Multiple Linux distributions, including AlmaLinux, Debian GNU/Linux, Fedora Linux, Oracle Linux, Red Hat Enterprise Linux, Rocky Linux, and Ubuntu Linux, have released security updates to address vulnerabilities in various packages. The updates include fixes for issues such as denial-of-service, memory disclosure, and information leakage, which could affect the stability and security of Linux systems. Different versions of each distribution have been updated with patches for CVEs ranging from moderate to important levels of severity. Users are advised to run the appropriate command, such as "sudo apt update" or "sudo dnf upgrade -y," to apply the updates and ensure their systems remain secure.
Linux Security Roundup for Week 10, 2026
A summary of the past week's security patches is provided below, addressing critical issues in major Linux platforms:
AlmaLinux
AlmaLinux has released several security updates to address vulnerabilities in various packages. The updates include fixes for issues such as stack-based buffer overflows and denial-of-service vulnerabilities in packages like gnutls, kernel, libpng, and skopeo. Additionally, multiple important security updates have been released for AlmaLinux 8, 9, and 10, addressing vulnerabilities in packages including container-tools, firefox, nginx, Thunderbird, and Go-rpm-macros. These updates are designed to improve the overall security of the operating system by patching known vulnerabilities and fixing memory safety bugs.
- ALSA-2026:3477: gnutls security update (Moderate)
- ALSA-2026:3275: kernel security update (Moderate)
- ALSA-2026:3405: libpng security update (Important)
- ALSA-2026:3340: skopeo security update (Important)
- ALSA-2026:3341: containernetworking-plugins security update (Important)
- ALSA-2026:3463: kernel-rt security update (Moderate)
- ALSA-2026:3428: container-tools:rhel8 security update (Important)
- ALSA-2026:3464: kernel security update (Moderate)
- ALSA-2026:3407: mingw-fontconfig security update (Important)
- ALSA-2026:3338: firefox security update (Important)
- ALSA-2026:3668: go-rpm-macros security update (Important)
- ALSA-2026:3638: nginx:1.24 security update (Moderate)
- ALSA-2026:3488: kernel security update (Moderate)
- ALSA-2026:3516: thunderbird security update (Important)
- ALSA-2026:3507: valkey security update (Important)
- ALSA-2026:3476: udisks2 security update (Important)
- ALSA-2026:3551: libpng security update (Important)
- ALSA-2026:3443: valkey security update (Important)
- ALSA-2026:3517: thunderbird security update (Important)
- ALSA-2026:3669: go-rpm-macros security update (Important)
- ALSA-2026:3515: thunderbird security update (Important)
- ALSA-2026:3864: delve security update (Important)
- ALSA-2026:3928: git-lfs security update (Important)
- ALSA-2026:3887: postgresql16 security update (Important)
Debian GNU/Linux
Debian has released several security updates to address vulnerabilities in various packages. The updates include fixes for issues such as arbitrary command execution via malformed images in the LXD package, denial of service or memory disclosure in PHP, and access to protected information and arbitrary code execution in the SPIP website engine. Additionally, multiple important security updates have been released for Debian GNU/Linux 12 (Bookworm) and 13 (Trixie), including updates for Firefox ESR and OpenJDK Java runtime. These updates are designed to improve the overall security of the operating system by patching known vulnerabilities.
- [DSA 6153-1] lxd security update
- [DSA 6154-1] php8.2 security update
- [DLA 4496-1] firefox-esr security update
- [SECURITY] [DSA 6155-1] spip security update
- [SECURITY] [DSA 6156-1] gimp security update
- ELA-1655-1 openjdk-8 security update
- [DSA 6157-1] chromium security update
Fedora Linux
Fedora has released numerous security updates to address vulnerabilities in various packages, including Chromium Embedded Framework (CEF), NextCloud, Python, Erlang, Perl-Crypt-URandom, Keylime, APT, yt-dlp, coturn, and many others. The updates aim to fix issues such as denial-of-service, memory disclosure, and information leakage, which could affect the stability and security of Fedora systems. Multiple vulnerabilities have been addressed in different versions of Fedora, including 42, 43, and 44, with fixes for CVEs ranging from 2025-11083 to 2026-26331. These updates are designed to improve the overall security of the operating system by patching known vulnerabilities.
- Fedora 42 Update: cef-145.0.25^chromium145.0.7632.75-4.fc42
- Fedora 42 Update: nextcloud-32.0.6-1.fc42
- Fedora 42 Update: pgadmin4-9.12-2.fc42
- Fedora 43 Update: python3.12-3.12.12-4.fc43
- Fedora 43 Update: nextcloud-32.0.6-1.fc43
- Fedora 43 Update: pgadmin4-9.12-2.fc43
- Fedora 43 Update: cef-145.0.25^chromium145.0.7632.75-4.fc43
- Fedora 42 Update: python-django4.2-4.2.28-1.fc42
- Fedora 42 Update: erlang-26.2.5.17-1.fc42
- Fedora 42 Update: python-pillow-11.1.0-3.fc42
- Fedora 43 Update: erlang-26.2.5.17-1.fc43
- Fedora 42 Update: perl-Crypt-URandom-0.55-1.fc42
- Fedora 42 Update: avr-binutils-2.45-4.fc42.1
- Fedora 42 Update: keylime-7.14.1-1.fc42
- Fedora 42 Update: python-apt-3.1.0-1.fc42
- Fedora 42 Update: keylime-agent-rust-0.2.9-1.fc42
- Fedora 42 Update: apt-3.1.15-2.fc42
- Fedora 42 Update: rsync-3.4.1-5.fc42
- Fedora 43 Update: perl-Crypt-URandom-0.55-1.fc43
- Fedora 43 Update: avr-binutils-2.45-4.fc43.1
- Fedora 43 Update: python-apt-3.1.0-1.fc43
- Fedora 43 Update: keylime-agent-rust-0.2.9-1.fc43
- Fedora 43 Update: keylime-7.14.1-1.fc43
- Fedora 43 Update: apt-3.1.15-2.fc43
- Fedora 42 Update: yt-dlp-2026.02.21-1.fc42
- Fedora 42 Update: coturn-4.9.0-1.fc42
- Fedora 42 Update: valkey-8.0.7-1.fc42
- Fedora 42 Update: php-zumba-json-serializer-3.2.4-1.fc42
- Fedora 43 Update: coturn-4.9.0-1.fc43
- Fedora 43 Update: valkey-8.1.6-1.fc43
- Fedora 43 Update: php-zumba-json-serializer-3.2.4-1.fc43
- Fedora 44 Update: freerdp-3.23.0-1.fc44
- Fedora 42 Update: libsixel-1.10.5-5.fc42
- Fedora 42 Update: opensips-3.5.9-2.fc42
- Fedora 43 Update: libsixel-1.10.5-5.fc43
- Fedora 44 Update: yt-dlp-2026.02.21-1.fc44
- Fedora 42 Update: chezmoi-2.69.4-1.fc42
- Fedora 42 Update: chromium-145.0.7632.116-1.fc42
- Fedora 42 Update: gh-2.87.3-1.fc42
- Fedora 42 Update: prometheus-3.10.0-1.fc42
- Fedora 43 Update: erlang-hex_core-0.12.2-1.fc43
- Fedora 43 Update: staticcheck-2026.1-1.fc43
- Fedora 44 Update: erlang-hex_core-0.12.2-1.fc44
- Fedora 44 Update: chromium-145.0.7632.116-1.fc44
- Fedora 44 Update: nss-3.120.1-1.fc44
- Fedora 44 Update: firefox-148.0-1.fc44
- Fedora 43 Update: python3.10-3.10.19-4.fc43
- Fedora 43 Update: prometheus-3.10.0-1.fc43
- Fedora 43 Update: python-asyncmy-0.2.11-2.fc43
- Fedora 43 Update: python3.11-3.11.14-5.fc43
- Fedora 44 Update: nextcloud-32.0.6-1.fc44
- Fedora 44 Update: pgadmin4-9.12-2.fc44
- Fedora 44 Update: cef-145.0.25^chromium145.0.7632.75-4.fc44
- Fedora 44 Update: postgresql16-anonymizer-3.0.5-2.fc44
- Fedora 44 Update: python3.9-3.9.25-6.fc44
- Fedora 44 Update: microcode_ctl-2.1-74.fc44
- Fedora 44 Update: keylime-agent-rust-0.2.9-1.fc44
- Fedora 44 Update: keylime-7.14.1-1.fc44
- Fedora 43 Update: cef-145.0.28^chromium145.0.7632.159-1.fc43
- Fedora 43 Update: vim-9.2.112-2.fc43
- Fedora 44 Update: cef-145.0.28^chromium145.0.7632.159-1.fc44
Oracle Linux
Oracle Linux has released several security updates to address vulnerabilities in various packages, including golang-github-openprinting-ipp-usb, freerdp, protobuf, munge, grafana-pcp, ipset, 389-ds-base, numpy, buildah, podman, samba, pacemaker, containernetworking-plugins, skopeo, runc, and glibc. The updates aim to fix issues such as denial-of-service, memory disclosure, and information leakage, which could affect the stability and security of Oracle Linux systems. Multiple vulnerabilities have been addressed in different versions of Oracle Linux, including 10, 9, and 8, with fixes for CVEs ranging from 2025-61729 to others. These updates are designed to improve the overall security of the operating system by patching known vulnerabilities.
- ELSA-2026-3092 Important: Oracle Linux 10 golang-github-openprinting-ipp-usb security update
- ELSA-2026-3035 Important: Oracle Linux 10 grafana-pcp security update
- ELSA-2026-3068 Important: Oracle Linux 10 freerdp security update
- ELSA-2026-3094 Important: Oracle Linux 10 protobuf security update
- ELSA-2026-50112 Important: Unbreakable Enterprise kernel security update
- ELSA-2026-50112 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
- ELSA-2026-3033 Important: Oracle Linux 10 munge security update
- ELSA-2026-2914 Important: Oracle Linux 10 grafana security update
- ELSA-2026-3095 Important: Oracle Linux 9 protobuf security update
- ELSA-2026-3067 Important: Oracle Linux 9 freerdp security update
- ELSA-2026-3040 Important: Oracle Linux 9 grafana-pcp security update
- ELSA-2026-2920 Important: Oracle Linux 9 grafana security update
- ELSA-2026-3034 Important: Oracle Linux 9 munge security update
- ELSA-2026-2783 Important: Oracle Linux 9 nodejs:20 security update
- ELSA-2026-3031 Important: Oracle Linux 9 libpng15 security update
- ELSA-2026-2782 Important: Oracle Linux 9 nodejs:22 security update
- ELBA-2026-2779 Oracle Linux 9 redis bug fix and enhancement update
- ELBA-2026-50127 Oracle Linux 9 oracle-database-preinstall-19c bug fix update
- ELBA-2026-50117 Oracle Linux 9 udisks2 bug fix update
- ELBA-2026-2720-1 Oracle Linux 8 kernel bug fix update
- ELSA-2026-2231 Important: Oracle Linux 7 firefox security update
- ELSA-2026-0847 Important: Oracle Linux 7 java-11-openjdk security update
- ELSA-2026-1677 Important: Oracle Linux 7 gnupg2 security update
- ELSA-2026-0755 Important: Oracle Linux 7 kernel security update
- ELBA-2026-3160 Oracle Linux 10 ipset bug fix and enhancement update
- ELSA-2026-3208 Moderate: Oracle Linux 10 389-ds-base security update
- ELBA-2026-3157 Oracle Linux 10 nftables bug fix and enhancement update
- ELBA-2026-3159 Oracle Linux 10 iptables bug fix and enhancement update
- ELBA-2026-3156 Oracle Linux 10 numpy bug fix and enhancement update
- ELBA-2026-3163 Oracle Linux 10 opencryptoki bug fix and enhancement update
- ELBA-2026-3158 Oracle Linux 10 firewalld bug fix and enhancement update
- ELBA-2026-3155 Oracle Linux 10 virt-v2v bug fix and enhancement update
- ELBA-2026-3154 Oracle Linux 10 libvirt bug fix and enhancement update
- ELSA-2026-3189 Moderate: Oracle Linux 9 389-ds-base security update
- ELSA-2026-3066 Moderate: Oracle Linux 9 kernel security update
- ELBA-2026-50129 Oracle Linux 9 scap-security-guide bug fix update
- ELSA-2026-3042 Moderate: Oracle Linux 8 openssl security update
- ELBA-2026-50116 Oracle Linux 8 oVirt 4.5 ovirt-engine bug fix update
- ELSA-2026-3032 Important: Oracle Linux 8 munge security update
- ELSA-2026-3297 Important: Oracle Linux 10 buildah security update
- ELSA-2026-3336 Important: Oracle Linux 10 podman security update
- ELBA-2026-3161 Oracle Linux 10 samba bug fix and enhancement update
- ELBA-2026-3153 Oracle Linux 10 pacemaker bug fix and enhancement update
- ELSA-2026-3341 Important: Oracle Linux 9 containernetworking-plugins security update
- ELSA-2026-3340 Important: Oracle Linux 9 skopeo security update
- ELSA-2026-3291 Important: Oracle Linux 9 runc security update
- ELSA-2026-3188 Important: Oracle Linux 8 grafana security update
- ELSA-2026-3187 Important: Oracle Linux 8 grafana-pcp security update
- ELSA-2026-3083 Important: Oracle Linux 8 kernel security update
- ELBA-2026-3126 Oracle Linux 8 389-ds:1.4 bug fix and enhancement update
- ELBA-2026-50130 Oracle Linux 8 glibc bug fix update
- ELBA-2026-50128 Oracle Linux 8 scap-security-guide bug fix update
- ELSA-2026-1590 Important: Oracle Linux 7 gimp security update
- ELSA-2026-3443 Important: Oracle Linux 10 valkey security update
- ELSA-2026-3361 Important: Oracle Linux 10 firefox security update
- ELSA-2026-3354 Important: Oracle Linux 10 python-pyasn1 security update
- ELSA-2026-3339 Important: Oracle Linux 9 firefox security update
- ELSA-2026-3343 Important: Oracle Linux 10 skopeo security update
- ELSA-2026-3275 Moderate: Oracle Linux 10 kernel security update
- ELSA-2026-3405 Important: Oracle Linux 9 libpng security update
- ELSA-2026-3359 Important: Oracle Linux 9 python-pyasn1 security update
- ELBA-2026-2778 Oracle Linux 9 WALinuxAgent bug fix and enhancement update
- ELSA-2026-3337 Important: Oracle Linux 9 podman security update
- ELBA-2026-3083-1 Oracle Linux 8 kernel bug fix update
- ELSA-2026-3298 Important: Oracle Linux 9 buildah security update
- ELSA-2026-3338 Important: Oracle Linux 8 firefox security update
- ELSA-2026-3334 Important: Oracle Linux 8 freerdp security update
- ELSA-2026-3428 Important: Oracle Linux 8 container-tools:rhel8 security update
- ELSA-2026-3407 Important: Oracle Linux 8 mingw-fontconfig security update
Red Hat Enterprise Linux
Red Hat has released several security updates to address vulnerabilities in various packages, including yggdrasil, 389-ds-base, firefox, grafana, kernel, thunderbird, libpng, nginx, and many others. The updates aim to fix issues such as denial-of-service, memory disclosure, and information leakage, which could affect the stability and security of Red Hat Enterprise Linux systems. Multiple vulnerabilities have been addressed in different versions of RHEL, including 10 and earlier, with fixes for CVEs ranging from various scores to 5 or higher. These updates are designed to improve the overall security of the operating system by patching known vulnerabilities.
- RHSA-2026:3506: Important: yggdrasil security update
- RHSA-2026:3504: Moderate: 389-ds-base security update
- RHSA-2026:3493: Important: firefox security update
- RHSA-2026:3492: Important: firefox security update
- RHSA-2026:3491: Important: firefox security update
- RHSA-2026:3488: Moderate: kernel security update
- RHSA-2026:3489: Important: go-toolset:rhel8 security update
- RHSA-2026:3471: Important: go-toolset:rhel8 security update
- RHSA-2026:3469: Important: golang security update
- RHSA-2026:3473: Important: golang security update
- RHSA-2026:3470: Important: go-toolset:rhel8 security update
- RHSA-2026:3464: Moderate: kernel security update
- RHSA-2026:3463: Moderate: kernel-rt security update
- RHSA-2026:3529: Important: grafana security update
- RHSA-2026:3520: Moderate: kernel security update
- RHSA-2026:3516: Important: thunderbird security update
- RHSA-2026:3496: Important: firefox security update
- RHSA-2026:3507: Important: valkey security update
- RHSA-2026:3497: Important: firefox security update
- RHSA-2026:3495: Important: firefox security update
- RHSA-2026:3494: Important: firefox security update
- RHSA-2026:3476: Important: udisks2 security update
- RHSA-2026:3472: Important: golang security update
- RHSA-2026:3468: Important: go-toolset:rhel8 security update
- RHSA-2026:3551: Important: libpng security update
- RHSA-2026:3517: Important: thunderbird security update
- RHSA-2026:3515: Important: thunderbird security update
- RHSA-2026:3477: Moderate: gnutls security update
- RHSA-2026:3576: Important: libpng security update
- RHSA-2026:3574: Important: libpng security update
- RHSA-2026:3575: Important: libpng security update
- RHSA-2026:3579: Moderate: kernel security update
- RHSA-2026:3573: Important: libpng security update
- RHSA-2026:3577: Important: libpng security update
- RHSA-2026:3638: Moderate: nginx:1.24 security update
- RHSA-2026:3634: Important: kernel-rt security update
- RHSA-2026:3692: Moderate: kernel security update
- RHSA-2026:3685: Important: kernel security update
- RHSA-2026:3668: Important: go-rpm-macros security update
- RHSA-2026:3669: Important: go-rpm-macros security update
- RHSA-2026:3699: Important: yggdrasil-worker-package-manager security update
- RHSA-2026:3416: Important: OpenShift Container Platform 4.17.50 packages and security update
- RHSA-2026:3417: Important: OpenShift Container Platform 4.17.50 bug fix and security update
- RHSA-2026:3752: Important: osbuild-composer security update
- RHSA-2026:3818: Important: grafana-pcp security update
- RHSA-2026:3816: Important: grafana-pcp security update
- RHSA-2026:3815: Important: grafana-pcp security update
- RHSA-2026:3810: Important: kernel security update
- RHSA-2026:3391: Important: OpenShift Container Platform 4.19.25 packages and security update
- RHSA-2026:3753: Important: osbuild-composer security update
- RHSA-2026:3392: Important: OpenShift Container Platform 4.19.25 bug fix and security update
- RHSA-2026:3730: Important: postgresql security update
- RHSA-2026:3865: Important: kpatch-patch-4_18_0-477_107_1, kpatch-patch-4_18_0-477_120_1, kpatch-patch-4_18_0-477_81_1, kpatch-patch-4_18_0-477_89_1, and kpatch-patch-4_18_0-477_97_1 secu ...
- RHSA-2026:3866: Important: kpatch-patch-4_18_0-372_131_1, kpatch-patch-4_18_0-372_137_1, kpatch-patch-4_18_0-372_145_1, kpatch-patch-4_18_0-372_158_1, and kpatch-patch-4_18_0-372_170_1 s ...
- RHSA-2026:3864: Important: delve security update
- RHSA-2026:3415: Important: OpenShift Container Platform 4.13.64 bug fix and security update
- RHSA-2026:3854: Important: grafana security update
- RHSA-2026:3848: Important: kpatch-patch-4_18_0-553_30_1, kpatch-patch-4_18_0-553_40_1, kpatch-patch-4_18_0-553_53_1, kpatch-patch-4_18_0-553_72_1, and kpatch-patch-4_18_0-553_85_1 securi ...
- RHSA-2026:3840: Important: image-builder security update
- RHSA-2026:3841: Important: grafana security update
- RHSA-2026:3836: Important: grafana security update
- RHSA-2026:3822: Important: grafana-pcp security update
- RHSA-2026:3821: Important: grafana-pcp security update
- RHSA-2026:3817: Important: grafana-pcp security update
- RHSA-2026:3820: Important: grafana-pcp security update
- RHSA-2026:3813: Important: go-rpm-macros security update
- RHSA-2026:3812: Important: grafana-pcp security update
- RHSA-2026:3898: Important: osbuild-composer security update
- RHSA-2026:3890: Important: Red Hat Build of Apache Camel 4.14.4 for Spring Boot release.
- RHSA-2026:3887: Important: postgresql16 security update
- RHSA-2026:3886: Important: kpatch-patch-5_14_0-284_104_1, kpatch-patch-5_14_0-284_117_1, kpatch-patch-5_14_0-284_134_1, kpatch-patch-5_14_0-284_148_1, and kpatch-patch-5_14_0-284_92_1 se ...
- RHSA-2026:3880: Important: grafana security update
- RHSA-2026:3879: Important: grafana security update
- RHSA-2026:3868: Important: kpatch-patch-5_14_0-570_17_1, kpatch-patch-5_14_0-570_39_1, and kpatch-patch-5_14_0-570_66_1 security update
- RHSA-2026:3867: Important: kpatch-patch-5_14_0-427_100_1, kpatch-patch-5_14_0-427_44_1, kpatch-patch-5_14_0-427_55_1, kpatch-patch-5_14_0-427_68_2, and kpatch-patch-5_14_0-427_84_1 secur ...
- RHSA-2026:3873: Important: kpatch-patch-5_14_0-70_121_1, kpatch-patch-5_14_0-70_124_1, kpatch-patch-5_14_0-70_132_1, kpatch-patch-5_14_0-70_144_1, and kpatch-patch-5_14_0-70_155_1 securi ...
- RHSA-2026:3842: Moderate: delve security update
- RHSA-2026:3814: Important: go-rpm-macros security update
- RHSA-2026:3839: Important: image-builder security update
- RHSA-2026:3843: Important: delve security update
- RHSA-2026:3838: Important: grafana security update
- RHSA-2026:3835: Important: grafana security update
- RHSA-2026:3833: Important: grafana security update
- RHSA-2026:3831: Important: grafana security update
- RHSA-2026:3955: Important: Red Hat AMQ Broker 7.12.6 release and security update
- RHSA-2026:3951: Important: JBoss EAP XP 5.0 Update 4.0 release. See references for release notes.
- RHSA-2026:3940: Moderate: nfs-utils security update
- RHSA-2026:3948: Important: Red Hat build of Keycloak 26.4.10 Images Update
- RHSA-2026:3947: Important: Red Hat build of Keycloak 26.4.10 Update
- RHSA-2026:3938: Moderate: nfs-utils security update
- RHSA-2026:3929: Important: git-lfs security update
- RHSA-2026:3930: Important: git-lfs security update
- RHSA-2026:3928: Important: git-lfs security update
- RHSA-2026:3931: Important: git-lfs security update
- RHSA-2026:3932: Important: git-lfs security update
- RHSA-2026:3925: Important: Red Hat build of Keycloak 26.2.14 Images Update
- RHSA-2026:3926: Important: Red Hat build of Keycloak 26.2.14 Update
- RHSA-2026:3896: Important: postgresql:15 security update
- RHSA-2026:3900: Moderate: python3.12 security update
- RHSA-2026:3897: Moderate: python3.12 security update
- RHSA-2026:3889: Important: Red Hat JBoss Enterprise Application Platform 8.0.12 security update
- RHSA-2026:3891: Important: Red Hat JBoss Enterprise Application Platform 8.0.12 security update
- RHSA-2026:3892: Important: Red Hat JBoss Enterprise Application Platform 8.0.12 security update
- RHSA-2026:3958: Important: Red Hat Ansible Automation Platform 2.6 Product Security and Bug Fix Update
- RHSA-2026:3941: Moderate: nfs-utils security update
- RHSA-2026:3939: Moderate: nfs-utils security update
- RHSA-2026:3942: Moderate: nfs-utils security update
- RHSA-2026:3957: Important: Red Hat AMQ Broker 7.13.4 release and security update
- RHSA-2026:3959: Important: Red Hat Ansible Automation Platform 2.5 Product Security and Bug Fix Update
Rocky Linux
Rocky Linux has released several important security updates to address vulnerabilities in various packages, including thunderbird, mingw-fontconfig, kernel-rt, gnutls, go-rpm-macros, udisks2, libpng, postgresql16, git-lfs, delve, and PostgreSQL. The updates aim to fix issues such as denial-of-service, memory disclosure, and information leakage, which could affect the stability and security of Rocky Linux systems. Multiple vulnerabilities have been addressed in different versions of Rocky Linux, including 10 and 8, with fixes for CVEs ranging from various scores to 5 or higher.
- RLSA-2026:3516: Important: thunderbird security update
- RLSA-2026:3407: Important: mingw-fontconfig security update
- RLSA-2026:3515: Important: thunderbird security update
- RLSA-2026:3463: Moderate: kernel-rt security update
- RLSA-2026:3464: Moderate: kernel security update
- RLSA-2026:3477: Moderate: gnutls security update
- RLSA-2026:3669: Important: go-rpm-macros security update
- RLSA-2026:3517: Important: thunderbird security update
- RLSA-2026:3476: Important: udisks2 security update
- RLSA-2026:3551: Important: libpng security update
- RLSA-2026:3638: Moderate: nginx:1.24 security update
- RLSA-2026:3668: Important: go-rpm-macros security update
- RLSA-2026:3507: Important: valkey security update
- RLSA-2026:3488: Moderate: kernel security update
- RLSA-2026:3887: Important: postgresql16 security update
- RLSA-2026:3896: Important: postgresql:15 security update
- RLSA-2026:3730: Important: postgresql security update
- RLSA-2026:3638: Moderate: nginx:1.24 security update
- RLSA-2026:3928: Important: git-lfs security update
- RLSA-2026:3842: Moderate: delve security update
- RLSA-2026:3896: Important: postgresql:15 security update
- RLSA-2026:3864: Important: delve security update
Slackware Linux
Slackware has released security updates to address vulnerabilities in python3 and nvi. The updates include a new version of python3 (version 3.9.25) with fixes for unknown issues, as well as an update for nvi which addresses heap-based buffer overflows and other security issues. These updates are designed to improve the overall security of Slackware systems by patching known vulnerabilities.
SUSE Linux
SUSE has released several security updates to address vulnerabilities in various packages. These updates include fixes for the Linux kernel, fluidsynth, libsoup, govulncheck-vulndb, busybox, freerdp, python311, postgresql15, and many others. The updates aim to fix issues such as denial-of-service, memory disclosure, and information leakage, which could affect the stability and security of SUSE Linux systems. Multiple vulnerabilities have been addressed in different versions of SUSE, including openSUSE Leap 15 and other products, with fixes for CVEs ranging from moderate to important levels of severity. These updates are designed to improve the overall security of the operating system by patching known vulnerabilities.
- SUSE-SU-2026:0711-1: important: Security update for the Linux Kernel (Live Patch 37 for SUSE Linux Enterprise 15 SP4)
- SUSE-SU-2026:0725-1: important: Security update for the Linux Kernel (Live Patch 26 for SUSE Linux Enterprise 15 SP5)
- SUSE-SU-2026:0713-1: important: Security update for the Linux Kernel (Live Patch 23 for SUSE Linux Enterprise 15 SP5)
- SUSE-SU-2026:0731-1: important: Security update for the Linux Kernel (Live Patch 33 for SUSE Linux Enterprise 15 SP5)
- SUSE-SU-2026:0734-1: important: Security update for the Linux Kernel (Live Patch 34 for SUSE Linux Enterprise 15 SP5)
- SUSE-SU-2026:0727-1: important: Security update for the Linux Kernel (Live Patch 30 for SUSE Linux Enterprise 15 SP5)
- SUSE-SU-2026:0736-1: important: Security update for the Linux Kernel (Live Patch 1 for SUSE Linux Enterprise 15 SP7)
- openSUSE-SU-2026:20292-1: important: Security update for python-azure-core
- openSUSE-SU-2026:20291-1: important: Security update for fluidsynth
- openSUSE-SU-2026:20290-1: moderate: Security update for haproxy
- openSUSE-SU-2026:10276-1: moderate: libsoup-3_0-0-3.6.6-2.1 on GA media
- openSUSE-SU-2026:10275-1: moderate: gvfs-1.58.2-1.1 on GA media
- SUSE-SU-2026:0741-1: moderate: Security update for shim
- SUSE-SU-2026:0745-1: important: Security update for the Linux Kernel (Live Patch 9 for SUSE Linux Enterprise 15 SP6)
- SUSE-SU-2026:0757-1: important: Security update for govulncheck-vulndb
- SUSE-SU-2026:0758-1: important: Security update for busybox
- SUSE-SU-2026:0760-1: critical: Security update for go1.25-openssl
- SUSE-SU-2026:0761-1: important: Security update for freerdp
- SUSE-SU-2026:0767-1: important: Security update for python311
- SUSE-SU-2026:0766-1: moderate: Security update for gnome-remote-desktop
- SUSE-SU-2026:0771-1: important: Security update for postgresql15
- SUSE-SU-2026:0774-1: low: Security update for python
- SUSE-SU-2026:0775-1: moderate: Security update for evolution-data-server
- SUSE-SU-2026:0777-1: moderate: Security update for cosign
- SUSE-SU-2026:0780-1: moderate: Security update for tracker-miners
- SUSE-SU-2026:0776-1: moderate: Security update for evolution-data-server
- SUSE-SU-2026:0779-1: moderate: Security update for libssh
- SUSE-SU-2026:0781-1: low: Security update for patch
- SUSE-SU-2026:0786-1: important: Security update for postgresql14
- SUSE-SU-2026:0788-1: important: Security update for libsoup
- SUSE-SU-2026:0783-1: moderate: Security update for zlib
- SUSE-SU-2026:0789-1: critical: Security update for go1.24-openssl
- SUSE-SU-2026:0801-1: moderate: Security update for libxslt
- SUSE-SU-2026:0803-1: moderate: Security update for util-linux
- SUSE-SU-2026:0805-1: low: Security update for python-pip
- SUSE-SU-2026:0810-1: low: Security update for wireshark
- SUSE-SU-2026:0811-1: important: Security update for libsoup2
- SUSE-SU-2026:0816-1: important: Security update for virtiofsd
- SUSE-SU-2026:0813-1: moderate: Security update for mozilla-nss
- SUSE-SU-2026:0821-1: moderate: Security update for python-Django
- openSUSE-SU-2026:10286-1: moderate: ruby4.0-rubygem-rack-2.2-2.2.22-1.1 on GA media
- openSUSE-SU-2026:10281-1: moderate: mchange-commons-0.4.0-1.1 on GA media
- openSUSE-SU-2026:10287-1: moderate: sdbootutil-1+git20260303.90d816d-1.1 on GA media
- openSUSE-SU-2026:10285-1: moderate: python311-pillow-heif-1.3.0-1.1 on GA media
- openSUSE-SU-2026:10279-1: moderate: c3p0-0.12.0-1.1 on GA media
- openSUSE-SU-2026:10283-1: moderate: python313-Django6-6.0.3-1.1 on GA media
- openSUSE-SU-2026:10284-1: moderate: python311-PyPDF2-2.11.1-5.1 on GA media
- openSUSE-SU-2026:10280-1: moderate: incus-6.22-1.1 on GA media
- SUSE-SU-2026:0829-1: moderate: Security update for gnutls
- SUSE-SU-2026:0830-1: important: Security update for ocaml
- SUSE-SU-2026:0825-1: low: Security update for php-composer2
- SUSE-SU-2026:0824-1: moderate: Security update for openCryptoki
- SUSE-SU-2026:0826-1: moderate: Security update for expat
- SUSE-SU-2026:0828-1: moderate: Security update for python-Authlib
- SUSE-SU-2026:0831-1: important: Security update for openvpn
- openSUSE-SU-2026:0071-1: important: Security update for roundcubemail
- openSUSE-SU-2026:0070-1: important: Security update for roundcubemail
- openSUSE-SU-2026:0069-1: important: Security update for python-nltk
- openSUSE-SU-2026:20301-1: important: Security update for go1.25-openssl
- openSUSE-SU-2026:20298-1: moderate: Security update for assertj-core
- openSUSE-SU-2026:10282-1: moderate: python311-Django4-4.2.29-1.1 on GA media
- openSUSE-SU-2026:10278-1: moderate: ImageMagick-7.1.2.15-2.1 on GA media
- SUSE-SU-2026:0833-1: important: Security update for libsoup
- openSUSE-SU-2026:10292-1: moderate: python311-Django-5.2.12-1.1 on GA media
- openSUSE-SU-2026:10293-1: moderate: python311-joserfc-1.6.3-1.1 on GA media
- openSUSE-SU-2026:10288-1: moderate: libblkid-devel-2.41.3-4.1 on GA media
- openSUSE-SU-2026:10289-1: moderate: freetype2-devel-2.14.2-1.1 on GA media
- openSUSE-SU-2026:20323-1: important: Security update for roundcubemail
- openSUSE-SU-2026:20322-1: important: Security update for python-joserfc
- openSUSE-SU-2026:0072-1: moderate: Security update for libaec
- openSUSE-SU-2026:20332-1: important: Security update for chromium
- openSUSE-SU-2026:20327-1: moderate: Security update for helm
- openSUSE-SU-2026:20333-1: important: Security update for python-PyPDF2
- openSUSE-SU-2026:20330-1: important: Security update for python-uv
- openSUSE-SU-2026:20329-1: moderate: Security update for gstreamer-rtsp-server, gstreamer-plugins-ugly, gstreamer-plugins-rs, gstreamer-plugins-libav, gstreamer-plugins-good, gstreamer-pl ...
Ubuntu Linux
Ubuntu has released several security updates to address vulnerabilities in various packages. These updates include fixes for Mailman and Git, as well as Linux kernel vulnerabilities, curl vulnerabilities, Intel Microcode vulnerability, and other issues affecting ImageMagick, PostgreSQL, NSS, QEMU, GIMP, NSS, Zutty, less, Qt, and Bleach. The updates aim to fix issues such as denial-of-service, memory disclosure, and information leakage, which could affect the stability and security of Ubuntu systems. Multiple vulnerabilities have been addressed in different versions of Ubuntu, with fixes for various levels of severity. These updates are designed to improve the overall security of the operating system by patching known vulnerabilities.
- [USN-8067-1] Mailman vulnerability
- [USN-5376-6] Git regression
- [USN-7990-6] Linux kernel (Raspberry Pi) vulnerabilities
- [USN-8062-2] curl vulnerabilities
- [USN-8068-1] Intel Microcode vulnerability
- [USN-8070-1] Linux kernel vulnerabilities
- [USN-8060-6] Linux kernel (AWS FIPS) vulnerabilities
- [USN-8060-5] Linux kernel vulnerabilities
- [USN-8070-3] Linux kernel (FIPS) vulnerabilities
- [USN-8070-2] Linux kernel vulnerabilities
- [USN-8069-1] ImageMagick vulnerabilities
- [USN-8074-2] Linux kernel (Azure FIPS) vulnerabilities
- [USN-8074-1] Linux kernel (Azure) vulnerabilities
- [USN-8059-7] Linux kernel (AWS FIPS) vulnerabilities
- [USN-8072-1] PostgreSQL vulnerabilities
- [USN-8071-1] NSS vulnerability
- [USN-8073-1] QEMU vulnerabilities
- [USN-8075-1] GIMP vulnerabilities
- [USN-8071-2] NSS vulnerability
- [USN-8078-1] Zutty vulnerability
- [USN-8079-1] less vulnerability
- [USN-8076-1] Qt vulnerabilities
- [USN-8077-1] Bleach vulnerabilities
How to upgrade packages
This quick overview shows exactly what commands you need to run so the latest security patches and bug fixes actually make it onto your system without hunting down individual .deb or .rpm files.
Debian/Ubuntu (apt)
The first thing to do is refresh the local package index; running sudo apt update contacts all configured repositories and pulls in the newest lists of available versions. Skipping this step leaves the system blind to any recent uploads, which explains why “upgrade” sometimes claims there’s nothing to do even after a security advisory has been published. Once the index is current, invoke sudo apt upgrade -y; the -y flag answers every prompt automatically so the process doesn’t pause for user input. This command upgrades all installed packages that have newer versions in the repositories while preserving configuration files.
sudo apt update sudo apt upgrade -y
Fedora/RedHat/Rocky/Alma/Oracle (dnf or yum)
On modern Fedora and recent Red Hat derivatives, dnf is the package manager; older RHEL releases still rely on yum. Begin with a check‑update operation—sudo dnf check-update or sudo yum check-update—to see exactly which packages are awaiting an upgrade. This preview step can be useful for spotting unexpected kernel bumps before they land. To actually apply the updates, run sudo dnf upgrade -y (or sudo yum update if you prefer the older tool). The upgrade command pulls down the new binaries and runs any necessary post‑install scripts, such as rebuilding initramfs when a kernel changes.
sudo dnf check-update sudo dnf upgrade -y
or on older releases
sudo yum check-update sudo yum update
SUSE (zypper)
SUSE’s command line front‑end is called zypper. First execute sudo zypper refresh so that the metadata for all enabled repos gets updated; without this, zypper will happily report “No updates available” even though newer packages sit on the mirror. After a fresh refresh, issue sudo zypper update -y; this upgrades every package to the latest version in the configured repositories and automatically handles service restarts when required.
sudo zypper refresh sudo zypper update -y
Slackware (slackpkg and pkgtool)
Slackware doesn’t have a single unified updater, but the official way to pull updates is through slackpkg. Start with sudo slackpkg update to download the newest package list from the chosen mirror. Then run sudo slackpkg upgrade-all; this command walks through each installed package and replaces it with the most recent build available in the official repository. For users who prefer a more granular approach, specifying a package name after upgrade limits the operation to that single item. When dealing with community‑maintained repositories, pkgtool takes over: a combined sudo pkgtool update && sudo pkgtool upgrade will sync and apply updates from the mirrors listed in /etc/slackpkg/mirrors.
sudo slackpkg update sudo slackpkg upgrade-all