Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 50 articles for you...
203

Mageia 9 nghttp2 Severe Denial of Service CVE-2026-27135

Security update. Publication date: 12 Jun 2026 URL: https://advisories.mageia.org/MGASA-2026-0199.html Type: security Affected Mageia releases: 9 CVE: CVE-2026-27135 Description: Denial of service: Assertion failure due to missing state validation. (CVE-2026-27135) References: - https://bugs.mageia.org/show_bug.cgi?id=35252 - https://www.openwall.com/lists/oss-security/2026/03/20/3 - https://github.com/nghttp2/nghttp2/security/advisories/GHSA-6933-cjhr-5qg6 - https://lists.debian.org/debian-security-announce/2026/msg00177.html - https://www.cve.org/CVERecord?id=CVE-2026-27135 SRPMS: - 9/core/nghttp2-1.61.0-1.1.mga9 . Security update for Mageia with critical nghttp2 denial of service issue due to assertion failure. Urgent patch available.. Mageia, nghttp2 security, denial of service, nghttp2 update, Mageia vulnerability. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 12, 2026 Critical Mageia
100

SUSE: CMake Low Severity CVE-2025-9301 Advisory 2025:3812-1

* bsc#1248461 Cross-References: * CVE-2025-9301 . # Security update for cmake Announcement ID: SUSE-SU-2025:3812-1 Release Date: 2025-10-27T16:13:37Z Rating: low References: * bsc#1248461 Cross-References: * CVE-2025-9301 CVSS scores: * CVE-2025-9301 ( SUSE ): 4.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-9301 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2025-9301 ( NVD ): 1.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-9301 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L Affected Products: * Basesystem Module 15-SP6 * Basesystem Module 15-SP7 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves one vulnerability can now be installed. ## Description: This update for cmake fixes the following issues: * CVE-2025-9301: Fixed assertion failure due to improper validation (bsc#1248461) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-3812=1 openSUSE-SLE-15.6-2025-3812=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-3812=1 * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2025-3812=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) *cmake-gui-debuginfo-3.28.3-150600.3.3.1 * cmake-full-debugsource-3.28.3-150600.3.3.1 * cmake-full-debuginfo-3.28.3-150600.3.3.1 * cmake-ui-debugsource-3.28.3-150600.3.3.1 * cmake-mini-debuginfo-3.28.3-150600.3.3.1 * cmake-mini-3.28.3-150600.3.3.1 * cmake-gui-3.28.3-150600.3.3.1 * cmake-3.28.3-150600.3.3.1 * cmake-mini-debugsource-3.28.3-150600.3.3.1 * cmake-full-3.28.3-150600.3.3.1 * cmake-man-3.28.3-150600.3.3.1 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * cmake-full-debugsource-3.28.3-150600.3.3.1 * cmake-full-3.28.3-150600.3.3.1 * cmake-3.28.3-150600.3.3.1 * cmake-full-debuginfo-3.28.3-150600.3.3.1 * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * cmake-full-debugsource-3.28.3-150600.3.3.1 * cmake-full-3.28.3-150600.3.3.1 * cmake-3.28.3-150600.3.3.1 * cmake-full-debuginfo-3.28.3-150600.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-9301.html * https://bugzilla.suse.com/show_bug.cgi?id=1248461 . Security update for cmake addresses CVE-2025-9301 with low severity alert for SUSE releases.. SUSE, cmake security, low severity update, assertion failure issue. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Oct 27, 2025 Low SuSE
100

openSUSE: CMake Low Assertion Failure Fix SUSE-2025:03281-1

* bsc#1248461 Cross-References: * CVE-2025-9301 . # Security update for cmake Announcement ID: SUSE-SU-2025:03281-1 Release Date: 2025-09-19T17:44:35Z Rating: low References: * bsc#1248461 Cross-References: * CVE-2025-9301 CVSS scores: * CVE-2025-9301 ( SUSE ): 4.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-9301 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2025-9301 ( NVD ): 1.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-9301 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L Affected Products: * openSUSE Leap 15.4 An update that solves one vulnerability can now be installed. ## Description: This update for cmake fixes the following issues: * CVE-2025-9301: Fixed assertion failure due to improper validation (bsc#1248461) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-3281=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * cmake-man-3.20.4-150400.4.9.1 * cmake-mini-debugsource-3.20.4-150400.4.9.1 * cmake-3.20.4-150400.4.9.1 * cmake-full-debugsource-3.20.4-150400.4.9.1 * cmake-mini-3.20.4-150400.4.9.1 * cmake-mini-debuginfo-3.20.4-150400.4.9.1 * cmake-full-debuginfo-3.20.4-150400.4.9.1 * cmake-gui-3.20.4-150400.4.9.1 * cmake-full-3.20.4-150400.4.9.1 * cmake-gui-debuginfo-3.20.4-150400.4.9.1 * cmake-ui-debugsource-3.20.4-150400.4.9.1 ## References: * https://www.suse.com/security/cve/CVE-2025-9301.html * https://bugzilla.suse.com/show_bug.cgi?id=1248461 . This notification outlines a minor security patch for cmake in openSUSE Leap 15.4 addressing a CVEconcern.. CMake Security Advisory, openSUSE Security Patch, CVE-2025-9301 Fix. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Sep 19, 2025 Low SuSE
100

openSUSE: Cmake3 Low Assertion Failure CVE-2025-9301 Advisory 2025:02976-1

* bsc#1248461 Cross-References: * CVE-2025-9301 . # Security update for cmake3 Announcement ID: SUSE-SU-2025:02976-1 Release Date: 2025-08-25T12:03:08Z Rating: low References: * bsc#1248461 Cross-References: * CVE-2025-9301 CVSS scores: * CVE-2025-9301 ( SUSE ): 4.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-9301 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2025-9301 ( NVD ): 1.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-9301 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L Affected Products: * openSUSE Leap 15.6 An update that solves one vulnerability can now be installed. ## Description: This update for cmake3 fixes the following issues: * CVE-2025-9301: Fixed assertion failure due to improper validation (bsc#1248461) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-2976=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * cmake3-ui-debugsource-3.17.0-150000.1.9.1 ## References: * https://www.suse.com/security/cve/CVE-2025-9301.html * https://bugzilla.suse.com/show_bug.cgi?id=1248461 . An update for cmake3 has been released by SUSE to address CVE-2025-9301, categorized as a low severity issue. You can apply this update via YaST or the zypper package management tool.. SUSE, cmake3, security advisory, CVE-2025-9301. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Aug 25, 2025 Low SuSE
100

openSUSE Leap 15.6: cmake3 Low Assertion Fix CVE-2025-9301 2025:02975-1

* bsc#1248461 Cross-References: * CVE-2025-9301 . # Security update for cmake3 Announcement ID: SUSE-SU-2025:02975-1 Release Date: 2025-08-25T10:42:20Z Rating: low References: * bsc#1248461 Cross-References: * CVE-2025-9301 CVSS scores: * CVE-2025-9301 ( SUSE ): 4.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-9301 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2025-9301 ( NVD ): 1.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-9301 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L Affected Products: * openSUSE Leap 15.6 An update that solves one vulnerability can now be installed. ## Description: This update for cmake3 fixes the following issues: * CVE-2025-9301: Fixed assertion failure due to improper validation (bsc#1248461) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-2975=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * cmake3-full-debugsource-3.20.0-150200.6.6.1 * cmake3-full-debuginfo-3.20.0-150200.6.6.1 * cmake3-full-3.20.0-150200.6.6.1 * cmake3-3.20.0-150200.6.6.1 ## References: * https://www.suse.com/security/cve/CVE-2025-9301.html * https://bugzilla.suse.com/show_bug.cgi?id=1248461 . Patch released for minor security flaw in cmake3 resolves assertion fault, impacting openSUSE. Discover further details here.. openSUSE cmake3 security patch low severity CVE-2025-9301. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Aug 25, 2025 Low SuSE
202

openSUSE Leap 15.6: cmake3 Low Severity Update CVE-2025-9301

An update that solves one vulnerability can now be installed.. # Security update for cmake3 Announcement ID: SUSE-SU-2025:02975-1 Release Date: 2025-08-25T10:42:20Z Rating: low References: * bsc#1248461 Cross-References: * CVE-2025-9301 CVSS scores: * CVE-2025-9301 ( SUSE ): 4.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-9301 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2025-9301 ( NVD ): 1.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2025-9301 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L Affected Products: * openSUSE Leap 15.6 An update that solves one vulnerability can now be installed. ## Description: This update for cmake3 fixes the following issues: * CVE-2025-9301: Fixed assertion failure due to improper validation (bsc#1248461) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-2975=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * cmake3-full-debugsource-3.20.0-150200.6.6.1 * cmake3-full-debuginfo-3.20.0-150200.6.6.1 * cmake3-full-3.20.0-150200.6.6.1 * cmake3-3.20.0-150200.6.6.1 ## References: * https://www.suse.com/security/cve/CVE-2025-9301.html * https://bugzilla.suse.com/show_bug.cgi?id=1248461 . OpenSUSE Leap 15.6 released an update for cmake3 to fix the CVE-2025-9301 security vulnerability, rated low severity. Users should apply the patch for enhanced security. cmake3 update, openSUSE Leap, CVE-2025-9301, security patch, Linux application. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Aug 25, 2025 Low OpenSUSE
219

Rocky Linux 9: RLSA-2025:4492 qemu-kvm Moderate Security Update

Moderate: qemu-kvm security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2025:4492", "synopsis": "Moderate: qemu-kvm security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for qemu-kvm.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Kernel-based Virtual Machine (KVM) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm packages provide the user-space component for running virtual machines that use KVM.\n\nSecurity Fix(es):\n\n* QEMU: virtio-net: stack buffer overflow in virtio_net_flush_tx() (CVE-2023-6693)\n\n* qemu-kvm: net: assertion failure in update_sctp_checksum() (CVE-2024-3567)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2254580", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2254580", "description": ""}, {"ticket": "2274339", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2274339", "description": ""}], "cves": [{"name": "CVE-2023-6693", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-6693", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L", "cvss3BaseScore": "4.9", "cwe": "CWE-121"}, {"name": "CVE-2024-3567", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-3567", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "5.5", "cwe": "CWE-617"}], "references": [], "publishedAt": "2025-07-29T13:40:19.644888Z", "rpms": {"Rocky Linux 9": {"nvras": ["qemu-guest-agent-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-guest-agent-17:9.0.0-10.el9_5.3.ppc64le.rpm","qemu-guest-agent-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-guest-agent-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-guest-agent-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-guest-agent-debuginfo-17:9.0.0-10.el9_5.3.ppc64le.rpm", "qemu-guest-agent-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-guest-agent-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-img-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-img-17:9.0.0-10.el9_5.3.ppc64le.rpm", "qemu-img-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-img-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-img-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-img-debuginfo-17:9.0.0-10.el9_5.3.ppc64le.rpm", "qemu-img-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-img-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-17:9.0.0-10.el9_5.3.src.rpm", "qemu-kvm-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-audio-pa-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-audio-pa-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-audio-pa-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-audio-pa-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-audio-pa-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-audio-pa-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-block-blkio-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-block-blkio-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-block-blkio-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-block-blkio-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-block-blkio-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-block-blkio-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-block-curl-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-block-curl-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-block-curl-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-block-curl-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-block-curl-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-block-curl-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-block-rbd-17:9.0.0-10.el9_5.3.aarch64.rpm","qemu-kvm-block-rbd-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-block-rbd-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-block-rbd-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-block-rbd-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-block-rbd-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-common-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-common-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-common-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-common-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-common-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-common-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-core-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-core-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-core-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-core-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-core-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-core-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-debugsource-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-debugsource-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-debugsource-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-display-virtio-gpu-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-display-virtio-gpu-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-device-display-virtio-gpu-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-display-virtio-gpu-ccw-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-device-display-virtio-gpu-ccw-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-device-display-virtio-gpu-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-display-virtio-gpu-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-device-display-virtio-gpu-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-display-virtio-gpu-pci-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-display-virtio-gpu-pci-17:9.0.0-10.el9_5.3.x86_64.rpm","qemu-kvm-device-display-virtio-gpu-pci-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-display-virtio-gpu-pci-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-display-virtio-vga-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-display-virtio-vga-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-usb-host-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-usb-host-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-device-usb-host-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-usb-host-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-usb-host-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-device-usb-host-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-usb-redirect-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-usb-redirect-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-device-usb-redirect-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-device-usb-redirect-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-docs-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-docs-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-docs-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-tools-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-tools-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-tools-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-tools-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-kvm-tools-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-kvm-tools-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-ui-egl-headless-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-ui-egl-headless-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-ui-opengl-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-kvm-ui-opengl-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-pr-helper-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-pr-helper-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-pr-helper-17:9.0.0-10.el9_5.3.x86_64.rpm", "qemu-pr-helper-debuginfo-17:9.0.0-10.el9_5.3.aarch64.rpm", "qemu-pr-helper-debuginfo-17:9.0.0-10.el9_5.3.s390x.rpm", "qemu-pr-helper-debuginfo-17:9.0.0-10.el9_5.3.x86_64.rpm"]}}, "rebootSuggested": false,"buildReferences": []}. Moderate qemu-kvm security update includes fixes for two significant vulnerabilities on Rocky Linux 9.. qemu-kvm update, Rocky Linux advisory, security update, buffer overflow. . LinuxSecurity.com Team

Calendar%202 Jul 29, 2025 Rocky Linux
100

SUSE: Bind Important Patch CVE-2025-40777 Advisory 2025:02349-1

* bsc#1246548 Cross-References: * CVE-2025-40777 . # Security update for bind Announcement ID: SUSE-SU-2025:02349-1 Release Date: 2025-07-17T11:47:22Z Rating: important References: * bsc#1246548 Cross-References: * CVE-2025-40777 CVSS scores: * CVE-2025-40777 ( SUSE ): 8.2 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-40777 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-40777 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * Basesystem Module 15-SP7 * Server Applications Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves one vulnerability can now be installed. ## Description: This update for bind fixes the following issues: * Upgrade to release 9.20.11 * CVE-2025-40777: Fixed a possible assertion failure when stale-answer-client- timeout is set to 0. (bsc#1246548) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2025-2349=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2025-2349=1 ## Package List: * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * bind-utils-debuginfo-9.20.11-150700.3.6.1 * bind-debuginfo-9.20.11-150700.3.6.1 * bind-debugsource-9.20.11-150700.3.6.1 * bind-utils-9.20.11-150700.3.6.1 * Server Applications Module 15-SP7 (aarch64 ppc64le s390x x86_64) * bind-debuginfo-9.20.11-150700.3.6.1 * bind-debugsource-9.20.11-150700.3.6.1 * bind-9.20.11-150700.3.6.1 * Server Applications Module 15-SP7 (noarch) * bind-doc-9.20.11-150700.3.6.1 ##References: * https://www.suse.com/security/cve/CVE-2025-40777.html * https://bugzilla.suse.com/show_bug.cgi?id=1246548 . SUSE has released a recent advisory that focuses on a critical bind update remedying CVE-2025-40788, which relates to possible assertion vulnerabilities.. SUSE Bind Security Important Patch CVE-2025-40777. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 17, 2025 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200