Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 488
Alerts This Week
Warning Icon 1 488

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 86 articles for you...
172

Ubuntu 18.04 Ruby Security Advisory USN-8431-1 Remote Access Issues

Ruby could allow unintended access to network services.. ========================================================================== Ubuntu Security Notice USN-8431-1 June 15, 2026 ruby2.3, ruby2.5 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Ruby could allow unintended access to network services. Software Description: - ruby2.5: Object-oriented scripting language - ruby2.3: Object-oriented scripting language Details: It was discovered that Ruby's Net::IMAP library did not properly verify that Transport Layer Security (TLS) encryption was started after issuing a STARTTLS command. A remote attacker could possibly use this issue to perform a machine-in-the-middle attack and silently bypass TLS encryption. (CVE-2026-42246) It was also discovered that Ruby's Net::IMAP library did not validate string arguments passed to certain commands. A remote attacker could possibly use this issue to inject arbitrary IMAP commands. (CVE-2026-42257) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS libruby2.5 2.5.1-1ubuntu1.16+esm8 Available with Ubuntu Pro ruby2.5 2.5.1-1ubuntu1.16+esm8 Available with Ubuntu Pro Ubuntu 16.04 LTS libruby2.3 2.3.1-2~ubuntu16.04.16+esm14 Available with Ubuntu Pro ruby2.3 2.3.1-2~ubuntu16.04.16+esm14 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8431-1 CVE-2026-42246, CVE-2026-42257 . Unintended access to network services risk with Ruby on Ubuntu 18.04/16.04 LTS. Update for security fixes.. Rubyvulnerabilities, Ubuntu security, network access risks, TLS issues, command injection. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 16, 2026 Important Ubuntu
87

Debian Trixie Neutron Important Port Bypass Security Vuln DSA-6340-1

Tim Shepard discovered a vulnerability in Neutron, the OpenStack virtual network service, which allowed the bypass of port RBAC rules. The oldstable distribution (bookworm) is not affected. For the stable distribution (trixie), this problem has been fixed in version 2:26.0.3-0+deb13u2.. - ------------------------------------------------------------------------- Debian Security Advisory DSA-6340-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Moritz Muehlenhoff June 11, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : neutron CVE ID : CVE-2026-50266 Tim Shepard discovered a vulnerability in Neutron, the OpenStack virtual network service, which allowed the bypass of port RBAC rules. The oldstable distribution (bookworm) is not affected. For the stable distribution (trixie), this problem has been fixed in version 2:26.0.3-0+deb13u2. We recommend that you upgrade your neutron packages. For the detailed security status of neutron please refer to its security tracker page at: https://security-tracker.debian.org/tracker/neutron Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Tim Shepard found a security issue in Neutron's RBAC, upgrade packages for Debian Trixie to ensure system integrity.. Neutron Security Issue, Debian Trixie Upgrade, OpenStack Network Vulnerability. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 11, 2026 Important Debian
202

openSUSE: kea Moderate Risk Issue CVE-2025-11232 Advisory 2025:15677-1

An update that solves one vulnerability can now be installed.. # kea-3.0.2-1.1 on GA media Announcement ID: openSUSE-SU-2025:15677-1 Rating: moderate Cross-References: * CVE-2025-11232 CVSS scores: * CVE-2025-11232 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2025-11232 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the kea-3.0.2-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * kea 3.0.2-1.1 * kea-devel 3.0.2-1.1 * kea-doc 3.0.2-1.1 * kea-hooks 3.0.2-1.1 * libkea-asiodns62 3.0.2-1.1 * libkea-asiolink88 3.0.2-1.1 * libkea-cc82 3.0.2-1.1 * libkea-cfgrpt3 3.0.2-1.1 * libkea-config83 3.0.2-1.1 * libkea-cryptolink64 3.0.2-1.1 * libkea-d2srv63 3.0.2-1.1 * libkea-database76 3.0.2-1.1 * libkea-dhcp109 3.0.2-1.1 * libkea-dhcp_ddns68 3.0.2-1.1 * libkea-dhcpsrv131 3.0.2-1.1 * libkea-dns71 3.0.2-1.1 * libkea-eval84 3.0.2-1.1 * libkea-exceptions45 3.0.2-1.1 * libkea-hooks120 3.0.2-1.1 * libkea-http87 3.0.2-1.1 * libkea-log-interprocess3 3.0.2-1.1 * libkea-log75 3.0.2-1.1 * libkea-mysql88 3.0.2-1.1 * libkea-pgsql88 3.0.2-1.1 * libkea-process90 3.0.2-1.1 * libkea-stats53 3.0.2-1.1 * libkea-tcp33 3.0.2-1.1 * libkea-util-io12 3.0.2-1.1 * libkea-util101 3.0.2-1.1 * python3-kea 3.0.2-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-11232.html . Update available for moderate risk vulnerability in kea package on openSUSE Tumbleweed. Install now and secure your system.. openSUSE kea update moderate risk network service security. . LinuxSecurity.com Team

Calendar%202 Nov 01, 2025 OpenSUSE
89

Fedora 42: kea Critical Update for CVE-2025-40779 Advisory 2025-92b4ae7199

New version 3.0.1 (rhbz#2391289) Fixes CVE-2025-40779 (rhbz#2391373). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-92b4ae7199 2025-09-07 00:51:16.113246+00:00 -------------------------------------------------------------------------------- Name : kea Product : Fedora 42 Version : 3.0.1 Release : 1.fc42 URL : http://kea.isc.org Summary : DHCPv4, DHCPv6 and DDNS server from ISC Description : DHCP implementation from Internet Systems Consortium, Inc. that features fully functional DHCPv4, DHCPv6 and Dynamic DNS servers. Both DHCP servers fully support server discovery, address assignment, renewal, rebinding and release. The DHCPv6 server supports prefix delegation. Both servers support DNS Update mechanism, using stand-alone DDNS daemon. -------------------------------------------------------------------------------- Update Information: New version 3.0.1 (rhbz#2391289) Fixes CVE-2025-40779 (rhbz#2391373) -------------------------------------------------------------------------------- ChangeLog: * Fri Aug 29 2025 Martin Osvald - 3.0.1-1 - New version 3.0.1 (rhbz#2391289) - Fixes CVE-2025-40779 (rhbz#2391373) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2391373 - CVE-2025-40779 kea: Kea crash upon interaction between specific client options and subnet selection https://bugzilla.redhat.com/show_bug.cgi?id=2391373 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-92b4ae7199' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . Kea patched in response to CVE-2025-40780 in Fedora 43; vital security update issued for DNS management services.. Fedora 42, kea update, CVE-2025-40779 security issue. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Sep 07, 2025 Critical Fedora
202

openSUSE 15-SP6: Important pdns-recursor Update for CVE-2024-25590 Advisory

An update that fixes one vulnerability is now available. . openSUSE Security Update: Security update for pdns-recursor ______________________________________________________________________________ Announcement ID: openSUSE-SU-2025:0251-1 Rating: important References: #1231292 Cross-References: CVE-2024-25590 Affected Products: openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for pdns-recursor fixes the following issues: - update to 5.1.3: * Implement rfc6303 special zones (mostly v6 reverse mappings) * Distinguish OS imposed limits from app imposed limits, specifically on chains. - update to 5.1.2 (boo#1231292 CVE-2024-25590) https://doc.powerdns.com/recursor/changelog/5.1.html#change-5.1.2 - update to 5.1.1 https://doc.powerdns.com/recursor/changelog/5.1.html#change-5.1.1 https://doc.powerdns.com/recursor/changelog/5.0.html#change-5.0.8 - update to 5.0.5: * Do not count RRSIGs using unsupported algorithms toward RRSIGs limit * Correctly count NSEC3s considered when chasing the closest encloser. * Let NetmaskGroup parse dont-throttle-netmasks, allowing negations. * Fix types of two YAML settings (incoming.edns_padding_from, incoming.proxy_protocol_from) that should be sequences of subnets * Fix trace=fail regression and add regression test for it Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2025-251=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 ppc64le x86_64): pdns-recursor-5.1.3-bp156.2.3.1 References: https://www.suse.com/security/cve/CVE-2024-25590.html https://bugzilla.suse.com/1231292 . Crucial patch released for pdns-recursor on openSUSE tackling critical flaws. Secure your installations without delay!. pdns-recursor, openSUSE, security update, important fix, software patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 26, 2025 Important OpenSUSE
100

SUSE 15 SP3: 2025:0752-1 important: OVMF buffer overflow

* bsc#1218879 * bsc#1218880 * bsc#1218881 * bsc#1218882 * bsc#1218883 . # Security update for ovmf Announcement ID: SUSE-SU-2025:0752-1 Release Date: 2025-02-28T16:27:49Z Rating: important References: * bsc#1218879 * bsc#1218880 * bsc#1218881 * bsc#1218882 * bsc#1218883 * bsc#1218884 * bsc#1218885 Cross-References: * CVE-2023-45229 * CVE-2023-45230 * CVE-2023-45231 * CVE-2023-45232 * CVE-2023-45233 * CVE-2023-45234 * CVE-2023-45235 CVSS scores: * CVE-2023-45229 ( SUSE ): 6.5 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-45229 ( NVD ): 6.5 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-45230 ( SUSE ): 8.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H * CVE-2023-45230 ( NVD ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2023-45230 ( NVD ): 8.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H * CVE-2023-45231 ( SUSE ): 6.5 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-45231 ( NVD ): 6.5 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-45232 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45232 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45232 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45233 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45233 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45233 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-45234 ( SUSE ): 8.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H * CVE-2023-45234 ( NVD ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2023-45234 ( NVD ): 8.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H * CVE-2023-45235 ( SUSE ): 8.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H * CVE-2023-45235 ( NVD ): 8.8 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2023-45235 ( NVD ): 8.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:H Affected Products: * openSUSE Leap 15.3 * SUSEEnterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Micro 5.1 * SUSE Linux Enterprise Micro 5.2 * SUSE Linux Enterprise Micro for Rancher 5.2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves seven vulnerabilities can now be installed. ## Description: This update for ovmf fixes the following issues: * CVE-2023-45229: out-of-bounds read in edk2 when processing IA_NA/IA_TA options in DHCPv6 Advertise messages. (bsc#1218879) * CVE-2023-45230: buffer overflow in the DHCPv6 client in edk2 via a long Server ID option. (bsc#1218880) * CVE-2023-45231: out-of-bounds read in edk2 when handling a ND Redirect message with truncated options. (bsc#1218881) * CVE-2023-45232: infinite loop in edk2 when parsing unknown options in the Destination Options header. (bsc#1218882) * CVE-2023-45233: infinite loop in edk2 when parsing PadN options in the Destination Options header. (bsc#1218883) * CVE-2023-45234: buffer overflow in edk2 when processing DNS Servers options in a DHCPv6 Advertise message. (bsc#1218884) * CVE-2023-45235: buffer overflow in edk2 when handling the Server ID option in a DHCPv6 proxy Advertise message. (bsc#1218885) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2025-752=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-752=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-752=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patchSUSE-SLE-Product-SLES_SAP-15-SP3-2025-752=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-752=1 * SUSE Linux Enterprise Micro 5.1 zypper in -t patch SUSE-SUSE-MicroOS-5.1-2025-752=1 * SUSE Linux Enterprise Micro 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-752=1 * SUSE Linux Enterprise Micro for Rancher 5.2 zypper in -t patch SUSE-SUSE-MicroOS-5.2-2025-752=1 ## Package List: * openSUSE Leap 15.3 (aarch64 x86_64) * ovmf-202008-150300.10.26.1 * ovmf-tools-202008-150300.10.26.1 * openSUSE Leap 15.3 (noarch) * qemu-uefi-aarch32-202008-150300.10.26.1 * qemu-uefi-aarch64-202008-150300.10.26.1 * qemu-ovmf-x86_64-202008-150300.10.26.1 * qemu-ovmf-ia32-202008-150300.10.26.1 * openSUSE Leap 15.3 (x86_64) * qemu-ovmf-x86_64-debug-202008-150300.10.26.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * ovmf-202008-150300.10.26.1 * ovmf-tools-202008-150300.10.26.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * qemu-ovmf-x86_64-202008-150300.10.26.1 * qemu-uefi-aarch64-202008-150300.10.26.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 x86_64) * ovmf-202008-150300.10.26.1 * ovmf-tools-202008-150300.10.26.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (noarch) * qemu-ovmf-x86_64-202008-150300.10.26.1 * qemu-uefi-aarch64-202008-150300.10.26.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (x86_64) * ovmf-202008-150300.10.26.1 * ovmf-tools-202008-150300.10.26.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * qemu-ovmf-x86_64-202008-150300.10.26.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * ovmf-202008-150300.10.26.1 * ovmf-tools-202008-150300.10.26.1 * SUSE Enterprise Storage 7.1 (noarch) * qemu-ovmf-x86_64-202008-150300.10.26.1 * qemu-uefi-aarch64-202008-150300.10.26.1 * SUSE Linux Enterprise Micro 5.1 (noarch) *qemu-ovmf-x86_64-202008-150300.10.26.1 * qemu-uefi-aarch64-202008-150300.10.26.1 * SUSE Linux Enterprise Micro 5.2 (noarch) * qemu-ovmf-x86_64-202008-150300.10.26.1 * qemu-uefi-aarch64-202008-150300.10.26.1 * SUSE Linux Enterprise Micro for Rancher 5.2 (noarch) * qemu-ovmf-x86_64-202008-150300.10.26.1 * qemu-uefi-aarch64-202008-150300.10.26.1 ## References: * https://www.suse.com/security/cve/CVE-2023-45229.html * https://www.suse.com/security/cve/CVE-2023-45230.html * https://www.suse.com/security/cve/CVE-2023-45231.html * https://www.suse.com/security/cve/CVE-2023-45232.html * https://www.suse.com/security/cve/CVE-2023-45233.html * https://www.suse.com/security/cve/CVE-2023-45234.html * https://www.suse.com/security/cve/CVE-2023-45235.html * https://bugzilla.suse.com/show_bug.cgi?id=1218879 * https://bugzilla.suse.com/show_bug.cgi?id=1218880 * https://bugzilla.suse.com/show_bug.cgi?id=1218881 * https://bugzilla.suse.com/show_bug.cgi?id=1218882 * https://bugzilla.suse.com/show_bug.cgi?id=1218883 * https://bugzilla.suse.com/show_bug.cgi?id=1218884 * https://bugzilla.suse.com/show_bug.cgi?id=1218885 . SUSE Users Receive Critical OVMF Security Patch. Step-by-Step Guide Provided for Proper Implementation.. SUSE Security Update, OVMF Issues, Security Advisory, Important Update. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 28, 2025 Important SuSE
197

Debian Bullseye DLA-4050-1 critical: bind9 denial of service

One vulnerability was discovered in BIND, a DNS server implementation, which may result in denial of service. It is possible to construct a zone such that some queries to it will generate . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4050-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Paride Legovini February 11, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : bind9 Version : 1:9.16.50-1~deb11u3 CVE ID : CVE-2024-11187 One vulnerability was discovered in BIND, a DNS server implementation, which may result in denial of service. It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Additional section. An attacker sending many such queries can cause either the authoritative server itself or an independent resolver to use disproportionate resources processing the queries. Zones will usually need to have been deliberately crafted to exploit this flaw. For Debian 11 bullseye, this problem has been fixed in version 1:9.16.50-1~deb11u3. We recommend that you upgrade your bind9 packages. For the detailed security status of bind9 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/bind9 Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-4051-1 addresses a security vulnerability in OpenSSH, advising users to apply necessary patches.. Debian LTS, bind9, denial of service, DNS server, security advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 11, 2025 Critical Debian LTS
217

Oracle Linux 9 ELSA-2025-0917 Moderate: keepalived Security Fix

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-0917 http://linux.oracle.com/errata/ELSA-2025-0917.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: keepalived-2.2.8-4.el9_5.x86_64.rpm aarch64: keepalived-2.2.8-4.el9_5.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates//keepalived-2.2.8-4.el9_5.src.rpm Related CVEs: CVE-2024-41184 Description of changes: [2.2.8-3] - Validate vrrp ipset names for CVE-2024-41184 Resolves: RHEL-49557 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 9 now offers critical security patches for keepalived, addressing potential vulnerabilities and improving system reliability.. Oracle Linux, keepalived, security update, network service, RPM updates. . LinuxSecurity.com Team

Calendar%202 Feb 05, 2025 Oracle
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200