Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 18 articles for you...
202

openSUSE Leap Java-11-openj9 Stability Update for openSUSE-SU-2026-10831-4

An update that solves 4 vulnerabilities can now be installed.. # java-1_8_0-openj9-1.8.0.492-1.1 on GA media Announcement ID: openSUSE-SU-2026:10726-1 Rating: moderate Cross-References: * CVE-2026-22007 * CVE-2026-22016 * CVE-2026-22021 * CVE-2026-34268 CVSS scores: * CVE-2026-22007 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-22007 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22016 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-22016 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22021 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2026-22021 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-34268 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-34268 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 4 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the java-1_8_0-openj9-1.8.0.492-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * java-1_8_0-openj9 1.8.0.492-1.1 * java-1_8_0-openj9-accessibility 1.8.0.492-1.1 * java-1_8_0-openj9-demo 1.8.0.492-1.1 * java-1_8_0-openj9-devel 1.8.0.492-1.1 * java-1_8_0-openj9-headless 1.8.0.492-1.1 * java-1_8_0-openj9-javadoc 1.8.0.492-1.1 * java-1_8_0-openj9-src 1.8.0.492-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-22007.html * https://www.suse.com/security/cve/CVE-2026-22016.html * https://www.suse.com/security/cve/CVE-2026-22021.html * https://www.suse.com/security/cve/CVE-2026-34268.html . New openSUSE security advisory addresses four moderate vulnerabilities in java-1_8_0-openj9 package, enhancing system security.. openSUSE security advisory, java-1_8_0-openj9 vulnerabilities, moderatesecurity issues, openSUSE Tumbleweed. . LinuxSecurity.com Team

Calendar 2 May 10, 2026 OpenSUSE
89

Fedora 42 chromium Critical Use After Free Issues FEDORA-2026-36fb406407

The updates include fixes for: Critical CVE-2026-7363: Use after free in Canvas Critical CVE-2026-7361: Use after free in iOS Critical CVE-2026-7344: Use after free in Accessibility Critical CVE-2026-7343: Use after free in Views. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-36fb406407 2026-05-04 01:07:05.793304+00:00 -------------------------------------------------------------------------------- Name : chromium Product : Fedora 42 Version : 147.0.7727.137 Release : 1.fc42 URL : http://www.chromium.org/Home Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use Description : Chromium is an open-source web browser, powered by WebKit (Blink). -------------------------------------------------------------------------------- Update Information: The updates include fixes for: Critical CVE-2026-7363: Use after free in Canvas Critical CVE-2026-7361: Use after free in iOS Critical CVE-2026-7344: Use after free in Accessibility Critical CVE-2026-7343: Use after free in Views High CVE-2026-7333: Use after free in GPU High CVE-2026-7360: Insufficient validation of untrusted input in Compositing High CVE-2026-7359: Use after free in ANGLE High CVE-2026-7358: Use after free in Animation High CVE-2026-7334: Use after free in Views High CVE-2026-7357: Use after free in GPU High CVE-2026-7356: Use after free in Navigation High CVE-2026-7354: Out of bounds read and write in Angle High CVE-2026-7353: Heap buffer overflow in Skia High CVE-2026-7352: Use after free in Media High CVE-2026-7351: Race in MHTML High CVE-2026-7350: Use after free in WebMIDI High CVE-2026-7349: Use after free in Cast High CVE-2026-7348: Use after free in Codecs High CVE-2026-7335: Use after free in media High CVE-2026-7336: Use after free in WebRTC High CVE-2026-7337: Type Confusion in V8 High CVE-2026-7347: Use after free in Chromoting High CVE-2026-7346: Inappropriateimplementation in Tint High CVE-2026-7345: Insufficient validation of untrusted input in Feedback High CVE-2026-7338: Use after free in Cast High CVE-2026-7342: Use after free in WebView High CVE-2026-7341: Use after free in WebRTC Medium CVE-2026-7339: Heap buffer overflow in WebRTC Medium CVE-2026-7340: Integer overflow in ANGLE Medium CVE-2026-7355: Use after free in Media -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 29 2026 Than Ngo - 147.0.7727.137-1 - Update to 147.0.7727.137 * Critical CVE-2026-7363: Use after free in Canvas * Critical CVE-2026-7361: Use after free in iOS * Critical CVE-2026-7344: Use after free in Accessibility * Critical CVE-2026-7343: Use after free in Views * High CVE-2026-7333: Use after free in GPU * High CVE-2026-7360: Insufficient validation of untrusted input in Compositing * High CVE-2026-7359: Use after free in ANGLE * High CVE-2026-7358: Use after free in Animation * High CVE-2026-7334: Use after free in Views * High CVE-2026-7357: Use after free in GPU * High CVE-2026-7356: Use after free in Navigation * High CVE-2026-7354: Out of bounds read and write in Angle * High CVE-2026-7353: Heap buffer overflow in Skia * High CVE-2026-7352: Use after free in Media * High CVE-2026-7351: Race in MHTML * High CVE-2026-7350: Use after free in WebMIDI * High CVE-2026-7349: Use after free in Cast * High CVE-2026-7348: Use after free in Codecs * High CVE-2026-7335: Use after free in media * High CVE-2026-7336: Use after free in WebRTC * High CVE-2026-7337: Type Confusion in V8 * High CVE-2026-7347: Use after free in Chromoting * High CVE-2026-7346: Inappropriate implementation in Tint * High CVE-2026-7345: Insufficient validation of untrusted input in Feedback * High CVE-2026-7338: Use after free in Cast * High CVE-2026-7342: Use after free in WebView * High CVE-2026-7341: Use after free in WebRTC * MediumCVE-2026-7339: Heap buffer overflow in WebRTC * Medium CVE-2026-7340: Integer overflow in ANGLE * Medium CVE-2026-7355: Use after free in Media * Sun Apr 26 2026 Than Ngo - 147.0.7727.116-2 - Fix FTBFS with rust 1.95 - Backport the upstream fix GL native pixmap import support reset in GpuInit -------------------------------------------------------------------------------- References: [ 1 ] Bug #2463710 - CVE-2026-7333 CVE-2026-7334 CVE-2026-7335 CVE-2026-7336 CVE-2026-7337 CVE-2026-7338 CVE-2026-7339 CVE-2026-7340 CVE-2026-7341 CVE-2026-7342 CVE-2026-7343 CVE-2026-7344 CVE-2026-7345 CVE-2026-7346 CVE-2026-7347 ... chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2463710 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-36fb406407' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Discover important security updates for Fedora 42 chromium addressing critical issues such as use after free flaws.. Fedora 42chromium updates, security fixes, critical flaws. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 04, 2026 Critical Fedora
89

Fedora 44 qt6-qtspeech Bugfix Advisory 2026-70776c2dc3 Released Now

Qt 6.10.3 bugfix update.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-70776c2dc3 2026-04-25 01:21:36.172096+00:00 -------------------------------------------------------------------------------- Name : qt6-qtspeech Product : Fedora 44 Version : 6.10.3 Release : 1.fc44 URL : http://www.qt.io Summary : Qt6 - Speech component Description : The module enables a Qt application to support accessibility features such as text-to-speech, which is useful for end-users who are visually challenged or cannot access the application for whatever reason. The most common use case where text-to-speech comes in handy is when the end-user is driving and cannot attend the incoming messages on the phone. In such a scenario, the messaging application can read out the incoming message. Qt Serial Port provides the basic functionality, which includes configuring, I/O operations, getting and setting the control signals of the RS-232 pinouts. -------------------------------------------------------------------------------- Update Information: Qt 6.10.3 bugfix update. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 31 2026 Jan Grulich - 6.10.3-1 - 6.10.3 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-70776c2dc3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Qt 6.10.3 bugfix update for Fedora 44 addresses accessibility features including text-to-speech.. Fedora update, Qt component, speech access, accessibility features. . Severity: Informational. LinuxSecurity.com Team

Calendar 2 Apr 25, 2026 Informational Fedora
217

Oracle Linux 7: ELSA-2025-18814 java-1.8.0-openjdk Moderate Update

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-18814 http://linux.oracle.com/errata/ELSA-2025-18814.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: java-1.8.0-openjdk-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-accessibility-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-accessibility-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-demo-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-devel-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-headless-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.472.b08-1.0.1.el7_9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.472.b08-1.0.1.el7_9.noarch.rpm java-1.8.0-openjdk-src-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-src-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates/java-1.8.0-openjdk-1.8.0.472.b08-1.0.1.el7_9.src.rpm Related CVEs: CVE-2025-53057 CVE-2025-53066 Description of changes: [1.8.0.472.b08-1.0.1] - Update to 8u472-b08 (GA) [Orabug: 38571645] - Update release notes for 8u472-b08. - Drop local JDK-8339414 fix as this is now included upstream - Reset rpmrelease to 1 now there are no other RPM builds on RHEL 8 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2025-10-21 @ 1pm PT. ** - Resolves: RHEL-118769 - Resolves: RHEL-119444 - Fixes CVE-2025-53057 CVE-2025-53066 [1:1.8.0.462.b08-1.0.1] - Update to 8u462-b08 (GA) [Orabug: 38248370] - Update release notes for 8u462-b08. - Require tzdata 2025b due to upstream inclusion of JDK-8352716 - Add early backport of JDK-8339414 - Sync the copy of the portablespecfile with the latest update - ** This tarball is embargoed until 2025-07-15 @ 1pm PT. ** - Resolves: RHEL-101654 - Resolves: RHEL-102307 - Resolves: RHEL-102907 [1.8.0.452.b09-1.0.1] - Update to 8u452-b09 (GA) [Orabug: 38144314] - Update release notes for 8u452-b09. - Remove long option documentation from JDK-8335912/JDK-8337499 as not present in 8u - Require tzdata 2025a due to upstream inclusion of JDK-8347965 - ** This tarball is embargoed until 2025-04-15 @ 1pm PT. ** - Resolves: RHEL-86973 - Resolves: RHEL-86616 [1:1.8.0.442.b06-1.0.3] - Fixed CVE-2025-21587, CVE-2025-30691 and CVE-2025-30698 [Orabug: 37840723] [1:1.8.0.442.b06-1.0.1] - Update to 8u442-b06 (GA) [Orabug: 37506184] - Update release notes for 8u442-b06. - Add a simple -version check on both the JDK and JRE bin/java _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 7 updates for java-1.8.0-openjdk issued to address security issues, with moderate severity levels.. Oracle Linux updates, java-1.8.0-openjdk, security advisory. . LinuxSecurity.com Team

Calendar 2 Nov 13, 2025 Oracle
89

Fedora 42: qt5-qtspeech Bugfix Accessibility Release 2025-976ccd79ae

Qt 5.15.18 bugfix release. Qt5 WebEngine update to 5.15.19.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-976ccd79ae 2025-11-06 02:22:59.541317+00:00 -------------------------------------------------------------------------------- Name : qt5-qtspeech Product : Fedora 42 Version : 5.15.18 Release : 1.fc42 URL : http://www.qt.io Summary : Qt5 - Speech component Description : The module enables a Qt application to support accessibility features such as text-to-speech, which is useful for end-users who are visually challenged or cannot access the application for whatever reason. The most common use case where text-to-speech comes in handy is when the end-user is driving and cannot attend the incoming messages on the phone. In such a scenario, the messaging application can read out the incoming message. Qt Serial Port provides the basic functionality, which includes configuring, I/O operations, getting and setting the control signals of the RS-232 pinouts. -------------------------------------------------------------------------------- Update Information: Qt 5.15.18 bugfix release. Qt5 WebEngine update to 5.15.19. -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 4 2025 Jan Grulich - 5.15.18-1 - 5.15.18 * Fri Jul 25 2025 Fedora Release Engineering - 5.15.17-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-976ccd79ae' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Qt 5.15.18 bugfix release improves accessibility in Fedora 42 with new features and updates.. Qt5 updates, Fedora 42, accessibility features, text-to-speech, software updates. . Severity: Informational. LinuxSecurity.com Team

Calendar 2 Nov 06, 2025 Informational Fedora
89

Fedora 42: qt6-qtspeech Important Bugfix Advisory 2025-945dff8564

Qt 6.9.3 bugfix update.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-945dff8564 2025-10-30 04:33:58.492914+00:00 -------------------------------------------------------------------------------- Name : qt6-qtspeech Product : Fedora 42 Version : 6.9.3 Release : 1.fc42 URL : http://www.qt.io Summary : Qt6 - Speech component Description : The module enables a Qt application to support accessibility features such as text-to-speech, which is useful for end-users who are visually challenged or cannot access the application for whatever reason. The most common use case where text-to-speech comes in handy is when the end-user is driving and cannot attend the incoming messages on the phone. In such a scenario, the messaging application can read out the incoming message. Qt Serial Port provides the basic functionality, which includes configuring, I/O operations, getting and setting the control signals of the RS-232 pinouts. -------------------------------------------------------------------------------- Update Information: Qt 6.9.3 bugfix update. -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 20 2025 Jan Grulich - 6.9.3-1 - 6.9.3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2402380 - CVE-2025-10729 qt6-qtsvg: Use-after-free vulnerability in Qt SVG [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2402380 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-945dff8564' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details onthe GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Qt 6.9.3 bugfix update enhances speech component accessibility utilities on Fedora 42.. Qt6 Speech, Fedora 42, Update Information, Accessibility Features. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 30, 2025 Important Fedora
100

SUSE: Docker Moderate Access Fix CVE-2025-54388 Advisory 2025:02913-1

* bsc#1246556 * bsc#1247367 Cross-References: * CVE-2025-54388 . # Security update for docker Announcement ID: SUSE-SU-2025:02913-1 Release Date: 2025-08-19T12:52:47Z Rating: moderate References: * bsc#1246556 * bsc#1247367 Cross-References: * CVE-2025-54388 CVSS scores: * CVE-2025-54388 ( SUSE ): 5.1 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2025-54388 ( SUSE ): 5.2 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2025-54388 ( NVD ): 5.1 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves one vulnerability and has one security fix can now be installed. ## Description: This update for docker fixes the following issues: * Update to Docker 28.3.3-ce. * CVE-2025-54388: Fixed a bug where firewalld when reloaded can make published container ports accessible from remote hosts. (bsc#1247367) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-2025-2913=1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2025-2913=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS (aarch64 ppc64le s390x x86_64) * docker-28.3.3_ce-98.137.1 * docker-debuginfo-28.3.3_ce-98.137.1 * SUSE Linux Enterprise Server 12 SP5 LTSS (noarch) *docker-bash-completion-28.3.3_ce-98.137.1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * docker-28.3.3_ce-98.137.1 * docker-debuginfo-28.3.3_ce-98.137.1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (noarch) * docker-bash-completion-28.3.3_ce-98.137.1 ## References: * https://www.suse.com/security/cve/CVE-2025-54388.html * https://bugzilla.suse.com/show_bug.cgi?id=1246556 * https://bugzilla.suse.com/show_bug.cgi?id=1247367 . SUSE has rolled out a patch that mitigates a significant security vulnerability in Docker, specifically targeting access control deficiencies associated with CVE-2025-54388.. SUSE Linux, Docker update, security access control, CVE-2025-54388, package management. . LinuxSecurity.com Team

Calendar 2 Aug 19, 2025 SuSE
217

Oracle Linux 8: ELSA-2025-10862 Java Important Security Update

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-10862 http://linux.oracle.com/errata/ELSA-2025-10862.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: java-1.8.0-openjdk-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm aarch64: java-1.8.0-openjdk-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-javadoc-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/java-1.8.0-openjdk-1.8.0.462.b08-2.0.1.el8.src.rpm Related CVEs: CVE-2025-30749 CVE-2025-30754 CVE-2025-30761 CVE-2025-50106 Description of changes: [1:1.8.0.462.b08-2.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:1.8.0.462.b08-1] - Update to 8u462-b08 (GA) - Update release notes for 8u462-b08. - Require tzdata 2025b due to upstream inclusion of JDK-8352716 - Add early backport of JDK-8339414 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2025-07-15 @ 1pm PT. ** - Resolves: RHEL-101654 - Resolves: RHEL-102307 - Resolves: RHEL-102907 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 8 patch for java-1.8.0-openjdk, critical security improvement. Please consult advisory ELSA-2025-10862 for full information.. Oracle Linux, java security, java update, Linux security advisory, openjdk security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jul 30, 2025 Important Oracle
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here