Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Evolution Data Server could be made to remove files.. ========================================================================== Ubuntu Security Notice USN-8055-2 June 01, 2026 evolution-data-server vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Evolution Data Server could be made to remove files. Software Description: - evolution-data-server: Evolution suite data server Details: USN-8055-1 fixed a vulnerability in Evolution Data Server. This update provides the corresponding update for Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. Original advisory details: It was discovered that Evolution Data Server incorrectly handled removing local cache files. An attacker could possibly use this issue to cause Evolution Data Server to remove arbitrary files. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS evolution-data-server 3.36.5-0ubuntu1+esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS evolution-data-server 3.28.5-0ubuntu0.18.04.3+esm1 Available with Ubuntu Pro After a standard system update you need to restart your session to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8055-2 https://ubuntu.com/security/notices/USN-8055-1 CVE-2026-2604 . Ubuntu's Evolution Data Server has a critical file removal flaw. Update your system to ensure security and prevent attacks.. Ubuntu security, Evolution Data Server, file removal flaw, critical updates. . Severity: Critical. LinuxSecurity.com Team
# Security update for docker Announcement ID: SUSE-SU-2026:1492-1 Release Date: 2026-04-20T15:57:20Z Rating: important References:. # Security update for docker Announcement ID: SUSE-SU-2026:1492-1 Release Date: 2026-04-20T15:57:20Z Rating: important References: Affected Products: * Basesystem Module 15-SP7 * Containers Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP6 LTSS * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that can now be installed. ## Description: This update for docker rebuilds it against the current go 1.25 security release. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-1492=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-1492=1 * SUSE Linux Enterprise Server 15 SP6 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-1492=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-1492=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2026-1492=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP6-2026-1492=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-1492=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-1492=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-1492=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-1492=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-1492=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-1492=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2026-1492=1 * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-1492=1 * Containers Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Containers-15-SP7-2026-1492=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-1492=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-1492=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-1492=1 * SUSE Linux Enterprise HighPerformance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-1492=1 ## Package List: * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Server 15 SP5 LTSS (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 ppc64le s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Server 15 SP6 LTSS (noarch) * docker-zsh-completion-28.5.1_ce-150000.245.2 * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 *docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (ppc64le x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (noarch) * docker-zsh-completion-28.5.1_ce-150000.245.2 * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 *docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * Containers Module 15-SP7 (noarch) * docker-zsh-completion-28.5.1_ce-150000.245.2 * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * docker-debuginfo-28.5.1_ce-150000.245.2 * docker-buildx-debuginfo-0.29.0-150000.245.2 * docker-28.5.1_ce-150000.245.2 * docker-buildx-0.29.0-150000.245.2 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (noarch) * docker-bash-completion-28.5.1_ce-150000.245.2 * docker-rootless-extras-28.5.1_ce-150000.245.2 . Update for docker enhances security and requires immediate action for SUSE systems. Check patch instructions and impacts.. docker security SUSE update important patch. . Severity: Important. LinuxSecurity.com Team
Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7686-1 August 05, 2025 linux-raspi vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-raspi: Linux kernel for Raspberry Pi systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - PA-RISC architecture; - PowerPC architecture; - x86 architecture; - Block layer subsystem; - Cryptographic API; - Serial ATA and Parallel ATA drivers; - Bluetooth drivers; - Bus devices; - CPU frequency scaling framework; - Buffer Sharing and Synchronization framework; - DMA engine subsystem; - ARM SCMI message protocol; - GPU drivers; - HID subsystem; - HSI subsystem; - I2C subsystem; - I3C subsystem; - IIO subsystem; - InfiniBand drivers; - IOMMU subsystem; - IRQ chip drivers; - MCB driver; - Multiple devices driver; - Media drivers; - Multifunction device drivers; - PCI Endpoint Test driver; - MTD block device drivers; - Network drivers; - Device tree and open firmware driver; - PCI subsystem; - TI SCI PM domains driver; - PWM drivers; - S/390 drivers; - SCSI subsystem; - Samsung SoC drivers; - TCM subsystem; - TTY drivers; - UFS subsystem; - Cadence USB3 driver; - ChipIdea USB driver; - USB Device Class drivers; - DesignWare USB3 driver; - USB Gadget drivers; - USB Type-C support driver; - USB Type-C Connector System Software Interface driver; - Backlight driver; - Framebuffer layer; - Xen hypervisor drivers; - BTRFS file system; - Ext4 file system; - F2FS file system; - File systems infrastructure; -JFS file system; - Network file system (NFS) client; - Network file system (NFS) server daemon; - Proc file system; - SMB network file system; - Kernel stack handling interfaces; - Bluetooth subsystem; - Network traffic control; - SCTP protocol; - BPF subsystem; - Kernel command line parsing driver; - Tracing infrastructure; - Memory management; - 802.1Q VLAN protocol; - Networking core; - IPv6 networking; - MAC80211 subsystem; - Management Component Transport Protocol (MCTP); - Multipath TCP; - Netfilter; - Open vSwitch; - Phonet protocol; - TIPC protocol; - TLS protocol; - Virtio sound driver; - CPU Power monitoring subsystem; (CVE-2024-50280, CVE-2025-23159, CVE-2024-26686, CVE-2025-37797, CVE-2024-50047, CVE-2025-37810, CVE-2025-37796, CVE-2024-26739, CVE-2022-49535, CVE-2025-37808, CVE-2025-37824, CVE-2025-37923, CVE-2025-37885, CVE-2025-23145, CVE-2025-37913, CVE-2025-23144, CVE-2025-37767, CVE-2024-50258, CVE-2024-46742, CVE-2025-37819, CVE-2025-37794, CVE-2025-21853, CVE-2025-37858, CVE-2025-37766, CVE-2025-23156, CVE-2025-38083, CVE-2024-46787, CVE-2025-38009, CVE-2025-37881, CVE-2024-54458, CVE-2025-37940, CVE-2025-37911, CVE-2025-37792, CVE-2024-46816, CVE-2025-37738, CVE-2025-37851, CVE-2025-37749, CVE-2025-37994, CVE-2024-50272, CVE-2025-37915, CVE-2025-23140, CVE-2024-53203, CVE-2025-37969, CVE-2025-37995, CVE-2025-37930, CVE-2024-56751, CVE-2025-23146, CVE-2024-50125, CVE-2025-37998, CVE-2025-37787, CVE-2025-37798, CVE-2025-37742, CVE-2025-23148, CVE-2024-35866, CVE-2025-37982, CVE-2025-23142, CVE-2025-37964, CVE-2025-37768, CVE-2022-49063, CVE-2025-37949, CVE-2025-37990, CVE-2025-38094, CVE-2025-37788, CVE-2025-37857, CVE-2024-49960, CVE-2022-49168, CVE-2022-48893, CVE-2024-46774, CVE-2025-37905, CVE-2025-38001, CVE-2025-37992, CVE-2025-37841, CVE-2024-38541, CVE-2025-37862, CVE-2025-37912, CVE-2025-37838, CVE-2025-37771, CVE-2024-35867, CVE-2025-38023, CVE-2024-49989, CVE-2025-37997, CVE-2025-37970, CVE-2025-23151, CVE-2025-37758, CVE-2025-37844,CVE-2025-37871, CVE-2025-38024, CVE-2025-37914, CVE-2024-53051, CVE-2025-37829, CVE-2025-37770, CVE-2025-38000, CVE-2025-23163, CVE-2025-37875, CVE-2025-37927, CVE-2025-37850, CVE-2025-37839, CVE-2025-37780, CVE-2024-53128, CVE-2025-37883, CVE-2025-37740, CVE-2025-37840, CVE-2025-23150, CVE-2024-50073, CVE-2025-23158, CVE-2025-37909, CVE-2025-37789, CVE-2024-35943, CVE-2024-38540, CVE-2025-37739, CVE-2025-37985, CVE-2025-37932, CVE-2025-37892, CVE-2025-37812, CVE-2025-37765, CVE-2025-37983, CVE-2025-37741, CVE-2023-52572, CVE-2025-37823, CVE-2024-46751, CVE-2025-23157, CVE-2025-37967, CVE-2025-38177, CVE-2024-35790, CVE-2025-37773, CVE-2024-36908, CVE-2024-27402, CVE-2025-37991, CVE-2025-37890, CVE-2025-23161, CVE-2025-37790, CVE-2025-22027, CVE-2025-38005, CVE-2025-37811, CVE-2025-37989, CVE-2025-37836, CVE-2025-23147, CVE-2025-21839, CVE-2025-37830, CVE-2025-37781, CVE-2023-52757, CVE-2024-42322, CVE-2025-37817, CVE-2025-37803, CVE-2025-37805, CVE-2025-37859, CVE-2025-37756, CVE-2025-22062, CVE-2022-21546, CVE-2025-37867, CVE-2025-37757) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS linux-image-5.15.0-1083-raspi 5.15.0-1083.86 linux-image-raspi 5.15.0.1083.81 linux-image-raspi-5.15 5.15.0.1083.81 linux-image-raspi-nolpae 5.15.0.1083.81 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7686-1 CVE-2022-21546, CVE-2022-48893, CVE-2022-49063, CVE-2022-49168, CVE-2022-49535,CVE-2023-52572, CVE-2023-52757, CVE-2024-26686, CVE-2024-26739, CVE-2024-27402, CVE-2024-35790, CVE-2024-35866, CVE-2024-35867, CVE-2024-35943, CVE-2024-36908, CVE-2024-38540, CVE-2024-38541, CVE-2024-42322, CVE-2024-46742, CVE-2024-46751, CVE-2024-46774, CVE-2024-46787, CVE-2024-46816, CVE-2024-49960, CVE-2024-49989, CVE-2024-50047, CVE-2024-50073, CVE-2024-50125, CVE-2024-50258, CVE-2024-50272, CVE-2024-50280, CVE-2024-53051, CVE-2024-53128, CVE-2024-53203, CVE-2024-54458, CVE-2024-56751, CVE-2025-21839, CVE-2025-21853, CVE-2025-22027, CVE-2025-22062, CVE-2025-23140, CVE-2025-23142, CVE-2025-23144, CVE-2025-23145, CVE-2025-23146, CVE-2025-23147, CVE-2025-23148, CVE-2025-23150, CVE-2025-23151, CVE-2025-23156, CVE-2025-23157, CVE-2025-23158, CVE-2025-23159, CVE-2025-23161, CVE-2025-23163, CVE-2025-37738, CVE-2025-37739, CVE-2025-37740, CVE-2025-37741, CVE-2025-37742, CVE-2025-37749, CVE-2025-37756, CVE-2025-37757, CVE-2025-37758, CVE-2025-37765, CVE-2025-37766, CVE-2025-37767, CVE-2025-37768, CVE-2025-37770, CVE-2025-37771, CVE-2025-37773, CVE-2025-37780, CVE-2025-37781, CVE-2025-37787, CVE-2025-37788, CVE-2025-37789, CVE-2025-37790, CVE-2025-37792, CVE-2025-37794, CVE-2025-37796, CVE-2025-37797, CVE-2025-37798, CVE-2025-37803, CVE-2025-37805, CVE-2025-37808, CVE-2025-37810, CVE-2025-37811, CVE-2025-37812, CVE-2025-37817, CVE-2025-37819, CVE-2025-37823, CVE-2025-37824, CVE-2025-37829, CVE-2025-37830, CVE-2025-37836, CVE-2025-37838, CVE-2025-37839, CVE-2025-37840, CVE-2025-37841, CVE-2025-37844, CVE-2025-37850, CVE-2025-37851, CVE-2025-37857, CVE-2025-37858, CVE-2025-37859, CVE-2025-37862, CVE-2025-37867, CVE-2025-37871, CVE-2025-37875, CVE-2025-37881, CVE-2025-37883, CVE-2025-37885, CVE-2025-37890, CVE-2025-37892, CVE-2025-37905, CVE-2025-37909, CVE-2025-37911, CVE-2025-37912, CVE-2025-37913, CVE-2025-37914, CVE-2025-37915, CVE-2025-37923, CVE-2025-37927, CVE-2025-37930, CVE-2025-37932, CVE-2025-37940, CVE-2025-37949, CVE-2025-37964, CVE-2025-37967,CVE-2025-37969, CVE-2025-37970, CVE-2025-37982, CVE-2025-37983, CVE-2025-37985, CVE-2025-37989, CVE-2025-37990, CVE-2025-37991, CVE-2025-37992, CVE-2025-37994, CVE-2025-37995, CVE-2025-37997, CVE-2025-37998, CVE-2025-38000, CVE-2025-38001, CVE-2025-38005, CVE-2025-38009, CVE-2025-38023, CVE-2025-38024, CVE-2025-38083, CVE-2025-38094, CVE-2025-38177 Package Information: https://launchpad.net/ubuntu/+source/linux-raspi/5.15.0-1083.86 . Numerous vulnerabilities have been discovered in the Linux kernel for Ubuntu running on Raspberry Pi, necessitating immediate updates to ensure system safety.. Ubuntu Linux kernel updates, Raspberry Pi security, linux-raspi flaws. . Severity: Critical. LinuxSecurity.com Team
Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-7402-4 April 07, 2025 linux-azure, linux-azure-6.8, linux-nvidia-lowlatency vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-nvidia-lowlatency: Linux low latency kernel for NVIDIA systems - linux-azure-6.8: Linux kernel for Microsoft Azure cloud systems Details: Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Block layer subsystem; - GPU drivers; - HID subsystem; - Media drivers; - JFS file system; - Network namespace; - Networking core; - Netlink; (CVE-2024-57798, CVE-2024-53140, CVE-2024-56595, CVE-2024-56598, CVE-2024-50302, CVE-2024-56658, CVE-2024-56672, CVE-2024-53063) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.04 LTS linux-image-6.8.0-1025-nvidia-lowlatency 6.8.0-1025.28.1 linux-image-6.8.0-1025-nvidia-lowlatency-64k 6.8.0-1025.28.1 linux-image-6.8.0-1026-azure 6.8.0-1026.31 linux-image-6.8.0-1026-azure-fde 6.8.0-1026.31 linux-image-azure-fde-lts-24.04 6.8.0-1026.31 linux-image-azure-lts-24.04 6.8.0-1026.31 linux-image-nvidia-lowlatency 6.8.0-1025.28.1 linux-image-nvidia-lowlatency-64k 6.8.0-1025.28.1 Ubuntu 22.04 LTS linux-image-6.8.0-1026-azure 6.8.0-1026.31~22.04.1 linux-image-6.8.0-1026-azure-fde 6.8.0-1026.31~22.04.1 linux-image-azure 6.8.0-1026.31~22.04.1 linux-image-azure-fde 6.8.0-1026.31~22.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-7402-4 https://ubuntu.com/security/notices/USN-7402-3 https://ubuntu.com/security/notices/USN-7402-2 https://ubuntu.com/security/notices/USN-7402-1 CVE-2024-50302, CVE-2024-53063, CVE-2024-53140, CVE-2024-56595, CVE-2024-56598, CVE-2024-56658, CVE-2024-56672, CVE-2024-57798 Package Information: https://launchpad.net/ubuntu/+source/linux-azure/6.8.0-1026.31 https://launchpad.net/ubuntu/+source/linux-nvidia-lowlatency/6.8.0-1025.28.1 https://launchpad.net/ubuntu/+source/linux-azure-6.8/6.8.0-1026.31~22.04.1 . Multiple vulnerabilities resolved in Ubuntu's kernel, affecting the 24.04 LTS and 22.04 LTS editions. Ensure you upgrade!. Ubuntu Security, Linux Kernel Update, Ubuntu Vulnerabilities, Kernel Security Fixes. . Severity: Critical. LinuxSecurity.com Team
shadow could be made to expose sensitive information.. ========================================================================== Ubuntu Security Notice USN-6640-1 February 15, 2024 shadow vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.10 - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS (Available with Ubuntu Pro) - Ubuntu 16.04 LTS (Available with Ubuntu Pro) - Ubuntu 14.04 LTS (Available with Ubuntu Pro) Summary: shadow could be made to expose sensitive information. Software Description: - shadow: system login tools Details: It was discovered that shadow was not properly sanitizing memory when running the password utility. An attacker could possibly use this issue to retrieve a password from memory, exposing sensitive information. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.10: libsubid-dev 1:4.13+dfsg1-1ubuntu1.1 libsubid4 1:4.13+dfsg1-1ubuntu1.1 login 1:4.13+dfsg1-1ubuntu1.1 passwd 1:4.13+dfsg1-1ubuntu1.1 uidmap 1:4.13+dfsg1-1ubuntu1.1 Ubuntu 22.04 LTS: login 1:4.8.1-2ubuntu2.2 passwd 1:4.8.1-2ubuntu2.2 uidmap 1:4.8.1-2ubuntu2.2 Ubuntu 20.04 LTS: login 1:4.8.1-1ubuntu5.20.04.5 passwd 1:4.8.1-1ubuntu5.20.04.5 uidmap 1:4.8.1-1ubuntu5.20.04.5 Ubuntu 18.04 LTS (Available with Ubuntu Pro): login 1:4.5-1ubuntu2.5+esm1 passwd 1:4.5-1ubuntu2.5+esm1 uidmap 1:4.5-1ubuntu2.5+esm1 Ubuntu 16.04 LTS (Available with Ubuntu Pro): login 1:4.2-3.1ubuntu5.5+esm4 passwd 1:4.2-3.1ubuntu5.5+esm4 uidmap 1:4.2-3.1ubuntu5.5+esm4 Ubuntu 14.04 LTS (Available with Ubuntu Pro): login 1:4.1.5.1-1ubuntu9.5+esm4 passwd 1:4.1.5.1-1ubuntu9.5+esm4 uidmap 1:4.1.5.1-1ubuntu9.5+esm4 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6640-1 CVE-2023-4641 PackageInformation: https://launchpad.net/ubuntu/+source/shadow/1:4.13+dfsg1-1ubuntu1.1 . The Ubuntu Security Notice USN-6640-1 pertains to a flaw in shadow that may lead to the unintended disclosure of confidential data.. Ubuntu Security, Shadow Security Issue, Sensitive Data Protection. . Severity: Critical. LinuxSecurity.com Team
* bsc#1208810 * bsc#1216207 Cross-References: * CVE-2023-41914 . # Security update for slurm Announcement ID: SUSE-SU-2023:4114-1 Rating: important References: * bsc#1208810 * bsc#1216207 Cross-References: * CVE-2023-41914 CVSS scores: * CVE-2023-41914 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 An update that solves one vulnerability and has one security fix can now be installed. ## Description: This update for slurm fixes the following issues: * CVE-2023-41914: Fixed a filesystem handling race conditions that could lead to an attacker taking control of an arbitrary file. (bsc#1216207) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-4114=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-4114=1 ## Package List: * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (aarch64 x86_64) * slurm-plugins-20.11.9-150300.4.9.1 * libpmi0-debuginfo-20.11.9-150300.4.9.1 * slurm-doc-20.11.9-150300.4.9.1 * slurm-webdoc-20.11.9-150300.4.9.1 * libpmi0-20.11.9-150300.4.9.1 * slurm-munge-debuginfo-20.11.9-150300.4.9.1 * slurm-auth-none-debuginfo-20.11.9-150300.4.9.1 * slurm-rest-debuginfo-20.11.9-150300.4.9.1 * slurm-20.11.9-150300.4.9.1 * slurm-lua-20.11.9-150300.4.9.1 * slurm-slurmdbd-20.11.9-150300.4.9.1 * slurm-node-debuginfo-20.11.9-150300.4.9.1 * slurm-sview-debuginfo-20.11.9-150300.4.9.1 *slurm-node-20.11.9-150300.4.9.1 * libnss_slurm2-20.11.9-150300.4.9.1 * slurm-pam_slurm-20.11.9-150300.4.9.1 * slurm-rest-20.11.9-150300.4.9.1 * slurm-pam_slurm-debuginfo-20.11.9-150300.4.9.1 * slurm-munge-20.11.9-150300.4.9.1 * slurm-config-20.11.9-150300.4.9.1 * perl-slurm-20.11.9-150300.4.9.1 * slurm-auth-none-20.11.9-150300.4.9.1 * perl-slurm-debuginfo-20.11.9-150300.4.9.1 * slurm-torque-20.11.9-150300.4.9.1 * slurm-sql-20.11.9-150300.4.9.1 * slurm-debugsource-20.11.9-150300.4.9.1 * slurm-config-man-20.11.9-150300.4.9.1 * libnss_slurm2-debuginfo-20.11.9-150300.4.9.1 * libslurm36-20.11.9-150300.4.9.1 * slurm-plugins-debuginfo-20.11.9-150300.4.9.1 * slurm-torque-debuginfo-20.11.9-150300.4.9.1 * slurm-devel-20.11.9-150300.4.9.1 * slurm-debuginfo-20.11.9-150300.4.9.1 * libslurm36-debuginfo-20.11.9-150300.4.9.1 * slurm-sview-20.11.9-150300.4.9.1 * slurm-sql-debuginfo-20.11.9-150300.4.9.1 * slurm-lua-debuginfo-20.11.9-150300.4.9.1 * slurm-slurmdbd-debuginfo-20.11.9-150300.4.9.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * slurm-plugins-20.11.9-150300.4.9.1 * libpmi0-debuginfo-20.11.9-150300.4.9.1 * slurm-doc-20.11.9-150300.4.9.1 * slurm-webdoc-20.11.9-150300.4.9.1 * libpmi0-20.11.9-150300.4.9.1 * slurm-munge-debuginfo-20.11.9-150300.4.9.1 * slurm-auth-none-debuginfo-20.11.9-150300.4.9.1 * slurm-rest-debuginfo-20.11.9-150300.4.9.1 * slurm-20.11.9-150300.4.9.1 * slurm-lua-20.11.9-150300.4.9.1 * slurm-slurmdbd-20.11.9-150300.4.9.1 * slurm-node-debuginfo-20.11.9-150300.4.9.1 * slurm-sview-debuginfo-20.11.9-150300.4.9.1 * slurm-node-20.11.9-150300.4.9.1 * libnss_slurm2-20.11.9-150300.4.9.1 * slurm-pam_slurm-20.11.9-150300.4.9.1 * slurm-rest-20.11.9-150300.4.9.1 * slurm-pam_slurm-debuginfo-20.11.9-150300.4.9.1 * slurm-munge-20.11.9-150300.4.9.1 * slurm-config-20.11.9-150300.4.9.1 *perl-slurm-20.11.9-150300.4.9.1 * slurm-auth-none-20.11.9-150300.4.9.1 * perl-slurm-debuginfo-20.11.9-150300.4.9.1 * slurm-torque-20.11.9-150300.4.9.1 * slurm-sql-20.11.9-150300.4.9.1 * slurm-debugsource-20.11.9-150300.4.9.1 * slurm-config-man-20.11.9-150300.4.9.1 * libnss_slurm2-debuginfo-20.11.9-150300.4.9.1 * libslurm36-20.11.9-150300.4.9.1 * slurm-plugins-debuginfo-20.11.9-150300.4.9.1 * slurm-torque-debuginfo-20.11.9-150300.4.9.1 * slurm-devel-20.11.9-150300.4.9.1 * slurm-debuginfo-20.11.9-150300.4.9.1 * libslurm36-debuginfo-20.11.9-150300.4.9.1 * slurm-sview-20.11.9-150300.4.9.1 * slurm-sql-debuginfo-20.11.9-150300.4.9.1 * slurm-lua-debuginfo-20.11.9-150300.4.9.1 * slurm-slurmdbd-debuginfo-20.11.9-150300.4.9.1 ## References: * https://www.suse.com/security/cve/CVE-2023-41914.html * https://bugzilla.suse.com/show_bug.cgi?id=1208810 * https://bugzilla.suse.com/show_bug.cgi?id=1216207 . SUSE introduces significant security patch for syslog addressing a database processing vulnerability which may enable exploitation attempts.. SUSE Security Update, Slurm Fix, Linux Performance Computing, Filesystem Security, Software Patch. . Severity: Important. LinuxSecurity.com Team
c-ares could be made to crash or run programs if it processed specially crafted input.. =========================================================================Ubuntu Security Notice USN-5907-1 March 02, 2023 c-ares vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.10 - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: c-ares could be made to crash or run programs if it processed specially crafted input. Software Description: - c-ares: library for asynchronous name resolution Details: It was discovered that c-ares incorrectly handled certain sortlist strings. A remote attacker could use this issue to cause c-ares to crash, resulting in a denial of service, or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.10: libc-ares2 1.18.1-1ubuntu0.22.10.1 Ubuntu 22.04 LTS: libc-ares2 1.18.1-1ubuntu0.22.04.1 Ubuntu 20.04 LTS: libc-ares2 1.15.0-1ubuntu0.2 Ubuntu 18.04 LTS: libc-ares2 1.14.0-1ubuntu0.2 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5907-1 CVE-2022-4904 Package Information: https://launchpad.net/ubuntu/+source/c-ares/1.18.1-1ubuntu0.22.10.1 https://launchpad.net/ubuntu/+source/c-ares/1.18.1-1ubuntu0.22.04.1 https://launchpad.net/ubuntu/+source/c-ares/1.15.0-1ubuntu0.2 https://launchpad.net/ubuntu/+source/c-ares/1.14.0-1ubuntu0.2 . Ensure your Ubuntu installation is updated to mitigate the c-ares vulnerability, which could lead to system crashes or unauthorized code execution upon receiving specially designed input.. Ubuntu Security, c-ares Issue, Security Update, Denial of Service, Remote Execution. . Severity:Critical. LinuxSecurity.com Team
Perl could be made to run arbitrary programs.. =========================================================================Ubuntu Security Notice USN-5033-1 August 09, 2021 perl vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 21.04 Summary: Perl could be made to run arbitrary programs. Software Description: - perl: Practical Extraction and Report Language Details: It was discovered that the Perl Encode library incorrectly handled paths. A local attacker could possibly use this issue to trick the library into executing arbitrary code from the current working directory. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 21.04: perl 5.32.1-3ubuntu2.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-5033-1 CVE-2021-36770 Package Information: https://launchpad.net/ubuntu/+source/perl/5.32.1-3ubuntu2.1 . Security flaw discovered in Perl on Ubuntu 21.04 permits local intruders to execute arbitrary commands. It is crucial to patch your systems without delay.. Perl Exploit, Ubuntu Security Advisory, Code Execution Risk. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.