Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 513
Alerts This Week
Warning Icon 1 513

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 74 articles for you...
197

Debian 11 Zabbix Critical Remote Code Exec Vuln DLA-4473-1 CVE-2025-27234

zabbix a popular network monitoring solution was affected by a vulnerabilty. Zabbix Agent 2 smartctl plugin does not properly sanitize smart.disk.get parameters, allowing an attacker to inject unexpected arguments into the smartctl command. In Zabbix 5.0 this allows for remote code execution.. Debian LTS Advisory DLA-4473-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Bastien Roucari��s February 08, 2026 https://wiki.debian.org/LTS Package : zabbix Version : 1:5.0.47+dfsg-0+deb11u1 CVE ID : CVE-2025-27234 zabbix a popular network monitoring solution was affected by a vulnerabilty. Zabbix Agent 2 smartctl plugin does not properly sanitize smart.disk.get parameters, allowing an attacker to inject unexpected arguments into the smartctl command. In Zabbix 5.0 this allows for remote code execution. For Debian 11 bullseye, this problem has been fixed in version 1:5.0.47+dfsg-0+deb11u1. We recommend that you upgrade your zabbix packages. For the detailed security status of zabbix please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/zabbix Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Zabbix Agent 2 faces critical code execution flaw, impacting Debian systems. Upgrade advised to mitigate risks of exploitation.. Zabbix Security Update, Debian LTS, Remote Code Execution, Monitoring Solutions. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 08, 2026 Critical Debian LTS
89

Fedora 42: libpcap Medium Memory Corruption CVE-2025-11961 Advisory

New version 1.10.6. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-1e3425e7ea 2026-01-21 01:30:15.162774+00:00 -------------------------------------------------------------------------------- Name : libpcap Product : Fedora 42 Version : 1.10.6 Release : 1.fc42 URL : https://www.tcpdump.org/ Summary : A system-independent interface for user-level packet capture Description : Libpcap provides a portable framework for low-level network monitoring. Libpcap can provide network statistics collection, security monitoring and network debugging. Since almost every system vendor provides a different interface for packet capture, the libpcap authors created this system-independent API to ease in porting and to alleviate the need for several system-dependent packet capture modules in each application. Install libpcap if you need to do low-level network traffic monitoring on your network. -------------------------------------------------------------------------------- Update Information: New version 1.10.6 -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 5 2026 Michal Ruprich - 14:1.10.6-1 - New version 1.10.6 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2426393 - libpcap-1.10.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=2426393 [ 2 ] Bug #2426630 - CVE-2025-11961 libpcap: libpcap: Memory corruption via malformed MAC-48 address input [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2426630 [ 3 ] Bug #2426631 - CVE-2025-11961 libpcap: libpcap: Memory corruption via malformed MAC-48 address input [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2426631 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c'dnf upgrade --advisory FEDORA-2026-1e3425e7ea' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Libpcap update in Fedora 42 addresses memory corruption risk; upgrade recommended for secure network monitoring today.. libpcap, Fedora, network monitoring, security, update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 21, 2026 Important Fedora
89

Fedora 43: libpcap Moderate Memory Corruption Advisory 2025-11961

New version 1.10.6. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-274010c760 2026-01-07 00:49:01.527406+00:00 -------------------------------------------------------------------------------- Name : libpcap Product : Fedora 43 Version : 1.10.6 Release : 1.fc43 URL : https://www.tcpdump.org/ Summary : A system-independent interface for user-level packet capture Description : Libpcap provides a portable framework for low-level network monitoring. Libpcap can provide network statistics collection, security monitoring and network debugging. Since almost every system vendor provides a different interface for packet capture, the libpcap authors created this system-independent API to ease in porting and to alleviate the need for several system-dependent packet capture modules in each application. Install libpcap if you need to do low-level network traffic monitoring on your network. -------------------------------------------------------------------------------- Update Information: New version 1.10.6 -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 5 2026 Michal Ruprich - 14:1.10.6-1 - New version 1.10.6 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2426393 - libpcap-1.10.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=2426393 [ 2 ] Bug #2426630 - CVE-2025-11961 libpcap: libpcap: Memory corruption via malformed MAC-48 address input [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2426630 [ 3 ] Bug #2426631 - CVE-2025-11961 libpcap: libpcap: Memory corruption via malformed MAC-48 address input [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2426631 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c'dnf upgrade --advisory FEDORA-2026-274010c760' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Update to Fedora 43 for libpcap version 1.10.6 addresses memory corruption risks with recommended installation steps.. libpcap update,Fedora security advisory,network monitoring. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 07, 2026 Important Fedora
89

Fedora 41: systemd Critical Buffer Overflow Patch FEDORA-2025-112a987b3f

Update to 20250602 with fixes for CVE-2025-48964. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-885e731f6f 2025-08-07 01:11:45.458396+00:00 -------------------------------------------------------------------------------- Name : iputils Product : Fedora 41 Version : 20250602 Release : 3.fc41 URL : https://github.com/iputils/iputils Summary : Network monitoring tools including ping Description : The iputils package contains basic utilities for monitoring a network, including ping. The ping command sends a series of ICMP protocol ECHO_REQUEST packets to a specified network host to discover whether the target machine is alive and receiving network traffic. -------------------------------------------------------------------------------- Update Information: Update to 20250602 with fixes for CVE-2025-48964 -------------------------------------------------------------------------------- ChangeLog: * Fri Jul 25 2025 Jan Macku - 20250602-3 - remove build dependency on openssl-devel removed in s20200821 * Thu Jul 24 2025 Fedora Release Engineering - 20250602-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild * Sun Jul 13 2025 Kevin Fenzi - 20250602-1 - Update to 20250602. Fixes rhbz#2369782 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2382663 - CVE-2025-48964 iputils: iputils integer overflow [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2382663 [ 2 ] Bug #2382664 - CVE-2025-48964 iputils: iputils integer overflow [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2382664 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-885e731f6f' at the command line. For more information, refer to the dnf documentation availableat http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Important patch released for Fedora 41's iputils to resolve CVE-2025-48964. Apply the update immediately to ensure network protection.. Fedora 41, iputils, integer overflow, security advisory, network tools. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Aug 07, 2025 Critical Fedora
89

Fedora 41: FEDORA-2025-7e1b66f54e critical: iputils signed integer overflow

Fix for CVE-2025-47268. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-7e1b66f54e 2025-05-24 01:46:25.887858+00:00 -------------------------------------------------------------------------------- Name : iputils Product : Fedora 41 Version : 20240905 Release : 4.fc41 URL : https://github.com/iputils/iputils Summary : Network monitoring tools including ping Description : The iputils package contains basic utilities for monitoring a network, including ping. The ping command sends a series of ICMP protocol ECHO_REQUEST packets to a specified network host to discover whether the target machine is alive and receiving network traffic. -------------------------------------------------------------------------------- Update Information: Fix for CVE-2025-47268 -------------------------------------------------------------------------------- ChangeLog: * Sat May 17 2025 Kevin Fenzi - 20240905-4 - Add upstream patch for CVE-2025-47268. * Fri Jan 17 2025 Fedora Release Engineering - 20240905-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild * Sun Jan 12 2025 Zbigniew Jędrzejewski-Szmek - 20240905-2 - Rebuilt for the bin-sbin merge (2nd attempt) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2364303 - CVE-2025-47268 iputils: Signed Integer Overflow in Timestamp Multiplication in iputils ping [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2364303 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-7e1b66f54e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project canbe found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- . Critical patch applied for Signed Integer Overflow in iputils ping for Fedora 41, mitigating CVE-2025-47268.. iputils update,Fedora 41,network monitoring tools,signed integer overflow. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 24, 2025 Critical Fedora
197

Debian 11 bullseye: DLA-4131-1 moderate: Zabbix remote code execution

Several security vulnerabilities have been discovered in zabbix, a network monitoring solution, potentially among other effects allowing denial of service, information disclosure or remote code inclusion. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-4131-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Tobias Frost April 19, 2025 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : zabbix Version : 1:5.0.46+dfsg-1+deb11u1 CVE ID : CVE-2024-36469 CVE-2024-42325 CVE-2024-45699 CVE-2024-45700 Debian Bug : Several security vulnerabilities have been discovered in zabbix, a network monitoring solution, potentially among other effects allowing denial of service, information disclosure or remote code inclusion. CVE-2024-36469 Execution time for an unsuccessful login differs when using a non-existing username compared to using an existing one. CVE-2024-42325 Zabbix API user.get returns all users that share common group with the calling user. This includes media and other information, such as login attempts, etc. CVE-2024-45699 The endpoint /zabbix.php?action=export.valuemaps suffers from a Cross-Site Scripting vulnerability via the backurl parameter. This is caused by the reflection of user-supplied data without appropriate HTML escaping or output encoding. As a result, a JavaScript payload may be injected into the above endpoint causing it to be executed within the context of the victim's browser. CVE-2024-45700 Zabbix server is vulnerable to a DoS vulnerability due to uncontrolled resource exhaustion. An attacker can send specially crafted requests to the server, which will cause the server to allocate an excessive amount of memory and perform CPU-intensive decompression operations,ultimately leading to a service crash. For Debian 11 bullseye, these problems have been fixed in version 1:5.0.46+dfsg-1+deb11u1. We recommend that you upgrade your zabbix packages. For the detailed security status of zabbix please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/zabbix Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Uncover essential Zabbix patches for Debian LTS, targeting denial-of-service, information leak, and remote execution vulnerabilities.. Zabbix Security Update, Debian LTS, Network Monitoring, DoS Fix, Security Vulnerabilities. . LinuxSecurity.com Team

Calendar%202 Apr 19, 2025 Debian LTS
197

Debian 10 Buster: DLA-3798-1 Critical: Zabbix Input Validation Fix

Improper form input field validation has been fixed in Zabbix, a network monitoring solution. For Debian 10 buster, this problem has been fixed in version . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3798-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Adrian Bunk April 28, 2024 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : zabbix Version : 1:4.0.4+dfsg-1+deb10u5 CVE ID : CVE-2024-22119 Improper form input field validation has been fixed in Zabbix, a network monitoring solution. For Debian 10 buster, this problem has been fixed in version 1:4.0.4+dfsg-1+deb10u5. We recommend that you upgrade your zabbix packages. For the detailed security status of zabbix please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/zabbix Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Grafana enhancement addresses dashboard performance bottlenecks. Upgrade to optimize your Ubuntu 20.04 Focal Fossa installation without delay.. Zabbix Security Update, Debian 10 buster, Input Validation Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 28, 2024 Critical Debian LTS
197

Debian 10 Buster DLA-3717-1 Critical: Zabbix XSS, SSRF Risks

Several security vulnerabilities have been discovered in zabbix, a network monitoring solution, potentially allowing an attacker to perform a stored XSS, Server-Side Request Forgery (SSRF), exposure of sensitive information, a system crash, or arbitrary code execution. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-3717-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Tobias Frost January 24, 2024 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : zabbix Version : 1:4.0.4+dfsg-1+deb10u4 CVE ID : CVE-2023-32721 CVE-2023-32723 CVE-2023-32726 Debian Bug : 1053877 Several security vulnerabilities have been discovered in zabbix, a network monitoring solution, potentially allowing an attacker to perform a stored XSS, Server-Side Request Forgery (SSRF), exposure of sensitive information, a system crash, or arbitrary code execution. CVE-2023-32721 A stored XSS has been found in the Zabbix web application in the Maps element if a URL field is set with spaces before URL. CVE-2023-32723 Inefficient user permission check, as request to LDAP is sent before user permissions are checked. CVE-2023-32726 Possible buffer overread from reading DNS responses. For Debian 10 buster, these problems have been fixed in version 1:4.0.4+dfsg-1+deb10u4. We recommend that you upgrade your zabbix packages. For the detailed security status of zabbix please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/zabbix Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-3717-1 highlights critical risks in Zabbix network monitoring tool; urgent updates recommended.. Debian Security, Zabbix Update, XSS Attack,SSRF Issues, Network Monitoring. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jan 24, 2024 Critical Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200