Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 35 articles for you...
219

Rocky Linux 10 gnupg2 Important Buffer Overflow RLSA-2026-2719

Important: gnupg2 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:2719", "synopsis": "Important: gnupg2 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for gnupg2.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The GNU Privacy Guard (GnuPG or GPG) is a tool for encrypting data and creating digital signatures, compliant with OpenPGP and S/MIME standards.\n\nSecurity Fix(es):\n\n* GnuPG: GnuPG: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution (CVE-2026-24882)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2433464", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2433464", "description": ""}], "cves": [{"name": "CVE-2026-24882", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-24882", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.4", "cwe": "CWE-121"}], "references": [], "publishedAt": "2026-02-24T18:56:34.668877Z", "rpms": {"Rocky Linux 10": {"nvras": ["gnupg2-0:2.4.5-4.el10_1.src.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-0:2.4.5-4.el10_1.aarch64.rpm","gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.ppc64le.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important gnupg2 security update in Rocky Linux addresses a buffer overflow issue allowing remote code execution. Update recommended.. Rocky Linux security update, gnupg2 exploit, buffer overflow fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 24, 2026 Important Rocky Linux
219

Rocky Linux 10 gnupg2 Significant Memory Leak Risk RLSA-2026-2921

Important: gnupg2 security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:2719", "synopsis": "Important: gnupg2 security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for gnupg2.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The GNU Privacy Guard (GnuPG or GPG) is a tool for encrypting data and creating digital signatures, compliant with OpenPGP and S/MIME standards.\n\nSecurity Fix(es):\n\n* GnuPG: GnuPG: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution (CVE-2026-24882)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2433464", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2433464", "description": ""}], "cves": [{"name": "CVE-2026-24882", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2026-24882", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.4", "cwe": "CWE-121"}], "references": [], "publishedAt": "2026-02-24T18:56:34.668877Z", "rpms": {"Rocky Linux 10": {"nvras": ["gnupg2-0:2.4.5-4.el10_1.src.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-0:2.4.5-4.el10_1.aarch64.rpm","gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-0:2.4.5-4.el10_1.s390x.rpm", "gnupg2-smime-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.aarch64.rpm", "gnupg2-smime-debuginfo-0:2.4.5-4.el10_1.ppc64le.rpm", "gnupg2-debugsource-0:2.4.5-4.el10_1.x86_64.rpm", "gnupg2-debuginfo-0:2.4.5-4.el10_1.ppc64le.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important security update for gnupg2 on Rocky Linux addresses a buffer overflow which may lead to code execution risks.. gnupg2 security update, Rocky Linux update, Important security advisory, buffer overflow fix, remote code execution fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 24, 2026 Important Rocky Linux
217

Oracle Linux 7 gnupg2 Important Patch for CVE-2025-68973 ELSA-2026-1677

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-1677 http://linux.oracle.com/errata/ELSA-2026-1677.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: gnupg2-2.0.22-5.0.1.el7_5.x86_64.rpm gnupg2-smime-2.0.22-5.0.1.el7_5.x86_64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates/gnupg2-2.0.22-5.0.1.el7_5.src.rpm Related CVEs: CVE-2025-68973 Description of changes: [2.0.22-5.0.1] - Fix CVE-2025-68973 (gpg.fail/memcpy) [Orabug: 38914175] _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Updated rpms for Oracle Linux 7 address the CVE-2025-68973 security issue in gnupg2. Ensure systems are patched and secure.. Oracle Linux, Security Advisory, gnupg2 Update, Remote Access, Important Security Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 23, 2026 Important Oracle
217

Oracle Linux 10 gnupg2 Important Buffer Overflow Patch ELSA-2026-2719

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-2719 http://linux.oracle.com/errata/ELSA-2026-2719.html The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network: x86_64: gnupg2-2.4.5-4.el10_1.x86_64.rpm gnupg2-smime-2.4.5-4.el10_1.x86_64.rpm aarch64: gnupg2-2.4.5-4.el10_1.aarch64.rpm gnupg2-smime-2.4.5-4.el10_1.aarch64.rpm SRPMS: http://oss.oracle.com/ol10/SRPMS-updates/gnupg2-2.4.5-4.el10_1.src.rpm Related CVEs: CVE-2026-24882 Description of changes: [2.4.5-4] - Fix CVE-2026-24882 (tpm2daemon buffer overflow) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Updated rpms for Oracle Linux 10 address ELSA-2026-2719, fixing important tpm2daemon buffer overflow issues.. Oracle Linux, gnupg2 security, tpm2daemon exploit, Important Linux updates. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 17, 2026 Important Oracle
89

Fedora 42 gnupg2 Critical Stack Overflow Vulnerability for Code Execution

Fix CVE-2026-24882: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-59fdfa64f5 2026-02-17 01:16:30.424623+00:00 -------------------------------------------------------------------------------- Name : gnupg2 Product : Fedora 42 Version : 2.4.9 Release : 2.fc42 URL : https://www.gnupg.org/ Summary : Utility for secure communication and data storage Description : GnuPG is GNU's tool for secure communication and data storage. It can be used to encrypt data and to create digital signatures. It includes an advanced key management facility and is compliant with the proposed OpenPGP Internet standard as described in RFC2440 and the S/MIME standard as described by several RFCs. GnuPG 2.0 is a newer version of GnuPG with additional support for S/MIME. It has a different design philosophy that splits functionality up into several modules. The S/MIME and smartcard functionality is provided by the gnupg2-smime package. -------------------------------------------------------------------------------- Update Information: Fix CVE-2026-24882: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 3 2026 Jakub Jelen - 2.4.9-2 - Fix CVE-2026-24882: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution -------------------------------------------------------------------------------- References: [ 1 ] Bug #2433663 - CVE-2026-24882 gnupg2: GnuPG: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2433663 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2026-59fdfa64f5' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Fix for a buffer overflow in gnupg2 on Fedora 42 mitigating a significant security risk, allowing arbitrary code execution.. Buffer Overflow Fix, Fedora Security, GnuPG Arbitrary Execution. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 17, 2026 Critical Fedora
89

Fedora 43 gnupg2 Critical Buffer Overflow Fix CVE-2026-24882

Fix CVE-2026-24882: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-d5c00a447f 2026-02-05 00:57:20.049144+00:00 -------------------------------------------------------------------------------- Name : gnupg2 Product : Fedora 43 Version : 2.4.9 Release : 5.fc43 URL : https://www.gnupg.org/ Summary : Utility for secure communication and data storage Description : GnuPG is GNU's tool for secure communication and data storage. It can be used to encrypt data and to create digital signatures. It includes an advanced key management facility and is compliant with the proposed OpenPGP Internet standard as described in RFC2440 and the S/MIME standard as described by several RFCs. GnuPG 2.0 is a newer version of GnuPG with additional support for S/MIME. It has a different design philosophy that splits functionality up into several modules. The S/MIME and smartcard functionality is provided by the gnupg2-smime package. -------------------------------------------------------------------------------- Update Information: Fix CVE-2026-24882: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution -------------------------------------------------------------------------------- ChangeLog: * Wed Jan 28 2026 Jakub Jelen - 2.4.9-5 - Fix CVE-2026-24882: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution -------------------------------------------------------------------------------- References: [ 1 ] Bug #2433665 - CVE-2026-24882 gnupg2: GnuPG: Stack-based buffer overflow in tpm2daemon allows arbitrary code execution [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2433665 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2026-d5c00a447f' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Fix for a critical stack-based buffer overflow in tpm2daemon, leading to arbitrary code execution for Fedora users. Updates available.. Fedora security fix, GnuPG update, buffer overflow 2026, critical security advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Feb 05, 2026 Critical Fedora
217

Oracle Linux 10 ELSA-2026-0697 gnupg2 Important Memory Issue Fix

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-0697 http://linux.oracle.com/errata/ELSA-2026-0697.html The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network: x86_64: gnupg2-2.4.5-3.el10_1.x86_64.rpm gnupg2-smime-2.4.5-3.el10_1.x86_64.rpm aarch64: gnupg2-2.4.5-3.el10_1.aarch64.rpm gnupg2-smime-2.4.5-3.el10_1.aarch64.rpm SRPMS: http://oss.oracle.com/ol10/SRPMS-updates/gnupg2-2.4.5-3.el10_1.src.rpm Related CVEs: CVE-2025-68973 Description of changes: [2.4.5-3] - Fix CVE-2025-68973 (gpg.fail/memcpy) - Avoid weak dependencies _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 10 updates for gnupg2 address important security issues and weaknesses effectively.. Oracle Linux, gnupg2 security, security updates, software patching, system vulnerabilities. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 15, 2026 Important Oracle
217

Oracle Linux 9 gnupg2 Important CVE-2025-68973 Advisory ELSA-2026-0719

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-0719 http://linux.oracle.com/errata/ELSA-2026-0719.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: gnupg2-2.3.3-5.el9_7.x86_64.rpm gnupg2-smime-2.3.3-5.el9_7.x86_64.rpm aarch64: gnupg2-2.3.3-5.el9_7.aarch64.rpm gnupg2-smime-2.3.3-5.el9_7.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/gnupg2-2.3.3-5.el9_7.src.rpm Related CVEs: CVE-2025-68973 Description of changes: [2.3.3-5] - Fix CVE-2025-68973 (gpg.fail/memcpy) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 9 updates for gnupg2 address important security issues related to CVE-2025-68973.. Oracle Linux, gnupg2, security advisory, updates, CVE-2025-68973. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 15, 2026 Important Oracle
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here