Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 515
Alerts This Week
Warning Icon 1 515

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 7 articles for you...
100

SUSE GStreamer-Plugins-Good Important Heap Buffer Overflow Vuln 2026-2727-1

An update that solves two vulnerabilities can now be installed.. # Security update for gstreamer-plugins-good Announcement ID: SUSE-SU-2026:2727-1 Release Date: 2026-07-02T14:04:42Z Rating: important References: * bsc#1234421 * bsc#1268449 Cross-References: * CVE-2024-47540 * CVE-2026-53705 CVSS scores: * CVE-2024-47540 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-47540 ( NVD ): 8.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X * CVE-2024-47540 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-53705 ( SUSE ): 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H * CVE-2026-53705 ( NVD ): 7.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H * CVE-2026-53705 ( NVD ): 7.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves two vulnerabilities can now be installed. ## Description: This update for gstreamer-plugins-good fixes the following issues * CVE-2024-47540: uninitialized stack memory in Matroska/WebM demuxer (bsc#1234421). * CVE-2026-53705: Heap buffer overflow in WavPack decoder via integer overflow (bsc#1268449). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-2026-2727=1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-2727=1 ##Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS (aarch64 ppc64le s390x x86_64) * gstreamer-plugins-good-debugsource-1.8.3-16.19.1 * gstreamer-plugins-good-1.8.3-16.19.1 * gstreamer-plugins-good-debuginfo-1.8.3-16.19.1 * SUSE Linux Enterprise Server 12 SP5 LTSS (noarch) * gstreamer-plugins-good-lang-1.8.3-16.19.1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * gstreamer-plugins-good-debugsource-1.8.3-16.19.1 * gstreamer-plugins-good-1.8.3-16.19.1 * gstreamer-plugins-good-debuginfo-1.8.3-16.19.1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (noarch) * gstreamer-plugins-good-lang-1.8.3-16.19.1 ## References: * https://www.suse.com/security/cve/CVE-2024-47540.html * https://www.suse.com/security/cve/CVE-2026-53705.html * https://bugzilla.suse.com/show_bug.cgi?id=1234421 * https://bugzilla.suse.com/show_bug.cgi?id=1268449 . A security update for gstreamer-plugins-good addressing important issues in SUSE systems. Ensure your applications are protected.. gstreamer, SUSE update, security issues, buffer overflow, software patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 02, 2026 Important SuSE
89

Fedora 42 stb Image Uninitialized Memory Access Fix 2026-651e3129a9

Fix access/use of uninitialized memory in stb_image. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-651e3129a9 2026-04-18 01:08:05.671404+00:00 -------------------------------------------------------------------------------- Name : stb Product : Fedora 42 Version : 0^20260313git904aa67 Release : 2.fc42 URL : https://github.com/nothings/stb Summary : Single-file public domain libraries for C/C++ Description : Single-file public domain libraries for C/C++. -------------------------------------------------------------------------------- Update Information: Fix access/use of uninitialized memory in stb_image -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 8 2026 Benjamin A. Beasley - 0^20260313git904aa67-2 - Fix access/use of uninitialized memory in stb_image - This was undefined behavior, and could leak security-relevant information from other data structures. See https://github.com/nothings/stb/issues/1929. -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-651e3129a9' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines:https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Addressing uninitialized memory access in stb_image enhances Fedora security. Apply this important update immediately.. Fedora Update, stb_image, Memory Access Fix, Software Security, Linux Package Upgrade. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 18, 2026 Important Fedora
217

Oracle Linux 8 ELSA-2026-4772 glibc Moderate Memory Disclosure

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-4772 http://linux.oracle.com/errata/ELSA-2026-4772.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: compat-libpthread-nonshared-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-2.28-251.0.4.el8_10.31.i686.rpm glibc-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-all-langpacks-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-benchtests-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-common-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-devel-2.28-251.0.4.el8_10.31.i686.rpm glibc-devel-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-doc-2.28-251.0.4.el8_10.31.noarch.rpm glibc-gconv-extra-2.28-251.0.4.el8_10.31.i686.rpm glibc-gconv-extra-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-headers-2.28-251.0.4.el8_10.31.i686.rpm glibc-headers-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-aa-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-af-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-agr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ak-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-am-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-an-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-anp-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ar-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-as-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ast-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ayc-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-az-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-be-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bem-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ber-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bg-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bhb-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bho-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bo-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-br-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-brx-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-bs-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-byn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ca-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ce-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-chr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-cmn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-crh-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-cs-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-csb-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-cv-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-cy-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-da-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-de-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-doi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-dsb-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-dv-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-dz-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-el-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-en-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-eo-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-es-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-et-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-eu-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-fa-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ff-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-fi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-fil-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-fo-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-fr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-fur-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-fy-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ga-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-gd-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-gez-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-gl-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-gu-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-gv-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ha-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hak-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-he-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hif-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hne-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hsb-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ht-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hu-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-hy-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ia-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-id-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ig-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ik-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-is-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-it-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-iu-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ja-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ka-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-kab-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-kk-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-kl-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-km-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-kn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ko-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-kok-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ks-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ku-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-kw-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ky-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-lb-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-lg-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-li-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-lij-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ln-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-lo-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-lt-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-lv-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-lzh-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mag-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mai-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mfe-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mg-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mhr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-miq-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mjw-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mk-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ml-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mni-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ms-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-mt-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-my-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nan-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nb-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nds-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ne-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nhn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-niu-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nl-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-nso-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-oc-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-om-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-or-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-os-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-pa-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-pap-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-pl-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ps-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-pt-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-quz-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-raj-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ro-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ru-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-rw-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sa-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sah-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sat-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sc-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sd-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-se-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sgs-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-shn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-shs-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-si-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sid-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sk-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sl-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sm-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-so-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sq-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ss-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-st-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sv-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-sw-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-szl-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ta-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tcy-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-te-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tg-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-th-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-the-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ti-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tig-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tk-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tl-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tn-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-to-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tpi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tr-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ts-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-tt-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ug-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-uk-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-unm-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ur-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-uz-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-ve-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-vi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-wa-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-wae-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-wal-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-wo-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-xh-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-yi-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-yo-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-yue-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-yuw-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-zh-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-langpack-zu-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-locale-source-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-minimal-langpack-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-nss-devel-2.28-251.0.4.el8_10.31.i686.rpm glibc-nss-devel-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-static-2.28-251.0.4.el8_10.31.i686.rpm glibc-static-2.28-251.0.4.el8_10.31.x86_64.rpm glibc-utils-2.28-251.0.4.el8_10.31.x86_64.rpm libnsl-2.28-251.0.4.el8_10.31.i686.rpm libnsl-2.28-251.0.4.el8_10.31.x86_64.rpm nscd-2.28-251.0.4.el8_10.31.x86_64.rpm nss_db-2.28-251.0.4.el8_10.31.i686.rpm nss_db-2.28-251.0.4.el8_10.31.x86_64.rpm nss_hesiod-2.28-251.0.4.el8_10.31.i686.rpm nss_hesiod-2.28-251.0.4.el8_10.31.x86_64.rpm aarch64: compat-libpthread-nonshared-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-all-langpacks-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-benchtests-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-common-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-devel-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-doc-2.28-251.0.4.el8_10.31.noarch.rpm glibc-gconv-extra-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-headers-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-aa-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-af-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-agr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ak-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-am-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-an-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-anp-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ar-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-as-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ast-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ayc-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-az-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-be-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bem-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ber-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bg-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bhb-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bho-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bo-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-br-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-brx-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-bs-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-byn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ca-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ce-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-chr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-cmn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-crh-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-cs-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-csb-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-cv-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-cy-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-da-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-de-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-doi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-dsb-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-dv-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-dz-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-el-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-en-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-eo-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-es-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-et-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-eu-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-fa-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ff-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-fi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-fil-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-fo-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-fr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-fur-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-fy-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ga-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-gd-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-gez-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-gl-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-gu-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-gv-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ha-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hak-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-he-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hif-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hne-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hsb-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ht-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hu-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-hy-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ia-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-id-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ig-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ik-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-is-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-it-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-iu-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ja-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ka-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-kab-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-kk-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-kl-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-km-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-kn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ko-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-kok-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ks-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ku-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-kw-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ky-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-lb-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-lg-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-li-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-lij-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ln-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-lo-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-lt-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-lv-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-lzh-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mag-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mai-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mfe-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mg-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mhr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-miq-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mjw-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mk-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ml-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mni-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ms-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-mt-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-my-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nan-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nb-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nds-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ne-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nhn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-niu-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nl-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-nso-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-oc-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-om-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-or-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-os-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-pa-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-pap-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-pl-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ps-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-pt-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-quz-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-raj-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ro-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ru-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-rw-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sa-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sah-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sat-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sc-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sd-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-se-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sgs-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-shn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-shs-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-si-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sid-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sk-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sl-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sm-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-so-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sq-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ss-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-st-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sv-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-sw-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-szl-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ta-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tcy-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-te-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tg-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-th-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-the-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ti-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tig-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tk-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tl-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tn-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-to-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tpi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tr-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ts-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-tt-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ug-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-uk-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-unm-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ur-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-uz-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-ve-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-vi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-wa-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-wae-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-wal-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-wo-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-xh-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-yi-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-yo-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-yue-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-yuw-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-zh-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-langpack-zu-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-locale-source-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-minimal-langpack-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-nss-devel-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-static-2.28-251.0.4.el8_10.31.aarch64.rpm glibc-utils-2.28-251.0.4.el8_10.31.aarch64.rpm libnsl-2.28-251.0.4.el8_10.31.aarch64.rpm nscd-2.28-251.0.4.el8_10.31.aarch64.rpm nss_db-2.28-251.0.4.el8_10.31.aarch64.rpm nss_hesiod-2.28-251.0.4.el8_10.31.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/glibc-2.28-251.0.4.el8_10.31.src.rpm Related CVEs: CVE-2025-15281 CVE-2026-0915 Description of changes: [2.28-251.0.4.31] - Forward port of Oracle patches Reviewed-by: Jose E. Marchesi Oracle history: February-24-2026 Cupertino Miranda - 2.28-251.0.4.27 - Fixed orabug 38834066 stpcpy MTE support Reviewed-by: Jose E. Marchesi December-8-2025 Cupertino Miranda - 2.28-251.0.3.27 - Forward port of Oracle patches Reviewed-by: David Faust August-5-2025 Cupertino Miranda - 2.28-251.0.3.25 - Forward port of Oracle patches Reviewed-by: Jose E. Marchesi June-9-2025 Cupertino Miranda - 2.28-251.0.3.22 - Forward port of Oracle patches Reviewed-by: David Faust April-14-2025 Cupertino Miranda - 2.28-251.0.3.16 - Forward port of Oracle patches Reviewed-by: Elena Zannoni March-26-2025 Cupertino Miranda - 2.28-251.0.3.14 - OraBug: 36625686 Add MTE support on string functions Reviewed-by: Jose E. Marchesi March-17-2025 Cupertino Miranda - 2.28-251.0.2.14 - Forward port of Oracle patches Reviewed-by: David Faust February-19-2025 Cupertino Miranda - 2.28-251.0.2.13 - Forward port of Oracle patches Reviewed-by: Jose E. Marchesi January-28-2025 Cupertino Miranda - 2.28-251.0.2.11 - Forward port of Oracle patches Reviewed-by: Jose E. Marchesi September-24-2024 Cupertino Miranda - 2.28-251.0.2.5 - Forward port of Oracle patches over 2.28-251.5 Reviewed-by: Jose E. Marchesi August-26-2024 Jose E. Marchesi - 2.28-251.0.2.4 - Forward port of Oracle patches over 2.28-251.4 Reviewed-by: David Faust May-24-2024 CupertinoMiranda - 2.28-251.0.2.2 - Forward port of Oracle patches over 2.28-251.2 Reviewed-by: Jose E. Marchesi May-23-2024 Cupertino Miranda - 2.28-251.0.2.1 - Forward port of Oracle patches over 2.28-251.1 Reviewed-by: Jose E. Marchesi May-22-2024 Cupertino Miranda - 2.28-251.0.2 - Forward port of Oracle patches for ol8-u10 Reviewed-by: Jose E. Marchesi March-28-2024 Cupertino Miranda - 2.28-251.0.1 - Forward port of Oracle patches for ol8-u10-beta Reviewed-by: Jose E. Marchesi March-5-2024 Cupertino Miranda - 2.28-236.0.1.12 - Forward port of Oracle patches. Reviewed-by: Jose E. Marchesi November-14-2023 Cupertino Miranda - 2.28-236.0.1.7 - Forward port of Oracle patches. Reviewed-by: Jose E. Marchesi October-4-2023 Cupertino Miranda - 2.28-236.0.1.6 - Forward port of Oracle patches. Reviewed-by: Jose E. Marchesi April-21-2023 Cupertino Miranda - 2.28-225.0.3 - OraBug 35317410 Glibc tunable to disable huge pages on pthread_create stacks - Created tunable glibc.pthread.stack_hugetlb to control when hugepages can be used for stack allocation. - In case THP are enabled and glibc.pthread.stack_hugetlb is set to 0, glibc will madvise the kernel not to use allow hugepages for stack allocations. Reviewed-by: Jose E. Marchesi April-11-2023 Cupertino Miranda - 2.28-225.0.2 - OraBug: 35268809 Fixed initialization of VDSO for tcache_key_initialize Reviewed-by: Jose E. Marchesi March-28-2023 Cupertino Miranda - 2.28-225.0.1 - Merge of Oracle patches for ol8u8 beta Reviewed-by: Jose E. Marchesi September-28-2022 Patrick McGehearty - 2.28-211.0.1 - Merge of Oracle patches for ol8u7 beta Reviewed-by: Jose E. Marchesi August-8-2022 Patrick McGehearty - 2.28-189.5.0.2 - Enable VDSO on x86_64, aarch64, i386, arm, and mips statically linked programs. - These changes enable reading the realtime clock without a kernel syscall. OraBug: 30478315 Reviewed-by: Jose E. Marchesi May-2-2022 Patrick McGehearty - 2.28-199.0.1 - Merge of patches from c8s 199 with ol8u6 beta Reviewed-by: Jose E. Marchesi - Update siginfo constants from linux kernel (OraBug: 33734528) - Remove limit on MALLOC_MMAP_THRESHOLD tunable (Orabug: 29630826) - Provide glibc.pthread.mutex_spin_count tunable for pthread adaptive - spin mutex (Orabug: 27982358) Reviewed-by: Qing Zhao - add Ampere emag to tunable cpu list (Patrick McGehearty) - add optimized memset for emag - add an ASIMD variant of strlen for falkor Orabug: 2700101. - Modify glibc-ora28849085.patch so it works with RHCK kernels. (Orabug: 28849085) - Make _IO_funlockfile match __funlockfile and _IO_flockfile match __flockfile Both should test if (stream-> _flags & _IO_USER_LOCK) == 0) _IO_lock_lock (*stream-> _lock); OraBug: 28481550. Reviewed-by: Qing Zhao [2.28-251.31] - CVE-2025-15281: wordexp WRDE_REUSE uninitialized memory read (RHEL-142787) [2.28-251.30] - Remove default /var/tmp for LD_PROFILE_OUTPUT (RHEL-142194) [2.28-251.29] - rpminspect.yaml: note that glibc-minimal-langpack is empty (RHEL-123889) [2.28-251.28] - CVE-2026-0915: Stack memory disclosure in getnetbyaddr (RHEL-141849) [2.28-251.27] - Fix a segmentation fault in multi-threaded multi-namespace programs using ctype.h macros (RHEL-72011) [2.28-251.26] - nss: Group merge does not react to ERANGE during merge (RHEL-114260) [2.28-251.25] - CVE-2025-8058: Double free in regcomp (RHEL-105326) [2.28-251.24] - Keep reloading /etc/resolv.conf after timeouts with getaddrinfo and AF_UNSPEC. - Avoid timeouts with getaddrinfo, AF_UNSPEC, and certain DNS error responses. (RHEL-18039) [2.28-251.23] - Reduce spurious rebuilds while running tests (RHEL-93937) _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 8 glibc moderate security advisory details updates and vulnerabilities related to uninitializedmemory access.. Oracle Linux glibc security advisory memory disclosure uninitialized errors. . LinuxSecurity.com Team

Calendar%202 Mar 24, 2026 Oracle
89

Fedora 41 Samba Critical Update for CVE-2025-9640 and CVE-2025-10230

Security fix for CVE-2025-9640 and CVE-2025-10230. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-c0830ff9f4 2025-10-23 01:56:57.483681+00:00 -------------------------------------------------------------------------------- Name : samba Product : Fedora 41 Version : 4.21.9 Release : 1.fc41 URL : Summary : Server and Client software to interoperate with Windows machines Description : Samba is the standard Windows interoperability suite of programs for Linux and Unix. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2025-9640 and CVE-2025-10230 -------------------------------------------------------------------------------- ChangeLog: * Fri Oct 17 2025 Gnther Deschner - 2:4.21.9-1 - Fix version * Fri Oct 17 2025 Gnther Deschner - 2:4.21.8-2 - Update to Samba 4.21.9 - resolves: rhbz#2391698 - Security fix for CVE-2025-9640 - resolves: rhbz#2394377 - Security fix for CVE-2025-10230 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2391698 - CVE-2025-9640 samba: vfs_streams_xattr uninitialized memory write possible https://bugzilla.redhat.com/show_bug.cgi?id=2391698 [ 2 ] Bug #2394377 - CVE-2025-10230 samba: Command Injection in WINS Server Hook Script https://bugzilla.redhat.com/show_bug.cgi?id=2394377 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-c0830ff9f4' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- . Fixes for critical Samba vulnerabilities CVE-2025-9640 and CVE-2025-10230 available in Fedora 41 updates.. Samba security fix, Fedora samba update, CVE-2025-9640, CVE-2025-10230. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 23, 2025 Critical Fedora
99

Slackware Security Advisory: Samba Command Injection and Memory Disclosure

New samba packages are available for Slackware 15.0 and -current to fix security issues. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] samba (SSA:2025-288-01) New samba packages are available for Slackware 15.0 and -current to fix security issues. Here are the details from the Slackware 15.0 ChangeLog: +--------------------------+ extra/samba-4.22.5-i586-1_slack15.0.txz: Upgraded. This is a security release in order to address the following defects: Uninitialized memory disclosure via vfs_streams_xattr. Command injection via WINS server hook script. For more information, see: https://www.cve.org/CVERecord?id=CVE-2025-9640 https://www.cve.org/CVERecord?id=CVE-2025-10230 https://www.samba.org/samba/security/CVE-2025-9640.html https://linuxsecurity.com (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (http://osuosl.org) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 15.0: ftp://ftp.slackware.com/pub/slackware/slackware-15.0/extra/samba-4.22.5-i586-1_slack15.0.txz Updated package for Slackware x86_64 15.0: ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/extra/samba-4.22.5-x86_64-1_slack15.0.txz Updated package for Slackware -current: ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/n/samba-4.23.2-i686-1.txz Updated package for Slackware x86_64 -current: ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/n/samba-4.23.2-x86_64-1.txz MD5 signatures: +-------------+ Slackware 15.0 package: 6548134c2fdfeffa2b97ccee5b179c8b samba-4.22.5-i586-1_slack15.0.txz Slackware x86_64 15.0 package: 06c06ca36c65b5978794c0930adfe35e samba-4.22.5-x86_64-1_slack15.0.txz Slackware -currentpackage: 8185110fb6a33c05ad2276d39affbcef n/samba-4.23.2-i686-1.txz Slackware x86_64 -current package: a0a9908a54b5262ec90cdd62cdcb0670 n/samba-4.23.2-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg samba-4.22.5-i586-1_slack15.0.txz Then, if Samba is running restart it: # /etc/rc.d/rc.samba restart +-----+ . Samba packages for Slackware 15.0 address critical issues, including command injection and memory disclosure. Immediate upgrade is advised.. Slackware upgrade Samba security patch command injection memory disclosure. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 15, 2025 Critical Slackware
89

Fedora 41 FEDORA-2025-be7e8114df important: uninitialized memory disclosure

Backport fix for CVE-2025-6199.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-be7e8114df 2025-07-04 01:07:02.316569+00:00 -------------------------------------------------------------------------------- Name : mingw-gdk-pixbuf Product : Fedora 41 Version : 2.42.12 Release : 4.fc41 URL : http://www.gtk.org Summary : MinGW Windows GDK Pixbuf library Description : MinGW Windows GDK Pixbuf library. -------------------------------------------------------------------------------- Update Information: Backport fix for CVE-2025-6199. -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 24 2025 Sandro Mani - 2.42.12-4 - Backport fix for CVE-2025-6199 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2373156 - CVE-2025-6199 mingw-gdk-pixbuf: Uninitialized Memory Disclosure in GdkPixbuf GIF LZW Decoder [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2373156 [ 2 ] Bug #2373166 - CVE-2025-6199 mingw-gdk-pixbuf: Uninitialized Memory Disclosure in GdkPixbuf GIF LZW Decoder [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2373166 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-be7e8114df' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . The latest update for the MinGW GDK Pixbuf library in Fedora 41 addresses a critical vulnerability concerning the potential exposure of sensitive memory data.. mingw gdk-pixbuf Fedora security update CVE-2025-6199. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jul 04, 2025 Important Fedora
219

Rocky Linux SIG Cloud 9 RXSA-2024:1248 Important Kernel Security Fix

Important: kernel security update. {"type": "TYPE_SECURITY", "shortCode": "RX", "name": "RXSA-2024:1248", "synopsis": "Important: kernel security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for kernel.\nThis update affects Rocky Linux SIG Cloud 9.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "The kernel packages contain the Linux kernel, the core of any Linux operating system.\n\nSecurity Fix(es):\n\n* kernel: inactive elements in nft_pipapo_walk (CVE-2023-6817)\n\n* kernel: netfilter: use-after-free in nft_trans_gc_catchall_sync leads to privilege escalation (CVE-2024-0193)\n\n* kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination (CVE-2024-0646)\n\n* kernel: Use-after-free in nft_verdict_dump due to a race between set GC and transaction (CVE-2023-4244)\n\n* kernel: A heap out-of-bounds write when function perf_read_group is called and sibling_list is smaller than its child's sibling_list (CVE-2023-5717)\n\n* kernel: NULL pointer dereference in nvmet_tcp_build_iovec (CVE-2023-6356)\n\n* kernel: NULL pointer dereference in nvmet_tcp_execute_request (CVE-2023-6535)\n\n* kernel: NULL pointer dereference in __nvmet_req_complete (CVE-2023-6536)\n\n* kernel: Out-Of-Bounds Read vulnerability in smbCalcSize (CVE-2023-6606)\n\n* kernel: OOB Access in smb2_dump_detail (CVE-2023-6610)\n\n* kernel: use-after-free in amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c (CVE-2023-51042)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux SIG Cloud 9"], "fixes": [{"ticket": "2235306", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2235306", "description": ""}, {"ticket":"2246945", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2246945", "description": ""}, {"ticket": "2253611", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2253611", "description": ""}, {"ticket": "2253614", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2253614", "description": ""}, {"ticket": "2253908", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2253908", "description": ""}, {"ticket": "2254052", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2254052", "description": ""}, {"ticket": "2254053", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2254053", "description": ""}, {"ticket": "2254054", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2254054", "description": ""}, {"ticket": "2255139", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2255139", "description": ""}, {"ticket": "2255653", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2255653", "description": ""}, {"ticket": "2259866", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2259866", "description": ""}], "cves": [{"name": "CVE-2023-4244", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-4244", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-51042", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-51042", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-5717", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-5717", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-6356", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-6356","cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-6535", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-6535", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-6536", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-6536", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-6606", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-6606", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-6610", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-6610", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2023-6817", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2023-6817", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-0193", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-0193", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}, {"name": "CVE-2024-0646", "sourceBy": "MITRE", "sourceLink": "https://www.cve.org/CVERecord?id=CVE-2024-0646", "cvss3ScoringVector": "UNKNOWN", "cvss3BaseScore": "UNKNOWN", "cwe": "UNKNOWN"}], "references": [], "publishedAt": "2024-03-27T04:37:19.422545Z", "rpms": {"Rocky Linux SIG Cloud 9": {"nvras": ["bpftool-0:7.2.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "bpftool-0:7.2.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "bpftool-debuginfo-0:7.2.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "bpftool-debuginfo-0:7.2.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-0:5.14.0-362.24.1.el9_3.cloud.0.6.src.rpm", "kernel-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-abi-stablelists-0:5.14.0-362.24.1.el9_3.cloud.0.6.noarch.rpm","kernel-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-cross-headers-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-cross-headers-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-devel-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-devel-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-devel-matched-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-devel-matched-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-modules-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-modules-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-modules-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-modules-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-debug-modules-extra-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-debug-modules-extra-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-devel-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-devel-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-devel-matched-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-devel-matched-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-doc-0:5.14.0-362.24.1.el9_3.cloud.0.6.noarch.rpm", "kernel-headers-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-headers-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-modules-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm","kernel-modules-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-modules-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-modules-core-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-modules-extra-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-modules-extra-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-tools-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-tools-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-tools-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-tools-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-tools-libs-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-tools-libs-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "kernel-tools-libs-devel-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "kernel-tools-libs-devel-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "perf-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "perf-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "perf-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "perf-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "python3-perf-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "python3-perf-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "python3-perf-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "python3-perf-debuginfo-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm", "rtla-0:5.14.0-362.24.1.el9_3.cloud.0.6.aarch64.rpm", "rtla-0:5.14.0-362.24.1.el9_3.cloud.0.6.x86_64.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Essential kernel enhancement is crucial for Rocky Linux SIG Cloud 9. This update safeguards systems against various known vulnerabilities.. Rocky Linux Kernel Update,Kernal Security Patch,Cloud 9 Advisory,Important CVEs,Kernel Memory Issues. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Mar 27, 2024 Important Rocky Linux
202

openSUSE 15.4: SUSE-SU-2023:0463-1 Moderate: Tar Conditional Jump

An update that solves one vulnerability and has one errata is now available.. SUSE Security Update: Security update for tar ______________________________________________________________________________ Announcement ID: SUSE-SU-2023:0463-1 Rating: moderate References: #1202436 #1207753 Cross-References: CVE-2022-48303 CVSS scores: CVE-2022-48303 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVE-2022-48303 (SUSE): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N Affected Products: SUSE Linux Enterprise Desktop 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Micro 5.1 SUSE Linux Enterprise Micro 5.2 SUSE Linux Enterprise Micro 5.3 SUSE Linux Enterprise Module for Basesystem 15-SP4 SUSE Linux Enterprise Realtime Extension 15-SP3 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap 15.4 openSUSE Leap Micro 5.2 openSUSE Leap Micro 5.3 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for tar fixes the following issues: - CVE-2022-48303: Fixed a one-byte out-of-bounds read that resulted in use of uninitialized memory for a conditional jump (bsc#1207753). Bug fixes: - Fix hang when unpacking test tarball (bsc#1202436). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the commandlisted for your product: - openSUSE Leap Micro 5.3: zypper in -t patch openSUSE-Leap-Micro-5.3-2023-463=1 - openSUSE Leap Micro 5.2: zypper in -t patch openSUSE-Leap-Micro-5.2-2023-463=1 - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2023-463=1 - SUSE Linux Enterprise Realtime Extension 15-SP3: zypper in -t patch SUSE-SLE-Product-RT-15-SP3-2023-463=1 - SUSE Linux Enterprise Module for Basesystem 15-SP4: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2023-463=1 - SUSE Linux Enterprise Micro 5.3: zypper in -t patch SUSE-SLE-Micro-5.3-2023-463=1 - SUSE Linux Enterprise Micro 5.2: zypper in -t patch SUSE-SUSE-MicroOS-5.2-2023-463=1 - SUSE Linux Enterprise Micro 5.1: zypper in -t patch SUSE-SUSE-MicroOS-5.1-2023-463=1 Package List: - openSUSE Leap Micro 5.3 (aarch64 x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 - openSUSE Leap Micro 5.2 (aarch64 x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 - openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 tar-rmt-1.34-150000.3.31.1 tar-rmt-debuginfo-1.34-150000.3.31.1 tar-tests-1.34-150000.3.31.1 tar-tests-debuginfo-1.34-150000.3.31.1 - openSUSE Leap 15.4 (noarch): tar-backup-scripts-1.34-150000.3.31.1 tar-doc-1.34-150000.3.31.1 tar-lang-1.34-150000.3.31.1 - SUSE Linux Enterprise Realtime Extension 15-SP3 (noarch): tar-lang-1.34-150000.3.31.1 - SUSE Linux Enterprise Realtime Extension 15-SP3 (x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 tar-rmt-1.34-150000.3.31.1 tar-rmt-debuginfo-1.34-150000.3.31.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (aarch64ppc64le s390x x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 tar-rmt-1.34-150000.3.31.1 tar-rmt-debuginfo-1.34-150000.3.31.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (noarch): tar-lang-1.34-150000.3.31.1 - SUSE Linux Enterprise Micro 5.3 (aarch64 s390x x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 - SUSE Linux Enterprise Micro 5.2 (aarch64 s390x x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 - SUSE Linux Enterprise Micro 5.1 (aarch64 s390x x86_64): tar-1.34-150000.3.31.1 tar-debuginfo-1.34-150000.3.31.1 tar-debugsource-1.34-150000.3.31.1 References: https://www.suse.com/security/cve/CVE-2022-48303.html https://bugzilla.suse.com/1202436 https://bugzilla.suse.com/1207753 . Canonical releases patch for gzip tackling a significant vulnerability linked to CVE-2022-48304. Prompt measures advised.. openSUSE Update, Tar Security Fix, SUSE Announcement. . LinuxSecurity.com Team

Calendar%202 Feb 20, 2023 OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200