Here is a roundup of last week's Linux security updates for AlmaLinux, Debian GNU/Linux, Fedora Linux, Gentoo Linux, Oracle Linux, Red Hat Enterprise Linux, Rocky Linux, Slackware Linux, SUSE Linux, and Ubuntu Linux.
AlmaLinux
- ALSA-2025:0059: kernel security update (Important)
- ALSA-2024:11486: kernel security update (Moderate)
- ALSA-2025:0281: thunderbird security update (Important)
- ALSA-2025:0288: Bug fix of NetworkManager (Moderate)
- ALSA-2025:0308: fence-agents security update (Important)
- ALSA-2025:0314: raptor2 security update (Important)
- ALSA-2025:0325: rsync security update (Important)
- ALSA-2025:0312: raptor2 security update (Important)
- ALSA-2025:0324: rsync security update (Important)
- ALSA-2025:0334: ipa security update (Moderate)
- ALSA-2025:0377: Security and bug fixes for NetworkManager (Moderate)
- ALSA-2025:0382: .NET 9.0 security update (Important)
- ALSA-2025:0381: .NET 8.0 security update (Important)
Debian GNU/Linux
- [DLA 4014-1] gnuchess security update
- ELA-1289-1 python-reportlab security update
- ELA-1291-1 tomcat7 security update
- ELA-1290-1 rsync security update
- ELA-1288-1 linux-6.1 security update
- [DLA 4015-1] rsync security update
- [DSA 5843-1] rsync security update
- ELA-1292-1 tomcat8 security update
- [DSA 5844-1] chromium security update
- ELA-1293-1 tomcat9 security update
- [DLA 4017-1] tomcat9 security update
- [DSA 5843-2] rsync regression update
- [DLA 4015-2] rsync security update
- [DSA 5845-1] tomcat10 security update
- [DLA 4018-1] ruby2.7 security update
Fedora Linux
- Fedora 40 Update: thunderbird-128.6.0-1.fc40
- Fedora 41 Update: rclone-1.68.2-1.fc41
- Fedora 41 Update: golang-github-aws-smithy-1.22.1-1.fc41
- Fedora 41 Update: golang-github-aws-sdk-2-20250103-1.fc41
- Fedora 41 Update: golang-github-ncw-swift-2-2.0.3-1.fc41
- Fedora 40 Update: redis-7.2.7-1.fc40
- Fedora 40 Update: perl-Net-OAuth-0.30-1.fc40
- Fedora 41 Update: perl-Net-OAuth-0.30-1.fc41
- Fedora 40 Update: rsync-3.4.0-1.fc40
- Fedora 40 Update: seamonkey-2.53.20-2.fc40
- Fedora 41 Update: seamonkey-2.53.20-2.fc41
- Fedora 40 Update: redict-7.3.2-1.fc40
- Fedora 40 Update: valkey-8.0.2-1.fc40
- Fedora 40 Update: mingw-python-jinja2-3.1.5-1.fc40
- Fedora 41 Update: chromium-132.0.6834.83-1.fc41
- Fedora 41 Update: redict-7.3.2-1.fc41
- Fedora 41 Update: mingw-python-jinja2-3.1.5-1.fc41
- Fedora 40 Update: chromium-132.0.6834.83-1.fc40
- Fedora 40 Update: stb-0^20241002git31707d1-4.fc40
- Fedora 41 Update: stb-0^20241002git31707d1-5.fc41
Gentoo Linux
- [ GLSA 202501-03 ] pip: arbitrary configuration injection
- [ GLSA 202501-02 ] GIMP: Multiple Vulnerabilities
Oracle Linux
- ELSA-2025-0288 Moderate: Oracle Linux 8 Bug fix of NetworkManager
- ELSA-2025-0281 Important: Oracle Linux 8 thunderbird security update
- ELSA-2025-20019 Important: Oracle Linux 8 Unbreakable Enterprise kernel security update
- ELSA-2025-0059 Important: Oracle Linux 9 kernel security update
- ELSA-2025-20018 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
- ELBA-2025-20017 Oracle Linux 9 linux-firmware bug fix update
- ELSA-2024-11048 Important: Oracle Linux 7 python-virtualenv security update
- ELSA-2025-20019 Important: Oracle Linux 7 Unbreakable Enterprise kernel security update
- ELSA-2025-0325 Important: Oracle Linux 8 rsync security update
- ELSA-2025-0314 Important: Oracle Linux 8 raptor2 security update
- ELSA-2025-0334 Moderate: Oracle Linux 9 ipa security update
- ELSA-2025-20019 Important: Oracle Linux 8 Unbreakable Enterprise kernel security update
- ELSA-2025-20018 Important: Oracle Linux 8 Unbreakable Enterprise kernel security update
- ELSA-2025-0377 Moderate: Oracle Linux 9 Security and bug fixes for NetworkManager
- ELSA-2025-0312 Important: Oracle Linux 9 raptor2 security update
- ELSA-2025-0324 Important: Oracle Linux 9 rsync security update
- ELSA-2025-0308 Important: Oracle Linux 9 fence-agents security update
- ELBA-2025-0305 Oracle Linux 9 .NET 9.0 bug fix and enhancement update
- ELBA-2025-20024 Oracle Linux 9 libblockdev bug fix update
- ELBA-2025-0304 Oracle Linux 9 .NET 8.0 bug fix and enhancement update
- ELBA-2025-20021 Oracle Linux 9 cockpit bug fix update
- ELBA-2025-20023 Oracle Linux 9 udisks2 bug fix update
- ELBA-2025-20015 Oracle Linux 9 kexec-tools bug fix update
- ELSA-2025-20018 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
Red Hat Enterprise Linux
- RHSA-2025:0286: Important: thunderbird security update
- RHSA-2025:0280: Moderate: python3.11 security update
- RHSA-2025:0277: Important: webkit2gtk3 security update
- RHSA-2025:0282: Important: webkit2gtk3 security update
- RHSA-2025:0283: Important: webkit2gtk3 security update
- RHSA-2025:0279: Important: webkit2gtk3 security update
- RHSA-2025:0281: Important: thunderbird security update
- RHSA-2025:0275: Important: thunderbird security update
- RHSA-2025:0278: Important: webkit2gtk3 security update
- RHSA-2025:0276: Important: webkit2gtk3 security update
- RHSA-2025:0299: Moderate: Red Hat build of Keycloak 26.0.8 Images Update
- RHSA-2025:0300: Moderate: Red Hat build of Keycloak 26.0.8 Update
- RHSA-2025:0288: Moderate: Bug fix of NetworkManager
- RHSA-2025:0287: Important: thunderbird security update
- RHSA-2025:0284: Important: thunderbird security update
- RHSA-2025:0310: Important: raptor2 security update
- RHSA-2025:0311: Important: raptor2 security update
- RHSA-2025:0309: Moderate: libreswan security update
- RHSA-2025:0115: Important: OpenShift Container Platform 4.17.12 bug fix and security update
- RHSA-2025:0308: Important: fence-agents security update
- RHSA-2025:0318: Important: raptor2 security update
- RHSA-2025:0319: Important: raptor2 security update
- RHSA-2025:0314: Important: raptor2 security update
- RHSA-2025:0316: Important: raptor2 security update
- RHSA-2025:0312: Important: raptor2 security update
- RHSA-2025:0313: Important: raptor2 security update
- RHSA-2025:0315: Important: raptor2 security update
- RHSA-2025:0324: Important: rsync security update
- RHSA-2025:0325: Important: rsync security update
- RHSA-2025:0121: Important: OpenShift Container Platform 4.15.43 bug fix and security update
- RHSA-2025:0323: Moderate: Red Hat OpenShift Data Foundation 4.14.13 Bug Fix Update
- RHSA-2025:0140: Important: OpenShift Container Platform 4.16.30 bug fix and security update
- RHSA-2025:0346: Important: iperf3 security update
- RHSA-2025:0345: Important: fence-agents security update
- RHSA-2024:10988: Important: Logging for Red Hat OpenShift - 5.6.27
- RHSA-2025:0341: Important: Red Hat Ansible Automation Platform 2.5 Container Release Update
- RHSA-2025:0340: Important: Red Hat Ansible Automation Platform 2.5 Product Security and Bug Fix Update
- RHSA-2025:0338: Important: fence-agents security update
- RHSA-2025:0371: Important: Red Hat JBoss Enterprise Application Platform 8.0 security update
- RHSA-2025:0368: Moderate: tuned security update
- RHSA-2025:0377: Moderate: Security and bug fixes for NetworkManager
- RHSA-2025:0362: Moderate: Red Hat JBoss Web Server 5.8.2 release and security update
- RHSA-2025:0361: Moderate: Red Hat JBoss Web Server 5.8.2 release and security update
- RHSA-2025:0384: Important: RHSA: Submariner 0.18.4 - bug and security fixes
- RHSA-2025:0386: Important: VolSync 0.10.2 for RHEL 9
- RHSA-2025:0385: Important: VolSync 0.11.1 for RHEL 9
- RHSA-2025:0382: Important: .NET 9.0 security update
- RHSA-2025:0381: Important: .NET 8.0 security update
- RHSA-2025:0372: Important: Red Hat JBoss Enterprise Application Platform 8.0 security update
Rocky Linux
- RLSA-2025:0314: Important: raptor2 security update
- RLSA-2025:0281: Important: thunderbird security update
- RLSA-2025:0325: Important: rsync security update
Slackware Linux
SUSE Linux
- openSUSE-SU-2025:14638-1: moderate: valkey-8.0.2-1.1 on GA media
- openSUSE-SU-2025:14639-1: moderate: yq-4.44.6-1.1 on GA media
- openSUSE-SU-2025:14637-1: moderate: python311-mistune-3.1.0-1.1 on GA media
- openSUSE-SU-2025:14636-1: moderate: proftpd-1.3.8c-1.1 on GA media
- openSUSE-SU-2025:14631-1: moderate: dpdk-23.11.1-4.1 on GA media
- openSUSE-SU-2025:14632-1: moderate: frr-10.2.1-1.1 on GA media
- openSUSE-SU-2025:14630-1: moderate: MozillaFirefox-134.0-1.1 on GA media
- openSUSE-SU-2025:14635-1: moderate: perl-Module-ScanDeps-1.370.0-1.1 on GA media
- openSUSE-SU-2025:14634-1: moderate: operator-sdk-1.39.0-1.1 on GA media
- openSUSE-SU-2025:14633-1: moderate: grafana-11.3.0-4.1 on GA media
- SUSE-SU-2025:0080-1: important: Security update for MozillaThunderbird
- SUSE-SU-2025:0101-1: important: Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP3)
- SUSE-SU-2025:0106-1: important: Security update for the Linux Kernel (Live Patch 43 for SLE 15 SP3)
- SUSE-SU-2025:0102-1: moderate: Security update for apache2-mod_jk
- SUSE-SU-2025:0105-1: important: Security update for the Linux Kernel (Live Patch 46 for SLE 15 SP3)
- SUSE-SU-2025:0108-1: important: Security update for the Linux Kernel (Live Patch 22 for SLE 15 SP4)
- SUSE-SU-2025:0107-1: important: Security update for the Linux Kernel (Live Patch 23 for SLE 15 SP4)
- SUSE-SU-2025:0109-1: important: Security update for the Linux Kernel (Live Patch 24 for SLE 15 SP4)
- openSUSE-SU-2025:14641-1: moderate: rclone-1.69.0-1.1 on GA media
- SUSE-SU-2025:0096-1: important: Security update for webkit2gtk3
- SUSE-SU-2025:0098-1: important: Security update for the Linux Kernel (Live Patch 41 for SLE 15 SP3)
- SUSE-SU-2025:0117-1: important: Security update for the Linux Kernel
- SUSE-SU-2025:0116-1: important: Security update for git
- SUSE-SU-2025:0118-1: important: Security update for rsync
- SUSE-SU-2025:0124-1: important: Security update for the Linux Kernel (Live Patch 26 for SLE 15 SP4)
- SUSE-SU-2025:0123-1: important: Security update for the Linux Kernel (Live Patch 21 for SLE 15 SP4)
- SUSE-SU-2025:0122-1: important: Security update for rsync
- SUSE-SU-2025:0110-1: important: Security update for the Linux Kernel (Live Patch 27 for SLE 15 SP4)
- SUSE-SU-2025:0111-1: important: Security update for the Linux Kernel (Live Patch 28 for SLE 15 SP4)
- SUSE-SU-2025:0114-1: important: Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP5)
- SUSE-SU-2025:0115-1: important: Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP5)
- SUSE-SU-2025:0112-1: important: Security update for the Linux Kernel (Live Patch 9 for SLE 15 SP5)
- openSUSE-SU-2025:14643-1: moderate: dcmtk-3.6.9-1.1 on GA media
- openSUSE-SU-2025:14647-1: moderate: python311-translate-toolkit-3.14.5-1.1 on GA media
- openSUSE-SU-2025:14644-1: moderate: govulncheck-vulndb-0.0.20250109T194159-1.1 on GA media
- openSUSE-SU-2025:14646-1: moderate: libraptor-devel-2.0.16-4.1 on GA media
- openSUSE-SU-2025:14642-1: moderate: SDL2_sound-devel-2.0.4-1.1 on GA media
- openSUSE-SU-2025:14645-1: moderate: python311-Pillow-11.1.0-1.1 on GA media
- SUSE-SU-2025:0131-1: important: Security update for the Linux Kernel (Live Patch 45 for SLE 15 SP3)
- SUSE-SU-2025:0118-2: important: Security update for rsync
- SUSE-SU-2025:0122-2: important: Security update for rsync
- SUSE-SU-2025:0132-1: important: Security update for the Linux Kernel (Live Patch 47 for SLE 15 SP3)
- openSUSE-SU-2025:0012-1: important: Security update for opera
- SUSE-SU-2025:0138-1: important: Security update for the Linux Kernel (Live Patch 15 for SLE 15 SP5)
- SUSE-SU-2025:0136-1: important: Security update for the Linux Kernel (Live Patch 39 for SLE 15 SP3)
- SUSE-SU-2025:0137-1: important: Security update for the Linux Kernel (Live Patch 44 for SLE 15 SP3)
- openSUSE-SU-2025:14648-1: moderate: MozillaThunderbird-128.6.0-1.1 on GA media
- openSUSE-SU-2025:14649-1: moderate: git-lfs-3.6.1-1.1 on GA media
- SUSE-SU-2025:0142-1: moderate: Security update for xen
- SUSE-SU-2025:0146-1: important: Security update for the Linux Kernel (Live Patch 13 for SLE 15 SP5)
- SUSE-SU-2025:0144-1: important: Security update for git
- SUSE-SU-2025:0149-1: important: Security update for python-Django
- SUSE-SU-2025:0150-1: important: Security update for the Linux Kernel (Live Patch 25 for SLE 15 SP4)
- SUSE-SU-2025:0154-1: important: Security update for the Linux Kernel
- SUSE-SU-2025:0153-1: important: Security update for the Linux Kernel
- SUSE-SU-2025:0167-1: important: Security update for pam_u2f
- SUSE-SU-2025:0165-1: important: Security update for rsync
- SUSE-SU-2025:0168-1: important: Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP6)
- SUSE-SU-2025:0172-1: important: Security update for the Linux Kernel (Live Patch 29 for SLE 15 SP4)
- SUSE-SU-2025:0177-1: important: Security update for the Linux Kernel (Live Patch 20 for SLE 15 SP5)
- SUSE-SU-2025:0179-1: important: Security update for the Linux Kernel (Live Patch 4 for SLE 15 SP6)
- SUSE-SU-2025:0173-1: important: Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP6)
- openSUSE-SU-2025:14657-1: moderate: perl-IO-Compress-2.213.0-1.1 on GA media
- openSUSE-SU-2025:14655-1: moderate: hplip-3.24.4-4.1 on GA media
- openSUSE-SU-2025:14654-1: moderate: grafana-11.3.0-5.1 on GA media
- openSUSE-SU-2025:14652-1: moderate: git-2.48.1-1.1 on GA media
- openSUSE-SU-2025:14653-1: moderate: govulncheck-vulndb-0.0.20250115T172141-1.1 on GA media
- openSUSE-SU-2025:14656-1: moderate: perl-Compress-Raw-Zlib-2.213-1.1 on GA media
- SUSE-SU-2025:0156-1: important: Security update for rsync
- SUSE-SU-2025:0160-1: important: Security update for redis7
- SUSE-SU-2025:0161-1: important: Security update for redis7
- SUSE-SU-2025:0158-1: important: Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP5)
- SUSE-SU-2025:0162-1: important: Security update for redis
- SUSE-SU-2025:0163-1: important: Security update for redis
- SUSE-SU-2025:0164-1: important: Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP5)
- openSUSE-SU-2025:14660-1: moderate: golang-github-prometheus-prometheus-3.1.0-1.1 on GA media
- openSUSE-SU-2025:14663-1: moderate: velociraptor-0.7.0.4.git142.862ef23-1.1 on GA media
- openSUSE-SU-2025:14659-1: moderate: chromedriver-132.0.6834.83-1.1 on GA media
- openSUSE-SU-2025:14658-1: moderate: amazon-ssm-agent-3.3.1611.0-1.1 on GA media
Ubuntu Linux
- [USN-7199-1] xmltok library vulnerabilities
- [USN-7200-1] Roundcube vulnerability
- [USN-6940-2] snapd vulnerabilities
- [USN-7202-1] HPLIP vulnerability
- [USN-7201-1] WebKitGTK vulnerabilities
- [USN-7205-1] Django vulnerability
- [USN-7195-2] Linux kernel (Azure) vulnerabilities
- [USN-7203-1] PowerDNS vulnerabilities
- [USN-7198-1] rlottie vulnerabilities
- [USN-7206-1] rsync vulnerabilities
- [USN-7207-1] Git vulnerabilities
- [USN-7173-3] Linux kernel (Raspberry Pi) vulnerabilities
- [USN-7204-1] NeoMutt vulnerabilities
- [USN-7210-1] .NET vulnerabilities
- [USN-7212-1] Python 2.7 vulnerabilities
- [USN-7215-1] libxml2 vulnerability
- [USN-7214-1] HarfBuzz vulnerability
- [USN-7213-1] poppler vulnerability
- [USN-7211-1] Audacity vulnerability
- [USN-7216-1] tqdm vulnerability
- [USN-7206-2] rsync regression
- [USN-7209-1] GIMP DDS Plugin vulnerability
- [USN-7208-1] Apache Commons BCEL vulnerability
