Security 10911 Published by

Several major Linux distributions have released security updates over the past week, including AlmaLinux, Debian GNU/Linux, Fedora Linux, Oracle Linux, Red Hat Enterprise Linux, Rocky Linux, SUSE Linux, and Ubuntu Linux. The updates address various vulnerabilities across multiple packages, such as .NET framework, WebKitGTK, ruby-rack, strongSwan, WordPress, GIMP, Rust libraries, Python applications, and more. Packages such as librepo, sendmail, kernel, NetworkManager, Samba, expat, squid, golang, redis, libssh, and others have fixed important or moderate severity bugs. These updates are critical to preserving the security and stability of Linux systems, particularly with the potential risks posed by vulnerabilities such as cache poisoning attacks and resource exhaustion.





AlmaLinux

Several security updates have been announced for AlmaLinux systems, including .NET framework updates that address vulnerabilities in versions 8. Additionally, a WebKitGTK update has also been released to improve the system's security. These updates follow other recent security patches for PCS, SSSD, and LibSoup packages on Rocky Linux 8. AlmaLinux has also released several security updates for various packages, including libsoup, mariadb, kernel, and more.

Debian GNU/Linux

Debian 11 LTS has received security updates to address vulnerabilities in various packages, including ruby-rack, which provides a modular Ruby web server interface. Multiple other packages have also been updated, such as strongSwan, WordPress, and GIMP, to patch security issues. Additionally, Debian's Project has released an update for the bind9 package to fix three vulnerabilities related to resource exhaustion and cache poisoning attacks. Unbound has received several updates across different Debian versions to address a vulnerability that allows attackers to poison the cache and hijack domains through NS RRSet injection.

Fedora Linux

Several security updates have been released for Fedora Linux affecting various versions including Fedora 41, Fedora 42, and Fedora 43. The updates mainly focus on fixing packages such as Rust libraries and Python applications to address potential security vulnerabilities. Additionally, other packages like .NET Runtime, Xorg-X11-server, qt5-related packages, and Chromium have also received updates across different Fedora Linux versions. These updates are recommended to be installed to ensure the system's security and stability.

Oracle Linux

Oracle has released several security updates for its Linux distribution, which include bug fixes and enhancements for various packages such as librepo, sendmail, xorg-x11-server, valkey, kernel, NetworkManager, and Samba. The company also addressed security vulnerabilities in packages like linux-firmware, libtiff, mariadb, and sssd across different Oracle Linux versions. These updates are crucial for maintaining the security and stability of the operating system, particularly as they fix important or moderate severity bugs. Oracle has been actively pushing out these updates to its various Linux distributions, including versions 7, 8, 9, and 10.

Red Hat Enterprise Linux

Red Hat has released multiple security updates for its Enterprise Linux distributions to address various vulnerabilities. These updates include patches for several packages, including kernel, expat, squid, golang, redis, libssh, and more, which have been rated as having a moderate to important security impact by Red Hat Product Security. The updates cover a range of products, from core system components like the kernel and Xorg-X11-server, to applications such as Git, PCS, SSSD, and Bind. Overall, these updates aim to improve the security posture of RHEL systems.

Rocky Linux

There are several available updates to address security vulnerabilities in Rocky Linux systems. The libtiff security update affects Rocky Linux 10, while the kernel security updates affect both Rocky Linux 8 and 10. Additionally, other packages such as xorg-x11-server, valkey, expat, libsoup3, and kernel have also received security updates to address various vulnerabilities. These updates are available for multiple versions of Rocky Linux, including 8 and 10, with some specific updates also available for Rocky Linux 8.

SUSE Linux

Security updates have been released by openSUSE project to address various vulnerabilities. The updates include patches for numerous packages such as git-bug, python311-starlette, xorg-x11-server, chromium, flake-pilot, Linux kernel, and others. SUSE Linux has received multiple security updates to address potential vulnerabilities in Java, RunC, Kernel, ImageMagick, Python-Django, and other packages. These updates aim to fix important security issues including denial-of-service attacks, live patches for the Linux kernel, and critical fixes for chromium and other affected packages.

Ubuntu Linux

Ubuntu users need to be aware of several security issues that have been discovered in various packages and software. A vulnerability in the Google Guest Agent could allow unintended access to network services, affecting multiple releases of Ubuntu including version 25. Additionally, security notices have been issued for the Linux kernel, libssh, Squid, Unbound, OpenStack Keystone, and other packages. These updates are meant to address various vulnerabilities identified as potential security risks in Ubuntu's operating system.

Tuxrepair