Alerts This Week
Warning Icon 1 697
Alerts This Week
Warning Icon 1 697

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":547,"type":"x","order":1,"pct":78.48,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.88,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.34,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 7 articles for you...
89

Fedora 43 libsoup Critical Duplicate Host Header Issue CVE-2025-14523

Backport fix for CVE-2025-14523. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-20b533bbc7 2026-01-27 04:51:32.146744+00:00 -------------------------------------------------------------------------------- Name : mingw-libsoup Product : Fedora 43 Version : 2.74.3 Release : 16.fc43 URL : https://wiki.gnome.org/Projects/libsoup Summary : MinGW library for HTTP and XML-RPC functionality Description : Libsoup is an HTTP library implementation in C. It was originally part of a SOAP (Simple Object Access Protocol) implementation called Soup, but the SOAP and non-SOAP parts have now been split into separate packages. libsoup uses the Glib main loop and is designed to work well with GTK applications. This enables GNOME applications to access HTTP servers on the network in a completely asynchronous fashion, very similar to the Gtk+ programming model (a synchronous operation mode is also supported for those who want it). This is the MinGW build of Libsoup -------------------------------------------------------------------------------- Update Information: Backport fix for CVE-2025-14523 -------------------------------------------------------------------------------- ChangeLog: * Sat Jan 17 2026 Sandro Mani - 2.74.3-16 - Backport patch for CVE-2025-14523 * Fri Jan 16 2026 Fedora Release Engineering - 2.74.3-15 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2421353 - CVE-2025-14523 mingw-libsoup: libsoup: Duplicate Host Header Handling Causes Host-Parsing Discrepancy (First- vs Last-Value Wins) [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2421353 [ 2 ] Bug #2421356 - CVE-2025-14523 mingw-libsoup: libsoup: Duplicate Host Header Handling Causes Host-Parsing Discrepancy (First- vs Last-Value Wins) [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2421356 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-20b533bbc7' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Backport fix for critical CVE-2025-14523 in Fedora libsoup ensures improved security and stability for users.. libsoup Fedora CVE backport critical patch. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 27, 2026 Critical Fedora
89

Fedora 41 mingw-python3 Update: FEDORA-2024-48fd84da22 Critical DoS

Backport patch for CVE-2024-8088. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-48fd84da22 2024-09-13 20:43:08.472806 -------------------------------------------------------------------------------- Name : mingw-python3 Product : Fedora 41 Version : 3.11.9 Release : 2.fc41 URL : https://www.python.org/ Summary : MinGW Windows python3 Description : MinGW Windows python3 -------------------------------------------------------------------------------- Update Information: Backport patch for CVE-2024-8088 -------------------------------------------------------------------------------- ChangeLog: * Wed Aug 28 2024 Sandro Mani - 3.11.9-2 - Backport patch for CVE-2024-8088 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2307457 - CVE-2024-8088 mingw-python3: From NVD collector [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2307457 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-48fd84da22' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines ListArchives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . This enhancement for mingw-python3 addresses CVE-2024-8090 via a backport fix for Fedora 41, guaranteeing program safety.. mingw-python3, Fedora updates, backport patches, CVE-2024-8088. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Sep 13, 2024 Critical Fedora
89

Fedora 38: 2024-02-25 Moderate: mingw-openexr Heap Overflow Fix

Backport fix for CVE-2023-5841.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-f4d51715fe 2024-02-25 01:24:47.525747 -------------------------------------------------------------------------------- Name : mingw-openexr Product : Fedora 38 Version : 3.1.10 Release : 4.fc38 URL : https://openexr.com/en/latest/ Summary : MinGW Windows openexr library Description : MinGW Windows openexr library. -------------------------------------------------------------------------------- Update Information: Backport fix for CVE-2023-5841. -------------------------------------------------------------------------------- ChangeLog: * Fri Feb 16 2024 Sandro Mani - 3.1.10-4 - Backport patch for CVE-2023-5841 * Thu Jan 25 2024 Fedora Release Engineering - 3.1.10-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Sun Jan 21 2024 Fedora Release Engineering - 3.1.10-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Fri Aug 4 2023 Sandro Mani - 3.1.10-1 - Update to 3.1.10 * Thu Jul 20 2023 Fedora Release Engineering - 3.1.9-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Tue Jul 18 2023 Sandro Mani - 3.1.9-1 - Update to 3.1.9 * Fri May 19 2023 Sandro Mani - 3.1.7-1 - Update to 3.1.7 * Mon Mar 20 2023 Sandro Mani - 3.1.6-1 - Update to 3.1.6 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2262407 - TRIAGE CVE-2023-5841 mingw-openexr: OpenEXR: Heap Overflow in Scanline Deep Data Parsing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2262407 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-f4d51715fe' at the command line. For more information, refer to the dnf documentation availableat https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Essential patch addressing stack overflow exposure in Fedora 38 mingw-openexr package, released on February 25, 2024.. Fedora Update,mww-openexr,Heap Overflow,security patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 25, 2024 Important Fedora
89

Fedora 37: FEDORA-2023-88c87f6191 Critical Heap Buffer Overflow

Backport fix for CVE-2023-1729.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-88c87f6191 2023-05-19 01:23:33.798314 --------------------------------------------------------------------------------Name : mingw-LibRaw Product : Fedora 37 Version : 0.20.2 Release : 9.fc37 URL : https://www.libraw.org/ Summary : Library for reading RAW files obtained from digital photo cameras Description : MinGW Windows LibRaw library. --------------------------------------------------------------------------------Update Information: Backport fix for CVE-2023-1729. --------------------------------------------------------------------------------ChangeLog: * Wed May 10 2023 Sandro Mani - 0.20.2-9 - Backport patch for CVE-2023-1729 --------------------------------------------------------------------------------References: [ 1 ] Bug #2188277 - CVE-2023-1729 mingw-LibRaw: LibRaw: a heap-buffer-overflow in raw2image_ex() [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2188277 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-88c87f6191' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines:https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 37 introduces the latest mingw-LibRaw version, fixing the CVE-2023-1729 heap buffer overflow vulnerability for improved security and stability. Users must update to mitigate risks. Fedora Update, mingw-LibRaw, heap Buffer Overflow. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 19, 2023 Critical Fedora
89

Fedora 37 2023-ddc617c87f Moderate: Mingw-Freetype Integer Overflow

Backport fix for CVE-2023-2004.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-ddc617c87f 2023-04-22 00:53:57.594838 --------------------------------------------------------------------------------Name : mingw-freetype Product : Fedora 37 Version : 2.12.1 Release : 4.fc37 URL : https://freetype.org/ Summary : Free and portable font rendering engine Description : MinGW Windows Freetype library. --------------------------------------------------------------------------------Update Information: Backport fix for CVE-2023-2004. --------------------------------------------------------------------------------ChangeLog: * Thu Apr 13 2023 Sandro Mani - 2.12.1-4 - Backport patch for CVE-2023-2004 * Thu Jan 19 2023 Fedora Release Engineering - 2.12.1-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2186437 - CVE-2023-2004 mingw-freetype: freetype: integer overflowin in tt_hvadvance_adjust() in src/truetype/ttgxvar.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2186437 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-ddc617c87f' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Implement patch for CVE-2023-2005 in Fedora 38 mingw-libpng. Urgent update for improved application protection.. Fedora Update Notification, Freetype Patch, Software Security Fix. . LinuxSecurity.com Team

Calendar 2 Apr 22, 2023 Fedora
89

Fedora 37: FEDORA-2023-cfe20dbcab Critical: DoS in Mingw Glib2

Backport patch for CVE-2023-24593.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-cfe20dbcab 2023-04-14 01:05:02.596157 --------------------------------------------------------------------------------Name : mingw-glib2 Product : Fedora 37 Version : 2.74.1 Release : 2.fc37 URL : https://www.gtk.org/ Summary : MinGW Windows GLib2 library Description : MinGW Windows Glib2 library. --------------------------------------------------------------------------------Update Information: Backport patch for CVE-2023-24593. --------------------------------------------------------------------------------ChangeLog: * Wed Apr 5 2023 Sandro Mani - 2.74.1-2 - Backport patch for CVE-2023-24593 --------------------------------------------------------------------------------References: [ 1 ] Bug #2181192 - CVE-2023-24593 mingw-glib2: glib: DoS caused by handling a malicious text-form variant [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2181192 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-cfe20dbcab' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives:https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The Fedora 38 release incorporates a backported fix for CVE-2023-25694, which impacts mingw-libc and poses a possible denial of service threat.. Fedora 37, Mingw Glib2, Security Patch, DoS Risk. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Apr 14, 2023 Critical Fedora
89

Fedora 38: 2023-dbba9e7218 Critical: NULL Pointer Segmentation Fault

Backport patch for CVE-2023-25587.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-dbba9e7218 2023-03-11 03:04:11.190273 --------------------------------------------------------------------------------Name : mingw-binutils Product : Fedora 38 Version : 2.39 Release : 5.fc38 URL : Summary : Cross-compiled version of binutils for Win32 and Win64 environments Description : Cross compiled binutils (utilities like 'strip', 'as', 'ld') which understand Windows executables and DLLs. --------------------------------------------------------------------------------Update Information: Backport patch for CVE-2023-25587. --------------------------------------------------------------------------------ChangeLog: * Tue Mar 7 2023 Sandro Mani - 2.39-5 - Backport patch for CVE-2023-25587 --------------------------------------------------------------------------------References: [ 1 ] Bug #2174099 - CVE-2023-25587 mingw-binutils: binutils: NULL pointer segmentation fault when accessing field `the_bfd` in function `compare_symbols` [fedora-36] https://bugzilla.redhat.com/show_bug.cgi?id=2174099 [ 2 ] Bug #2174111 - CVE-2023-25587 mingw-binutils: binutils: NULL pointer segmentation fault when accessing field `the_bfd` in function `compare_symbols` [fedora-37] https://bugzilla.redhat.com/show_bug.cgi?id=2174111 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-dbba9e7218' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The backported fix for CVE-2023-25587 affecting mingw-binutils in Fedora 38 resolves a significant NULL reference vulnerability.. mingw-binutils,Fedora 38,CVE-2023-25587. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 11, 2023 Critical Fedora
89

Fedora 37 mingw-python3 Security Advisory: CVE-2022-45061 DoS Risk

Backport patch for CVE-2022-45061.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-3e859b6bc6 2022-11-30 01:33:59.394805 --------------------------------------------------------------------------------Name : mingw-python3 Product : Fedora 37 Version : 3.10.8 Release : 2.fc37 URL : https://www.python.org/ Summary : MinGW Windows python3 Description : MinGW Windows python3 library. --------------------------------------------------------------------------------Update Information: Backport patch for CVE-2022-45061. --------------------------------------------------------------------------------ChangeLog: * Mon Nov 21 2022 Sandro Mani - 3.10.8-2 - Backport patch for CVE-2022-45061 --------------------------------------------------------------------------------References: [ 1 ] Bug #2144417 - CVE-2022-45061 mingw-python3: Python: CPU denial of service via inefficient IDNA decoder [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2144417 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-3e859b6bc6' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines:https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . Fedora 37 release for mingw-python3 includes a critical update rectifying CVE-2022-45061 through the introduction of a backported patch that enhances overall security.. mingw-python3, Fedora Security Advisory, DoS Risk, Security Patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 29, 2022 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":547,"type":"x","order":1,"pct":78.48,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.88,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.34,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here