The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Linux developers have merged a fix for a Linux kernel vulnerability that can leave Binder device creation writing to memory the kernel has already released.
A use-after-free was discovered in libpng, a library implementing an interface for reading and writing PNG (Portable Network Graphics), which could result in d…
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
A vulnerability was discovered in ruby-oauth2, a Ruby library for OAuth 2.0, which could result in a bearer token being sent to the host named by a redirect Lo…
Several security issues were fixed in the Linux kernel.
# Security update for jline3 Announcement ID: SUSE-SU-2026:23989-1 Release Date: 2026-10-01T12:14:32Z Rating: moderate References:
Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in privilege escalation, information disclosure or denial of service. F…
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks. For Debian 12…
Automatic update for cockpit-files-45-1.fc43. Changelog for cockpit-files * Wed Sep 23 2026 Packit - 45-1 - Fixes CVE-2026-91202, CVE-2026-91203, CVE-2026-9120…
CVE-2026-82331 (CWE-59): tar source plugin symlink escape while fetching a malicious tarball (Python < 3.12). Fixed upstream in 2.8.1 (tar.py extraction filter…
Automatic update for cockpit-files-45-1.fc44. Changelog for cockpit-files * Wed Sep 23 2026 Packit - 45-1 - Fixes CVE-2026-91202, CVE-2026-91203, CVE-2026-9120…
CVE-2026-82331 (CWE-59): tar source plugin symlink escape while fetching a malicious tarball (Python < 3.12). Fixed upstream in 2.8.1 (tar.py extraction filter…
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, sandbox escape,…
Several security issues were fixed in the Linux kernel.
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For Debian 12 …
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For Debian 12 bookworm, these problems have bee…
Multiple vulnerabilities were discovered in Node.js, which could result in denial of service, incorrect certificate validation or information disclosure. For D…
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: