-SU-2026:11310-1: moderate: ImageMagick-7.1.2.27-3.1 on GA media
SUSE-SU-2026:3139-1: important: Security update for sssd
SUSE-SU-2026:3140-1: important: Security update for libreoffice
openSUSE-SU-2026:0255-1: important: Security update for libkrun
SUSE-SU-2026:3151-1: important: Security update for go1.25-openssl
SUSE-SU-2026:3152-1: important: Security update for aws-nitro-enclaves-cli
SUSE-SU-2026:3153-1: moderate: Security update for nghttp2
SUSE-SU-2026:3155-1: moderate: Security update for python-tornado6
SUSE-SU-2026:3156-1: important: Security update for the Linux Kernel
SUSE-SU-2026:3165-1: moderate: Security update for php7

Slackware 1279 Published by Philipp Esselbach 0

Slackware Linux released security updates for libssh and mozilla-firefox affecting versions 15.0 and -current to patch critical vulnerabilities identified in CVE-2026-15370 through CVE-2026-59849 alongside dozens of additional Firefox advisories. The libssh upgrade resolves a stack buffer overflow in SFTP server longname construction, denial of service flaws triggered by oversized read lengths and unchecked fork failures, an information disclosure via ProxyCommand username expansion, and an integrity downgrade linked to OpenSSL AES-GCM tag verification. Mozilla-Firefox receives version 140.13.0esr with security fixes and improvements based on upstream release notes, covering patches for numerous CVEs that address memory safety errors and privilege escalation risks across the browser engine.

libssh (SSA:2026-202-01)
mozilla-firefox (SSA:2026-202-02)

Rocky Linux 962 Published by Philipp Esselbach 0

ocky Linux 8 administrators should apply three new errata packages addressing critical vulnerabilities in webkit2gtk3, glib2, and httpd:2.4. The RLSA-2026:42088 and RLSA-2026:42090 advisories roll out required security patches for the GTK rendering engine and core utility library respectively. A third advisory, RLSA-2026:42828, combines security fixes with bug corrections and performance improvements for Apache HTTP Server modules including mod_http2 and module.mod_md. Each vulnerability carries a Common Vulnerability Scoring System base rating to help system operators prioritize remediation efforts across their infrastructure.

RLSA-2026:42088: Important: webkit2gtk3 security update
RLSA-2026:42090: Important: glib2 security update
RLSA-2026:42828: Important: httpd:2.4 security, bug fix, and enhancement update

Red Hat 9468 Published by Philipp Esselbach 0

Red Hat released a batch of security advisories for RHEL 8, 9, and 10 addressing vulnerabilities in core components like httpd:2.4, acl, glibc, kernel, libtiff, evince, postgresql:13, rhc-worker-playbook, and kernel-rt. The OpenShift Container Platform also received multiple releases with version-specific fixes, including updates for 4.20.30, 4.21.25, and 4.22.6 to resolve bugs and patch security issues rated as Important severity. Red Hat Product Security assigned CVSS base scores to each vulnerability listed in the references section, helping administrators prioritize remediation efforts across their infrastructure.

RHSA-2026:42828: Important: httpd:2.4 security, bug fix, and enhancement update
RHSA-2026:42739: Important: acl security update
RHSA-2026:42875: Important: RHEL AI 3.5 RPM runtime CVE fix - aom
RHSA-2026:42733: Moderate: glibc security update
RHSA-2026:40779: Important: OpenShift Container Platform 4.21.25 bug fix and security update
RHSA-2026:42694: Moderate: glibc security update
RHSA-2026:42668: Important: libtiff security update
RHSA-2026:42692: Important: evince security update
RHSA-2026:42552: Important: kernel security, bug fix, and enhancement update
RHSA-2026:42555: Important: postgresql:13 security update
RHSA-2026:42550: Important: kernel-rt security, bug fix, and enhancement update
RHSA-2026:42946: Important: rhc-worker-playbook security, bug fix, and enhancement update
RHSA-2026:42919: Important: kernel security, bug fix, and enhancement update
RHSA-2026:42736: Important: acl security update
RHSA-2026:40787: Important: OpenShift Container Platform 4.20.30 bug fix and security update
RHSA-2026:40764: Important: OpenShift Container Platform 4.22.6 bug fix and security update

Fedora Linux 9426 Published by Philipp Esselbach 0

The Fedora Project released security updates for Fedora 43 and 44 addressing multiple vulnerabilities across nuclei, the Linux kernel, routinator dependencies, perl-Crypt-OpenSSL-X509, btrbk, and mupdf. The nuclei update to version 3.11.0 resolves over a dozen CVEs including cross-site scripting flaws and unauthorized command execution risks, while kernel releases fix critical issues in net/can and KVM subsystems alongside btrbk patches for CVE-2026-62943 and mupdf corrections for an out-of-bounds read disclosure. Updates to the rust-routinator ecosystem address path traversal vulnerabilities in rsync URI parsing, panics during AS number handling, and XML regression issues discovered through a security audit.

Fedora 43 Update: nuclei-3.11.0-1.fc43
Fedora 43 Update: kernel-7.1.4-102.fc43
Fedora 43 Update: perl-Crypt-OpenSSL-X509-2.1.3-1.fc43
Fedora 43 Update: rust-syslog-7.0.0-2.fc43
Fedora 43 Update: rust-rpki-0.19.3-2.fc43
Fedora 43 Update: rust-fern-0.7.1-6.fc43
Fedora 43 Update: rust-routinator-0.15.2-1.fc43
Fedora 44 Update: kernel-7.1.4-202.fc44
Fedora 44 Update: btrbk-0.32.7-1.fc44
Fedora 44 Update: mupdf-1.27.2-2.fc44
Fedora 44 Update: nuclei-3.11.0-1.fc44
Fedora 44 Update: perl-Crypt-OpenSSL-X509-2.1.3-1.fc44
Fedora 44 Update: rust-rpki-0.19.3-2.fc44
Fedora 44 Update: rust-fern-0.7.1-6.fc44
Fedora 44 Update: rust-ifcfg-devname-1.1.1-5.fc44
Fedora 44 Update: rust-syslog-7.0.0-2.fc44
Fedora 44 Update: rust-routinator-0.15.2-1.fc44

Debian 11005 Published by Philipp Esselbach 0

Debian released multiple security advisories addressing vulnerabilities in rtpengine, the Linux kernel, Samba, Tomcat8, Roundcube, xz-utils, and ImageMagick. The Linux kernel update for Debian stable (trixie) resolves twelve CVEs linked to privilege escalation and denial of service, while Samba fixes five issues including remote code execution and certificate verification flaws across Debian 10 and 11. Roundcube patches six vulnerabilities involving cross-site scripting and account takeover risks on Debian 11 and 12, whereas xz-utils addresses a buffer overflow in the LZMA decoder and ImageMagick corrects nine flaws that could allow arbitrary code execution via malformed image files.

[DLA 4691-1] rtpengine security update
[DSA 6393-1] linux security update
[DLA 4692-1] samba security update
ELA-1777-1 tomcat8 security update (by )
[DLA 4693-1] roundcube security update
[DLA 4690-1] xz-utils security update
ELA-1779-1 samba security update (by )
ELA-1778-1 imagemagick security update (by )

AlmaLinux 2609 Published by Philipp Esselbach 0

AlmaLinux issued a batch of security advisories on July 21, 2026, patching dozens of critical vulnerabilities across packages like gstreamer1-plugins-good, freerdp, webkit2gtk3, nodejs, python3.14, and the Apache httpd server for versions 8, 9, and 10. The flaws span memory corruption issues, heap buffer overflows triggered by malformed media files or network packets, denial of service conditions caused by unbounded resource consumption, and remote code execution risks embedded in directory services and web rendering engines. Several advisories specifically address sandbox escape vulnerabilities that allow malicious websites to access restricted system resources or leak sensitive user data directly from the browser process.

ALSA-2026:36675: gstreamer1-plugins-good security update (Important)
ALSA-2026:39547: perl-XML-LibXML security update (Important)
ALSA-2026:36196: 389-ds-base security update (Important)
ALSA-2026:39976: hplip security update (Important)
ALSA-2026:36203: freerdp security update (Important)
ALSA-2026:36673: gstreamer1-plugins-ugly-free security update (Moderate)
ALSA-2026:39573: yggdrasil security update (Important)
ALSA-2026:41988: dovecot security update (Important)
ALSA-2026:42063: glib2 security update (Important)
ALSA-2026:42096: c-ares security update (Important)
ALSA-2026:41947: nodejs:22 security, bug fix, and enhancement update (Important)
ALSA-2026:42088: webkit2gtk3 security update (Important)
ALSA-2026:42090: glib2 security update (Important)
ALSA-2026:42550: kernel-rt security, bug fix, and enhancement update (Important)
ALSA-2026:42552: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:42062: webkit2gtk3 security update (Important)
ALSA-2026:42089: glib2 security update (Important)
ALSA-2026:41949: python3.14 security update (Important)
ALSA-2026:41906: httpd security, bug fix, and enhancement update (Important)

[ Archive ]