Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
An update that solves 2 vulnerabilities can now be installed.. # xen-4.21.1_04-1.1 on GA media Announcement ID: openSUSE-SU-2026:10660-1 Rating: moderate Cross-References: * CVE-2026-23557 * CVE-2026-23558 CVSS scores: * CVE-2026-23557 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H * CVE-2026-23558 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2026-23558 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 2 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the xen-4.21.1_04-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * xen 4.21.1_04-1.1 * xen-devel 4.21.1_04-1.1 * xen-doc-html 4.21.1_04-1.1 * xen-libs 4.21.1_04-1.1 * xen-tools 4.21.1_04-1.1 * xen-tools-domU 4.21.1_04-1.1 * xen-tools-xendomains-wait-disk 4.21.1_04-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-23557.html * https://www.suse.com/security/cve/CVE-2026-23558.html . Critical updates released for openSUSE addressing 2 moderate threats in Xen, ensuring improved system safety.. openSUSE security update, Xen vulnerabilities, moderate severity threat. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # python311-jsonpath-ng-1.8.0-1.1 on GA media Announcement ID: openSUSE-SU-2026:10418-1 Rating: moderate Cross-References: * CVE-2025-56005 CVSS scores: * CVE-2025-56005 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-56005 ( SUSE ): 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the python311-jsonpath-ng-1.8.0-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * python311-jsonpath-ng 1.8.0-1.1 * python313-jsonpath-ng 1.8.0-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-56005.html . An update is available for openSUSE Tumbleweed addressing a moderate security issue in the python311-jsonpath-ng package.. openSUSE python311-jsonpath-ng moderate security update. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # helm-4.1.1-3.1 on GA media Announcement ID: openSUSE-SU-2026:10318-1 Rating: moderate Cross-References: * CVE-2025-55199 CVSS scores: * CVE-2025-55199 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2025-55199 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the helm-4.1.1-3.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * helm 4.1.1-3.1 * helm-bash-completion 4.1.1-3.1 * helm-fish-completion 4.1.1-3.1 * helm-zsh-completion 4.1.1-3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-55199.html . Learn about the recent moderate security advisory for openSUSE regarding helm-4.1.1-3.1 and its impacts.. openSUSE security, helm package update, moderate threat advisory, CVE-2025-55199, Linux package vulnerabilities. . LinuxSecurity.com Team
An update that solves one vulnerability can now be installed.. # libtasn1-6-32bit-4.21.0-1.1 on GA media Announcement ID: openSUSE-SU-2026:10033-1 Rating: moderate Cross-References: * CVE-2025-13151 CVSS scores: * CVE-2025-13151 ( SUSE ): 6.6 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H * CVE-2025-13151 ( SUSE ): 6.9 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the libtasn1-6-32bit-4.21.0-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * libtasn1-6 4.21.0-1.1 * libtasn1-6-32bit 4.21.0-1.1 * libtasn1-devel 4.21.0-1.1 * libtasn1-devel-32bit 4.21.0-1.1 * libtasn1-tools 4.21.0-1.1 ## References: * https://www.suse.com/security/cve/CVE-2025-13151.html . Update for openSUSE Tumbleweed addresses CVE-2025-13151 affecting libtasn1. Install now for enhanced security.. openSUSE Update, libtasn1 Security, install security patch. . LinuxSecurity.com Team
uv / python-uv-build 0.9.7 https://github.com/astral-sh/uv/releases/tag/0.9.7 0.9.6 This release contains an upgrade to Astral's fork of async_zip, which addresses. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-00e5b3d89c 2025-11-15 01:40:44.715697+00:00 -------------------------------------------------------------------------------- Name : rust-regex Product : Fedora 41 Version : 1.12.2 Release : 1.fc41 URL : https://crates.io/crates/regex Summary : Implementation of regular expressions for Rust Description : An implementation of regular expressions for Rust. This implementation uses finite automata and guarantees linear time matching on all inputs. -------------------------------------------------------------------------------- Update Information: uv / python-uv-build 0.9.7 https://github.com/astral-sh/uv/releases/tag/0.9.7 0.9.6 This release contains an upgrade to Astral's fork of async_zip, which addresses potential sources of ZIP parsing differentials between uv and other Python packaging tooling. See GHSA-pqhf-p39g-3x64 for additional details. https://github.com/astral-sh/uv/releases/tag/0.9.6 ruff 0.14.3 https://github.com/astral-sh/ruff/releases/tag/0.14.3 Update rust-get-size2/rust-get-size-derive2 to 0.7.1 (implement GetSize for RefCell). Update rust-reqsign to 0.18.1 and rust-reqsign-* to 2.0.1. Update rust-regex to 1.12.2 and rust-regex-automata to 0.4.13. -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 6 2025 Benjamin A. Beasley - 1.12.2-1 - Update to version 1.12.2; Fixes RHBZ#2403244 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2403244 - rust-regex-1.12.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=2403244 [ 2 ] Bug #2403245 - rust-regex-automata-0.4.13 is available https://bugzilla.redhat.com/show_bug.cgi?id=2403245 [ 3 ] Bug #2406419 - rust-get-size2-0.7.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2406419 [ 4 ] Bug #2406420 - rust-get-size-derive2-0.7.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2406420 [ 5 ] Bug #2411978 - rust-reqsign-core-2.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2411978 [ 6 ] Bug #2411979 - rust-reqsign-command-execute-tokio-2.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2411979 [ 7 ] Bug #2411980 - rust-reqsign-aws-v4-2.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2411980 [ 8 ] Bug #2411981 - rust-reqsign-0.18.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2411981 [ 9 ] Bug #2411982 - rust-reqsign-http-send-reqwest-2.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2411982 [ 10 ] Bug #2411983 - rust-reqsign-file-read-tokio-2.0.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=2411983 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-00e5b3d89c' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
An update that solves 70 vulnerabilities can now be installed.. # govulncheck-vulndb-0.0.20251105T184115-1.1 on GA media Announcement ID: openSUSE-SU-2025:15710-1 Rating: moderate Cross-References: * CVE-2016-11063 * CVE-2016-11066 * CVE-2016-11067 * CVE-2016-11068 * CVE-2016-11069 * CVE-2016-11070 * CVE-2016-11071 * CVE-2016-11072 * CVE-2016-11073 * CVE-2016-11074 * CVE-2016-11075 * CVE-2016-11076 * CVE-2016-11077 * CVE-2016-11078 * CVE-2016-11079 * CVE-2016-11080 * CVE-2016-11081 * CVE-2016-11082 * CVE-2016-11083 * CVE-2016-11084 * CVE-2017-18872 * CVE-2023-32199 * CVE-2024-58269 * CVE-2025-10545 * CVE-2025-10678 * CVE-2025-10954 * CVE-2025-11374 * CVE-2025-11375 * CVE-2025-11579 * CVE-2025-11621 * CVE-2025-12044 * CVE-2025-26625 * CVE-2025-27093 * CVE-2025-41410 * CVE-2025-41443 * CVE-2025-54286 * CVE-2025-54287 * CVE-2025-54288 * CVE-2025-54289 * CVE-2025-54290 * CVE-2025-54291 * CVE-2025-54293 * CVE-2025-54469 * CVE-2025-54470 * CVE-2025-54471 * CVE-2025-54499 * CVE-2025-58073 * CVE-2025-58075 * CVE-2025-58356 * CVE-2025-59043 * CVE-2025-59048 * CVE-2025-59530 * CVE-2025-59836 * CVE-2025-59937 * CVE-2025-61141 * CVE-2025-61524 * CVE-2025-61581 * CVE-2025-61688 * CVE-2025-62156 * CVE-2025-62157 * CVE-2025-62375 * CVE-2025-62506 * CVE-2025-62513 * CVE-2025-62705 * CVE-2025-62714 * CVE-2025-62725 * CVE-2025-62820 * CVE-2025-64101 * CVE-2025-64102 * CVE-2025-64103 CVSS scores: * CVE-2025-11579 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L * CVE-2025-11579 ( SUSE ): 4.8 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2025-26625 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2025-26625 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-54469 ( SUSE ): 9.9 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2025-54470 ( SUSE ): 8.6CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2025-54471 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2025-62725 ( SUSE ): 8.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H * CVE-2025-62725 ( SUSE ): 8.9 CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H Affected Products: * openSUSE Tumbleweed An update that solves 70 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the govulncheck-vulndb-0.0.20251105T184115-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * govulncheck-vulndb 0.0.20251105T184115-1.1 ## References: * https://www.suse.com/security/cve/CVE-2016-11063.html * https://www.suse.com/security/cve/CVE-2016-11066.html * https://www.suse.com/security/cve/CVE-2016-11067.html * https://www.suse.com/security/cve/CVE-2016-11068.html * https://www.suse.com/security/cve/CVE-2016-11069.html * https://www.suse.com/security/cve/CVE-2016-11070.html * https://www.suse.com/security/cve/CVE-2016-11071.html * https://www.suse.com/security/cve/CVE-2016-11072.html * https://www.suse.com/security/cve/CVE-2016-11073.html * https://www.suse.com/security/cve/CVE-2016-11074.html * https://www.suse.com/security/cve/CVE-2016-11075.html * https://www.suse.com/security/cve/CVE-2016-11076.html * https://www.suse.com/security/cve/CVE-2016-11077.html * https://www.suse.com/security/cve/CVE-2016-11078.html * https://www.suse.com/security/cve/CVE-2016-11079.html * https://www.suse.com/security/cve/CVE-2016-11080.html * https://www.suse.com/security/cve/CVE-2016-11081.html * https://www.suse.com/security/cve/CVE-2016-11082.html * https://www.suse.com/security/cve/CVE-2016-11083.html * https://www.suse.com/security/cve/CVE-2016-11084.html * https://www.suse.com/security/cve/CVE-2017-18872.html * https://www.suse.com/security/cve/CVE-2023-32199.html * https://www.suse.com/security/cve/CVE-2024-58269.html *https://www.suse.com/security/cve/CVE-2025-10545.html * https://www.suse.com/security/cve/CVE-2025-10678.html * https://www.suse.com/security/cve/CVE-2025-10954.html * https://www.suse.com/security/cve/CVE-2025-11374.html * https://www.suse.com/security/cve/CVE-2025-11375.html * https://www.suse.com/security/cve/CVE-2025-11579.html * https://www.suse.com/security/cve/CVE-2025-11621.html * https://www.suse.com/security/cve/CVE-2025-12044.html * https://www.suse.com/security/cve/CVE-2025-26625.html * https://www.suse.com/security/cve/CVE-2025-27093.html * https://www.suse.com/security/cve/CVE-2025-41410.html * https://www.suse.com/security/cve/CVE-2025-41443.html * https://www.suse.com/security/cve/CVE-2025-54286.html * https://www.suse.com/security/cve/CVE-2025-54287.html * https://www.suse.com/security/cve/CVE-2025-54288.html * https://www.suse.com/security/cve/CVE-2025-54289.html * https://www.suse.com/security/cve/CVE-2025-54290.html * https://www.suse.com/security/cve/CVE-2025-54291.html * https://www.suse.com/security/cve/CVE-2025-54293.html * https://www.suse.com/security/cve/CVE-2025-54469.html * https://www.suse.com/security/cve/CVE-2025-54470.html * https://www.suse.com/security/cve/CVE-2025-54471.html * https://www.suse.com/security/cve/CVE-2025-54499.html * https://www.suse.com/security/cve/CVE-2025-58073.html * https://www.suse.com/security/cve/CVE-2025-58075.html * https://www.suse.com/security/cve/CVE-2025-58356.html * https://www.suse.com/security/cve/CVE-2025-59043.html * https://www.suse.com/security/cve/CVE-2025-59048.html * https://www.suse.com/security/cve/CVE-2025-59530.html * https://www.suse.com/security/cve/CVE-2025-59836.html * https://www.suse.com/security/cve/CVE-2025-59937.html * https://www.suse.com/security/cve/CVE-2025-61141.html * https://www.suse.com/security/cve/CVE-2025-61524.html * https://www.suse.com/security/cve/CVE-2025-61581.html * https://www.suse.com/security/cve/CVE-2025-61688.html *https://www.suse.com/security/cve/CVE-2025-62156.html * https://www.suse.com/security/cve/CVE-2025-62157.html * https://www.suse.com/security/cve/CVE-2025-62375.html * https://www.suse.com/security/cve/CVE-2025-62506.html * https://www.suse.com/security/cve/CVE-2025-62513.html * https://www.suse.com/security/cve/CVE-2025-62705.html * https://www.suse.com/security/cve/CVE-2025-62714.html * https://www.suse.com/security/cve/CVE-2025-62725.html * https://www.suse.com/security/cve/CVE-2025-62820.html * https://www.suse.com/security/cve/CVE-2025-64101.html * https://www.suse.com/security/cve/CVE-2025-64102.html * https://www.suse.com/security/cve/CVE-2025-64103.html . An update for openSUSE Tumbleweed addresses 70 vulnerabilities in the govulncheck package with moderate severity.. openSUSE secured update, govulncheck vulnerabilities, package updates, cyber threat fix. . LinuxSecurity.com Team
MGAA-2025-0089 - Updated packages using updated icu to fix bug. MGAA-2025-0089 - Updated packages using updated icu to fix bug Publication date: 06 Nov 2025 URL: https://advisories.mageia.org/MGAA-2025-0089.html Type: bugfix Affected Mageia releases: 9 Description: We are rebuilding packages requiring icu 72 version with icu 73 version to use an icu version with security fixes. These packages are the first set. References: - https://bugs.mageia.org/show_bug.cgi?id=34619 SRPMS: - 9/core/389-adminutil-1.1.22-19.1.mga9 - 9/core/389-ds-base-1.4.0.26-17.1.mga9 - 9/core/389-dsgw-1.1.11-27.1.mga9 - 9/core/boost-1.81.0-3.1.mga9 - 9/core/couchdb-3.2.2-2.2.mga9 - 9/core/dee-1.2.7-31.1.mga9 - 9/core/fbembed-2.5.9.27115-13.1.mga9 - 9/core/freeciv-3.0.7-1.1.mga9 - 9/core/harfbuzz-7.0.1-1.1.mga9 - 9/core/ibus-qt4-1.3.3-19.1.mga9 - 9/core/ircclient-qt-0.3.2-32.1.mga9 - 9/core/mongo-c-driver-1.23.2-2.1.mga9 - 9/core/mozjs102-102.6.0-2.1.mga9 - 9/core/parrot-8.1.0-15.1.mga9 - 9/core/postfix-3.8.4-1.1.mga9 - 9/core/prelude-lml-5.2.0-7.1.mga9 - 9/core/python-icu-2.10.2-1.1.mga9 - 9/core/sword-1.9.0-9.1.mga9 - 9/core/tepl-6.4.0-1.1.mga9 - 9/core/tracker-3.5.3-1.1.mga9 - 9/core/tracker-miners-3.5.2-1.1.mga9 - 9/core/xerces-c-3.2.4-1.1.mga9 - 9/core/xfsprogs-6.6.0-1.1.mga9 - 9/core/yaz-5.34.0-1.1.mga9 . Updated Mageia packages to icu 73 with security fixes. Important bugfix in Mageia 9.. Mageia 9 icu update bugfix package. . Severity: Important. LinuxSecurity.com Team
An update that solves 2 vulnerabilities can now be installed.. # alloy-1.11.2-2.1 on GA media Announcement ID: openSUSE-SU-2025:15631-1 Rating: moderate Cross-References: * CVE-2025-11065 * CVE-2025-58058 CVSS scores: * CVE-2025-11065 ( SUSE ): 4.5 CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N * CVE-2025-11065 ( SUSE ): 5.7 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2025-58058 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2025-58058 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 2 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the alloy-1.11.2-2.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * alloy 1.11.2-2.1 ## References: * https://www.suse.com/security/cve/CVE-2025-11065.html * https://www.suse.com/security/cve/CVE-2025-58058.html . Resolve two moderate security issues in alloy 1.11.2-2.1 for openSUSE Tumbleweed with this security advisory.. openSUSE security advisory, alloy vulnerabilities, security update, openSUSE Tumbleweed, vulnerability patch. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.