Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 428
Alerts This Week
Warning Icon 1 428

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
219

Rocky Linux 8 RLSA-2026-1142 Significant Security Updates for the Kernel

Important: kernel security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:1142", "synopsis": "Important: kernel security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for kernel.\nThis update affects Rocky Linux 8.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The kernel packages contain the Linux kernel, the core of any Linux operating system.\n\nSecurity Fix(es):\n\n* kernel: Bluetooth: hci_event: call disconnect callback before deleting conn (CVE-2023-53673)\n\n* kernel: ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping (CVE-2025-40154)\n\n* kernel: Linux kernel: vsock vulnerability may lead to memory corruption (CVE-2025-40248)\n\n* kernel: drm/vmwgfx: Validate command header size against SVGA_CMD_MAX_DATASIZE (CVE-2025-40277)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 8"], "fixes": [{"ticket": "2402193", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2402193", "description": ""}, {"ticket": "2414494", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2414494", "description": ""}, {"ticket": "2418872", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2418872", "description": ""}, {"ticket": "2419954", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2419954", "description": ""}], "cves": [{"name": "CVE-2023-53673", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-53673", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-416"}, {"name": "CVE-2025-40154", "sourceBy": "MITRE", "sourceLink":"https://www.cve.org/CVERecord?id=CVE-2025-40154", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.0", "cwe": "CWE-125"}, {"name": "CVE-2025-40248", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-40248", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.0", "cwe": "CWE-364"}, {"name": "CVE-2025-40277", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2025-40277", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-190"}], "references": [], "publishedAt": "2026-02-03T17:19:25.693068Z", "rpms": {"Rocky Linux 8": {"nvras": ["bpftool-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "bpftool-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "bpftool-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "bpftool-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-0:4.18.0-553.97.1.el8_10.src.rpm", "kernel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-abi-stablelists-0:4.18.0-553.97.1.el8_10.noarch.rpm", "kernel-core-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-core-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-core-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-core-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-devel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-devel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debuginfo-common-aarch64-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debuginfo-common-x86_64-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-modules-0:4.18.0-553.97.1.el8_10.aarch64.rpm","kernel-debug-modules-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-debug-modules-extra-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-debug-modules-extra-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-devel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-devel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-doc-0:4.18.0-553.97.1.el8_10.noarch.rpm", "kernel-modules-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-modules-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-modules-extra-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-modules-extra-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-libs-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-libs-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "kernel-tools-libs-devel-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "kernel-tools-libs-devel-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "perf-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "perf-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "perf-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "perf-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "python3-perf-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "python3-perf-0:4.18.0-553.97.1.el8_10.x86_64.rpm", "python3-perf-debuginfo-0:4.18.0-553.97.1.el8_10.aarch64.rpm", "python3-perf-debuginfo-0:4.18.0-553.97.1.el8_10.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Kernel security update for Rocky Linux addresses significant vulnerabilities with critical fixes. Stay informed and secure!. Kernel Security Fixes Rocky Linux Important Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 03, 2026 Important Rocky Linux
202

openSUSE: Kernel Important Bluetooth Disconnection Flaw SUSE-SU-2025:4281-1

An update that solves one vulnerability can now be installed.. # Security update for the Linux Kernel (Live Patch 43 for SUSE Linux Enterprise 15 SP4) Announcement ID: SUSE-SU-2025:4281-1 Release Date: 2025-11-27T15:04:07Z Rating: important References: * bsc#1251983 Cross-References: * CVE-2023-53673 CVSS scores: * CVE-2023-53673 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2023-53673 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Live Patching 15-SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves one vulnerability can now be installed. ## Description: This update for the SUSE Linux Enterprise kernel 5.14.21-150400.24.173 fixes one security issue The following security issue was fixed: * CVE-2023-53673: Bluetooth: hci_event: call disconnect callback before deleting conn (bsc#1251983). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-4281=1 * SUSE Linux Enterprise Live Patching 15-SP4 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2025-4281=1 ## Package List: * openSUSE Leap 15.4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_173-default-debuginfo-5-150400.2.1 * kernel-livepatch-5_14_21-150400_24_173-default-5-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_43-debugsource-5-150400.2.1 * SUSE Linux Enterprise Live Patching 15-SP4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_173-default-debuginfo-5-150400.2.1 *kernel-livepatch-5_14_21-150400_24_173-default-5-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_43-debugsource-5-150400.2.1 ## References: * https://www.suse.com/security/cve/CVE-2023-53673.html * https://bugzilla.suse.com/show_bug.cgi?id=1251983 . Update for openSUSE addresses a critical security issue in Bluetooth kernel interactions, enhancing system safety.. openSUSE, kernel, Bluetooth, security patch, SUSE Linux. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 27, 2025 Important OpenSUSE
100

SUSE Linux Enterprise 15 SP4: 2025:4242-1 Important Bluetooth Threat Fix

* bsc#1251983 Cross-References: * CVE-2023-53673 . # Security update for the Linux Kernel (Live Patch 45 for SUSE Linux Enterprise 15 SP4) Announcement ID: SUSE-SU-2025:4242-1 Release Date: 2025-11-25T21:11:36Z Rating: important References: * bsc#1251983 Cross-References: * CVE-2023-53673 CVSS scores: * CVE-2023-53673 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2023-53673 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Live Patching 15-SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves one vulnerability can now be installed. ## Description: This update for the SUSE Linux Enterprise kernel 5.14.21-150400.24.179 fixes one security issue The following security issue was fixed: * CVE-2023-53673: Bluetooth: hci_event: call disconnect callback before deleting conn (bsc#1251983). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-4242=1 * SUSE Linux Enterprise Live Patching 15-SP4 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP4-2025-4242=1 ## Package List: * openSUSE Leap 15.4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_179-default-debuginfo-2-150400.2.1 * kernel-livepatch-5_14_21-150400_24_179-default-2-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_45-debugsource-2-150400.2.1 * SUSE Linux Enterprise Live Patching 15-SP4 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150400_24_179-default-debuginfo-2-150400.2.1 *kernel-livepatch-5_14_21-150400_24_179-default-2-150400.2.1 * kernel-livepatch-SLE15-SP4_Update_45-debugsource-2-150400.2.1 ## References: * https://www.suse.com/security/cve/CVE-2023-53673.html * https://bugzilla.suse.com/show_bug.cgi?id=1251983 . SUSE Linux Kernel Security Update addresses CVE-2023-53673, ensuring critical fixes for Bluetooth connection failures.. SUSE security update, Linux kernel patch, Bluetooth security, system vulnerabilities, enterprise Linux security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 26, 2025 Important SuSE
89

Fedora 30 Advisory: Critical wpa_supplicant Fix for Disconnection Issue

Security fix for CVE-2019-16275. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-2bdcccee3c 2019-11-17 01:12:46.786636 --------------------------------------------------------------------------------Name : wpa_supplicant Product : Fedora 30 Version : 2.8 Release : 3.fc30 URL : http://w1.fi/wpa_supplicant/ Summary : WPA/WPA2/IEEE 802.1X Supplicant Description : wpa_supplicant is a WPA Supplicant for Linux, BSD and Windows with support for WPA and WPA2 (IEEE 802.11i / RSN). Supplicant is the IEEE 802.1X/WPA component that is used in the client stations. It implements key negotiation with a WPA Authenticator and it controls the roaming and IEEE 802.11 authentication/association of the wlan driver. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2019-16275 --------------------------------------------------------------------------------ChangeLog: * Wed Oct 30 2019 Davide Caratti - 1:2.8-3 - fix AP mode PMF disconnection protection bypass (CVE-2019-16275, rh #1767026) * Fri May 10 2019 Davide Caratti - 1:2.8-2 - fix changelog for version 2.8-1 * Thu May 2 2019 Davide Caratti - 1:2.8-1 - Update to 2.8 upstream release, to include latest fix for NULL pointer dereference when EAP-PWD peer receives unexpected EAP fragments (CVE-2019-11555, rh #1701759) --------------------------------------------------------------------------------References: [ 1 ] Bug #1767023 - CVE-2019-16275 wpa_supplicant: AP mode PMF disconnection protection bypass https://bugzilla.redhat.com/show_bug.cgi?id=1767023 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-2bdcccee3c' at the command line. For more information, refer to the dnf documentation availableat https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . Essential security patch for wpa_supplicant on Fedora 30 resolving CVE-2019-16275. Update immediately to ensure system safety.. wpa_supplicant Update,Fedora 30 Security,wpa_supplicant Fix,Critical Network Security. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Nov 16, 2019 Critical Fedora
172

Ubuntu 4136-2 Moderate: wpa_supplicant Denial Of Service Threat

wpa_supplicant could be made to be disconnected and require reconnection to the network if it received a specially crafted management frame.. =========================================================================Ubuntu Security Notice USN-4136-2 September 18, 2019 wpa, wpasupplicant vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 ESM - Ubuntu 12.04 ESM Summary: wpa_supplicant could be made to be disconnected and require reconnection to the network if it received a specially crafted management frame. Software Description: - wpa: client support for WPA and WPA2 - wpasupplicant: client support for WPA and WPA2 Details: USN-4136-1 fixed a vulnerability in wpa_supplicant. This update provides the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM. Original advisory details: It was discovered that wpa_supplicant incorrectly handled certain management frames. An attacker could possibly use this issue to cause a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM: hostapd 1:2.1-0ubuntu1.7+esm2 wpasupplicant 2.1-0ubuntu1.7+esm2 Ubuntu 12.04 ESM: wpasupplicant 0.7.3-6ubuntu2.5 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4136-2 https://ubuntu.com/security/notices/USN-4136-1 CVE-2019-16275 . The Ubuntu Security Notice USN-4136-2 addresses a vulnerability in wpa_supplicant that may lead to problems with disconnecting and reconnecting to networks.. wpa_supplicant, network connection, denial of service. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 18, 2019 Important Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200