The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
A moderate security update for python-idna has been released for Rocky Linux 8, addressing a denial of service vulnerability identified as CVE-2026-45409.
A vulnerability in xdg-dbus-proxy allowed malicious Flatpak applications to monitor D-Bus signals; this has been fixed in version 0.1.6-1+deb13u2 for Debian's …
Debian has issued an advisory regarding multiple vulnerabilities in the Xorg X server that could lead to privilege escalation and denial of service, urging upd…
Debian's xorg-server package has several vulnerabilities that may allow privilege escalation and crashes if exploited; users are advised to upgrade to the late…
Ubuntu issued a security notice for a vulnerability in node-follow-redirects affecting multiple LTS releases, allowing potential exposure of sensitive informat…
Fedora 43 has updated cri-o to version 1.34.11, addressing CVE-2026-34986 and resolving specific bugs while providing upstream fixes for enhanced stability and…
Fedora has released an update for vaultwarden to version 1.37.1, addressing several CVEs and patched vulnerabilities, enhancing the security of this unofficial…
The Fedora update addresses vulnerabilities CVE-2026-11822 and CVE-2026-11824 in SQLite 3.51.2, enhancing security against arbitrary code execution and buffer …
Fedora 44 has released apr-util version 1.6.5 with security fixes, enhancing its Apache Portable Runtime Utility library for better handling of XML, LDAP, and …
The Fedora 44 update for libcupsfilters version 2.1.1 includes security fixes for CVE-2026-64611 and CVE-2026-64612, addressing potential vulnerabilities in pr…
Fedora has released an update for cri-o version 1.34.11, addressing a denial of service vulnerability and providing upstream fixes, with installation instructi…
Fedora 44 has released an update for vaultwarden version 1.37.1, addressing multiple vulnerabilities, including a significant denial of service issue and other…
SUSE released a moderate security update for gzip to address CVE-2026-41992, involving a global buffer overflow vulnerability. Users are advised to apply the u…
Ubuntu released security updates for libgit2 addressing multiple vulnerabilities that could allow remote code execution, denial of service, and credential leak…
openSUSE has released a critical security update for chromium, addressing 41 vulnerabilities including various memory management issues and insufficient input …
A moderate security update for resource-agents in Rocky Linux 8 addresses an information disclosure vulnerability, enhancing protection in high-availability en…
A security update for libgcrypt in Rocky Linux 8 addresses a denial of service and buffer overflow vulnerability (CVE-2026-41989), rated with a CVSS score of 7…
Debian's advisory DLA-4736-1 addresses two Django vulnerabilities: potential denial-of-service from long language codes and cross-site scripting via unvalidate…
Debian announced the fix for multiple vulnerabilities in SPIP, including remote code execution and SQL injection risks, recommending users upgrade their spip p…
SUSE released a security update for gzip addressing a buffer overflow vulnerability, specifically CVE-2026-41992, affecting multiple SUSE Linux Enterprise Serv…
A security update for SUSE Linux addresses 59 vulnerabilities, including fixes for memory leaks, out-of-bounds access, and potential crashes, urging immediate …
SUSE announced a significant Linux kernel update resolving 75 vulnerabilities, adding two features and 33 security fixes, applicable to various SUSE Linux syst…
A security update for openvpn addresses seven vulnerabilities, including issues related to memory leaks, denial of service, and race conditions, applicable to …
SUSE released a security update for libheif addressing four vulnerabilities and introducing version 1.23.1, improving various decoding capabilities and ensurin…