Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 5 articles for you...
89

Fedora 43 pgadmin4 Critical SQL Injection Remote Code Exec 2026-1545df20ad

Update to pgadmin4-9.15.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-1545df20ad 2026-05-21 01:26:51.960418+00:00 -------------------------------------------------------------------------------- Name : pgadmin4 Product : Fedora 43 Version : 9.15 Release : 1.fc43 URL : https://www.pgadmin.org/ Summary : Administration tool for PostgreSQL Description : pgAdmin is the most popular and feature rich Open Source administration and development platform for PostgreSQL, the most advanced Open Source database in the world. -------------------------------------------------------------------------------- Update Information: Update to pgadmin4-9.15. -------------------------------------------------------------------------------- ChangeLog: * Mon May 11 2026 Sandro Mani - 9.15-1 - Update to 9.15 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2476786 - CVE-2026-7819 pgadmin4: symbolic-link path traversal in File Manager allows arbitrary file write [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476786 [ 2 ] Bug #2476787 - CVE-2026-7815 pgadmin4: SQL injection in maintenance tool option values leading to remote code execution [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476787 [ 3 ] Bug #2476788 - CVE-2026-7817 pgadmin4: local file inclusion and server-side request forgery in LLM API configuration endpoints [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476788 [ 4 ] Bug #2476789 - CVE-2026-7820 pgadmin4: account-lockout bypass via Flask-Security default /login view [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476789 [ 5 ] Bug #2476790 - CVE-2026-7818 pgadmin4: unsafe deserialization in file-backed session manager leads to remote code execution [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476790 [ 6 ] Bug#2476791 - CVE-2026-7816 pgadmin4: OS command injection in Import/Export query export via psql metacommand breakout [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476791 [ 7 ] Bug #2476792 - CVE-2026-7813 pgadmin4: cross-user data access and shared-server privilege escalation in server mode [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476792 [ 8 ] Bug #2476793 - CVE-2026-7814 pgadmin4: stored XSS via crafted PostgreSQL object names in Browser Tree and Explain Visualizer [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2476793 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-1545df20ad' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Critical pgAdmin update addresses multiple security flaws including SQL injection and remote code execution. Stay protected!. pgadmin security update, Fedora advisory, PostgreSQL vulnerabilities, psql command injection. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 21, 2026 Critical Fedora
89

Fedora 43: Thunar 4.20.6 Advisory FEDORA-2025-7a1a0e5bd8

Update to 4.20.6, the latest stable bugfix release.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-7a1a0e5bd8 2025-11-03 01:37:06.585272+00:00 -------------------------------------------------------------------------------- Name : Thunar Product : Fedora 43 Version : 4.20.6 Release : 1.fc43 URL : https://www.xfce.org/ Summary : Thunar File Manager Description : Thunar is a new modern file manager for the Xfce Desktop Environment. It has been designed from the ground up to be fast and easy-to-use. Its user interface is clean and intuitive, and does not include any confusing or useless options. Thunar is fast and responsive with a good start up time and directory load time. -------------------------------------------------------------------------------- Update Information: Update to 4.20.6, the latest stable bugfix release. -------------------------------------------------------------------------------- ChangeLog: * Sat Oct 25 2025 Kevin Fenzi - 4.20.6-1 - Update to 4.20.6. Fixes rhbz#2406294 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2406294 - Thunar 4.20.6 is available! Fedora's Thunar is significantly out of date https://bugzilla.redhat.com/show_bug.cgi?id=2406294 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-7a1a0e5bd8' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Thunar 4.20.6 is the latest bugfix release for Fedora 43, improving performance and fixing issues.. Thunar Update, Fedora Security, Bug Fix Release, Linux File Manager, Fedora 43. . Severity: Informational. LinuxSecurity.com Team

Calendar 2 Nov 03, 2025 Informational Fedora
89

Fedora 36: FEDORA-2023-f81ad89b81 Critical: Nautilus 42.6 Update

Update to 42.6. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-f81ad89b81 2023-01-25 02:34:55.408530 --------------------------------------------------------------------------------Name : nautilus Product : Fedora 36 Version : 42.6 Release : 1.fc36 URL : Summary : File manager for GNOME Description : Nautilus is the file manager and graphical shell for the GNOME desktop that makes it easy to manage your files and the rest of your system. It allows to browse directories on local and remote filesystems, preview files and launch applications associated with them. It is also responsible for handling the icons on the GNOME desktop. --------------------------------------------------------------------------------Update Information: Update to 42.6 --------------------------------------------------------------------------------ChangeLog: * Mon Jan 9 2023 Ondrej Holy - 42.6-1 - Update to 42.6 --------------------------------------------------------------------------------References: [ 1 ] Bug #2149911 - CVE-2022-37290 nautilus: NULL pointer dereference via pasting crafted zip file https://bugzilla.redhat.com/show_bug.cgi?id=2149911 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-f81ad89b81' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The Nautilus 42.6 patch for Fedora 36 resolves a critical vulnerability associated with specially crafted tar files.. Nautilus Update,Fedora 36 Security,File Manager Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 25, 2023 Critical Fedora
89

Fedora 37: FEDORA-2023-dbe1157188 Critical Nautilus NULL Pointer Issue

Update to 43.2. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-dbe1157188 2023-01-10 01:21:22.549914 --------------------------------------------------------------------------------Name : nautilus Product : Fedora 37 Version : 43.2 Release : 1.fc37 URL : Summary : File manager for GNOME Description : Nautilus is the file manager and graphical shell for the GNOME desktop that makes it easy to manage your files and the rest of your system. It allows to browse directories on local and remote filesystems, preview files and launch applications associated with them. It is also responsible for handling the icons on the GNOME desktop. --------------------------------------------------------------------------------Update Information: Update to 43.2 --------------------------------------------------------------------------------ChangeLog: * Sun Jan 8 2023 David King - 43.2-1 - Update to 43.2 --------------------------------------------------------------------------------References: [ 1 ] Bug #2149911 - CVE-2022-37290 nautilus: NULL pointer dereference via pasting crafted zip file https://bugzilla.redhat.com/show_bug.cgi?id=2149911 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-dbe1157188' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam, report it: . The Nautilus file manager in Fedora 37 has been upgraded to release 43.2, which tackles a significant vulnerability linked to specially designed zip files.. Nautilus Update,Fedora 37 Release,File Manager Security,NULL Pointer Risk. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 10, 2023 Critical Fedora
89

Fedora 34 Nautilus 2021-303f6623fa Critical: Directory Traversal

GNOME 40.rc. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-303f6623fa 2021-03-20 00:16:30.596999 --------------------------------------------------------------------------------Name : nautilus Product : Fedora 34 Version : 40~rc Release : 1.fc34 URL : Summary : File manager for GNOME Description : Nautilus is the file manager and graphical shell for the GNOME desktop that makes it easy to manage your files and the rest of your system. It allows to browse directories on local and remote filesystems, preview files and launch applications associated with them. It is also responsible for handling the icons on the GNOME desktop. --------------------------------------------------------------------------------Update Information: GNOME 40.rc --------------------------------------------------------------------------------ChangeLog: * Mon Mar 15 2021 Kalev Lember - 40~rc-1 - Update to 40.rc --------------------------------------------------------------------------------References: [ 1 ] Bug #1925640 - CVE-2020-36241 gnome-autoar: directory traversal via a malicious archive that contains a file whose parent is a symbolic link which points outside of the destination directory https://bugzilla.redhat.com/show_bug.cgi?id=1925640 [ 2 ] Bug #1940026 - CVE-2021-28650 gnome-autoar: directory traversal during extraction because it lacks a check of whether a file's parent is a symlink in certain complex situations https://bugzilla.redhat.com/show_bug.cgi?id=1940026 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-303f6623fa' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More detailson the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Delve into the latest Fedora enhancements featuring Nautilus 40.rc, addressing critical directory navigation security flaws with essential recommendations.. Fedora Update,Nautilus Security,File Management. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 19, 2021 Critical Fedora
87

Debian: DSA-3994-1 Moderate: Nautilus Command Execution Risk

Christian Boxdörfer discovered a vulnerability in the handling of FreeDesktop.org .desktop files in Nautilus, a file manager for the GNOME desktop environment. An attacker can craft a .desktop file intended to run malicious commands but displayed as a innocuous document file in Nautilus. An . - ------------------------------------------------------------------------- Debian Security Advisory DSA-3994-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Yves-Alexis Perez October 07, 2017 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : nautilus CVE ID : CVE-2017-14604 Debian Bug : 860268 Christian Boxdörfer discovered a vulnerability in the handling of FreeDesktop.org .desktop files in Nautilus, a file manager for the GNOME desktop environment. An attacker can craft a .desktop file intended to run malicious commands but displayed as a innocuous document file in Nautilus. An user would then trust it and open the file, and Nautilus would in turn execute the malicious content. Nautilus protection of only trusting .desktop files with executable permission can be bypassed by shipping the .desktop file inside a tarball. For the oldstable distribution (jessie), this problem has not been fixed yet. For the stable distribution (stretch), this problem has been fixed in version 3.22.3-1+deb9u1. For the testing distribution (buster), this problem has been fixed in version 3.26.0-1. For the unstable distribution (sid), this problem has been fixed in version 3.26.0-1. We recommend that you upgrade your nautilus packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . The latest Debian Security Advisory DSA-3994-1 addresses a critical flaw in Nautilus that could enable theexecution of harmful commands.. Debian Security Advisory, Nautilus Update, File Manager Security, Desktop File Vulnerability. . LinuxSecurity.com Team

Calendar 2 Oct 08, 2017 Debian
89

Fedora Core 4: 2006-137 Moderate: mc Software Update Overview

Updated package.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2006-137 2006-03-07 ---------------------------------------------------------------------Product : Fedora Core 4 Name : mc Version : 4.6.1a Release : 5.fc4 Summary : User-friendly text console file manager and visual shell. Description : Midnight Commander is a visual shell much like a file manager, only with many more features. It is a text mode application, but it also includes mouse support. Midnight Commander's best features are its ability to FTP, view tar and zip files, and to poke into RPMs for specific files. ---------------------------------------------------------------------* Tue Mar 7 2006 Jindrich Novy 4.6.1a-5.fc4 - fix hotkey conflict in Layout options (#183282) - move syntax configuration file from /usr/share/mc to /etc/mc - save layout settings pernamently for showing free space, not only for current session (#182127) - fix audio bindings, make firefox default html binding - mc no more segfaults when edited file contains x80 (#181611) - make mc FHS compliant: store config files in /etc/mc and extfs/*.ini files in /etc/mc/extfs instead of /usr/share/mc (#2188) ---------------------------------------------------------------------This update can be downloaded from: b01137ecdb9944719daf8e61c12a04d724b29d14 SRPMS/mc-4.6.1a-5.fc4.src.rpm 7f1c1b31f494fa4723d41eff52ebe677a004b07f ppc/mc-4.6.1a-5.fc4.ppc.rpm a4951748950df6e88125f292d514e9de1a831a1f ppc/debug/mc-debuginfo-4.6.1a-5.fc4.ppc.rpm 21b7cb79288ab85ec8829faadc67a3aeef07e5b3 x86_64/mc-4.6.1a-5.fc4.x86_64.rpm 4d1183838044bb0454a57b2d06699e5cf7591b03 x86_64/debug/mc-debuginfo-4.6.1a-5.fc4.x86_64.rpm 14fa047a542db87117c6bf2451aa198632c470a3 i386/mc-4.6.1a-5.fc4.i386.rpm 5abdd04beafe91cf21f9373d8ad3605186c8cff7 i386/debug/mc-debuginfo-4.6.1a-5.fc4.i386.rpm This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at . ----------------------------------------------------------------------- fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Important update alert for Fedora Core 4 delivering crucial enhancements to the Midnight Commander application mc.. Fedora Core 4, Midnight Commander, Software Maintenance, Update Management. . LinuxSecurity.com Team

Calendar 2 Mar 07, 2006 Fedora
89

Important Update for GNU Midnight Commander 4.6.1 on Fedora Core 3

This update cotains the new official release of the GNU/Midnight Commander 4.6.1.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-747 2005-08-12 ---------------------------------------------------------------------Product : Fedora Core 3 Name : mc Version : 4.6.1 Release : 1.FC3 Summary : A user-friendly file manager and visual shell. Description : Midnight Commander is a visual shell much like a file manager, only with many more features. It is a text mode application, but it also includes mouse support if you are running GPM. Midnight Commander's best features are its ability to FTP, view tar and zip files, and to poke into RPMs for specific files. ---------------------------------------------------------------------Update Information: This update cotains the new official release of the GNU/Midnight Commander 4.6.1. ---------------------------------------------------------------------* Thu Aug 11 2005 Jindrich Novy 4.6.1-1.FC3 - update to the new mc release - 4.6.1 - drop miscfix, spacepromt, logo patches, sync the rest - ship mcview - drop BuildRequires to gettext, XFree86-devel -> xorg-x11-devel - fix several gcc4 signedness warnings * Fri Apr 22 2005 Jindrich Novy - fix codeset conversion and rare segfault when Cyrillic is used, patches from Andrew V. Samoilov ---------------------------------------------------------------------This update can be downloaded from: c48f88901f38be9112f7a16556c928e6 SRPMS/mc-4.6.1-1.FC3.src.rpm fd34345b01a245296530ae44ed47a7e1 x86_64/mc-4.6.1-1.FC3.x86_64.rpm 0fa8ba60fc93e46aefaae5e54a90aa07 x86_64/debug/mc-debuginfo-4.6.1-1.FC3.x86_64.rpm 5beaefbb6e66c64ca8f3b55d894d0c19 i386/mc-4.6.1-1.FC3.i386.rpm 25d23fd691bec36ff8637bc763fde648 i386/debug/mc-debuginfo-4.6.1-1.FC3.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . GNU/Midnight Commander 4.6.1 patch for Fedora Core 3 resolves bugs and adds features to improve file navigation.. GNU Midnight Commander, Fedora Update, File Management, Software Enhancements. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 15, 2005 Important Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here