Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 506
Alerts This Week
Warning Icon 1 506

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
197

Debian 11: DLA-4334-1 pgpool2 Important Auth Bypass CVE-2025-46801

An authentication bypass was found in n pgpool-II, the connection pool server and replication proxy for PostgreSQL. For Debian 11 bullseye, this problem has been fixed in version . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4334-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Bastien Roucariès October 16, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : pgpool2 Version : 4.1.4-3+deb11u2 CVE ID : CVE-2025-46801 Debian Bug : 1106119 An authentication bypass was found in n pgpool-II, the connection pool server and replication proxy for PostgreSQL. For Debian 11 bullseye, this problem has been fixed in version 4.1.4-3+deb11u2. We recommend that you upgrade your pgpool2 packages. For the detailed security status of pgpool2 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/pgpool2 Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Authentication bypass fixed in pgpool2 for Debian 11 Bullseye. Upgrade recommended to ensure system security and integrity.. Debian Security Update,Linux Update,pgpool2 Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 16, 2025 Important Debian LTS
87

Debian: pgpool-II Major Authentication Flaw & Data Leak DSA-5980-2

Two security issues were found in pgpool-II, the connection pool server and replication proxy for PostgreSQL, which could result in authentication bypass and exposure of sensitive information. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-5974-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Aron Xu August 13, 2025 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : pgpool2 CVE ID : CVE-2024-45624 CVE-2025-46801 Debian Bug : 1081659 1106119 Two security issues were found in pgpool-II, the connection pool server and replication proxy for PostgreSQL, which could result in authentication bypass and exposure of sensitive information. For the oldstable distribution (bookworm), these problems have been fixed in version 4.3.5-1+deb12u1. We recommend that you upgrade your pgpool2 packages. For the detailed security status of pgpool2 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/pgpool2 Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . Recent vulnerabilities identified in pgpool2 may lead to unauthorized access and potential data leakage. Immediate upgrade is advised.. pgpool2 Debian security authentication bypass sensitive data. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Aug 13, 2025 Critical Debian
197

Debian 11: DLA-3993-1 moderate: pgpool2 authentication issues

Two vulnerabilities were discovered in pgpool2, a connection pool server and replication proxy for PostgreSQL. CVE-2023-22332 . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3993-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Abhijith PA December 12, 2024 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : pgpool2 Version : 4.1.4-3+deb11u1 CVE ID : CVE-2023-22332 CVE-2024-45624 Two vulnerabilities were discovered in pgpool2, a connection pool server and replication proxy for PostgreSQL. CVE-2023-22332 A specific database user's authentication information may be obtained by another database user. As a result, the information stored in the database may be altered and/or database may be suspended by a remote attacker who successfully logged in the product with the obtained credentials. CVE-2024-45624 When the query cache feature is enabled, it was possible that a database user can read rows from tables that should not be visible for the user through query cache. For Debian 11 bullseye, these problems have been fixed in version 4.1.4-3+deb11u1. We recommend that you upgrade your pgpool2 packages. For the detailed security status of pgpool2 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/pgpool2 Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Discover the recent security flaws in pgpool2 and essential actions for Debian LTS users to maintain their safety and system integrity.. pgpool2 security advisory, Debian updates, database authentication, connection proxy security. . LinuxSecurity.com Team

Calendar%202 Dec 13, 2024 Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200