Alerts This Week
Warning Icon 1 872
Alerts This Week
Warning Icon 1 872

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 9,991 articles for you...
202

openSUSE libyang Important Buffer Overflow Advisory 2026-2381-1

An update that solves one vulnerability can now be installed.. # Security update for libyang Announcement ID: SUSE-SU-2026:2381-1 Release Date: 2026-06-12T06:50:59Z Rating: important References: * bsc#1265330 Cross-References: * CVE-2026-44673 CVSS scores: * CVE-2026-44673 ( SUSE ): 8.8 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N * CVE-2026-44673 ( SUSE ): 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H * CVE-2026-44673 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * openSUSE Leap 15.3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves one vulnerability can now be installed. ## Description: This update for libyang fixes the following issue * CVE-2026-44673: integer overflow in `lyb_read_string()` of `src/parser_lyb.c` leads to heap buffer overflow when parsing a maliciously crafted LYB binary blob (bsc#1265330). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.3 zypper in -t patch SUSE-2026-2381=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-2381=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-2381=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-2381=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-2381=1 ##Package List: * openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64 i586) * libyang-devel-1.0.184-150300.3.9.1 * yang-tools-debuginfo-1.0.184-150300.3.9.1 * yang-tools-1.0.184-150300.3.9.1 * libyang-cpp-devel-1.0.184-150300.3.9.1 * libyang-extentions-debuginfo-1.0.184-150300.3.9.1 * libyang1-debuginfo-1.0.184-150300.3.9.1 * python3-yang-1.0.184-150300.3.9.1 * python3-yang-debuginfo-1.0.184-150300.3.9.1 * libyang-debuginfo-1.0.184-150300.3.9.1 * libyang-extentions-1.0.184-150300.3.9.1 * libyang-cpp1-1.0.184-150300.3.9.1 * libyang-cpp1-debuginfo-1.0.184-150300.3.9.1 * libyang1-1.0.184-150300.3.9.1 * libyang-debugsource-1.0.184-150300.3.9.1 * openSUSE Leap 15.3 (noarch) * libyang-doc-1.0.184-150300.3.9.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * libyang-extentions-debuginfo-1.0.184-150300.3.9.1 * libyang1-debuginfo-1.0.184-150300.3.9.1 * libyang-debuginfo-1.0.184-150300.3.9.1 * libyang-extentions-1.0.184-150300.3.9.1 * libyang1-1.0.184-150300.3.9.1 * libyang-debugsource-1.0.184-150300.3.9.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * libyang-extentions-debuginfo-1.0.184-150300.3.9.1 * libyang1-debuginfo-1.0.184-150300.3.9.1 * libyang-debuginfo-1.0.184-150300.3.9.1 * libyang-extentions-1.0.184-150300.3.9.1 * libyang1-1.0.184-150300.3.9.1 * libyang-debugsource-1.0.184-150300.3.9.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * libyang-extentions-debuginfo-1.0.184-150300.3.9.1 * libyang1-debuginfo-1.0.184-150300.3.9.1 * libyang-debuginfo-1.0.184-150300.3.9.1 * libyang-extentions-1.0.184-150300.3.9.1 * libyang1-1.0.184-150300.3.9.1 * libyang-debugsource-1.0.184-150300.3.9.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * libyang-extentions-debuginfo-1.0.184-150300.3.9.1 * libyang1-debuginfo-1.0.184-150300.3.9.1 *libyang-debuginfo-1.0.184-150300.3.9.1 * libyang-extentions-1.0.184-150300.3.9.1 * libyang1-1.0.184-150300.3.9.1 * libyang-debugsource-1.0.184-150300.3.9.1 ## References: * https://www.suse.com/security/cve/CVE-2026-44673.html * https://bugzilla.suse.com/show_bug.cgi?id=1265330 . Important update for openSUSE fixing integer overflow in libyang leading to buffer overflow vulnerability.. openSUSE libyang security important integer overflow buffer overflow. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 12, 2026 Important OpenSUSE
172

Ubuntu 16.04 LTS GStreamer Base Plugins Critical DoS CVE-2026-2921

GStreamer Base Plugins could be made to crash or run programs if it opened a specially crafted file.. ========================================================================== Ubuntu Security Notice USN-8130-3 June 10, 2026 gst-plugins-base1.0 vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS Summary: GStreamer Base Plugins could be made to crash or run programs if it opened a specially crafted file. Software Description: - gst-plugins-base1.0: GStreamer plugins Details: USN-8130-1 fixed a vulnerability in GStreamer Base Plugins. This update provides the corresponding update for Ubuntu 16.04 LTS. Original advisory details: It was discovered that GStreamer Base Plugins incorrectly handled certain AVI media files. A remote attacker could use this issue to cause GStreamer Base Plugins to crash, resulting in a denial of service, or possibly execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS gstreamer1.0-plugins-base 1.8.3-1ubuntu0.3+esm4 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8130-3 https://ubuntu.com/security/notices/USN-8130-2 https://ubuntu.com/security/notices/USN-8130-1 CVE-2026-2921 . GStreamer Base Plugins on Ubuntu 16.04 LTS face a critical update to prevent potential denial of service and code execution risks.. GStreamer Base Plugins, Ubuntu 16.04, security advisory, denial of service, code execution. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 12, 2026 Important Ubuntu
202

openSUSE NetworkManager-libreswan Important Security Update CVE-2024-9050

An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for NetworkManager-libreswan ______________________________________________________________________________ Announcement ID: openSUSE-SU-2026:0200-1 Rating: important References: #1232040 Cross-References: CVE-2024-9050 Affected Products: openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for NetworkManager-libreswan fixes the following issues: - Update to version 1.2.24 (boo#1232040): + Fixed formatting of ipsec.conf snippet. This is a security issue with severity of "Important." (CVE-2024-9050). + Added support for "require-id-on-certificate" setting. + Updated translations. - Changes from version 1.2.22: + Add IPv6 support. - Changes from version 1.2.20: + Support setting "leftmodecfgclient" to "no" + Support for the "type", "hostaddrfamily" and "clientaddrfamily", "leftsubnet" and "rightcert" parameters. - Changes from version 1.2.18: + Drop libnm-glib compatibility (NetworkManager < 1.0). + Add support for the "authby", "dpdaction", "dpddelay", "dpdtimeout", "ipsec-interface" parameters. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2026-200=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64): NetworkManager-libreswan-1.2.24-bp157.3.3.1 NetworkManager-libreswan-gnome-1.2.24-bp157.3.3.1 - openSUSE Backports SLE-15-SP7 (noarch): NetworkManager-libreswan-lang-1.2.24-bp157.3.3.1 References: https://www.suse.com/security/cve/CVE-2024-9050.html https://bugzilla.suse.com/1232040 . openSUSE Security Update addresses an important security issue in NetworkManager-libreswan with CVE-2024-9050.. openSUSE, NetworkManager-libreswan, security update, important fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 12, 2026 Important OpenSUSE
202

openSUSE 2025 0367 1 Chromium Important Type Confusion Heap Buffer Overflow

An update that fixes four vulnerabilities is now available.. openSUSE Security Update: Security update for chromium ______________________________________________________________________________ Announcement ID: openSUSE-SU-2025:0367-1 Rating: important References: #1249999 Cross-References: CVE-2025-10500 CVE-2025-10501 CVE-2025-10502 CVE-2025-10585 Affected Products: openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that fixes four vulnerabilities is now available. Description: Chromium was updated to 140.0.7339.185 (stable released 2025-09-17) boo#1249999 Security issues fixed: * CVE-2025-10585: Type Confusion in V8 * CVE-2025-10500: Use after free in Dawn * CVE-2025-10501: Use after free in WebRTC * CVE-2025-10502: Heap buffer overflow in ANGLE Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2025-367=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 x86_64): chromedriver-140.0.7339.185-bp157.2.52.1 chromium-140.0.7339.185-bp157.2.52.1 References: https://www.suse.com/security/cve/CVE-2025-10500.html https://www.suse.com/security/cve/CVE-2025-10501.html https://www.suse.com/security/cve/CVE-2025-10502.html https://www.suse.com/security/cve/CVE-2025-10585.html https://bugzilla.suse.com/1249999 . OpenSUSE updates Chromium fixing four important security issues including use after free and heap buffer overflow.. openSUSE Security, Chromium Update, CVE-2025-10500, Important Patch, Vulnerability Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 12, 2026 Important OpenSUSE
202

openSUSE Chromium Important Four Issues Fixed Vuln 2024-0302-1

An update that fixes four vulnerabilities is now available.. openSUSE Security Update: Security update for chromium ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0302-1 Rating: important References: #1230391 Cross-References: CVE-2024-8636 CVE-2024-8637 CVE-2024-8638 CVE-2024-8639 Affected Products: openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that fixes four vulnerabilities is now available. Description: This update for chromium fixes the following issues: Chromium 128.0.6613.137 (released 2024-09-10) (boo#1230391) * CVE-2024-8636: Heap buffer overflow in Skia * CVE-2024-8637: Use after free in Media Router * CVE-2024-8638: Type Confusion in V8 * CVE-2024-8639: Use after free in Autofill Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2024-302=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 x86_64): chromedriver-128.0.6613.137-bp156.2.26.1 chromedriver-debuginfo-128.0.6613.137-bp156.2.26.1 chromium-128.0.6613.137-bp156.2.26.1 chromium-debuginfo-128.0.6613.137-bp156.2.26.1 References: https://www.suse.com/security/cve/CVE-2024-8636.html https://www.suse.com/security/cve/CVE-2024-8637.html https://www.suse.com/security/cve/CVE-2024-8638.html https://www.suse.com/security/cve/CVE-2024-8639.html https://bugzilla.suse.com/1230391 . Update for openSUSE addresses multiple issues in Chromium, ensuring enhanced performance and security. Immediate action recommended.. Chromium update, openSUSE patch, buffer overflow, security update. . Severity: Important.LinuxSecurity.com Team

Calendar 2 Jun 12, 2026 Important OpenSUSE
202

openSUSE Backports SLE-15-SP6 Doomsday Critical Buffer Overflow Issue

An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for doomsday ______________________________________________________________________________ Announcement ID: openSUSE-SU-2025:0117-1 Rating: important References: #1239917 Cross-References: CVE-2025-2592 CVSS scores: CVE-2025-2592 (SUSE): 8.4 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N Affected Products: openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for doomsday fixes the following issues: - CVE-2025-2592: Use system assimp library to fix a heap-based buffer overflow (boo#1239917) Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2025-117=1 Package List: - openSUSE Backports SLE-15-SP6 (ppc64le s390x x86_64): doomsday-2.3.1-bp156.4.3.1 References: https://www.suse.com/security/cve/CVE-2025-2592.html https://bugzilla.suse.com/1239917 . An important update for openSUSE doomsday addresses a critical buffer overflow issue. Stay secured with the latest patch.. openSUSE update doomsday buffer overflow security. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 12, 2026 Important OpenSUSE
197

Debian libinput Important Code Execution Vulnerability DLA-4626-1

Two vulnerabilities were found in libinput, an input device management and event handling library. CVE-2022-1215 libinput did not properly handled evdev devices, which may potentially be exploited by malicious local users in specific setup to execute arbitrary. ------------------------------------------------------------------------- Debian LTS Advisory DLA-4626-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Santiago Ruano Rincón June 11, 2026 https://wiki.debian.org/LTS ------------------------------------------------------------------------- Package : libinput Version : 1.16.4-3+deb11u1 CVE ID : CVE-2022-1215 CVE-2026-50292 Two vulnerabilities were found in libinput, an input device management and event handling library. CVE-2022-1215 libinput did not properly handled evdev devices, which may potentially be exploited by malicious local users in specific setup to execute arbitrary code. Reported by Albin Eldstål-Ahrens and Lukas Lamster. CVE-2026-50292 A udev helper provided by libinput performed insufficient sanitising of device properties, which can result in local privilege escalation in some setups. Reported by Csome. For Debian 11 bullseye, these problems have been fixed in version 1.16.4-3+deb11u1. We recommend that you upgrade your libinput packages. For the detailed security status of libinput please refer to its security tracker page at: https://security-tracker.debian.org/tracker/libinput Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-4626-1 addresses critical libinput vulnerabilities with recommended updates.. Debian libinput security issues local code execution upgrade. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 11, 2026 Important Debian LTS
202

openSUSE Backports SLE-15-SP7 Python-Simpleeval Sandbox Access Issue

An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for python-simpleeval ______________________________________________________________________________ Announcement ID: openSUSE-SU-2026:0087-1 Rating: important References: #1259685 Cross-References: CVE-2026-32640 Affected Products: openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for python-simpleeval fixes the following issues: - CVE-2026-32640: Objects (including modules) can leak dangerous modules through to direct access inside the sandbox (boo#1259685) Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2026-87=1 Package List: - openSUSE Backports SLE-15-SP7 (noarch): python311-simpleeval-0.9.13-bp157.2.3.1 References: https://www.suse.com/security/cve/CVE-2026-32640.html https://bugzilla.suse.com/1259685 . An important update for openSUSE fixes a security flaw in python-simpleeval, which allowed module leakage in the sandbox.. openSUSE updates, python-simpleeval security, module leakage fix, sandbox access vulnerabilities. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jun 11, 2026 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here