Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 44 uriparser Critical Denial of Service 2026-57515ed8b1

Update to uriparser-1.0.1.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-57515ed8b1 2026-05-05 00:53:44.303273+00:00 -------------------------------------------------------------------------------- Name : uriparser Product : Fedora 44 Version : 1.0.1 Release : 1.fc44 URL : https://uriparser.github.io/ Summary : URI parsing library - RFC 3986 Description : Uriparser is a strictly RFC 3986 compliant URI parsing library written in C. uriparser is cross-platform, fast, supports Unicode and is licensed under the New BSD license. -------------------------------------------------------------------------------- Update Information: Update to uriparser-1.0.1. -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 30 2026 Sandro Mani - 1.0.1-1 - Update to 1.0.1 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2463210 - CVE-2026-42371 uriparser: uriparser: Denial of Service via numeric truncation with oversized URIs [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2463210 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-57515ed8b1' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new . Fedora 44 update for uriparser-1.0.1 addresses a critical denial of service risk due to oversized URIs.. Fedora 44, uriparser, update information, denial of service, software update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 May 05, 2026 Critical Fedora
202

openSUSE 2026 Security Update for Jetty Basic Encoding Flaw Fix

An update that solves one vulnerability can now be installed.. # Security update for jetty-minimal Announcement ID: SUSE-SU-2026:1461-1 Release Date: 2026-04-20T05:47:00Z Rating: low References: * bsc#1259242 Cross-References: * CVE-2025-11143 CVSS scores: * CVE-2025-11143 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-11143 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2025-11143 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N * CVE-2025-11143 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N Affected Products: * Development Tools Module 15-SP7 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Package Hub 15 15-SP7 An update that solves one vulnerability can now be installed. ## Description: This update for jetty-minimal fixes the following issues: * CVE-2025-11143: Fixed different parsing of invalid URIs (bsc#1259242). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2026-1461=1 * Development Tools Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP7-2026-1461=1 * SUSE Package Hub 15 15-SP7 zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-1461=1 ## Package List: * openSUSE Leap 15.6 (noarch) * jetty-jsp-9.4.58-150200.3.37.1 * jetty-javax-websocket-client-impl-9.4.58-150200.3.37.1 * jetty-minimal-javadoc-9.4.58-150200.3.37.1 * jetty-start-9.4.58-150200.3.37.1 * jetty-security-9.4.58-150200.3.37.1 * jetty-webapp-9.4.58-150200.3.37.1 * jetty-websocket-common-9.4.58-150200.3.37.1 *jetty-deploy-9.4.58-150200.3.37.1 * jetty-server-9.4.58-150200.3.37.1 * jetty-plus-9.4.58-150200.3.37.1 * jetty-jmx-9.4.58-150200.3.37.1 * jetty-util-9.4.58-150200.3.37.1 * jetty-cdi-9.4.58-150200.3.37.1 * jetty-http-spi-9.4.58-150200.3.37.1 * jetty-project-9.4.58-150200.3.37.1 * jetty-websocket-servlet-9.4.58-150200.3.37.1 * jetty-annotations-9.4.58-150200.3.37.1 * jetty-io-9.4.58-150200.3.37.1 * jetty-continuation-9.4.58-150200.3.37.1 * jetty-javax-websocket-server-impl-9.4.58-150200.3.37.1 * jetty-jaas-9.4.58-150200.3.37.1 * jetty-jndi-9.4.58-150200.3.37.1 * jetty-websocket-server-9.4.58-150200.3.37.1 * jetty-servlet-9.4.58-150200.3.37.1 * jetty-proxy-9.4.58-150200.3.37.1 * jetty-websocket-client-9.4.58-150200.3.37.1 * jetty-xml-9.4.58-150200.3.37.1 * jetty-ant-9.4.58-150200.3.37.1 * jetty-rewrite-9.4.58-150200.3.37.1 * jetty-servlets-9.4.58-150200.3.37.1 * jetty-util-ajax-9.4.58-150200.3.37.1 * jetty-openid-9.4.58-150200.3.37.1 * jetty-http-9.4.58-150200.3.37.1 * jetty-websocket-api-9.4.58-150200.3.37.1 * jetty-websocket-javadoc-9.4.58-150200.3.37.1 * jetty-fcgi-9.4.58-150200.3.37.1 * jetty-quickstart-9.4.58-150200.3.37.1 * jetty-client-9.4.58-150200.3.37.1 * Development Tools Module 15-SP7 (noarch) * jetty-util-9.4.58-150200.3.37.1 * jetty-util-ajax-9.4.58-150200.3.37.1 * jetty-http-9.4.58-150200.3.37.1 * jetty-servlet-9.4.58-150200.3.37.1 * jetty-security-9.4.58-150200.3.37.1 * jetty-server-9.4.58-150200.3.37.1 * jetty-io-9.4.58-150200.3.37.1 * SUSE Package Hub 15 15-SP7 (noarch) * jetty-continuation-9.4.58-150200.3.37.1 ## References: * https://www.suse.com/security/cve/CVE-2025-11143.html * https://bugzilla.suse.com/show_bug.cgi?id=1259242 . This advisory discusses the solution to a low-severity URI parsing issue in jetty-minimal for openSUSE.. openSUSE security patch, jetty-minimal update, CVE-2025-11143 fix. . Severity: Low.LinuxSecurity.com Team

Calendar 2 Apr 20, 2026 Low OpenSUSE
197

Debian 8: DLA-1682-1 Moderate: Uriparser Out-Of-Bounds Read Issue

Joergen Ibsen reported an issue with uriparser, a URI parsing library compliant with RFC 3986. . Package : uriparser Version : 0.8.0.1-2+deb8u2 CVE ID : CVE-2018-20721 Joergen Ibsen reported an issue with uriparser, a URI parsing library compliant with RFC 3986. An Out-of-bounds read for incomplete URIs with IPv6 addresses with embedded IPv4 address, e.g. "//[::44.1", were possible. For Debian 8 "Jessie", this problem has been fixed in version 0.8.0.1-2+deb8u2. We recommend that you upgrade your uriparser packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . A security vulnerability was identified in the uriparser library by Joergen Ibsen, which has been addressed in Debian 8. Ensure that your packages are updated.. uriparser security update, Debian LTS advisory, out-of-bounds read issue. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Feb 18, 2019 Important Debian LTS
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here