The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
The Fedora update for ProFTPD version 1.3.9c includes a new module, mod_procfs, which addresses a critical ACL bypass vulnerability by preventing certain file …
Fedora 43 has released WordPress version 6.9.5, addressing security vulnerabilities including SQL injection and remote code execution issues. Users can update …
Fedora 43 has released an update for nginx-mod-modsecurity, required for ModSecurity v3, alongside other nginx modules, addressing multiple vulnerabilities and…
The Fedora update for nginx-mod-naxsi includes a rebuild for version 1.30.4 and addresses multiple CVEs, enhancing security and functionality for the web appli…
A security update for perl-IO-Compress affecting Rocky Linux 8 addresses a vulnerability allowing arbitrary code execution, highlighted by CVE-2026-48962, with…
An important security update for perl-Archive-Tar on Rocky Linux 8 addresses a path traversal vulnerability allowing arbitrary file access, with a CVSS score o…
An important update for nginx in Rocky Linux 9 addresses a critical buffer overflow vulnerability, ensuring better security and stability through bug fixes and…
A significant security update is available for plexus-utils on Rocky Linux 9, addressing a directory traversal vulnerability (CVE-2025-67030) with a CVSS score…
Rocky Linux 9 has released a critical PHP update addressing multiple vulnerabilities, including remote code execution and denial of service, as detailed in the…
A security update for PostgreSQL on Rocky Linux 9 addresses multiple vulnerabilities, including credential recovery, buffer overflow, and account hijack risks,…
An important security update for PipeWire in Rocky Linux 10 addresses a sandbox escape and arbitrary code execution vulnerability (CVE-2026-5674), with a CVSS …
Rocky Linux 10 has released an important security update for the rest package, addressing weak random number generation in the PKCE implementation (CVE-2026-16…
A significant security update for libXfont2 has been released for Rocky Linux 10, addressing multiple vulnerabilities with a CVSS base score of 7.3 for each.
An important kernel update for Rocky Linux 10 addresses security vulnerabilities and includes bug fixes and enhancements with detailed CVSS ratings available o…
Rocky Linux 10 has released a critical security update for gstreamer1-plugins-bad-free, addressing two vulnerabilities, including heap overflows and buffer ove…
A significant Ruby security update for Rocky Linux 9 addresses vulnerabilities including IMAP command injection and TLS bypass, with two CVEs rated 7.1 and 7.4…
A significant security update for Firefox on Rocky Linux 8 addresses multiple vulnerabilities, including buffer overflows and privilege escalation issues, requ…
A security update for python-urllib3 on Rocky Linux 8 addresses an information disclosure vulnerability (CVE-2026-44431), rated with a moderate severity score …
SUSE released a security update addressing CVE-2026-12610 vulnerability in sssd, which could lead to a use-after-free issue, affecting multiple SUSE Linux prod…
SUSE announced an important security update for python-ujson on July 29, 2026, addressing CVE-2026-44660, which can lead to memory leaks in specific conditions.
SUSE released an important security update for python-ujson to address CVE-2026-44660, which resolves memory leaks caused by failure to decrement serialized JS…
A SUSE update addresses two vulnerabilities in perl-XML-Bare, specifically an infinite loop and an out-of-bounds read, affecting multiple SUSE Linux products.
A security update for PackageKit addresses CVE-2026-10294, which involves improper authorization due to argument manipulation. Installation is recommended for …
SUSE released a moderate security update for PackageKit addressing CVE-2026-10294, which involves improper authorization. Users are recommended to apply the pa…