Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 428
Alerts This Week
Warning Icon 1 428

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 0 articles for you...
219

Rocky Linux 9 Capstone Low Memory Corruption Update RLSA-2026-39309

Low: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:39309", "synopsis": "Low: capstone security update", "severity": "SEVERITY_LOW", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}], "cves": [{"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-07-15T12:03:43.176942Z", "rpms": {"Rocky Linux 9": {"nvras": ["capstone-0:4.0.2-13.el9_8.aarch64.rpm", "capstone-0:4.0.2-13.el9_8.ppc64le.rpm", "capstone-0:4.0.2-13.el9_8.s390x.rpm", "capstone-0:4.0.2-13.el9_8.src.rpm", "capstone-0:4.0.2-13.el9_8.x86_64.rpm", "capstone-debuginfo-0:4.0.2-13.el9_8.aarch64.rpm", "capstone-debuginfo-0:4.0.2-13.el9_8.ppc64le.rpm", "capstone-debuginfo-0:4.0.2-13.el9_8.s390x.rpm", "capstone-debuginfo-0:4.0.2-13.el9_8.x86_64.rpm", "capstone-debugsource-0:4.0.2-13.el9_8.aarch64.rpm", "capstone-debugsource-0:4.0.2-13.el9_8.ppc64le.rpm", "capstone-debugsource-0:4.0.2-13.el9_8.s390x.rpm","capstone-debugsource-0:4.0.2-13.el9_8.x86_64.rpm", "capstone-devel-0:4.0.2-13.el9_8.aarch64.rpm", "capstone-devel-0:4.0.2-13.el9_8.ppc64le.rpm", "capstone-devel-0:4.0.2-13.el9_8.s390x.rpm", "capstone-devel-0:4.0.2-13.el9_8.x86_64.rpm", "capstone-java-0:4.0.2-13.el9_8.noarch.rpm", "python3-capstone-0:4.0.2-13.el9_8.aarch64.rpm", "python3-capstone-0:4.0.2-13.el9_8.ppc64le.rpm", "python3-capstone-0:4.0.2-13.el9_8.s390x.rpm", "python3-capstone-0:4.0.2-13.el9_8.x86_64.rpm", "python3-capstone-debuginfo-0:4.0.2-13.el9_8.aarch64.rpm", "python3-capstone-debuginfo-0:4.0.2-13.el9_8.ppc64le.rpm", "python3-capstone-debuginfo-0:4.0.2-13.el9_8.s390x.rpm", "python3-capstone-debuginfo-0:4.0.2-13.el9_8.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. A low severity capstone update is available for Rocky Linux 9 that addresses memory corruption issues effectively.. Rocky Linux capstone update security memory corruption. . Severity: Low. LinuxSecurity.com Team

Calendar%202 Jul 15, 2026 Low Rocky Linux
217

Oracle Linux 10 ELSA-2026-6817 Capstone Important Buffer Overflow Fix

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-6817 http://linux.oracle.com/errata/ELSA-2026-6817.html The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network: x86_64: capstone-5.0.1-7.el10_1.x86_64.rpm capstone-devel-5.0.1-7.el10_1.x86_64.rpm capstone-java-5.0.1-7.el10_1.noarch.rpm python3-capstone-5.0.1-7.el10_1.noarch.rpm aarch64: capstone-5.0.1-7.el10_1.aarch64.rpm capstone-devel-5.0.1-7.el10_1.aarch64.rpm capstone-java-5.0.1-7.el10_1.noarch.rpm python3-capstone-5.0.1-7.el10_1.noarch.rpm SRPMS: http://oss.oracle.com/ol10/SRPMS-updates/capstone-5.0.1-7.el10_1.src.rpm Related CVEs: CVE-2025-67873 CVE-2025-68114 Description of changes: [5.0.1-7] - Fix CVE-2025-67873 (heap buffer overflow) Resolves: RHEL-141551 - Fix CVE-2025-68114 (memory corruption) Resolves: RHEL-137747 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Advisory for capstone addresses important issues including heap buffer overflow and memory corruption.. Oracle Linux, capstone security, buffer overflow fix, memory corruption patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 13, 2026 Important Oracle
219

Ubuntu Server 22 LTS Security Update Alert Denial of Service RLSA-2026-7831

Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:6817", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-04-09T12:07:05.484110Z", "rpms": {"Rocky Linux 10": {"nvras": ["capstone-java-0:5.0.1-7.el10_1.noarch.rpm","capstone-debuginfo-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-devel-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.ppc64le.rpm", "python3-capstone-0:5.0.1-7.el10_1.noarch.rpm", "capstone-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debuginfo-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.x86_64.rpm", "capstone-0:5.0.1-7.el10_1.src.rpm", "capstone-devel-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-devel-0:5.0.1-7.el10_1.s390x.rpm", "capstone-0:5.0.1-7.el10_1.ppc64le.rpm", "capstone-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.aarch64.rpm", "capstone-0:5.0.1-7.el10_1.s390x.rpm", "capstone-debugsource-0:5.0.1-7.el10_1.s390x.rpm", "capstone-devel-0:5.0.1-7.el10_1.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important security update for Capstone on Rocky Linux addresses potential memory corruption and denial of service issues.. Rocky Linux, Capstone, Security Update, Memory Corruption, Denial of Service. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 09, 2026 Important Rocky Linux
100

SUSE Linux Micro 6.0 Capstone Moderate Buffer Overflows 2026-20868-1

An update that solves two vulnerabilities can now be installed.. # Security update for capstone Announcement ID: SUSE-SU-2026:20868-1 Release Date: 2026-03-25T09:32:23Z Rating: moderate References: * bsc#1255309 * bsc#1255310 Cross-References: * CVE-2025-67873 * CVE-2025-68114 CVSS scores: * CVE-2025-67873 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-67873 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-68114 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-68114 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-68114 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-68114 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L Affected Products: * SUSE Linux Micro 6.0 An update that solves two vulnerabilities can now be installed. ## Description: This update for capstone fixes the following issues: * CVE-2025-67873: Skipdata length unchecked leads to cs_insn.bytes heap buffer overflow (bsc#1255309). * CVE-2025-68114: Unchecked vsnprintf return in SStream_concat allows stack buffer overflow (bsc#1255310). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-641=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 s390x x86_64) * libcapstone4-4.0.2-6.1 * libcapstone4-debuginfo-4.0.2-6.1 * capstone-debugsource-4.0.2-6.1 ## References: * https://www.suse.com/security/cve/CVE-2025-67873.html * https://www.suse.com/security/cve/CVE-2025-68114.html *https://bugzilla.suse.com/show_bug.cgi?id=1255309 * https://bugzilla.suse.com/show_bug.cgi?id=1255310 . Update for capstone addresses two vulnerabilities related to buffer overflows, requiring immediate attention for SUSE users.. SUSE capstone security patch buffer overflow vulnerabilities. . LinuxSecurity.com Team

Calendar%202 Mar 27, 2026 SuSE
219

Rocky Linux 9 RLSA-2026-5910 Apex Smaller Vulnerability Identified Issue

Important: capstone security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:4898", "synopsis": "Important: capstone security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for capstone.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.\n\nSecurity Fix(es):\n\n* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)\n\n* capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2423416", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423416", "description": ""}, {"ticket": "2423419", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2423419", "description": ""}], "cves": [{"name": "CVE-2025-67873", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-67873", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H", "cvss3BaseScore": "6.1", "cwe": "CWE-122"}, {"name": "CVE-2025-68114", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-68114", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.3", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-03-26T18:03:52.468416Z", "rpms": {"Rocky Linux 9": {"nvras": ["capstone-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-0:4.0.2-11.el9_7.i686.rpm","capstone-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-0:4.0.2-11.el9_7.s390x.rpm", "capstone-0:4.0.2-11.el9_7.src.rpm", "capstone-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.i686.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.s390x.rpm", "capstone-debuginfo-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.i686.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.s390x.rpm", "capstone-debugsource-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-devel-0:4.0.2-11.el9_7.aarch64.rpm", "capstone-devel-0:4.0.2-11.el9_7.i686.rpm", "capstone-devel-0:4.0.2-11.el9_7.ppc64le.rpm", "capstone-devel-0:4.0.2-11.el9_7.s390x.rpm", "capstone-devel-0:4.0.2-11.el9_7.x86_64.rpm", "capstone-java-0:4.0.2-11.el9_7.noarch.rpm", "python3-capstone-0:4.0.2-11.el9_7.aarch64.rpm", "python3-capstone-0:4.0.2-11.el9_7.ppc64le.rpm", "python3-capstone-0:4.0.2-11.el9_7.s390x.rpm", "python3-capstone-0:4.0.2-11.el9_7.x86_64.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.aarch64.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.ppc64le.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.s390x.rpm", "python3-capstone-debuginfo-0:4.0.2-11.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important security update for Capstone on Rocky Linux 9 addressing memory corruption and denial of service issues.. rocky linux capstone security update, capstone memory corruption, denial of service capstone. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 26, 2026 Important Rocky Linux
217

Oracle Linux 9 Capstone Important Memory Corruption ELSA-2026-4898

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-4898 http://linux.oracle.com/errata/ELSA-2026-4898.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: capstone-4.0.2-11.el9_7.i686.rpm capstone-4.0.2-11.el9_7.x86_64.rpm capstone-devel-4.0.2-11.el9_7.i686.rpm capstone-devel-4.0.2-11.el9_7.x86_64.rpm capstone-java-4.0.2-11.el9_7.noarch.rpm python3-capstone-4.0.2-11.el9_7.x86_64.rpm aarch64: capstone-4.0.2-11.el9_7.aarch64.rpm capstone-devel-4.0.2-11.el9_7.aarch64.rpm capstone-java-4.0.2-11.el9_7.noarch.rpm python3-capstone-4.0.2-11.el9_7.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/capstone-4.0.2-11.el9_7.src.rpm Related CVEs: CVE-2025-67873 CVE-2025-68114 Description of changes: [4.0.2-11] - Fix CVE-2025-68114 (memory corruption) and CVE-2025-67873 (heap buffer overflow) Resolves: RHEL-137758 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 9 updates capstone package for important memory corruption and heap buffer issues. Read more for details.. Oracle Linux, Capstone Update, Memory Issues, Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 19, 2026 Important Oracle
100

SUSE: Capstone Moderate Heap and Stack Overflow Issues 2026:20054-1

An update that solves two vulnerabilities can now be installed.. # Security update for capstone Announcement ID: SUSE-SU-2026:20054-1 Release Date: 2025-12-30T20:02:15Z Rating: moderate References: * bsc#1255309 * bsc#1255310 Cross-References: * CVE-2025-67873 * CVE-2025-68114 CVSS scores: * CVE-2025-67873 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-67873 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-68114 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-68114 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-68114 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-68114 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L Affected Products: * SUSE Linux Micro 6.1 An update that solves two vulnerabilities can now be installed. ## Description: This update for capstone fixes the following issues: * CVE-2025-67873: missing bounds check on user-provided skipdata callback can lead to a heap buffer overflow (bsc#1255309). * CVE-2025-68114: unchecked `vsnprintf` return value can lead to a stack buffer overflow (bsc#1255310). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-362=1 ## Package List: * SUSE Linux Micro 6.1 (aarch64 ppc64le s390x x86_64) * capstone-debugsource-4.0.2-slfo.1.1_2.1 * libcapstone4-debuginfo-4.0.2-slfo.1.1_2.1 * libcapstone4-4.0.2-slfo.1.1_2.1 ## References: * https://www.suse.com/security/cve/CVE-2025-67873.html *https://www.suse.com/security/cve/CVE-2025-68114.html * https://bugzilla.suse.com/show_bug.cgi?id=1255309 * https://bugzilla.suse.com/show_bug.cgi?id=1255310 . A security update for the capstone application addresses two moderate vulnerabilities in SUSE Linux Micro 6.1.. capstone update,SUSE security,heap overflow,stack overflow,security advisory. . LinuxSecurity.com Team

Calendar%202 Jan 15, 2026 SuSE
202

openSUSE: Capstone Moderate Stack and Heap Overflow Vuln 2026:0060-1

An update that solves two vulnerabilities can now be installed.. # Security update for capstone Announcement ID: SUSE-SU-2026:0060-1 Release Date: 2026-01-07T16:02:54Z Rating: moderate References: * bsc#1255309 * bsc#1255310 Cross-References: * CVE-2025-67873 * CVE-2025-68114 CVSS scores: * CVE-2025-67873 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-67873 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-67873 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-68114 ( SUSE ): 2.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-68114 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L * CVE-2025-68114 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-68114 ( NVD ): 4.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L Affected Products: * openSUSE Leap 15.5 * openSUSE Leap 15.6 * Server Applications Module 15-SP7 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves two vulnerabilities can now be installed. ## Description: This update for capstone fixes the following issues: Security issues fixed: * CVE-2025-67873: missing bounds check on user-provided skipdata callback can lead to a heap buffer overflow (bsc#1255309). * CVE-2025-68114: unchecked `vsnprintf` return value can lead to a stack buffer overflow (bsc#1255310). Other updates and bugfixes: * Enable static library, and add `libcapstone-devel-static` subpackage. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -tpatch SUSE-2026-60=1 * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2026-60=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2026-60=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2026-60=1 ## Package List: * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64 i586) * libcapstone4-debuginfo-4.0.2-150500.3.3.1 * capstone-4.0.2-150500.3.3.1 * capstone-debuginfo-4.0.2-150500.3.3.1 * capstone-debugsource-4.0.2-150500.3.3.1 * libcapstone4-4.0.2-150500.3.3.1 * libcapstone-devel-4.0.2-150500.3.3.1 * libcapstone-devel-static-4.0.2-150500.3.3.1 * openSUSE Leap 15.5 (noarch) * capstone-doc-4.0.2-150500.3.3.1 * python3-capstone-4.0.2-150500.3.3.1 * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * libcapstone4-debuginfo-4.0.2-150500.3.3.1 * capstone-4.0.2-150500.3.3.1 * capstone-debuginfo-4.0.2-150500.3.3.1 * capstone-debugsource-4.0.2-150500.3.3.1 * libcapstone4-4.0.2-150500.3.3.1 * libcapstone-devel-4.0.2-150500.3.3.1 * openSUSE Leap 15.6 (noarch) * capstone-doc-4.0.2-150500.3.3.1 * python3-capstone-4.0.2-150500.3.3.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * libcapstone4-debuginfo-4.0.2-150500.3.3.1 * capstone-debuginfo-4.0.2-150500.3.3.1 * capstone-debugsource-4.0.2-150500.3.3.1 * libcapstone4-4.0.2-150500.3.3.1 * Server Applications Module 15-SP7 (aarch64 ppc64le s390x x86_64) * libcapstone4-debuginfo-4.0.2-150500.3.3.1 * capstone-debuginfo-4.0.2-150500.3.3.1 * capstone-debugsource-4.0.2-150500.3.3.1 * libcapstone4-4.0.2-150500.3.3.1 * libcapstone-devel-4.0.2-150500.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-67873.html * https://www.suse.com/security/cve/CVE-2025-68114.html * https://bugzilla.suse.com/show_bug.cgi?id=1255309 * https://bugzilla.suse.com/show_bug.cgi?id=1255310 . Update available for openSUSE addressing twovulnerabilities in capstone. Recommendations for secure installations included.. openSUSE security update, capstone vulnerabilities, moderate severity patch, sysadmin best practices. . LinuxSecurity.com Team

Calendar%202 Jan 08, 2026 OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200