-
Stay Vigilant with Timely Linux Security Advisories
Apr 20, 2026 | 19:04 pm
Byambadalai Sumiya discovered that SimpleEval, a library for adding evaluatable expressions into Python projects, didn't fully restrict some module references, resulting in sandbox bypass. For the oldstable distribution (bookworm), this problem has been fixed in version 0.9.12-1+deb12u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 19, 2026 | 18:22 pm
It was discovered that missing input sanitising in the FITS support of Pillow, a Python imaging library, could result in denial of service. The oldstable distribution (bookworm) is not affected. For the stable distribution (trixie), this problem has been fixed[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 18, 2026 | 15:11 pm
A heap-based buffer overflow flaw was discovered in MuPDF, a lightweight PDF viewer, which may result in denial of service or the execution of arbitrary code if malformed documents are opened. For the oldstable distribution (bookworm), this problem has been[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 17, 2026 | 21:19 pm
Two security issues were discovered in Luanti, a multiplayer infinite-world block sandbox game, which could result in incomplete restrictions for installed mods or sandbox escape. For the stable distribution (trixie), these problems have been fixed in version 5.10.0+dfsg-5+deb13u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 17, 2026 | 21:18 pm
Several vulnerabilities were discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malformed PSP, JPEG 2000, PSD or ANI files are opened. For the oldstable distribution[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 17, 2026 | 08:31 am
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 147.0.7727.101-1~deb12u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 15, 2026 | 19:16 pm
Two security issues were discovered in Incus, a system container and virtual machine manager, which could result in restriction bypass or privilege escalation. For the stable distribution (trixie), these problems have been fixed in version 6.0.4-2+deb13u6.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 14, 2026 | 20:43 pm
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed in version 1:140.9.1esr-1~deb12u1. For the stable distribution (trixie), these problems have been fixed in
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 14, 2026 | 20:29 pm
Multiple security vulnerabilities were discovered in imagemagick, a software suite used for editing and manipulating digital images, which could lead to symlink races, information leaks, denial of service and potentially arbitrary code execution. For the oldstable distribution (bookworm), these problems[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 13, 2026 | 20:41 pm
It was discovered that incorrect parsing of policy rules in the xdg-dbus-proxy (a filtering proxy for D-Bus connections) allowed the bypass of eavesdrop restrictions, which could result in information disclosure. For the stable distribution (trixie), this problem has been fixed[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 12, 2026 | 09:37 am
Multiple security issues were discovered in MediaWiki, a website engine for collaborative work, which could result in information disclosure or incomplete permission checks. For the oldstable distribution (bookworm), these problems have been fixed in version 1:1.39.17-1+deb12u2.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 12, 2026 | 09:23 am
Multiple security vulnerabilities were discovered in Flatpak, an application deployment framework for desktop apps, which could allow a Flatpak app to delete arbitrary hosts on the host or break out of the sandbox resulting in code execution in the host[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 11, 2026 | 19:00 pm
It was discovered that gdk-pixbuf, the GDK Pixbuf library, does not properly validate color component counts in the JPEG image loader, which may result in the execution of arbitrary code or denial of service if specially crafted JPEG images are[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 10, 2026 | 15:21 pm
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 147.0.7727.55-1~deb12u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 9, 2026 | 20:34 pm
Jeremy Brown discovered a flaw in the GSSAPI Key Exchange patch applied in Debian to OpenSSH, an implementation of the SSH protocol suite, affecting non-default configurations with the GSSAPIKeyExchange setting enabled. A remote attacker can take advantage of this flaw[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 8, 2026 | 18:35 pm
Quang Luong discovered a heap overflow in the libtiff library, which may result in denial of service or the execution of arbitrary code if malformed image files are processed. For the oldstable distribution (bookworm), this problem has been fixed in[…]
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 8, 2026 | 18:34 pm
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed in version 140.9.1esr-1~deb12u1.
Read more...
-
Stay Vigilant with Timely Linux Security Advisories
Apr 7, 2026 | 21:17 pm
Multiple vulnerabilities have been discovered in OpenSSL, a Secure Sockets Layer toolkit, which may result in denial of service, information leaks, or potentially remote code execution. Additional details can be found in the upstream advisory: https://openssl-library.org/news/secadv/20260407.txt
Read more...