New upstream stable version 1.22.5. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-2e23403e23 2025-11-08 01:27:10.727042+00:00 -------------------------------------------------------------------------------- Name : libnbd Product : Fedora 42 Version : 1.22.5 Release : 1.fc42 URL : https://gitlab.com/nbdkit/libnbd Summary : NBD client library in userspace Description : NBD \u2014 Network Block Device \u2014 is a protocol for accessing Block Devices (hard disks and disk-like things) over a Network. This is the NBD client library in userspace, a simple library for writing NBD clients. The key features are: * Synchronous and asynchronous APIs, both for ease of use and for writing non-blocking, multithreaded clients. * High performance. * Minimal dependencies for the basic library. * Well-documented, stable API. * Bindings in several programming languages. -------------------------------------------------------------------------------- Update Information: New upstream stable version 1.22.5 -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 23 2025 Richard W.M. Jones - 1.22.5-1 - New upstream stable version 1.22.5 - Fixes security issue with nbd+ssh URIs https://lists.libguestfs.org/archives/list/
New upstream development version 1.23.10 New upstream development version 1.23.9. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-d44581756d 2025-11-05 02:09:57.817682+00:00 -------------------------------------------------------------------------------- Name : libnbd Product : Fedora 43 Version : 1.23.10 Release : 1.fc43 URL : https://gitlab.com/nbdkit/libnbd Summary : NBD client library in userspace Description : NBD \u2014 Network Block Device \u2014 is a protocol for accessing Block Devices (hard disks and disk-like things) over a Network. This is the NBD client library in userspace, a simple library for writing NBD clients. The key features are: * Synchronous and asynchronous APIs, both for ease of use and for writing non-blocking, multithreaded clients. * High performance. * Minimal dependencies for the basic library. * Well-documented, stable API. * Bindings in several programming languages. -------------------------------------------------------------------------------- Update Information: New upstream development version 1.23.10 New upstream development version 1.23.9 -------------------------------------------------------------------------------- ChangeLog: * Sun Nov 2 2025 Richard W.M. Jones - 1.23.10-1 - New upstream development version 1.23.10 - New tools nbddiscard and nbdzero. * Thu Oct 23 2025 Richard W.M. Jones - 1.23.9-1 - New upstream development version 1.23.9 - Fixes security issue with nbd+ssh URIs https://lists.libguestfs.org/archives/list/
Moderate: libnbd security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2024:6757", "synopsis": "Moderate: libnbd security update", "severity": "SEVERITY_MODERATE", "topic": "An update is available for libnbd.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "Network Block Device (NBD) is a protocol for accessing Block Devices (hard disks and disk-like devices) over a Network. The libnbd is a userspace client library for writing NBD clients.\n\nSecurity Fix(es):\n\n* libnbd: NBD server improper certificate validation (CVE-2024-7383)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2302865", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2302865", "description": ""}], "cves": [{"name": "CVE-2024-7383", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-7383", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2024-09-30T14:31:39.795853Z", "rpms": {"Rocky Linux 9": {"nvras": ["libnbd-0:1.18.1-4.el9_4.aarch64.rpm", "libnbd-0:1.18.1-4.el9_4.i686.rpm", "libnbd-0:1.18.1-4.el9_4.ppc64le.rpm", "libnbd-0:1.18.1-4.el9_4.s390x.rpm", "libnbd-0:1.18.1-4.el9_4.src.rpm", "libnbd-0:1.18.1-4.el9_4.x86_64.rpm", "libnbd-bash-completion-0:1.18.1-4.el9_4.noarch.rpm", "libnbd-debuginfo-0:1.18.1-4.el9_4.aarch64.rpm", "libnbd-debuginfo-0:1.18.1-4.el9_4.ppc64le.rpm", "libnbd-debuginfo-0:1.18.1-4.el9_4.s390x.rpm", "libnbd-debuginfo-0:1.18.1-4.el9_4.x86_64.rpm", "libnbd-debugsource-0:1.18.1-4.el9_4.aarch64.rpm", "libnbd-debugsource-0:1.18.1-4.el9_4.ppc64le.rpm", "libnbd-debugsource-0:1.18.1-4.el9_4.s390x.rpm","libnbd-debugsource-0:1.18.1-4.el9_4.x86_64.rpm", "libnbd-devel-0:1.18.1-4.el9_4.aarch64.rpm", "libnbd-devel-0:1.18.1-4.el9_4.i686.rpm", "libnbd-devel-0:1.18.1-4.el9_4.ppc64le.rpm", "libnbd-devel-0:1.18.1-4.el9_4.s390x.rpm", "libnbd-devel-0:1.18.1-4.el9_4.x86_64.rpm", "nbdfuse-0:1.18.1-4.el9_4.aarch64.rpm", "nbdfuse-0:1.18.1-4.el9_4.ppc64le.rpm", "nbdfuse-0:1.18.1-4.el9_4.s390x.rpm", "nbdfuse-0:1.18.1-4.el9_4.x86_64.rpm", "nbdfuse-debuginfo-0:1.18.1-4.el9_4.aarch64.rpm", "nbdfuse-debuginfo-0:1.18.1-4.el9_4.ppc64le.rpm", "nbdfuse-debuginfo-0:1.18.1-4.el9_4.s390x.rpm", "nbdfuse-debuginfo-0:1.18.1-4.el9_4.x86_64.rpm", "ocaml-libnbd-0:1.18.1-4.el9_4.aarch64.rpm", "ocaml-libnbd-0:1.18.1-4.el9_4.ppc64le.rpm", "ocaml-libnbd-0:1.18.1-4.el9_4.s390x.rpm", "ocaml-libnbd-0:1.18.1-4.el9_4.x86_64.rpm", "ocaml-libnbd-debuginfo-0:1.18.1-4.el9_4.aarch64.rpm", "ocaml-libnbd-debuginfo-0:1.18.1-4.el9_4.ppc64le.rpm", "ocaml-libnbd-debuginfo-0:1.18.1-4.el9_4.s390x.rpm", "ocaml-libnbd-debuginfo-0:1.18.1-4.el9_4.x86_64.rpm", "ocaml-libnbd-devel-0:1.18.1-4.el9_4.aarch64.rpm", "ocaml-libnbd-devel-0:1.18.1-4.el9_4.ppc64le.rpm", "ocaml-libnbd-devel-0:1.18.1-4.el9_4.s390x.rpm", "ocaml-libnbd-devel-0:1.18.1-4.el9_4.x86_64.rpm", "python3-libnbd-0:1.18.1-4.el9_4.aarch64.rpm", "python3-libnbd-0:1.18.1-4.el9_4.ppc64le.rpm", "python3-libnbd-0:1.18.1-4.el9_4.s390x.rpm", "python3-libnbd-0:1.18.1-4.el9_4.x86_64.rpm", "python3-libnbd-debuginfo-0:1.18.1-4.el9_4.aarch64.rpm", "python3-libnbd-debuginfo-0:1.18.1-4.el9_4.ppc64le.rpm", "python3-libnbd-debuginfo-0:1.18.1-4.el9_4.s390x.rpm", "python3-libnbd-debuginfo-0:1.18.1-4.el9_4.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Uncover a significant security patch for libnbd on Rocky Linux impacting network functionalities. Find out additional details regarding the resolved issues!. libnbd security, Rocky Linux update, NBD server patch, network device security. . LinuxSecurity.com Team
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2024-6757 http://linux.oracle.com/errata/ELSA-2024-6757.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: libnbd-1.18.1-4.0.1.el9_4.i686.rpm libnbd-1.18.1-4.0.1.el9_4.x86_64.rpm libnbd-bash-completion-1.18.1-4.0.1.el9_4.noarch.rpm nbdfuse-1.18.1-4.0.1.el9_4.x86_64.rpm python3-libnbd-1.18.1-4.0.1.el9_4.x86_64.rpm libnbd-devel-1.18.1-4.0.1.el9_4.i686.rpm libnbd-devel-1.18.1-4.0.1.el9_4.x86_64.rpm ocaml-libnbd-1.18.1-4.0.1.el9_4.x86_64.rpm ocaml-libnbd-devel-1.18.1-4.0.1.el9_4.x86_64.rpm aarch64: libnbd-1.18.1-4.0.1.el9_4.aarch64.rpm libnbd-bash-completion-1.18.1-4.0.1.el9_4.noarch.rpm nbdfuse-1.18.1-4.0.1.el9_4.aarch64.rpm python3-libnbd-1.18.1-4.0.1.el9_4.aarch64.rpm libnbd-devel-1.18.1-4.0.1.el9_4.aarch64.rpm ocaml-libnbd-1.18.1-4.0.1.el9_4.aarch64.rpm ocaml-libnbd-devel-1.18.1-4.0.1.el9_4.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//libnbd-1.18.1-4.0.1.el9_4.src.rpm Related CVEs: CVE-2024-7383 Description of changes: [1.18.1-4.0.1] - Add new content to nbd_connect_uri.pod [1.18.1-4] - Fix CVE-2024-7383 NBD server improper certificate validation resolves: RHEL-52730 _______________________________________________ El-errata mailing list
* bsc#1228872 Cross-References: * CVE-2024-7383 . # Security update for libnbd Announcement ID: SUSE-SU-2024:2813-1 Rating: important References: * bsc#1228872 Cross-References: * CVE-2024-7383 CVSS scores: * CVE-2024-7383 ( SUSE ): 7.6 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2024-7383 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N Affected Products: * openSUSE Leap 15.6 * Server Applications Module 15-SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves one vulnerability can now be installed. ## Description: This update for libnbd fixes the following issues: * CVE-2024-7383: Fixed incorrect verification of a NBD server's certificate when using TLS to connect to the server (bsc#1228872) Other fixes: \- Update to version 1.18.5. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2024-2813=1 openSUSE-SLE-15.6-2024-2813=1 * Server Applications Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP6-2024-2813=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * python3-libnbd-1.18.5-150600.18.3.1 * libnbd-devel-1.18.5-150600.18.3.1 * libnbd-debuginfo-1.18.5-150600.18.3.1 * libnbd-devel-debuginfo-1.18.5-150600.18.3.1 * libnbd-debugsource-1.18.5-150600.18.3.1 * nbdfuse-debuginfo-1.18.5-150600.18.3.1 * nbdfuse-1.18.5-150600.18.3.1 * libnbd0-debuginfo-1.18.5-150600.18.3.1 * libnbd0-1.18.5-150600.18.3.1 * libnbd-1.18.5-150600.18.3.1 * python3-libnbd-debuginfo-1.18.5-150600.18.3.1 * openSUSE Leap 15.6 (noarch) * libnbd-bash-completion-1.18.5-150600.18.3.1 * Server Applications Module 15-SP6(aarch64 ppc64le s390x x86_64) * libnbd-debuginfo-1.18.5-150600.18.3.1 * libnbd-debugsource-1.18.5-150600.18.3.1 * nbdfuse-debuginfo-1.18.5-150600.18.3.1 * nbdfuse-1.18.5-150600.18.3.1 * libnbd0-debuginfo-1.18.5-150600.18.3.1 * libnbd0-1.18.5-150600.18.3.1 * libnbd-1.18.5-150600.18.3.1 ## References: * https://www.suse.com/security/cve/CVE-2024-7383.html * https://bugzilla.suse.com/show_bug.cgi?id=1228872 . This essential update resolves authentication problems in libnbd, guaranteeing reliable connections.. Libnbd Security Update, TLS Certificate Fix, SUSE Patch Instructions. . Severity: Important. LinuxSecurity.com Team
* bsc#1228872 Cross-References: * CVE-2024-7383 . # Security update for libnbd Announcement ID: SUSE-SU-2024:2789-1 Rating: important References: * bsc#1228872 Cross-References: * CVE-2024-7383 CVSS scores: * CVE-2024-7383 ( SUSE ): 7.6 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N * CVE-2024-7383 ( SUSE ): 7.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N Affected Products: * openSUSE Leap 15.3 * openSUSE Leap 15.5 An update that solves one vulnerability can now be installed. ## Description: This update for libnbd fixes the following issues: * CVE-2024-7383: Fixed incorrect verification of a NBD server's certificate when using TLS to connect to the server (bsc#1228872) Other fixes: \- Update to version 1.18.5. ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2024-2789=1 * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2024-2789=1 ## Package List: * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * nbdfuse-debuginfo-1.18.5-150300.8.21.1 * libnbd0-debuginfo-1.18.5-150300.8.21.1 * libnbd0-1.18.5-150300.8.21.1 * libnbd-1.18.5-150300.8.21.1 * libnbd-devel-1.18.5-150300.8.21.1 * nbdfuse-1.18.5-150300.8.21.1 * python3-libnbd-1.18.5-150300.8.21.1 * python3-libnbd-debuginfo-1.18.5-150300.8.21.1 * libnbd-debugsource-1.18.5-150300.8.21.1 * libnbd-debuginfo-1.18.5-150300.8.21.1 * openSUSE Leap 15.3 (noarch) * libnbd-bash-completion-1.18.5-150300.8.21.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * nbdfuse-debuginfo-1.18.5-150300.8.21.1 * libnbd0-debuginfo-1.18.5-150300.8.21.1 * libnbd0-1.18.5-150300.8.21.1 * libnbd-1.18.5-150300.8.21.1 * libnbd-devel-1.18.5-150300.8.21.1 * nbdfuse-1.18.5-150300.8.21.1 *python3-libnbd-1.18.5-150300.8.21.1 * python3-libnbd-debuginfo-1.18.5-150300.8.21.1 * libnbd-debugsource-1.18.5-150300.8.21.1 * libnbd-debuginfo-1.18.5-150300.8.21.1 * openSUSE Leap 15.5 (noarch) * libnbd-bash-completion-1.18.5-150300.8.21.1 ## References: * https://www.suse.com/security/cve/CVE-2024-7383.html * https://bugzilla.suse.com/show_bug.cgi?id=1228872 . Critical patch for libnbd resolves TLS cert validation vulnerabilities, safeguarding openSUSE platforms.. openSUSE, libnbd update, important patch, TLS fix. . Severity: Important. LinuxSecurity.com Team
This update for libnbd fixes the following issues: CVE-2023-5871: Fixed an assertion problem in ext-mode BLOCK_STATUS (bsc#1216769).. # Security update for libnbd Announcement ID: SUSE-SU-2023:4463-1 Rating: moderate References: * bsc#1216769 Cross-References: * CVE-2023-5871 CVSS scores: * CVE-2023-5871 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L Affected Products: * openSUSE Leap 15.3 * openSUSE Leap 15.4 * openSUSE Leap 15.5 An update that solves one vulnerability can now be installed. ## Description: This update for libnbd fixes the following issues: * CVE-2023-5871: Fixed an assertion problem in ext-mode BLOCK_STATUS (bsc#1216769). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch openSUSE-SLE-15.4-2023-4463=1 * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2023-4463=1 * openSUSE Leap 15.3 zypper in -t patch SUSE-2023-4463=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64) * libnbd-devel-1.18.1-150300.8.18.1 * libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-1.18.1-150300.8.18.1 * libnbd0-1.18.1-150300.8.18.1 * libnbd0-debuginfo-1.18.1-150300.8.18.1 * nbdfuse-debuginfo-1.18.1-150300.8.18.1 * libnbd-debugsource-1.18.1-150300.8.18.1 * nbdfuse-1.18.1-150300.8.18.1 * openSUSE Leap 15.4 (noarch) * libnbd-bash-completion-1.18.1-150300.8.18.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * libnbd-devel-1.18.1-150300.8.18.1 * python3-libnbd-1.18.1-150300.8.18.1 * python3-libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-1.18.1-150300.8.18.1 * libnbd0-1.18.1-150300.8.18.1 * libnbd0-debuginfo-1.18.1-150300.8.18.1 * nbdfuse-debuginfo-1.18.1-150300.8.18.1 *libnbd-debugsource-1.18.1-150300.8.18.1 * nbdfuse-1.18.1-150300.8.18.1 * openSUSE Leap 15.5 (noarch) * libnbd-bash-completion-1.18.1-150300.8.18.1 * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * libnbd-devel-1.18.1-150300.8.18.1 * python3-libnbd-1.18.1-150300.8.18.1 * python3-libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-1.18.1-150300.8.18.1 * libnbd0-1.18.1-150300.8.18.1 * libnbd0-debuginfo-1.18.1-150300.8.18.1 * nbdfuse-debuginfo-1.18.1-150300.8.18.1 * libnbd-debugsource-1.18.1-150300.8.18.1 * nbdfuse-1.18.1-150300.8.18.1 * openSUSE Leap 15.3 (noarch) * libnbd-bash-completion-1.18.1-150300.8.18.1 ## References: * https://www.suse.com/security/cve/CVE-2023-5871.html * https://bugzilla.suse.com/show_bug.cgi?id=1216769 . Recent security advisory for libnbd provides updates on assertion vulnerabilities affecting various openSUSE releases, specifics included.. openSUSE Update, libnbd Security Fix, assertion issue resolution. . LinuxSecurity.com Team
* bsc#1216769 Cross-References: * CVE-2023-5871 . # Security update for libnbd Announcement ID: SUSE-SU-2023:4463-1 Rating: moderate References: * bsc#1216769 Cross-References: * CVE-2023-5871 CVSS scores: * CVE-2023-5871 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L Affected Products: * openSUSE Leap 15.3 * openSUSE Leap 15.4 * openSUSE Leap 15.5 An update that solves one vulnerability can now be installed. ## Description: This update for libnbd fixes the following issues: * CVE-2023-5871: Fixed an assertion problem in ext-mode BLOCK_STATUS (bsc#1216769). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch openSUSE-SLE-15.4-2023-4463=1 * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2023-4463=1 * openSUSE Leap 15.3 zypper in -t patch SUSE-2023-4463=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64) * libnbd-devel-1.18.1-150300.8.18.1 * libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-1.18.1-150300.8.18.1 * libnbd0-1.18.1-150300.8.18.1 * libnbd0-debuginfo-1.18.1-150300.8.18.1 * nbdfuse-debuginfo-1.18.1-150300.8.18.1 * libnbd-debugsource-1.18.1-150300.8.18.1 * nbdfuse-1.18.1-150300.8.18.1 * openSUSE Leap 15.4 (noarch) * libnbd-bash-completion-1.18.1-150300.8.18.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * libnbd-devel-1.18.1-150300.8.18.1 * python3-libnbd-1.18.1-150300.8.18.1 * python3-libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-1.18.1-150300.8.18.1 * libnbd0-1.18.1-150300.8.18.1 * libnbd0-debuginfo-1.18.1-150300.8.18.1 * nbdfuse-debuginfo-1.18.1-150300.8.18.1 * libnbd-debugsource-1.18.1-150300.8.18.1 * nbdfuse-1.18.1-150300.8.18.1 * openSUSE Leap 15.5 (noarch) * libnbd-bash-completion-1.18.1-150300.8.18.1 * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * libnbd-devel-1.18.1-150300.8.18.1 * python3-libnbd-1.18.1-150300.8.18.1 * python3-libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-debuginfo-1.18.1-150300.8.18.1 * libnbd-1.18.1-150300.8.18.1 * libnbd0-1.18.1-150300.8.18.1 * libnbd0-debuginfo-1.18.1-150300.8.18.1 * nbdfuse-debuginfo-1.18.1-150300.8.18.1 * libnbd-debugsource-1.18.1-150300.8.18.1 * nbdfuse-1.18.1-150300.8.18.1 * openSUSE Leap 15.3 (noarch) * libnbd-bash-completion-1.18.1-150300.8.18.1 ## References: * https://www.suse.com/security/cve/CVE-2023-5871.html * https://bugzilla.suse.com/show_bug.cgi?id=1216769 . Timely SUSE security patch for libnbd tackling CVE-2023-5871 to fix assertion problems in extended mode BLOCK_STATUS.. libnbd,SUSE,security fix,moderate update,assertion issue. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.