Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 507
Alerts This Week
Warning Icon 1 507

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 30 articles for you...
202

openSUSE Tumbleweed dcmtk Moderate Security Issue CVE-2026-5663

An update that solves one vulnerability can now be installed.. # dcmtk-3.7.0-2.1 on GA media Announcement ID: openSUSE-SU-2026:10502-1 Rating: moderate Cross-References: * CVE-2026-5663 Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the dcmtk-3.7.0-2.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * dcmtk 3.7.0-2.1 * dcmtk-devel 3.7.0-2.1 * libdcmtk20 3.7.0-2.1 ## References: * https://www.suse.com/security/cve/CVE-2026-5663.html . Update in openSUSE Tumbleweed resolves a moderate issue in dcmtk 3.7.0-2.1, enhancing overall system security.. openSUSE Tumbleweed, dcmtk package, moderate security issue, security update. . LinuxSecurity.com Team

Calendar%202 Apr 09, 2026 OpenSUSE
203

Mageia 9 dcmtk Critical Memory Corruption Vuln MGASA-2026-0040

MGASA-2026-0040 - Updated dcmtk packages fix security vulnerabilities. MGASA-2026-0040 - Updated dcmtk packages fix security vulnerabilities Publication date: 16 Feb 2026 URL: https://advisories.mageia.org/MGASA-2026-0040.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-14607, CVE-2025-14841 Description: OFFIS DCMTK dcmdata dcbytstr.cc makeDicomByteString memory corruption. (CVE-2025-14607) OFFIS DCMTK dcmqrscp dcmqrdbi.cc startMoveRequest null pointer dereference. (CVE-2025-14841) References: - https://bugs.mageia.org/show_bug.cgi?id=34946 - https://lists.opensuse.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/WA2BG2LFPVCYESQA5KLHS3YDK74NTELX/ - https://www.cve.org/CVERecord?id=CVE-2025-14607 - https://www.cve.org/CVERecord?id=CVE-2025-14841 SRPMS: - 9/core/dcmtk-3.6.7-4.7.mga9 . Offis DCMTK security update addresses critical memory corruption and null pointer issues. Stay secure with Mageia.. dcmtk security update, Mageia vulnerabilities, memory corruption, null pointer issues. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 16, 2026 Critical Mageia
197

Debian 11: DLA-4443-1 DCMTK Important MemCorruption SegFault CVE-2025-14607

Two vulnerabilities have been addressed in DCMTK, a collection of libraries and applications implementing large parts of the DICOM standard for medical images. CVE-2025-14607 Possible memory corruption caused by illegal attributes in datasets which. ------------------------------------------------------------------------- Debian LTS Advisory DLA-4443-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Markus Koschany January 19, 2026 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : dcmtk Version : 3.6.5-1+deb11u6 CVE ID : CVE-2025-14607 CVE-2025-14841 Debian Bug : 1122926 1123584 Two vulnerabilities have been addressed in DCMTK, a collection of libraries and applications implementing large parts of the DICOM standard for medical images. CVE-2025-14607 Possible memory corruption caused by illegal attributes in datasets which are processed by DcmByteString functions. CVE-2025-14841 Invalid messages sent to dcmqrscp, the Image Central Test Node, may trigger a segmentation fault due to a NULL pointer being de-referenced. For Debian 11 bullseye, these problems have been fixed in version 3.6.5-1+deb11u6. We recommend that you upgrade your dcmtk packages. For the detailed security status of dcmtk please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/dcmtk Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Two vulnerabilities in DCMTK affect medical image processing; upgrades are necessary to mitigate security risks.. DCMTK Security Update, Debian LTS, Memory Corruption, Segmentation Fault. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 19, 2026 Important Debian LTS
202

openSUSE: dcmtk Moderate Memory Issues Segmentation Faults 2026:0005-1

An update that solves two vulnerabilities and has one errata is now available.. openSUSE Security Update: Security update for dcmtk ______________________________________________________________________________ Announcement ID: openSUSE-SU-2026:0005-1 Rating: moderate References: #1254123 #1255292 #1255464 Cross-References: CVE-2025-14607 CVE-2025-14841 Affected Products: openSUSE Backports SLE-15-SP6 openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that solves two vulnerabilities and has one errata is now available. Description: This update for dcmtk fixes the following issues: - Update to 3.7.0. See docs/CHANGES.370 for the full list of changes * CVE-2025-14841: invalid messages may trigger a segmentation fault due to a NULL pointer dereference (boo#1255292). * CVE-2025-14607: manipulation to component dcmdata could lead to memory corruption (boo#1255464). - Avoid unnecessary dependencies (boo#1254123): Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2026-5=1 - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2026-5=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.7.0-bp157.3.6.1 dcmtk-debuginfo-3.7.0-bp157.3.6.1 dcmtk-debugsource-3.7.0-bp157.3.6.1 dcmtk-devel-3.7.0-bp157.3.6.1 libdcmtk20-3.7.0-bp157.3.6.1 libdcmtk20-debuginfo-3.7.0-bp157.3.6.1 - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.7.0-bp156.4.15.1 dcmtk-devel-3.7.0-bp156.4.15.1 libdcmtk20-3.7.0-bp156.4.15.1 References: https://www.suse.com/security/cve/CVE-2025-14607.html https://www.suse.com/security/cve/CVE-2025-14841.html https://bugzilla.suse.com/1254123 https://bugzilla.suse.com/1255292 https://bugzilla.suse.com/1255464 . An openSUSE Security Update for dcmtk addressing two vulnerabilities that could lead to memory issues and crashes.. openSUSE Security,dcmtool update,moderate risk,backports SLE. . LinuxSecurity.com Team

Calendar%202 Jan 09, 2026 OpenSUSE
202

openSUSE Tumbleweed: dcmtk Moderate Security Update 2026:10006-1

An update that solves 2 vulnerabilities can now be installed.. # dcmtk-3.7.0-1.1 on GA media Announcement ID: openSUSE-SU-2026:10006-1 Rating: moderate Cross-References: * CVE-2025-14607 * CVE-2025-14841 Affected Products: * openSUSE Tumbleweed An update that solves 2 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the dcmtk-3.7.0-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * dcmtk 3.7.0-1.1 * dcmtk-devel 3.7.0-1.1 * libdcmtk20 3.7.0-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-14607.html * https://www.suse.com/security/cve/CVE-2025-14841.html . An update for openSUSE Tumbleweed addresses two moderate security issues in dcmtk. Install the latest version now.. openSUSE Tumbleweed, dcmtk security, software update, system vulnerabilities. . LinuxSecurity.com Team

Calendar%202 Jan 06, 2026 OpenSUSE
203

Mageia: dcmtk Important Memory Corruption Vulnerability MGASA-2025-0265

MGASA-2025-0265 - Updated dcmtk packages fix security vulnerabilities. MGASA-2025-0265 - Updated dcmtk packages fix security vulnerabilities Publication date: 07 Nov 2025 URL: https://advisories.mageia.org/MGASA-2025-0265.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-9732 Description: A vulnerability was identified in DCMTK up to 3.6.9. This affects an unknown function in the library dcmimage/include/dcmtk/dcmimage/diybrpxt.h of the component dcm2img. Such manipulation leads to memory corruption. Local access is required to approach this attack. The name of the patch is 7ad81d69b. It is best practice to apply a patch to resolve this issue. References: - https://bugs.mageia.org/show_bug.cgi?id=34718 - https://lists.debian.org/debian-lts-announce/2025/11/msg00006.html - https://www.cve.org/CVERecord?id=CVE-2025-9732 SRPMS: - 9/core/dcmtk-3.6.7-4.6.mga9 . Updated dcmtk packages in Mageia fix vulnerabilities for local access leading to memory corruption. Apply patches promptly.. Mageia, dcmtk, security updates, memory integrity, local access risks. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 07, 2025 Important Mageia
202

openSUSE: dcmtk Moderate Memory Corruption Threat CVE-2025-9732

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for dcmtk ______________________________________________________________________________ Announcement ID: openSUSE-SU-2025:0334-1 Rating: moderate References: #1248995 Cross-References: CVE-2025-9732 Affected Products: openSUSE Backports SLE-15-SP6 openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for dcmtk fixes the following issues: - CVE-2025-9732: Fixed a memory corruption in dcm2img (boo#1248995). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2025-334=1 - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2025-334=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.6.9-bp157.3.3.1 dcmtk-debuginfo-3.6.9-bp157.3.3.1 dcmtk-debugsource-3.6.9-bp157.3.3.1 dcmtk-devel-3.6.9-bp157.3.3.1 libdcmtk19-3.6.9-bp157.3.3.1 libdcmtk19-debuginfo-3.6.9-bp157.3.3.1 - openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64): dcmtk-3.6.9-bp156.4.12.1 dcmtk-devel-3.6.9-bp156.4.12.1 libdcmtk19-3.6.9-bp156.4.12.1 References: https://www.suse.com/security/cve/CVE-2025-9732.html https://bugzilla.suse.com/1248995 . An updated patch for dcmtk in openSUSE has effectively addressed a security flaw related to memory corruption that was recently identified.. openSUSE, dcmtk, memory issue, patch instructions. . LinuxSecurity.com Team

Calendar%202 Sep 04, 2025 OpenSUSE
202

openSUSE Tumbleweed: dcmtk Moderate Security Update CVE-2025-9732

An update that solves one vulnerability can now be installed.. # dcmtk-3.6.9-4.1 on GA media Announcement ID: openSUSE-SU-2025:15504-1 Rating: moderate Cross-References: * CVE-2025-9732 Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the dcmtk-3.6.9-4.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * dcmtk 3.6.9-4.1 * dcmtk-devel 3.6.9-4.1 * libdcmtk19 3.6.9-4.1 ## References: * https://www.suse.com/security/cve/CVE-2025-9732.html . Minor updates addressing concerns for dcmtk-3.6.9-4.1 have now been released for the community of openSUSE Tumbleweed.. openSUSE Tumbleweed dcmtk security update vulnerability. . LinuxSecurity.com Team

Calendar%202 Sep 02, 2025 OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200