Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
89

Fedora 43: openapi-python-client 0.26.2 Security Fix FEDORA-2025-4154ea83d0

uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-4154ea83d0 2025-11-05 02:09:57.817569+00:00 -------------------------------------------------------------------------------- Name : openapi-python-client Product : Fedora 43 Version : 0.26.2 Release : 4.fc43 URL : https://github.com/openapi-generators/openapi-python-client Summary : Generate modern Python clients from OpenAPI Description : The openapi-python-client is a powerful tool designed to generate modern Python clients from OpenAPI 3.0+ documents supporting both synchronous and asynchronous HTTP requests. It automates the creation of Python classes and methods that correspond to the endpoints and schema defined in your OpenAPI specification, making it easier to interact with your API in a type-safe manner. -------------------------------------------------------------------------------- Update Information: uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3 Blog post maturin 1.9.6 https://github.com/PyO3/maturin/blob/v1.9.6/Changelog.md python-typing-inspection 0.4.2 (2025-10-01) Add typing_objects.is_noextraitems() python-jiter 0.11.0 https://github.com/pydantic/jiter/releases/tag/v0.11.0 python-pydantic-extra-types 2.10.6 https://github.com/pydantic/pydantic-extra-types/releases/tag/v2.10.6 Typer 0.20.0 Features \u2728 Enable command suggestions on typo by default. Upgrades \u2b06\ufe0f Add (official) support for Python 3.14. Internal Assorted small enhancements. FastAPI 0.120.1 Upgrades \u2b06\ufe0f Bump Starlette to

Calendar 2 Nov 05, 2025 Critical Fedora
197

Debian 10 Buster DLA-3822-1 Critical: Python-Pymysql SQL Injection

It was discovered that there was a potential SQL injection attack in python-pymysql, a MySQL client library for Python. This was exploitable when python-pymysql was used with untrusted JSON input as keys were not escaped by the escape_dict routine. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3822-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Chris Lamb May 27, 2024 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : python-pymysql Version : 0.9.3-1+deb10u1 CVE ID : CVE-2024-36039 Debian Bug : 1071628 It was discovered that there was a potential SQL injection attack in python-pymysql, a MySQL client library for Python. This was exploitable when python-pymysql was used with untrusted JSON input as keys were not escaped by the escape_dict routine. For Debian 10 buster, this problem has been fixed in version 0.9.3-1+deb10u1. We recommend that you upgrade your python-pymysql packages. For the detailed security status of python-pymysql please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/python-pymysql Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-3845-1 highlights a critical buffer overflow vulnerability in python-requests. Immediate upgrade advised!. Debian LTS, python-pymysql, security advisory. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 27, 2024 Critical Debian LTS
197

Debian 10 DLA-3470-1 Critical OWSLib Arbitrary File Read Notice

In OWSLib, a Python client library for Open Geospatial web services, the XML parser did not disable entity resolution which could lead to arbitrary file reads from an attacker-controlled XML payload. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3470-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Adrian Bunk June 25, 2023 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : owslib Version : 0.17.1-1+deb10u1 CVE ID : CVE-2023-27476 Debian Bug : 1034182 In OWSLib, a Python client library for Open Geospatial web services, the XML parser did not disable entity resolution which could lead to arbitrary file reads from an attacker-controlled XML payload. For Debian 10 buster, this problem has been fixed in version 0.17.1-1+deb10u1. We recommend that you upgrade your owslib packages. For the detailed security status of owslib please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/owslib Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . OWSLib Security Report DLA-3471-2 Tackles Unrestricted File Access Through Vulnerable JSON Decoder.. OWSLib, Python, Arbitrary File Read, XML Parser, Debian Security. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 25, 2023 Critical Debian LTS
89

Fedora 28: 2018-6e759af8fb Critical: python-prometheus_client Security Fix

Update to latest Synapse release which fixes CVE-2018-12291 (0.31.1) and a second security bug in 0.31.2: https://github.com/matrix-org/synapse/releases/tag/v0.31.2 This update includes a new package which is a dependency introduced by synapse-0.31. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-6e759af8fb 2018-06-23 20:45:47.528690 --------------------------------------------------------------------------------Name : python-prometheus_client Product : Fedora 28 Version : 0.2.0 Release : 1.fc28 URL : https://github.com/prometheus/client_python Summary : The Python client for Prometheus Description : The Python client for Prometheus. --------------------------------------------------------------------------------Update Information: Update to latest Synapse release which fixes CVE-2018-12291 (0.31.1) and a second security bug in 0.31.2: https://github.com/matrix-org/synapse/releases/tag/v0.31.2 This update includes a new package which is a dependency introduced by synapse-0.31 --------------------------------------------------------------------------------References: [ 1 ] Bug #1590102 - CVE-2018-12291 matrix-synapse: Missing event filtering in handlers/federation.py [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1590102 [ 2 ] Bug #1578181 - matrix-synapse-0.31.1 is available https://bugzilla.redhat.com/show_bug.cgi?id=1578181 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-6e759af8fb' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/FGUC5HKEGFLAO4ZOWKN3BLNPGLNRW76T/ . Ubuntu Security Alert: python-prometheus_client addresses significant vulnerabilities and bugs. Upgrade immediately to enhance system safety.. Fedora Security Update, Python Client Update, Prometheus Security Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 23, 2018 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here