Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 428
Alerts This Week
Warning Icon 1 428

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
172

Ubuntu Mistral Important Code Execution Threat USN-8422-1

Mistral could be made to expose sensitive information or run code.. ========================================================================== Ubuntu Security Notice USN-8422-1 June 11, 2026 mistral vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 26.04 LTS - Ubuntu 25.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: Mistral could be made to expose sensitive information or run code. Software Description: - mistral: OpenStack Workflow Service Details: Eduardo Gonzalez Gutierrez and Arnaud Morin discovered that Mistral did not properly enforce access policies on some API endpoints. An attacker could possibly execute arbitrary code on a Mistral worker and possibly extract sensitive data including service credentials from it. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS mistral-api 22.0.0-0ubuntu1.1 mistral-common 22.0.0-0ubuntu1.1 mistral-engine 22.0.0-0ubuntu1.1 mistral-event-engine 22.0.0-0ubuntu1.1 mistral-executor 22.0.0-0ubuntu1.1 python3-mistral 22.0.0-0ubuntu1.1 Ubuntu 25.10 mistral-api 21.0.0-0ubuntu1.1 mistral-common 21.0.0-0ubuntu1.1 mistral-engine 21.0.0-0ubuntu1.1 mistral-event-engine 21.0.0-0ubuntu1.1 mistral-executor 21.0.0-0ubuntu1.1 python3-mistral 21.0.0-0ubuntu1.1 Ubuntu 24.04 LTS mistral-api 18.0.1-0ubuntu1.1 mistral-common 18.0.1-0ubuntu1.1 mistral-engine 18.0.1-0ubuntu1.1 mistral-event-engine 18.0.1-0ubuntu1.1 mistral-executor 18.0.1-0ubuntu1.1 python3-mistral 18.0.1-0ubuntu1.1 Ubuntu 22.04 LTS mistral-api 14.0.0-0ubuntu1.1 mistral-common 14.0.0-0ubuntu1.1 mistral-engine 14.0.0-0ubuntu1.1 mistral-event-engine 14.0.0-0ubuntu1.1 mistral-executor 14.0.0-0ubuntu1.1 python3-mistral 14.0.0-0ubuntu1.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8422-1 CVE-2026-41283 Package Information: https://launchpad.net/ubuntu/+source/mistral/22.0.0-0ubuntu1.1 https://launchpad.net/ubuntu/+source/mistral/21.0.0-0ubuntu1.1 https://launchpad.net/ubuntu/+source/mistral/18.0.1-0ubuntu1.1 https://launchpad.net/ubuntu/+source/mistral/14.0.0-0ubuntu1.1 . Mistral in Ubuntu exposes sensitive information and allows code execution risks. Ensure proper update for protection.. Mistral Update, Ubuntu Vulnerabilities, OpenStack Security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 11, 2026 Important Ubuntu
87

Debian Mistral Important Information Disclosure Vuln DSA-6333-1

Eduardo Gonzalez Gutierrez and Arnaud Morin discovered that multiple API endpoints of Mistral, the OpenStack Workflow, improperly enforced access policies, which could result in information disclosure. For the oldstable distribution (bookworm), this problem has been fixed in version 15.0.0-1+deb12u1.. - ------------------------------------------------------------------------- Debian Security Advisory DSA-6333-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Moritz Muehlenhoff June 09, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : mistral CVE ID : CVE-2026-41283 Eduardo Gonzalez Gutierrez and Arnaud Morin discovered that multiple API endpoints of Mistral, the OpenStack Workflow, improperly enforced access policies, which could result in information disclosure. For the oldstable distribution (bookworm), this problem has been fixed in version 15.0.0-1+deb12u1. For the stable distribution (trixie), this problem has been fixed in version 20.0.0-2+deb13u1. We recommend that you upgrade your mistral packages. For the detailed security status of mistral please refer to its security tracker page at: https://security-tracker.debian.org/tracker/mistral Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Mistral API access policy flaws revealed in Debian security advisory DSA-6333-1. Upgrade needed for information security.. Debian Security Advisory, Mistral API, Information Disclosure, Access Policy Flaw, Security Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 09, 2026 Important Debian
172

Ubuntu 18.04 LTS: USN-7465-1 critical: Mistral service issues

Several security issues were fixed in Mistral.. ========================================================================== Ubuntu Security Notice USN-7465-1 April 28, 2025 mistral, python-mistral-lib vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Several security issues were fixed in Mistral. Software Description: - mistral: OpenStack Workflow service - API - python-mistral-lib: Mistral shared routines and utilities Details: It was discovered that Mistral incorrectly handled nested anchors in YAML files. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 18.04 LTS. (CVE-2018-16848) Pierre Gaxatte discovered that Mistral incorrectly handled erroneous SSH private key filename commands. An attacker could possibly use this issue to expose sensitive information. (CVE-2018-16849) It was discovered that Mistral incorrectly handled the permissions of sensitive log files. An attacker could possibly use this issue to expose sensitive information. This issue only affected Ubuntu 18.04 LTS. (CVE-2019-3866) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS mistral-api 6.0.0-0ubuntu1.1+esm1 Available with Ubuntu Pro python-mistral 6.0.0-0ubuntu1.1+esm1 Available with Ubuntu Pro python-mistral-lib 0.4.0-0ubuntu1+esm1 Available with Ubuntu Pro Ubuntu 16.04 LTS mistral-api 2.0.0-1ubuntu2+esm1 Available with Ubuntu Pro python-mistral 2.0.0-1ubuntu2+esm1 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7465-1 CVE-2018-16848, CVE-2018-16849, CVE-2019-3866 . Uncover essential updates for Mistral within Ubuntu LTS versions, targeting vulnerabilities that risk user information leakage and operational interruptions.. Ubuntu Security, Mistral Software, Python Issues, Workflow Vulnerabilities, Linux Administration. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 28, 2025 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200