Important: xorg-x11-server security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:11388", "synopsis": "Important: xorg-x11-server security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for xorg-x11-server.\nThis update affects Rocky Linux 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "X.Org is an open-source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon.\n\nSecurity Fix(es):\n\n* xorg: xwayland: X.Org X server: Denial of Service via integer underflow in XKB compatibility map handling (CVE-2026-33999)\n\n* xorg: xwayland: X.Org X server: Use-after-free vulnerability leads to server crash and potential memory corruption (CVE-2026-34001)\n\n* xorg: xwayland: X.Org X server: Information exposure and denial of service via out-of-bounds memory access (CVE-2026-34003)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 9"], "fixes": [{"ticket": "2451106", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2451106", "description": ""}, {"ticket": "2451109", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2451109", "description": ""}, {"ticket": "2451113", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2451113", "description": ""}], "cves": [{"name": "CVE-2026-33999", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-33999", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-191"}, {"name": "CVE-2026-34001", "sourceBy": "MITRE", "sourceLink":"https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-34001", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-825"}, {"name": "CVE-2026-34003", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-34003", "cvss3ScoringVector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "7.8", "cwe": "CWE-125"}], "references": [], "publishedAt": "2026-04-30T12:03:33.126838Z", "rpms": {"Rocky Linux 9": {"nvras": ["xorg-x11-server-0:1.20.11-33.el9_7.src.rpm", "xorg-x11-server-common-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-common-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-common-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-common-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-debuginfo-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-debuginfo-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-debuginfo-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-debuginfo-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-debugsource-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-debugsource-0:1.20.11-33.el9_7.i686.rpm", "xorg-x11-server-debugsource-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-debugsource-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-debugsource-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-devel-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-devel-0:1.20.11-33.el9_7.i686.rpm", "xorg-x11-server-devel-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-devel-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-devel-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-source-0:1.20.11-33.el9_7.noarch.rpm", "xorg-x11-server-Xdmx-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xdmx-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xdmx-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xdmx-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xdmx-debuginfo-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xdmx-debuginfo-0:1.20.11-33.el9_7.ppc64le.rpm","xorg-x11-server-Xdmx-debuginfo-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xdmx-debuginfo-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xephyr-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xephyr-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xephyr-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xephyr-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xephyr-debuginfo-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xephyr-debuginfo-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xephyr-debuginfo-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xephyr-debuginfo-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xnest-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xnest-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xnest-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xnest-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xnest-debuginfo-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xnest-debuginfo-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xnest-debuginfo-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xnest-debuginfo-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xorg-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xorg-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xorg-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xorg-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xorg-debuginfo-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xorg-debuginfo-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xorg-debuginfo-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xorg-debuginfo-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xvfb-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xvfb-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xvfb-0:1.20.11-33.el9_7.s390x.rpm", "xorg-x11-server-Xvfb-0:1.20.11-33.el9_7.x86_64.rpm", "xorg-x11-server-Xvfb-debuginfo-0:1.20.11-33.el9_7.aarch64.rpm", "xorg-x11-server-Xvfb-debuginfo-0:1.20.11-33.el9_7.ppc64le.rpm", "xorg-x11-server-Xvfb-debuginfo-0:1.20.11-33.el9_7.s390x.rpm","xorg-x11-server-Xvfb-debuginfo-0:1.20.11-33.el9_7.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Important security update for xorg-x11-server on Rocky Linux addresses Denial of Service and memory corruption risks.. X.Org Server, Rocky Linux updates, security patch, server security, software vulnerabilities. . Severity: Important. LinuxSecurity.com Team
FreeType could be made to crash or run programs as your login if it opened a specially crafted file.. =========================================================================Ubuntu Security Notice USN-4593-1 October 20, 2020 freetype vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: FreeType could be made to crash or run programs as your login if it opened a specially crafted file. Software Description: - freetype: FreeType 2 is a font engine library Details: Sergei Glazunov discovered that FreeType did not correctly handle certain malformed font files. If a user were tricked into using a specially crafted font file, a remote attacker could cause FreeType to crash or possibly execute arbitrary code with user privileges. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: libfreetype6 2.10.1-2ubuntu0.1 Ubuntu 18.04 LTS: libfreetype6 2.8.1-2ubuntu2.1 Ubuntu 16.04 LTS: libfreetype6 2.6.1-0.1ubuntu2.5 After a standard system update you need to restart your session to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4593-1 CVE-2020-15999 Package Information: https://launchpad.net/ubuntu/+source/freetype/2.10.1-2ubuntu0.1 https://launchpad.net/ubuntu/+source/freetype/2.8.1-2ubuntu2.1 https://launchpad.net/ubuntu/+source/freetype/2.6.1-0.1ubuntu2.5 . A vulnerability in FreeType could potentially lead to system crashes or arbitrary code execution on Ubuntu platforms. It's essential to apply the latest updates for safeguarding your system.. FreeType Vulnerability, Ubuntu Security Notice, Software Update, Crash Exploit. . Severity: Critical. LinuxSecurity.com Team
Updated chromium-browser packages that fix multiple security issues are now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having Important security impact. Common Vulnerability Scoring System (CVSS) base scores, which give. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Important: chromium-browser security update Advisory ID: RHSA-2016:0429-01 Product: Red Hat Enterprise Linux Supplementary Advisory URL: https://access.redhat.com/errata/RHSA-2016:0429.html Issue date: 2016-03-10 CVE Names: CVE-2016-1643 CVE-2016-1644 CVE-2016-1645 ==================================================================== 1. Summary: Updated chromium-browser packages that fix multiple security issues are now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having Important security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop Supplementary (v. 6) - i386, x86_64 Red Hat Enterprise Linux Server Supplementary (v. 6) - i386, x86_64 Red Hat Enterprise Linux Workstation Supplementary (v. 6) - i386, x86_64 3. Description: Chromium is an open-source web browser, powered by WebKit (Blink). Several flaws were found in the processing of malformed web content. A web page containing malicious content could cause Chromium to crash, execute arbitrary code, or disclose sensitive information when visited by the victim. (CVE-2016-1643, CVE-2016-1644, CVE-2016-1645) All Chromium users should upgrade to these updated packages, which contain Chromium version 49.0.2623.87, which corrects these issues. After installing the update, Chromium must be restarted forthe changes to take effect. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1315997 - CVE-2016-1643 chromium-browser: type confusion in Blink 1315998 - CVE-2016-1644 chromium-browser: use-after-free in Blink 1315999 - CVE-2016-1645 chromium-browser: out-of-bounds write in PDFium 6. Package List: Red Hat Enterprise Linux Desktop Supplementary (v. 6): i386: chromium-browser-49.0.2623.87-1.el6.i686.rpm chromium-browser-debuginfo-49.0.2623.87-1.el6.i686.rpm x86_64: chromium-browser-49.0.2623.87-1.el6.x86_64.rpm chromium-browser-debuginfo-49.0.2623.87-1.el6.x86_64.rpm Red Hat Enterprise Linux Server Supplementary (v. 6): i386: chromium-browser-49.0.2623.87-1.el6.i686.rpm chromium-browser-debuginfo-49.0.2623.87-1.el6.i686.rpm x86_64: chromium-browser-49.0.2623.87-1.el6.x86_64.rpm chromium-browser-debuginfo-49.0.2623.87-1.el6.x86_64.rpm Red Hat Enterprise Linux Workstation Supplementary (v. 6): i386: chromium-browser-49.0.2623.87-1.el6.i686.rpm chromium-browser-debuginfo-49.0.2623.87-1.el6.i686.rpm x86_64: chromium-browser-49.0.2623.87-1.el6.x86_64.rpm chromium-browser-debuginfo-49.0.2623.87-1.el6.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2016-1643 https://access.redhat.com/security/cve/CVE-2016-1644 https://access.redhat.com/security/cve/CVE-2016-1645 https://access.redhat.com/security/updates/classification#important https://chromereleases.googleblog.com/2016/03/stable-channel-update_8.html 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2016 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iD8DBQFW4ScwXlSAg2UNWIIRApv8AJ969yflUXGNztV52/oynwou1btiXwCgv5TR 5R8jmsMa7CUfW/8ZHj9281o=RXi7 -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list
Critical: seamonkey security update. Date: Fri, 12 Jun 2009 15:24:12 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Critical: seamonkey on SL3.x, SL4.x i386/x86_64 Comments: To: "
Get the latest Linux and open source security news straight to your inbox.