Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 428
Alerts This Week
Warning Icon 1 428

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -5 articles for you...
100

SUSE Tracker Moderate Heap Buffer Overflow Vuln 2026-2713-1

An update that solves two vulnerabilities can now be installed.. # Security update for tracker Announcement ID: SUSE-SU-2026:2713-1 Release Date: 2026-06-30T12:01:39Z Rating: moderate References: * bsc#1257607 * bsc#1257608 Cross-References: * CVE-2026-1765 * CVE-2026-1766 CVSS scores: * CVE-2026-1765 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:H * CVE-2026-1765 ( NVD ): 5.6 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:H * CVE-2026-1766 ( SUSE ): 5.6 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:H * CVE-2026-1766 ( NVD ): 5.6 CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:H * CVE-2026-1766 ( NVD ): 6.1 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H Affected Products: * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves two vulnerabilities can now be installed. ## Description: This update for tracker fixes the following issues: * CVE-2026-1765: heap buffer overflow vulnerability in `extract_txxx_tags` (bsc#1257607). * CVE-2026-1766: heap buffer overflow vulnerability in `get_id3v23_tags` (bsc#1257608). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-2713=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * libtracker-common-1_0-1.8.3-4.15.1 * tracker-devel-1.8.3-4.15.1 * libtracker-common-1_0-debuginfo-1.8.3-4.15.1 * libtracker-sparql-1_0-0-debuginfo-1.8.3-4.15.1 * tracker-debugsource-1.8.3-4.15.1 * tracker-debuginfo-1.8.3-4.15.1 * libtracker-sparql-1_0-0-1.8.3-4.15.1 ## References: * https://www.suse.com/security/cve/CVE-2026-1765.html *https://www.suse.com/security/cve/CVE-2026-1766.html * https://bugzilla.suse.com/show_bug.cgi?id=1257607 * https://bugzilla.suse.com/show_bug.cgi?id=1257608 . SUSE Linux Enterprise Server updates address moderate heap overflow issues in tracker with patch instructions. Learn more!. SUSE Linux Service, tracker, security update, heap overflow. . Severity: moderate. LinuxSecurity.com Team

Calendar%202 Jun 30, 2026 moderate SuSE
197

Debian LTS: ublock-origin Security Update Fixes Rendering Issue DLA-4356-1

Ublock-origin is a lightweight and efficient ads, malware and trackers blocker. The new upstream version improves the user experience and ad / malware filter capabilities of this popular browser addon. It also fixes a bug in the Filter lists page which prevented it from rendering normal. . ------------------------------------------------------------------------- Debian LTS Advisory DLA-4356-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Markus Koschany October 31, 2025 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : ublock-origin Version : 1.67.0+dfsg-1~deb11u1 Debian Bug : 1108878 Ublock-origin is a lightweight and efficient ads, malware and trackers blocker. The new upstream version improves the user experience and ad / malware filter capabilities of this popular browser addon. It also fixes a bug in the Filter lists page which prevented it from rendering normal. For Debian 11 bullseye, this problem has been fixed in version 1.67.0+dfsg-1~deb11u1. We recommend that you upgrade your ublock-origin packages. For the detailed security status of ublock-origin please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/ublock-origin Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Ublock-origin security update improves filtering capabilities and fixes rendering bugs in Debian LTS. Upgrade recommended.. Ublock-origin Security Update, Debian LTS, Malicious Content Filter. . Severity: Informational. LinuxSecurity.com Team

Calendar%202 Oct 31, 2025 Informational Debian LTS
89

Fedora 34: 2021-303f6623fa Moderate: gnome-online-miners Path Issue

GNOME 40.rc. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-303f6623fa 2021-03-20 00:16:30.596999 --------------------------------------------------------------------------------Name : gnome-online-miners Product : Fedora 34 Version : 3.34.0 Release : 8.fc34 URL : https://wiki.gnome.org/Projects/GnomeOnlineMiners Summary : Crawls through your online content Description : GNOME Online Miners provides a set of crawlers that go through your online content and index them locally in Tracker. It has miners for Facebook, Flickr, Google, OneDrive and Nextcloud. --------------------------------------------------------------------------------Update Information: GNOME 40.rc --------------------------------------------------------------------------------ChangeLog: * Tue Mar 16 2021 Debarshi Ray - 3.34.0-8 - Disable unused gnome-documents-specific miners * Mon Mar 15 2021 Kalev Lember - 3.34.0-7 - Backport patches for Tracker 3 support --------------------------------------------------------------------------------References: [ 1 ] Bug #1925640 - CVE-2020-36241 gnome-autoar: directory traversal via a malicious archive that contains a file whose parent is a symbolic link which points outside of the destination directory https://bugzilla.redhat.com/show_bug.cgi?id=1925640 [ 2 ] Bug #1940026 - CVE-2021-28650 gnome-autoar: directory traversal during extraction because it lacks a check of whether a file's parent is a symlink in certain complex situations https://bugzilla.redhat.com/show_bug.cgi?id=1940026 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-303f6623fa' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signedwith the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure . Fedora Upgrade Alert regarding gnome-online-miners focuses on the enhancement of online resource indexing, offering advancements for GNOME 40.rc.. Fedora Update, gnome-online-miners, GNOME 40, tracker indexing, online crawlers. . LinuxSecurity.com Team

Calendar%202 Mar 19, 2021 Fedora
172

Ubuntu 16.04 LTS USN-3101-1 Critical: Vulnerability in Tracker Service

Tracker could be made to crash if it opened a specially crafted file.. =========================================================================Ubuntu Security Notice USN-3101-1 October 12, 2016 tracker vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS Summary: Tracker could be made to crash if it opened a specially crafted file. Software Description: - tracker: metadata database, indexer and search tool Details: It was discovered that Tracker incorrectly handled certain malformed GIF images. If a user or automated system were tricked into downloading a specially-crafted GIF image, Tracker could crash, resulting in a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS: tracker-extract 1.6.2-0ubuntu1.1 After a standard system update you need to restart your session to make all the necessary changes. References: https://bugs.launchpad.net/ubuntu-gnome/+bug/1178402 Package Information: https://launchpad.net/ubuntu/+source/tracker/1.6.2-0ubuntu1.1 . Upgrade your Ubuntu 16.04 LTS to resolve the Tracker failure triggered by corrupted GIF files alongside essential software patches.. Tracker Vulnerability, Ubuntu Update, Denial of Service, Software Fix, Image Handling. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 12, 2016 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200