2025-12-15
Roundcube has released its second release candidate for version 1.7, focusing on resolving serious issues discovered since the first release candidate dropped. Two security problems were addressed: a cross-site scripting vulnerability and an update to prevent information disclosure, both thanks to contributions from outside developers. For Postgres users, the developer fixed a long-standing syntax error in database migration scripts, a significant step towards making 1.7 ready for prime time.
The latest version of SparkyLinux, "Tiamat," has been released in the semi-rolling line with updated ISO images available for download. This release includes kernel updates up to version 6.17.11 and other variants, as well as updated versions of Firefox (Extended Support Release) and Thunderbird. Users installing on UEFI systems may need an internet connection due to improvements made to the Calamares installer, while those with BIOS and 64-bit support can still use the CLI option. The new release also features two additional package mirror servers and multiple installation options, including six different desktop environments.
Manjaro Linux 25.1 Anh-Linh Preview 2 has been released, featuring an updated Plasma desktop environment with version 6.5 and GNOME 49 as an alternative option. The release also includes updates to graphics performance, with the Mesa driver at version 25.3.1 and Vulkan SDK at 1.4.328.1. Various applications have received updates, including Firefox, Thunderbird, and LXQt, while the system stack has been refreshed with a new real-time Linux kernel series (6.17-rt).
Here is a roundup of reviews for various computer components, including motherboards, power supplies, and cooling systems. The MSI MEG X870E Godlike X Edition motherboard was reviewed by multiple publications, with some praising its features but noting that it's only suitable for extreme enthusiasts due to its high price tag. Other reviews highlighted the SteelSeries Arctis Nova 3P Wireless headset as a well-rounded option that prioritizes comfort and battery life over revolutionary features, while Super Flower's LEADEX III GOLD UP ATX 3.1 power supply was praised for its high efficiency and compatibility with modern systems. Additionally, Tom's Hardware reviewed Creality's Falcon2 Pro 60W laser engraver, which offers deep cuts and fine engravings.
Cooling: Linus Tech Tips PTM7950 Review
Headphones: SteelSeries Arctis Nova 3P Wireless Review
Motherboards: MSI MEG X870E Godlike X Edition Review - A feature-complete flagship for the ultra enthusiast, MSI MEG X870E GODLIKE X Edition review, Sapphire B850A Nitro+ Motherboard Review, MSI X870E Godlike X Motherboard Review: 10th anniversary edition brings more exclusivity, numbered placard, and a Lucky plushy
Power: Super Flower LEADEX III GOLD UP ATX 3.1 1000W Power Supply Review
Other: Creality Falcon2 Pro 60 Watt Laser Engraver review: Deep cuts and fine engravings
OpenSnitch 1.8.0 has been released, bringing significant changes, including a GUI overhaul built on PyQt6 instead of PyQt5. This update reflects the shift away from PyQt5 by many GNU/Linux distributions and aims to keep OpenSnitch modern going forward, although it may no longer be compatible with older distros like Linux Mint 21.2 or Ubuntu 22.04. The new version includes several substantial enhancements, such as streamlined firewall rule management, improved backend upgrades, and task automation features.
Bazaar, an app store dedicated to Flatpaks, has been updated to version 0.6.3 with a primary focus on fixing one specific bug: restoring alphabetical sorting on the installed apps page. Alongside this core correction, various other improvements and tweaks have been made, including the integration of a developer banner, translation updates for multiple languages, and fixes for visual issues such as featured carousel images displaying correctly on portrait-oriented devices. Additionally, touch support has been implemented for data graphs, and a new Leftover User Data page has been added to help manage files associated with an application after it's been removed from the system.
Goverlay has been updated to version 1.6.4, which includes a useful new feature: FSR management. This allows users to easily switch between different versions of FidelityFX Super Resolution (FSR) using a dropdown menu, making it easier to experiment with the latest AI-enhanced version if supported or stick with an older version that works better on certain graphics cards. The update also includes behind-the-scenes improvements, such as automatic verification of necessary folders and setting up OptiScaler during updates, and ensuring settings are properly saved after each change.
Debian has released several security advisories to address vulnerabilities in various packages, including Thunderbird (DSA-6081-1), VLC media player (DSA-6082-1), ruby-sidekiq (DLA-4407-1), and ruby-git (DLA-4406-1). These updates fix multiple issues that could lead to arbitrary code execution or denial of service.
Debian GNU/Linux 11 (Bullseye) LTS:
[DLA 4407-1] ruby-sidekiq security update
[DLA 4406-1] ruby-git security update
Debian GNU/Linux 12 (Bookworm) and 13 (Trixie):
[DSA 6081-1] thunderbird security update
[DSA 6082-1] vlc security update
Important security updates have been released for SUSE Linux, including an update for Chromium and Hauler. A critical security update has also been made available for Keylime, addressing a serious vulnerability. In addition to these updates, go1.25 has received an important security patch. These fixes aim to improve the overall security of SUSE Linux systems by addressing potential vulnerabilities.
openSUSE-SU-2025-20161-1: important: Security update for chromium
openSUSE-SU-2025-20160-1: important: Security update for hauler
openSUSE-SU-2025-20159-1: critical: Security update for keylime
openSUSE-SU-2025-20157-1: important: Security update for go1.25
A moderate security update is available for the kernel of Rocky Linux 10, which addresses a potential vulnerability. This update aims to fix a security issue that may affect the system's stability and integrity. The Common Vulnerability Scoring System (CVSS) base score provides a detailed severity rating for each vulnerability.
RLSA-2025:22854: Moderate: kernel security update
Red Hat Enterprise Linux 8.6 has received an update for libpq, which has been rated as having a Moderate security impact by Red Hat Product Security. The same rating is also given to an update for ghostscript, this time for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.
RHSA-2025:23158: Moderate: libpq security update
RHSA-2025:23153: Moderate: ghostscript security update
Fedora has released updates for its 42 and 43 versions, including security patches. The firefox-146.0-3.fc42 update fixes AArch64 crashes and updates the browser to the latest upstream version (146.0). Similarly, firefox-146.0-3.fc43 also addresses the same issues but is tailored for Fedora 43. The chromium-143.0.7499.109-2.fc42 update includes security patches for CVE-2025-14372 and CVE-2025-14373, among other changes.
Fedora 43 Update: firefox-146.0-3.fc43
Fedora 42 Update: firefox-146.0-3.fc42
Fedora 42 Update: chromium-143.0.7499.109-2.fc42
2025-12-14
The latest version of OBS Studio, 32.0.4, has been released to address several long-standing issues that users have been experiencing. A significant improvement in scene management allows deleted scenes to no longer leave their audio sources lingering in the Audio Mixer, preventing clutter and frustration. Additionally, the update resolves performance lag with audio devices caused by earlier changes, resulting in a smoother experience for many users who rely on their audio gear. The release also fixes a small but annoying glitch where the user interface wouldn't always update correctly to reflect changes in transition durations.
Roundcube Webmail has released new versions for its 1.6 and 1.5 series, specifically version 1.6.12 and 1.5.12, which focus on addressing several security vulnerabilities in older versions of the software. The critical fixes include preventing Cross-Site-Scripting (XSS) issues triggered by certain SVG elements and vulnerabilities in HTML formatting that could lead to attacks or information disclosure. Users running Roundcube 1.6.x or earlier are advised to upgrade to version 1.6.12 immediately, while those using the older LTS version can update to 1.5.12 if necessary. The updates also bring smaller benefits such as IPv6 support for database settings and improved contact search functionality.
Zen Browser has released a new version, 1.17.14b. This update includes some minor but useful changes for users who care about fine-tuning their experience. The compact mode now allows you to customize the location of the download icon popup, giving you more control over the look and feel of your browser. Additionally, issues with startup hangs on Mac systems and default search engine resetting have been fixed, along with various other small tweaks that improve the user interface.
Several Linux distributions have received security updates over the past week to address various vulnerabilities in their packages. These updates aim to protect users from potential threats by fixing identified issues such as information disclosure, denial-of-service attacks, and arbitrary code execution. The affected distributions include AlmaLinux, Debian GNU/Linux, Fedora Linux, Oracle Linux, Red Hat Enterprise Linux, Rocky Linux, Slackware Linux, SUSE Linux, and Ubuntu Linux.
Linus Torvalds has released the first candidate for testing, Linux Kernel 6.19-rc1, marking an important step in its development process. Some contributors were caught off guard by this release cycle due to the yearly maintainers' summit, where many kernel maintainers were unavailable. Despite some quirks, the RC1 patches show a standard mix of updates, including driver improvements and architecture tweaks, with notable contributions from various developers such as Arnd Bergmann and Ingo Molnar.
Goverlay version 1.6.3 has been released, focusing on bug fixes and adding a new feature that allows users to save preset profiles directly on their Steam Deck. The update includes four dedicated slots in GOverlay for storing different performance setups, making it easier to switch between them during gaming sessions. Additional behind-the-scenes changes have improved the FPS cap offset calculations and library lookups for vkBasalt users.
The Linux kernel has been updated to version 5.10.247, fixing several bugs and vulnerabilities in the process. The update addresses multiple CVEs, including ones that could lead to privilege escalation, denial of service, or information leaks. This release includes additional bug fixes from stable updates 5.10.245-5.10.247. One notable remedy involves disabling the broken pktcdvd driver. The update is available for both Debian GNU/Linux 9 (version 5.10.247-1deb9u1) and 10 (version 5.10.247-1deb10u1) Extended LTS.
ELA-1595-1 linux-5.10 security update
Multiple security updates are available for Rocky Linux, including fixes for libraries and applications such as libsoup3, Grafana, the kernel, and Tomcat. The updates affect various versions of Rocky Linux, including 8, 9, and 10. A Common Vulnerability Scoring System (CVSS) base score is available for each vulnerability to provide a detailed severity rating.
openSUSE-SU-2025:15818-1: moderate: pgadmin4-9.11-1.1 on GA media
Fedora 42 and Fedora 43 have received updates to fix security vulnerabilities. The xkbcomp package has been updated to version 1.5.0, which fixes CVE-2018-15853, CVE-2018-15859, CVE-2018-15861, and CVE-2018-15863. Additionally, golangci-lint and libpng have also received updates in Fedora 43, fixing various security vulnerabilities, including CVE-2025-58189, CVE-2025-61723, CVE-2025-58185, and CVE-2025-66293.
Fedora 42 Update: xkbcomp-1.5.0-1.fc42
Fedora 43 Update: golangci-lint-2.7.1-1.fc43
Fedora 43 Update: libpng-1.6.53-1.fc43
[ Archive ]