Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges

Alerts This Week
Warning Icon 1 488
Alerts This Week
Warning Icon 1 488

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
100

SUSE Micro 6.1 Kernel Significant Livepatch Release 2026-21899-1

# Security update for kernel-livepatch-MICRO-6-0-RT_Update_24 Announcement ID: SUSE-SU-2026:21899-1 Release Date: 2026-05-29T16:12:43Z Rating: important References:. # Security update for kernel-livepatch-MICRO-6-0-RT_Update_24 Announcement ID: SUSE-SU-2026:21899-1 Release Date: 2026-05-29T16:12:43Z Rating: important References: Affected Products: * SUSE Linux Micro 6.1 An update that can now be installed. ## Description: This update for kernel-livepatch-MICRO-6-0-RT_Update_24 fixes the following issues: * New livepatch SLE Micro 6.0/6.1 kernel update 24 ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-kernel-438=1 ## Package List: * SUSE Linux Micro 6.1 (x86_64) * kernel-livepatch-MICRO-6-0-RT_Update_24-debugsource-1-1.1 * kernel-livepatch-6_4_0-47-rt-debuginfo-1-1.1 * kernel-livepatch-6_4_0-47-rt-1-1.1 . Update for SUSE Linux Micro 6.1 kernel-livepatch addresses important issues with installation instructions provided.. SUSE Linux Micro, kernel update, important security patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 02, 2026 Important SuSE
202

openSUSE 15.4: 2025:0786-1 critical: podman denial of service

An update that solves one vulnerability can now be installed.. # Security update for podman Announcement ID: SUSE-SU-2025:0786-1 Release Date: 2025-03-05T13:06:45Z Rating: important References: * bsc#1237641 Cross-References: * CVE-2025-27144 CVSS scores: * CVE-2025-27144 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N * CVE-2025-27144 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-27144 ( NVD ): 6.6 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves one vulnerability can now be installed. ## Description: This update for podman fixes the following issues: * CVE-2025-27144: Fixed denial of service in parsing function of embedded library Go JOSE (bsc#1237641) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2025-786=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-786=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-786=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patchSUSE-SLE-Micro-5.4-2025-786=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2025-786=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2025-786=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2025-786=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2025-786=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2025-786=1 ## Package List: * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * podman-remote-4.9.5-150400.4.41.1 * podman-debuginfo-4.9.5-150400.4.41.1 * podmansh-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * openSUSE Leap 15.4 (noarch) * podman-docker-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch) * podman-docker-4.9.5-150400.4.41.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch) * podman-docker-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch) * podman-docker-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * podman-debuginfo-4.9.5-150400.4.41.1 * podman-remote-4.9.5-150400.4.41.1 * podman-4.9.5-150400.4.41.1 * podman-remote-debuginfo-4.9.5-150400.4.41.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch) * podman-docker-4.9.5-150400.4.41.1 ## References: * https://www.suse.com/security/cve/CVE-2025-27144.html * https://bugzilla.suse.com/show_bug.cgi?id=1237641 . Essential podman patch resolves denial of service vulnerability, providing crucial updates for SUSE variants on designated releases.. Podman Update, SUSE Security Advisory, Denial of Service Fix, Podman Patch, Linux Security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 05, 2025 Important OpenSUSE
100

SUSE Linux Enterprise Micro: 2025:0728-1 moderate DoS in gnutls

* bsc#1236974 Cross-References: * CVE-2024-12243 . # Security update for gnutls Announcement ID: SUSE-SU-2025:0728-1 Release Date: 2025-02-26T14:03:26Z Rating: moderate References: * bsc#1236974 Cross-References: * CVE-2024-12243 CVSS scores: * CVE-2024-12243 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2024-12243 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2024-12243 ( NVD ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L Affected Products: * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro for Rancher 5.3 An update that solves one vulnerability can now be installed. ## Description: This update for gnutls fixes the following issues: * CVE-2024-12243: quadratic complexity of DER input decoding in libtasn1 can lead to a DoS (bsc#1236974). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-728=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2025-728=1 ## Package List: * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 s390x x86_64) * libgnutls30-debuginfo-3.7.3-150400.11.1 * gnutls-debuginfo-3.7.3-150400.11.1 * gnutls-3.7.3-150400.11.1 * gnutls-debugsource-3.7.3-150400.11.1 * libgnutls30-hmac-3.7.3-150400.11.1 * libgnutls30-3.7.3-150400.11.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64) * libgnutls30-debuginfo-3.7.3-150400.11.1 * gnutls-debuginfo-3.7.3-150400.11.1 * gnutls-3.7.3-150400.11.1 * gnutls-debugsource-3.7.3-150400.11.1 * libgnutls30-hmac-3.7.3-150400.11.1 * libgnutls30-3.7.3-150400.11.1 ## References: * https://www.suse.com/security/cve/CVE-2024-12243.html * https://bugzilla.suse.com/show_bug.cgi?id=1236974 .GnuTLS has been updated to fix a moderate security vulnerability. Users should install it through the recommended procedures from SUSE. More details below. SUSE Linux Enterprise Micro, gnutls security, patch management. . LinuxSecurity.com Team

Calendar%202 Feb 26, 2025 SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200