Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 508
Alerts This Week
Warning Icon 1 508

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 14 articles for you...
217

Oracle Linux 9 Tomcat Important OCSP Security Fix ELSA-2026-26323

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-26323 http://linux.oracle.com/errata/ELSA-2026-26323.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: tomcat-9.0.117-1.el9_8.noarch.rpm tomcat-admin-webapps-9.0.117-1.el9_8.noarch.rpm tomcat-docs-webapp-9.0.117-1.el9_8.noarch.rpm tomcat-el-3.0-api-9.0.117-1.el9_8.noarch.rpm tomcat-jsp-2.3-api-9.0.117-1.el9_8.noarch.rpm tomcat-lib-9.0.117-1.el9_8.noarch.rpm tomcat-servlet-4.0-api-9.0.117-1.el9_8.noarch.rpm tomcat-webapps-9.0.117-1.el9_8.noarch.rpm aarch64: tomcat-9.0.117-1.el9_8.noarch.rpm tomcat-admin-webapps-9.0.117-1.el9_8.noarch.rpm tomcat-docs-webapp-9.0.117-1.el9_8.noarch.rpm tomcat-el-3.0-api-9.0.117-1.el9_8.noarch.rpm tomcat-jsp-2.3-api-9.0.117-1.el9_8.noarch.rpm tomcat-lib-9.0.117-1.el9_8.noarch.rpm tomcat-servlet-4.0-api-9.0.117-1.el9_8.noarch.rpm tomcat-webapps-9.0.117-1.el9_8.noarch.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/tomcat-9.0.117-1.el9_8.src.rpm Related CVEs: CVE-2026-24734 Description of changes: [1:9.0.117-1] - Resolves: RHEL-150714 Certificate revocation bypass due to improper OCSP response validation - Resolves: Tomcat: OCSP checks sometimes soft-fail with FFM even when soft-fail is disabled (CVE-2026-34500) - Resolves: Tomcat: Cloud membership for clustering component exposed the Kubernetes bearer token (CVE-2026-34487) - Resolves: Tomcat: The fix for CVE-2026-29146 allowed the bypass of the EncryptInterceptor (CVE-2026-34486) - Resolves: Tomcat: Incomplete escaping of JSON access logs (CVE-2026-34483) - Resolves: Tomcat: The fix for CVE-2025-66614 was incomplete (CVE-2026-32990) - Resolves: Tomcat: EncryptInterceptor vulnerable to padding oracle attack by default (CVE-2026-29146) - Resolves: Tomcat: OCSP checks sometimes soft-fail even when soft-fail is disabled (CVE-2026-29145) - Resolves: Tomcat: Configured TLS cipher preference order notpreserved (CVE-2026-29129) - Resolves: Tomcat: Occasionally open redirect (CVE-2026-25854) - Resolves: Tomcat: Request smuggling via invalid chunk extension (CVE-2026-24880) - Resolves: Tomcat: Incomplete OCSP verification checks (CVE-2026-24734) - Resolves: Tomcat: Security constraint bypass (CVE-2026-24733) - Resolves: Tomcat: Client certificate verification bypass due to virtual host mapping (CVE-2025-66614) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux Security Advisory ELSA-2026-26323 addresses important Tomcat updates to resolve multiple CVEs.. Tomcat Security Update, Oracle Linux Advisory, Important Security Fix, OCSP Improvement. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 26, 2026 Important Oracle
172

Ubuntu CA Certificates Important Update Advisory USN-8436-1

The CA certificates in the ca-certificates package were updated.. ========================================================================== Ubuntu Security Notice USN-8436-1 June 16, 2026 ca-certificates update ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS - Ubuntu 25.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: The CA certificates in the ca-certificates package were updated. Software Description: - ca-certificates: Common CA certificates Details: The ca-certificates package contained outdated CA certificates. This update refreshes the included certificates to those contained in the 2.86 version of the Mozilla certificate authority bundle. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS ca-certificates 20260601~26.04.1 Ubuntu 25.10 ca-certificates 20260601~25.10.1 Ubuntu 24.04 LTS ca-certificates 20260601~24.04.1 Ubuntu 22.04 LTS ca-certificates 20260601~22.04.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8436-1 https://launchpad.net/bugs/2156786 Package Information: https://launchpad.net/ubuntu/+source/ca-certificates/20260601~26.04.1 https://launchpad.net/ubuntu/+source/ca-certificates/20260601~25.10.1 https://launchpad.net/ubuntu/+source/ca-certificates/20260601~24.04.1 https://launchpad.net/ubuntu/+source/ca-certificates/20260601~22.04.1 . CA certificates in Ubuntu were updated, addressing outdated certificates for better security measures.. Ubuntu CA Certificates Update Security Notices. . Severity: Informational. LinuxSecurity.com Team

Calendar%202 Jun 16, 2026 Informational Ubuntu
89

Fedora 44 rust-rustls-webpki Update RUSTSEC 2026-8f36b2341e

Update to version 0.103.13. Addresses RUSTSEC-2026-0098, RUSTSEC-2026-0099, RUSTSEC-2026-0104. Update to version 0.103.10. Addresses RUSTSEC-2026-0049. Update to version 0.103.9.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-8f36b2341e 2026-05-01 03:11:02.715735+00:00 -------------------------------------------------------------------------------- Name : rust-rustls-webpki Product : Fedora 44 Version : 0.103.13 Release : 1.fc44 URL : https://crates.io/crates/rustls-webpki Summary : Web PKI X.509 Certificate Verification Description : Web PKI X.509 Certificate Verification. -------------------------------------------------------------------------------- Update Information: Update to version 0.103.13. Addresses RUSTSEC-2026-0098, RUSTSEC-2026-0099, RUSTSEC-2026-0104. Update to version 0.103.10. Addresses RUSTSEC-2026-0049. Update to version 0.103.9. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 22 2026 Fabio Valentini - 0.103.13-1 - Update to version 0.103.13; Fixes RHBZ#2457282 * Tue Mar 24 2026 Fabio Valentini - 0.103.10-1 - Update to version 0.103.10; Fixes RHBZ#2449815 * Wed Mar 18 2026 Fabio Valentini - 0.103.9-1 - Update to version 0.103.9; Fixes RHBZ#2430422 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-8f36b2341e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Fedora 44 rust-rustls-webpki update addresses multiple security issues and enhances certificate verification.. Fedora Update,RUSTSEC,Critical Security,Web PKI,Certificate Verification. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 01, 2026 Critical Fedora
89

Fedora 43 rust-rustls-webpki Important Update RUSTSEC-2026-0098

Update to version 0.103.13. Addresses RUSTSEC-2026-0098, RUSTSEC-2026-0099, RUSTSEC-2026-0104.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-bea616fc84 2026-05-01 03:01:50.286537+00:00 -------------------------------------------------------------------------------- Name : rust-rustls-webpki Product : Fedora 43 Version : 0.103.13 Release : 1.fc43 URL : https://crates.io/crates/rustls-webpki Summary : Web PKI X.509 Certificate Verification Description : Web PKI X.509 Certificate Verification. -------------------------------------------------------------------------------- Update Information: Update to version 0.103.13. Addresses RUSTSEC-2026-0098, RUSTSEC-2026-0099, RUSTSEC-2026-0104. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 22 2026 Fabio Valentini - 0.103.13-1 - Update to version 0.103.13; Fixes RHBZ#2457282 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-bea616fc84' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives:https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Fedora 43 update for rust-rustls-webpki enhances PKI certificate verification with fixes and security improvements.. Fedora 43 rust-rustls-webpki update RUSTSEC security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 01, 2026 Important Fedora
203

Mageia 9 Tomcat Important Security Fix MGASA-2026-0056 CVE-2025-66614

MGASA-2026-0056 - Updated tomcat packages fix security vulnerabilities. MGASA-2026-0056 - Updated tomcat packages fix security vulnerabilities Publication date: 14 Mar 2026 URL: https://advisories.mageia.org/MGASA-2026-0056.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-66614, CVE-2026-24733, CVE-2026-24734 Description: Client certificate verification bypass due to virtual host mapping. (CVE-2025-66614) Security constraint bypass with HTTP/0.9. (CVE-2026-24733) OCSP revocation bypass. (CVE-2026-24734) References: - https://bugs.mageia.org/show_bug.cgi?id=35192 - https://lists.opensuse.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/G27HXAIMRCGPRM6GBYQX7NUKNQS4RLJ4/ - https://www.cve.org/CVERecord?id=CVE-2025-66614 - https://www.cve.org/CVERecord?id=CVE-2026-24733 - https://www.cve.org/CVERecord?id=CVE-2026-24734 SRPMS: - 9/core/tomcat-9.0.115-1.mga9 . Updated Mageia tomcat packages address multiple CVEs, enhancing security against potential exploits. Learn more!. Mageia Tomcat Update Security Important CVE. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 14, 2026 Important Mageia
87

Debian OpenJDK DSA-6110-1 Critical Cert Validation Man-in-the-Middle Attack

Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect certificate validation, CRLF injection or man-in-the-middle attacks. For the oldstable distribution (bookworm), these problems have been fixed in version 17.0.18+8-1~deb12u1.. - ------------------------------------------------------------------------- Debian Security Advisory DSA-6110-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Moritz Muehlenhoff January 25, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : openjdk-17 CVE ID : CVE-2026-21925 CVE-2026-21932 CVE-2026-21933 CVE-2026-21945 Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect certificate validation, CRLF injection or man-in-the-middle attacks. For the oldstable distribution (bookworm), these problems have been fixed in version 17.0.18+8-1~deb12u1. We recommend that you upgrade your openjdk-17 packages. For the detailed security status of openjdk-17 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/openjdk-17 Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . OpenJDK security fixes address vulnerabilities including certificate validation and CRLF injection risks in Debian.. OpenJDK, Debian security, Java runtime, CRLF injection, certificate validation. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jan 25, 2026 Critical Debian
202

openSUSE Leap 15.6: SUSE-SU-2025:03117-1 Azure critical update details

An update that has two security fixes can now be installed.. # Security update for regionServiceClientConfigAzure Announcement ID: SUSE-SU-2025:03117-1 Release Date: 2025-09-09T12:58:06Z Rating: critical References: * bsc#1243419 * bsc#1246995 Affected Products: * openSUSE Leap 15.6 * Public Cloud Module 15-SP3 * Public Cloud Module 15-SP4 * Public Cloud Module 15-SP5 * Public Cloud Module 15-SP6 * Public Cloud Module 15-SP7 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Manager Proxy 4.2 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.2 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.2 * SUSE Manager Server 4.3 An update that has two security fixes can now be installed. ## Description: This update for regionServiceClientConfigAzure contains the following fixes: * Update to version 3.0.0.(bsc#1246995) * SLE 16 python-requests requires SSL v3 certificates. Update 2 region server certs to support SLE 16 when it gets released. * Update dependency name for metadata package, name change in SLE 16. (bsc#1243419) * Replacing certificate for rgnsrv-azure-southeastasia to get rid ofweird chain cert ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Public Cloud Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP5-2025-3117=1 * Public Cloud Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP6-2025-3117=1 * Public Cloud Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP7-2025-3117=1 * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2025-3117=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-3117=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-3117=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-3117=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-3117=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2025-3117=1 * Public Cloud Module 15-SP3 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP3-2025-3117=1 * Public Cloud Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP4-2025-3117=1 ## Package List: * Public Cloud Module 15-SP5 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * Public Cloud Module 15-SP6 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * Public Cloud Module 15-SP7 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * openSUSE Leap 15.6 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * SUSE Linux Enterprise Micro 5.3 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (noarch) *regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * SUSE Linux Enterprise Micro 5.4 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * SUSE Linux Enterprise Micro 5.5 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * Public Cloud Module 15-SP3 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 * Public Cloud Module 15-SP4 (noarch) * regionServiceClientConfigAzure-3.0.0-150000.3.28.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1243419 * https://bugzilla.suse.com/show_bug.cgi?id=1246995 . An important security enhancement has just been released for regionServiceClientConfigAWS in openSUSE, featuring substantial updates.. openSUSE updates, regionServiceClientConfigAzure critical, security patches for openSUSE. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Sep 09, 2025 Critical OpenSUSE
202

openSUSE: Podman Important TLS Cert Fix CVE-2025-6032 SUSE-SU-2025:02806-1

An update that solves one vulnerability can now be installed.. # Security update for podman Announcement ID: SUSE-SU-2025:02806-1 Release Date: 2025-08-15T12:50:31Z Rating: important References: * bsc#1245320 Cross-References: * CVE-2025-6032 CVSS scores: * CVE-2025-6032 ( SUSE ): 9.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H * CVE-2025-6032 ( SUSE ): 8.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H * CVE-2025-6032 ( NVD ): 8.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.3 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves one vulnerability can now be installed. ## Description: This update for podman fixes the following issues: * CVE-2025-6032: Fixed machine init command failing to verify TLS certificate (bsc#1245320) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2025-2806=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-2806=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-2806=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-2806=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-2806=1 * SUSE Linux Enterprise Micro 5.1 zypper in -tpatch SUSE-SUSE-MicroOS-5.1-2025-2806=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-2806=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-2806=1 ## Package List: * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * podman-4.9.5-150300.9.52.1 * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podmansh-4.9.5-150300.9.52.1 * podman-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * openSUSE Leap 15.3 (noarch) * podman-docker-4.9.5-150300.9.52.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * podman-4.9.5-150300.9.52.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * podman-4.9.5-150300.9.52.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * podman-4.9.5-150300.9.52.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * podman-4.9.5-150300.9.52.1 * podman-debuginfo-4.9.5-150300.9.52.1 * SUSE Linux Enterprise Micro 5.1 (aarch64 s390x x86_64) * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * podman-4.9.5-150300.9.52.1 * SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64) * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * podman-4.9.5-150300.9.52.1 * podman-debuginfo-4.9.5-150300.9.52.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (aarch64 s390x x86_64) * podman-remote-debuginfo-4.9.5-150300.9.52.1 * podman-remote-4.9.5-150300.9.52.1 * podman-4.9.5-150300.9.52.1 *podman-debuginfo-4.9.5-150300.9.52.1 ## References: * https://www.suse.com/security/cve/CVE-2025-6032.html * https://bugzilla.suse.com/show_bug.cgi?id=1245320 . Protect your infrastructure by applying the crucial patch for podman related to CVE-2025-6032 on openSUSE.. openSUSE Podman update CVE-2025-6032 TLS certificate. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Aug 15, 2025 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200