Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 471
Alerts This Week
Warning Icon 1 471

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":75,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 56 articles for you...
172

Ubuntu 26.04 GIFLIB Critical Denial of Service 2026-23868

Ubuntu has issued a security notice regarding vulnerabilities in GIFLIB affecting multiple LTS versions, potentially allowing remote attackers to crash the application or execute arbitrary code.. ========================================================================== Ubuntu Security Notice USN-8583-1 July 22, 2026 giflib vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: GIFLIB could be made to crash or run programs if it opened a specially crafted file. Software Description: - giflib: library for GIF images Details: It was discovered that GIFLIB incorrectly handled certain GIF image files. If a user or automated system were tricked into opening a specially crafted GIF file, a remote attacker could use this issue to cause GIFLIB to crash, resulting in a denial of service, or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS giflib-tools 5.2.2-1ubuntu3.2 libgif7 5.2.2-1ubuntu3.2 Ubuntu 24.04 LTS giflib-tools 5.2.2-1ubuntu1.2 libgif7 5.2.2-1ubuntu1.2 Ubuntu 22.04 LTS giflib-tools 5.1.9-2ubuntu0.3 libgif7 5.1.9-2ubuntu0.3 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8583-1 CVE-2026-23868, CVE-2026-26740 Package Information: https://launchpad.net/ubuntu/+source/giflib/5.2.2-1ubuntu3.2 https://launchpad.net/ubuntu/+source/giflib/5.2.2-1ubuntu1.2 https://launchpad.net/ubuntu/+source/giflib/5.1.9-2ubuntu0.3 . GIFLIB on Ubuntu could crash or run programs due to crafted GIF files, risking denial of service or code execution.. Ubuntu GIFLIB security update, denial of service GIFLIB,critical Ubuntu advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jul 22, 2026 Critical Ubuntu
217

Oracle Linux 10 giflib Important Buffer Overflow Fix ELSA-2026-19154

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-19154 http://linux.oracle.com/errata/ELSA-2026-19154.html The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network: x86_64: giflib-5.2.1-25.el10_2.x86_64.rpm giflib-devel-5.2.1-25.el10_2.x86_64.rpm aarch64: giflib-5.2.1-25.el10_2.aarch64.rpm giflib-devel-5.2.1-25.el10_2.aarch64.rpm SRPMS: http://oss.oracle.com/ol10/SRPMS-updates/giflib-5.2.1-25.el10_2.src.rpm Related CVEs: CVE-2026-23868 Description of changes: [5.2.1-25] - fix CVE-2026-26740: buffer overflow in EGifGCBToExtension (RHEL-157086) [5.2.1-24] - rebuild [5.2.1-23] - fix CVE-2026-23868: double free in GifMakeSavedImage (RHEL-154850) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 10 updates for giflib include important fixes addressing critical buffer overflow and free issues.. Oracle Linux,giflib,buffer overflow,important security advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 20, 2026 Important Oracle
217

Oracle Linux 10 giflib Critical Buffer Overflow Resolution ELSA-2026-33502

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-33502 http://linux.oracle.com/errata/ELSA-2026-33502.html The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network: x86_64: giflib-5.2.1-25.el10_2.x86_64.rpm giflib-devel-5.2.1-25.el10_2.x86_64.rpm aarch64: giflib-5.2.1-25.el10_2.aarch64.rpm giflib-devel-5.2.1-25.el10_2.aarch64.rpm SRPMS: http://oss.oracle.com/ol10/SRPMS-updates/giflib-5.2.1-25.el10_2.src.rpm Related CVEs: CVE-2026-26740 Description of changes: [5.2.1-25] - fix CVE-2026-26740: buffer overflow in EGifGCBToExtension (RHEL-157086) [5.2.1-24] - rebuild [5.2.1-23] - fix CVE-2026-23868: double free in GifMakeSavedImage (RHEL-154850) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Discover essential updates on Oracle Linux 10 for giflib related to buffer overflow fixes and stability improvements.. Oracle Linux 10, Security Updates, giflib, Bufffer Overflow Fixes, Important Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 17, 2026 Important Oracle
219

Rocky Linux giflib Urgent Denial of Service Security Update RLSA-2026-33502

Important: giflib security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:33502", "synopsis": "Important: giflib security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for giflib.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "giflib is a library for reading and writing gif images.\n\nSecurity Fix(es):\n\n* giflib: giflib: Denial of Service via buffer overflow in EGifGCBToExtension (CVE-2026-26740)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2448747", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2448747", "description": ""}], "cves": [{"name": "CVE-2026-26740", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26740", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-07-05T12:05:09.130757Z", "rpms": {"Rocky Linux 10": {"nvras": ["giflib-debugsource-0:5.2.1-25.el10_2.x86_64.rpm", "giflib-0:5.2.1-25.el10_2.aarch64.rpm", "giflib-devel-0:5.2.1-25.el10_2.x86_64.rpm", "giflib-0:5.2.1-25.el10_2.src.rpm", "giflib-0:5.2.1-25.el10_2.s390x.rpm", "giflib-devel-0:5.2.1-25.el10_2.ppc64le.rpm", "giflib-0:5.2.1-25.el10_2.x86_64.rpm", "giflib-devel-0:5.2.1-25.el10_2.aarch64.rpm", "giflib-debugsource-0:5.2.1-25.el10_2.ppc64le.rpm", "giflib-debugsource-0:5.2.1-25.el10_2.s390x.rpm", "giflib-debuginfo-0:5.2.1-25.el10_2.ppc64le.rpm", "giflib-debuginfo-0:5.2.1-25.el10_2.x86_64.rpm", "giflib-debuginfo-0:5.2.1-25.el10_2.s390x.rpm", "giflib-debugsource-0:5.2.1-25.el10_2.aarch64.rpm","giflib-0:5.2.1-25.el10_2.ppc64le.rpm", "giflib-debuginfo-0:5.2.1-25.el10_2.aarch64.rpm", "giflib-devel-0:5.2.1-25.el10_2.s390x.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important giflib security update for Rocky Linux addresses Denial of Service risk via buffer overflow in EGifGCBToExtension.. giflib security update, rocky linux security, buffer overflow fix, denial of service patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 05, 2026 Important Rocky Linux
217

Oracle Linux 8 giflib Security Update for Buffer Overflow CVE-2026-26740

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-33503 http://linux.oracle.com/errata/ELSA-2026-33503.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: giflib-5.1.4-5.el8_10.i686.rpm giflib-5.1.4-5.el8_10.x86_64.rpm giflib-devel-5.1.4-5.el8_10.i686.rpm giflib-devel-5.1.4-5.el8_10.x86_64.rpm aarch64: giflib-5.1.4-5.el8_10.aarch64.rpm giflib-devel-5.1.4-5.el8_10.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/giflib-5.1.4-5.el8_10.src.rpm Related CVEs: CVE-2026-26740 Description of changes: [5.1.4-5] - fix CVE-2026-26740: buffer overflow in EGifGCBToExtension (RHEL-157097) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . A security advisory for Oracle Linux 8 addressing an important buffer overflow in giflib. Updates available for affected versions.. Oracle Linux 8, giflib update, important security advisory, buffer overflow fix, Oracle security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 02, 2026 Important Oracle
217

Oracle Linux 9 giflib Important Buffer Overflow Fix ELSA-2026-33501

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-33501 http://linux.oracle.com/errata/ELSA-2026-33501.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: giflib-5.2.1-10.el9_8.2.i686.rpm giflib-5.2.1-10.el9_8.2.x86_64.rpm giflib-devel-5.2.1-10.el9_8.2.i686.rpm giflib-devel-5.2.1-10.el9_8.2.x86_64.rpm aarch64: giflib-5.2.1-10.el9_8.2.aarch64.rpm giflib-devel-5.2.1-10.el9_8.2.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/giflib-5.2.1-10.el9_8.2.src.rpm Related CVEs: CVE-2026-26740 Description of changes: [5.2.1-10.2] - fix CVE-2026-26740: buffer overflow in EGifGCBToExtension (RHEL-157133) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Updated Oracle Linux 9 rpms for giflib resolve important buffer overflow issue with CVE-2026-26740.. Oracle Linux, giflib update, security advisory, buffer overflow, Linux RPMs. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 02, 2026 Important Oracle
100

SUSE Linux giflib Important Heap Overflow Risk 2026-22382-1

An update that solves one vulnerability can now be installed.. # Security update for giflib Announcement ID: SUSE-SU-2026:22382-1 Release Date: 2026-06-28T09:26:36Z Rating: important References: * bsc#1259836 Cross-References: * CVE-2026-26740 CVSS scores: * CVE-2026-26740 ( SUSE ): 8.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N * CVE-2026-26740 ( SUSE ): 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2026-26740 ( NVD ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H * CVE-2026-26740 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Enterprise Server 16.0 * SUSE Linux Enterprise Server for SAP applications 16.0 An update that solves one vulnerability can now be installed. ## Description: This update for giflib fixes the following issue * CVE-2026-26740: heap out-of-bounds read when processing a specially crafted GIF file containing a GCE block with a truncated extension byte count (bsc#1259836). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 16.0 zypper in -t patch SUSE-SLES-16.0-1098=1 * SUSE Linux Enterprise Server for SAP applications 16.0 zypper in -t patch SUSE-SLES-16.0-1098=1 ## Package List: * SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64) * giflib-devel-5.2.2-160000.4.1 * giflib-progs-5.2.2-160000.4.1 * giflib-progs-debuginfo-5.2.2-160000.4.1 * giflib-debugsource-5.2.2-160000.4.1 * libgif7-debuginfo-5.2.2-160000.4.1 * libgif7-5.2.2-160000.4.1 * SUSE Linux Enterprise Server for SAP applications 16.0 (ppc64le x86_64) * giflib-devel-5.2.2-160000.4.1 * giflib-progs-5.2.2-160000.4.1 * giflib-debugsource-5.2.2-160000.4.1 * giflib-progs-debuginfo-5.2.2-160000.4.1 * libgif7-debuginfo-5.2.2-160000.4.1 * libgif7-5.2.2-160000.4.1 ## References: * https://www.suse.com/security/cve/CVE-2026-26740.html * https://bugzilla.suse.com/show_bug.cgi?id=1259836 . An important SUSE update for giflib addresses CVE-2026-26740, fixing a heap overflow issue related to GIF processing.. SUSE Security Update,giflib CVE 2026-26740,giflib heap overflow. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 01, 2026 Important SuSE
219

Rocky Linux giflib Significant Buffer Overflow Resolution RLSA-2026-33501

Important: giflib security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:33501", "synopsis": "Important: giflib security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for giflib.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "giflib is a library for reading and writing gif images.\n\nSecurity Fix(es):\n\n* giflib: giflib: Denial of Service via buffer overflow in EGifGCBToExtension (CVE-2026-26740)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2448747", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2448747", "description": ""}], "cves": [{"name": "CVE-2026-26740", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-26740", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "cvss3BaseScore": "7.5", "cwe": "CWE-787"}], "references": [], "publishedAt": "2026-07-01T12:03:26.775911Z", "rpms": {"Rocky Linux 9": {"nvras": ["giflib-0:5.2.1-10.el9_8.2.aarch64.rpm", "giflib-0:5.2.1-10.el9_8.2.i686.rpm", "giflib-0:5.2.1-10.el9_8.2.ppc64le.rpm", "giflib-0:5.2.1-10.el9_8.2.s390x.rpm", "giflib-0:5.2.1-10.el9_8.2.src.rpm", "giflib-0:5.2.1-10.el9_8.2.x86_64.rpm", "giflib-debuginfo-0:5.2.1-10.el9_8.2.aarch64.rpm", "giflib-debuginfo-0:5.2.1-10.el9_8.2.i686.rpm", "giflib-debuginfo-0:5.2.1-10.el9_8.2.ppc64le.rpm", "giflib-debuginfo-0:5.2.1-10.el9_8.2.s390x.rpm", "giflib-debuginfo-0:5.2.1-10.el9_8.2.x86_64.rpm", "giflib-debugsource-0:5.2.1-10.el9_8.2.aarch64.rpm", "giflib-debugsource-0:5.2.1-10.el9_8.2.i686.rpm", "giflib-debugsource-0:5.2.1-10.el9_8.2.ppc64le.rpm","giflib-debugsource-0:5.2.1-10.el9_8.2.s390x.rpm", "giflib-debugsource-0:5.2.1-10.el9_8.2.x86_64.rpm", "giflib-devel-0:5.2.1-10.el9_8.2.aarch64.rpm", "giflib-devel-0:5.2.1-10.el9_8.2.i686.rpm", "giflib-devel-0:5.2.1-10.el9_8.2.ppc64le.rpm", "giflib-devel-0:5.2.1-10.el9_8.2.s390x.rpm", "giflib-devel-0:5.2.1-10.el9_8.2.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important update for giflib fixing denial of service via buffer overflow in Rocky Linux 9. Immediate action recommended.. giflib security update, Rocky Linux, denial of service, buffer overflow, important security advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 01, 2026 Important Rocky Linux
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":75,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200