Product
Last Report

Click here to browse the Windows compatibility database

RTL-8851be
1 report Realtec
Anonymous
2026-07-19 18:49
P8Z77-V
1 report ASUS
Anonymous
2026-06-11 07:27
Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-08-14 16:41 | Last update:



2026-08-14

Software 44719 Published by Philipp Esselbach 0

HestiaCP 1.10.2 has arrived as a service release, dropping just 17 hours after the massive 1.10.0 major update to address three immediate regressions. The hotfix patches two session-isolation vulnerabilities in the bundled file manager that could allow cross-user access to batch downloads and chunked uploads. It also corrects the Bind DNS SOA EXPIRE value to 1,209,600 seconds for better compliance and fixes a regression where sourcing /etc/os-release could overwrite the internal version variable during upgrades. Users on the 1.10.x branch can apply the changes now via the standard upgrade path.

KDE 1763 Published by Philipp Esselbach 0

KDE has released the neon-user-desktop-20260813-0523 ISO, delivering a steady weekly refresh built on Ubuntu 24.04 LTS. The build maintains Plasma 6.7.4, KDE Gear 26.04.3, and Frameworks 6.28.0 while layering in HWE kernel 7.0.0-28, Mesa 25.2.8, and upstream Noble security patches. Notable additions include the long-awaited per-screen virtual desktops, simultaneous HDR and ICC color management, and restored parity for the classic Oxygen theme ahead of KDE's 30th anniversary. Users can pull the update via neon-upgrade, while developers tracking bleeding edge features should monitor the parallel Testing and Unstable build streams.

Reviews 52716 Published by Philipp Esselbach 0

Today's hardware roundup covers a mix of compact builds and budget peripherals, highlighted by the $799 GEEKOM IT13 Max mini PC and the 1,200W FSP DAGGER PM SFX-L power supply. The GEEKOM IT13 Max delivers solid Meteor Lake performance for esports and productivity, though soldered RAM and a 500 GB SSD will limit long-term upgradability. Corsair's new Hall-effect controller and the Epomaker Nex Lite mouse chase low-latency and affordable gaming niches, while Alphacool's rebranded Apex 2 thermal paste proves compound consistency beats brand logos. XPG and MONTECH round out the showcase with clean RGB memory and a stepped mid-tower, but reviewers warn that Maxsun's new B850M motherboard is already priced above MSRP.

General 8075 Published by Philipp Esselbach 0

Epic Games confirmed via a Discord AMA that a native Linux client for the Epic Games Store is in development and coming "soon," though it will be excluded from the upcoming preview build due to necessary architectural changes. This move parallels GOG's own efforts to build a native Linux Galaxy client, signaling a broader industry shift toward official Linux support driven by the Steam Deck's success. While a native launcher will improve performance and simplify setup for Linux gamers, the availability of multiplayer titles like Fortnite hinges on whether Epic can successfully port its EOS anti-cheat system to the platform. Until that happens, users will continue relying on Heroic Games Launcher, the open-source tool that currently bridges the gap using Wine and Proton.

Fedora Linux 9451 Published by Philipp Esselbach 0

Remi Collet’s RPM repository has published Release Candidate 1 packages for PHP 8.4.25 and 8.5.10, targeting Fedora 43–44 and Enterprise Linux eight and newer. Administrators can install them as base system packages through the remi-modular-test repository or run them in parallel via the remi-test Software Collection. Since RC builds follow a strict freeze policy, these packages closely mirror the stable releases Remi expects to ship in March 2027. The repository also includes a beta build of PHP 8.6 alongside the official security-only status of the older 8.3 branch.

KDE 1763 Published by Philipp Esselbach 0

Kubuntu Focus, Techpaladin Software, and KDE e.V. have launched a three-year sponsored LTS program for Plasma 6.6, committing over $100,000 to guarantee security patches and bug fixes through Kubuntu 26.04's lifecycle. Techpaladin, the engineers behind the Steam Deck's desktop UX, acts as the primary technical steward for the backports while KDE e.V. uses the funding to deploy three new CI nodes for hardware validation. The move targets enterprise and government buyers hungry for a stable, privacy-focused Windows alternative, though the inclusion of Kubuntu Focus's proprietary "Focus Tools" adds a layer of commercial tension to the digital sovereignty pitch. While the initiative successfully plugs a long-standing gap in Linux desktop support, it leaves the funding model for Plasma 7.x uncharted once the current Kubuntu release reaches end-of-life.

Debian 11039 Ubuntu 7183 Arch Linux 990 Published by Philipp Esselbach 0

Steven Barrett has released Liquorix Kernel 7.1-12, continuing a rapid four-day iteration cycle with eleven targeted patches to Project-C, the project's custom sched/alt scheduler. The update prioritizes reduced task-switching overhead through improved fork handling, hybrid CPU idle-mask tracking, and atomic operation reductions designed specifically for gaming and audio production workloads. While AMD64 users can upgrade immediately via the official repositories, the project currently hosts several open AMDGPU stability reports that may warrant monitoring before switching from stock kernels. Users looking to install the latest build can pull it directly from the Debian, Ubuntu, or Arch Linux repositories today.

Software 44719 Published by Philipp Esselbach 0

Bottles 66.0 lis now available, introducing UMU launcher integration, ProtoSoda as the default runtime, and an experimental cpak package format. Instead of letting the major release settle, the team pushed five consecutive hotfixes between August 12 and August 14 to patch Flatpak path regressions, Steam runtime argument handling, and DLL case sensitivity issues. The intense two-day sprint not only stabilized the new features but also brought two new developers into the contributor ranks. 

Ubuntu 7183 Published by Philipp Esselbach 0

Ubuntu issued a coordinated set of security notices, patching dozens of vulnerabilities across the Linux kernel and the Axios Node.js HTTP client. The kernel updates span Ubuntu 16.04 through 26.04 LTS and cover cloud, OEM, and specialized hardware variants including Oracle, AWS, Azure, Google Cloud, and NVIDIA Tegra distributions. Key fixes address WiFi mesh network packet injection, a logic flaw labeled Fragnesia that enables local privilege escalation and container escapes, and prototype pollution bugs in Axios that allow proxy restrictions to be bypassed.

[USN-8631-2] Linux kernel (Oracle) vulnerabilities
[USN-8637-1] Linux kernel (OEM) vulnerabilities
[USN-8630-2] Linux kernel vulnerabilities
[USN-8633-2] Linux kernel vulnerabilities
[USN-8631-3] Linux kernel (NVIDIA Tegra IGX) vulnerabilities
[USN-8529-2] Linux kernel vulnerabilities
[USN-8530-2] Linux kernel (HWE) vulnerabilities
[USN-8548-2] Linux kernel vulnerabilities
[USN-8638-1] Axios vulnerabilities

SUSE 5737 Published by Philipp Esselbach 0

SUSE issued two important security advisories to patch major vulnerabilities in the Linux kernel and OpenSSH for SUSE Linux Enterprise 15 SP6 and 15 SP7 systems. The kernel advisory addresses 77 distinct vulnerabilities across networking, storage, virtualization, and graphics drivers, while the OpenSSH advisory resolves eight flaws tied to SFTP file placement bypasses, scp cross-server copy errors, and pre-authentication denial of service conditions.

SUSE-SU-2026:3602-1: important: Security update for the Linux Kernel
SUSE-SU-2026:3605-1: important: Security update for openssh

Slackware 1286 Published by Philipp Esselbach 0

The Slackware Linux Security Team released package SSA:2026-225-01 to patch known vulnerabilities and resolve bugs in rsync 3.5.0. This update applies directly to both Slackware 15.0 and the ongoing -current branch. Users can download the official i586 and x86_64 builds from the standard Slackware FTP mirrors before installing them with the root upgradepkg command

rsync (SSA:2026-225-01)

Rocky Linux 978 Published by Philipp Esselbach 0

Red Hat 9487 Published by Philipp Esselbach 0

Red Hat issued multiple security advisories for RHEL 8, 9, and 10 addressing vulnerabilities in bind, .NET, gstreamer1-plugins-bad-free, and dracut. Most advisories carry an Important severity rating, while moderate updates cover python-idna, nghttp2, and gnome-remote-desktop across various extended support streams. Notable releases include updates for .NET 10.0, Quarkus 3.33.3, Apache Camel for Spring Boot, and kernel patches for SAP Solutions environments.

RHSA-2026:54509: Important: bind9.16 security update
RHSA-2026:54512: Moderate: gnome-remote-desktop security update
RHSA-2026:54485: Important: freerdp security update
RHSA-2026:54484: Moderate: python-idna security update
RHSA-2026:54482: Important: kernel security update
RHSA-2026:54481: Moderate: python-idna security update
RHSA-2026:54510: Important: bind security update
RHSA-2026:54528: Important: python-pillow security update
RHSA-2026:54538: Important: .NET 8.0 security, bug fix, and enhancement update
RHSA-2026:54539: Important: yelp security update
RHSA-2026:54540: Important: yelp security update
RHSA-2026:51653: Important: Red Hat build of Quarkus 3.33.3 release and security update
RHSA-2026:54541: Important: .NET 8.0 security, bug fix, and enhancement update
RHSA-2026:54532: Important: postgresql-jdbc security update
RHSA-2026:54487: Important: freerdp security update
RHSA-2026:54486: Important: freerdp security update
RHSA-2026:54637: Important: yelp security update
RHSA-2026:54624: Important: yelp security update
RHSA-2026:54550: Important: .NET 9.0 security, bug fix, and enhancement update
RHSA-2026:54638: Important: compat-libtiff3 security update
RHSA-2026:54650: Moderate: nghttp2 security update
RHSA-2026:54667: Important: freerdp security update
RHSA-2026:54654: Important: bind security update
RHSA-2026:54660: Important: gstreamer1-plugins-bad-free security update
RHSA-2026:54658: Important: gstreamer1-plugins-bad-free security update
RHSA-2026:54752: Important: gstreamer1-plugins-bad-free security update
RHSA-2026:54776: Important: Red Hat Build of Apache Camel 4.18 for Quarkus 3.33 update is now available (RHBQ 3.33.3.GA)
RHSA-2026:54662: Moderate: nghttp2 security update
RHSA-2026:54664: Important: gstreamer1-plugins-bad-free security update
RHSA-2026:54666: Important: yelp security update
RHSA-2026:54665: Important: gstreamer1-plugins-bad-free security update
RHSA-2026:54634: Important: webkit2gtk3 security update
RHSA-2026:54590: Important: .NET 9.0 security, bug fix, and enhancement update
RHSA-2026:54659: Important: gstreamer1-plugins-bad-free security update
RHSA-2026:54642: Important: compat-libtiff3 security update
RHSA-2026:54640: Important: compat-libtiff3 security update
RHSA-2026:54574: Important: .NET 8.0 security, bug fix, and enhancement update
RHSA-2026:54576: Important: dracut security update
RHSA-2026:54572: Important: webkit2gtk3 security update
RHSA-2026:54571: Important: dracut security update
RHSA-2026:54605: Important: yelp security update
RHSA-2026:54575: Important: dracut security update
RHSA-2026:54542: Important: .NET 10.0 security, bug fix, and enhancement update
RHSA-2026:53643: Important: Red Hat build of Quarkus 3.27.5 release and security update
RHSA-2026:54622: Important: Red Hat Build of Apache Camel 4.18.3 for Spring Boot release.

Oracle Linux 6533 Published by Philipp Esselbach 0

Oracle issued a new wave of updates for Oracle Linux 7, 8, 9, and 10, delivering critical security patches and bug fixes across a broad range of system components. Significant advisories include important security fixes for the Unbreakable Enterprise kernel, freerdp, java-17-openjdk, and python3.9, alongside moderate updates for python-idna, grafana, and libpng. The release also addresses stability issues through bug fix updates for makedumpfile, crash, kexec-tools, systemd, and perl-DBI across the supported operating system versions.

ELSA-2026-54486 Important: Oracle Linux 10 freerdp security update
ELSA-2026-54481 Moderate: Oracle Linux 10 python-idna security update
ELSA-2026-54178 Moderate: Oracle Linux 10 grafana security, bug fix, and enhancement update
ELSA-2026-36541 Important: Oracle Linux 10 kernel security, bug fix, and enhancement update
ELBA-2026-500170 Oracle Linux 10 makedumpfile bug fix update
ELBA-2026-500168 Oracle Linux 10 crash bug fix update
ELSA-2026-54268 Important: Oracle Linux 9 python3.9 security update
ELSA-2026-42887 Important: Oracle Linux 9 java-17-openjdk security update
ELBA-2026-500163 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELBA-2026-500169 Oracle Linux 9 kexec-tools bug fix update
ELBA-2026-500167 Oracle Linux 9 crash bug fix update
ELBA-2026-500163 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update
ELBA-2026-500164 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update
ELSA-2026-54290 Moderate: Oracle Linux 8 python-idna security update
ELSA-2026-54243 Important: Oracle Linux 8 grafana security update
ELSA-2026-53848 Important: Oracle Linux 8 isns-utils security update
ELSA-2026-52772 Important: Oracle Linux 8 perl-DBI:1.641 security update
ELSA-2026-52765 Moderate: Oracle Linux 8 kernel security update
ELBA-2026-500164 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update
ELBA-2026-500148 Oracle Linux 8 systemd bug fix update
ELBA-2026-500164 Oracle Linux 7 Unbreakable Enterprise kernel bug fix update
ELSA-2026-51183 Important: Oracle Linux 7 glib2 security update
ELSA-2026-51063 Important: Oracle Linux 7 libXfont2 security update
ELSA-2026-50808 Moderate: Oracle Linux 7 libpng security update
ELSA-2026-49603 Important: Oracle Linux 7 gstreamer1-plugins-good security update

Gentoo 2533 Published by Philipp Esselbach 0

Gentoo Linux released seven high-severity security advisories in mid-August 2026 targeting widely used system utilities and network services. The vulnerabilities span critical attack vectors, including root privilege escalation in Bubblewrap and rsync, remote code execution in Dnsmasq and Exim, sandbox escape in Flatpak, and input device handling flaws in libinput. Apache HTTPD received the largest single patch addressing 41 tracked issues ranging from denial of service to remote code execution.

[ GLSA 202608-09 ] Bubblewrap: Root privilege escalation
[ GLSA 202608-08 ] libinput: Multiple Vulnerabilities
[ GLSA 202608-06 ] Flatpak: Multiple Vulnerabilities
[ GLSA 202608-07 ] Exim: Multiple Vulnerabilities
[ GLSA 202608-05 ] Apache HTTPD: Multiple Vulnerabilities
[ GLSA 202608-04 ] Dnsmasq: Multiple Vulnerabilities
[ GLSA 202608-03 ] rsync: Multiple Vulnerabilities

Fedora Linux 9451 Published by Philipp Esselbach 0

Fedora 43 pushes security updates for erlang-cowlib and erlang-cowboy that fix CVE-2026-59248, allowing unbounded HPACK and QPACK prefixed-integer decoding to cause a denial of service. Fedora 44 delivers the matching Erlang packages while adding cookie parsing limits, HTTP/2 CONTINUATION frame rejection, and the removal of concurrent pipelined HTTP/1.1 request processing to strengthen protocol handling. Fedora 44 administrators must also apply the flatpak 1.18.1 release and a libnfs update that resolves CVE-2026-57918 and CVE-2026-53689 to block information disclosure and data corruption in NFS connections.

Fedora 43 Update: erlang-cowlib-2.19.0-1.fc43
Fedora 43 Update: erlang-cowboy-2.18.0-1.fc43
Fedora 44 Update: flatpak-1.18.1-1.fc44
Fedora 44 Update: libnfs-6.0.2-9.fc44
Fedora 44 Update: erlang-cowlib-2.19.0-1.fc44
Fedora 44 Update: erlang-cowboy-2.18.0-1.fc44

Debian 11039 Published by Philipp Esselbach 0

Debian has released latest security patches to address flaws across xorg-server, Chromium, PostgreSQL 17, apr-util, xdg-dbus-proxy, and python-django. The advisories target race conditions, stack buffer overflows, use-after-free errors, and malformed request handling that could allow privilege escalation, arbitrary code execution, or data exposure. Each affected package now includes fixed versions for Debian 11, Debian 12, and the Debian 13 stable distribution.

[DLA 4738-1] xorg-server security update
[DLA 4737-1] xorg-server security update
[DSA 6433-1] xdg-dbus-proxy security update
ELA-1808-1 python-django security update (by )
[DSA 6437-1] apr-util security update
[DSA 6436-1] chromium security update
[DLA 4739-1] chromium security update
[DSA 6438-1] postgresql-17 security update

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux released a batch of security errata for versions 8, 9, and 10. These updates patch vulnerabilities across widely used software such as the Linux kernel, vim, FreeRDP, Grafana, and the Xwayland display server. Administrators should apply the fixes immediately to resolve issues ranging from arbitrary code execution and privilege escalation to denial of service and memory corruption. Complete patch details and installation commands are available on the official AlmaLinux errata pages for each affected package.

ALSA-2026:54481: python-idna security update (Moderate)
ALSA-2026:28231: opencryptoki security update (Moderate)
ALSA-2026:53330: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:25216: valkey security update (Important)
ALSA-2026:40833: pacemaker security update (Important)
ALSA-2026:28582: keylime security update (Moderate)
ALSA-2026:25999: yggdrasil-worker-package-manager security update (Moderate)
ALSA-2026:26566: xorg-x11-server-Xwayland security, bug fix, and enhancement update (Important)
ALSA-2026:53451: gstreamer1-plugins-good security update (Moderate)
ALSA-2026:49526: osbuild-composer security update (Important)
ALSA-2026:54178: grafana security, bug fix, and enhancement update (Moderate)
ALSA-2026:39297: edk2 security, bug fix, and enhancement update (Moderate)
ALSA-2026:38489: xorg-x11-server-Xwayland security update (Important)
ALSA-2026:54210: dhcpcd security update (Moderate)
ALSA-2026:38509: vim security update (Important)
ALSA-2026:53435: udisks2 security update (Important)
ALSA-2026:54268: python3.9 security update (Important)
ALSA-2026:54484: python-idna security update (Moderate)
ALSA-2026:53329: kernel security, bug fix, and enhancement update (Important)
ALSA-2026:38511: vim security update (Important)
ALSA-2026:25051: libyang security update (Important)
ALSA-2026:38510: vim security update (Important)
ALSA-2026:54485: freerdp security update (Important)
ALSA-2026:54247: kernel-rt security update (Moderate)
2026-08-13

Software 44719 Published by Philipp Esselbach 0

ChrisDKN has released v2.2.0 of Amethyst Mod Manager, the open-source Linux-native tool that competes with Windows-only managers like MO2 and Vortex. The update introduces a built-in Thunderstore browser and two-way Nexus Mods collection integration, giving Linux users a seamless way to manage mods across both major platforms. Five new games are now supported, including Risk of Rain 2, Inscryption, and R.E.P.O., bringing the total catalog to over 60 titles. The release also brings Linux-specific technical improvements such as case alias symlinks for Bethesda load times and multi-launcher detection for Steam, Heroic, Lutris, and Faugus.

Guides 11795 Published by Philipp Esselbach 0

This tutorial walks through installing the latest Matomo 5.12.0 version on Debian 13, bypassing the outdated repository release to access features like AI chatbot detection, Dark Mode, and improved segment management. The setup process covers installing Apache or Nginx, configuring MariaDB, downloading the upstream build, setting file permissions, and applying secure virtual host configurations for either web server. Users complete the installation via a web wizard, set up automated archiving through cron jobs to keep reports current, and secure the instance using Let's Encrypt SSL certificates. The guide also addresses common issues such as permission errors, PHP memory limits, and database connection failures while emphasizing full data ownership and GDPR compliance without third-party telemetry.

Software 44719 Published by Philipp Esselbach 0

Samba 4.24.6 is now available as a stable maintenance release containing 10 bug fixes that prioritize stability for CephFS-backed shares and clustered deployments following the security-heavy 4.24.5 update. The patch resolves critical crashes in vfs_ceph_snapshots and vfs_ceph_new, while Martin Schwenke from DDN contributes fixes for CTDB protocol issues regarding IP takeovers and nested elections. Core developers also addressed a memory leak in the Directory Replication Service, a pthreadpool race condition during forking, and various encoding inconsistencies across the S3 DFS server and DRS modules. Alongside the stable release, Samba 4.25.0rc1 was announced, bringing experimental SMB3 Persistent Handles and cluster-wide rate limiting to the next major development branch.

Software 44719 Published by Philipp Esselbach 0

HestiaCP 1.10.0 has shipped, delivering a major security overhaul alongside a substantial feature update for the open-source server panel. The release addresses a string of critical vulnerabilities from the previous 1.9.x cycle by enforcing parameterized queries, stripping out eval() calls, and adding ordered firewall rules across the codebase. Feature-wise, administrators get full PHP 8.5 support, official Debian 13 and Ubuntu 26.04 LTS compatibility, and six new one-click installer apps including Shopware and ClassicPress. Existing users should run the standard upgrade command while skipping the beta repository rename, and older installations will need to apply the provided migration scripts for their OS and jail setup.

Software 44719 Published by Philipp Esselbach 0

PostgreSQL has shipped maintenance updates for every supported version, including 18.6, 17.11, 16.15, 15.19, and 14.24, to patch 30 security vulnerabilities involving heap buffer overflows and remote code execution risks. The third beta of PostgreSQL 19 is also available, bringing a unified REPACK command, SQL Property Graph query support, and temporal data handling via the FOR PORTION OF clause. Performance and optimizer enhancements in the upcoming release include automatic NOT IN to ANTI JOIN conversions, SIMD-accelerated COPY FROM operations, and a switch to LZ4 as the default TOAST compression method.

Software 44719 Published by Philipp Esselbach 0

The Exim development team released 4.100-RC3 on August 13, marking the third and final release candidate before the stable major update ships. The new branch introduces native DMARC evaluation, expanded log selectors, and a musl DNS out-of-bounds read fix for containerized environments. Legacy malware scanner bridges and outdated protocol support have been removed alongside a new versioning structure that separates security patches onto a dedicated branch. Operators running mail infrastructure should test the release candidate now, with the official 4.100 tag expected within weeks.

Software 44719 Published by Philipp Esselbach 0

Bottles 66.2 dropped less than 24 hours after version 66.1, patching six critical regressions and tightening network calls for the popular Linux Wine and Proton manager. The hotfix resolves a bottle-deletion crash for multi-drive setups, restores custom Steam Runtime launch flags, and finally handles case-sensitive DLL conflicts for the XACT audio dependency. Lead maintainer Mirko Brombin also merged patches that properly detect NVIDIA's open-source NVK Vulkan driver, move heavy network requests off the main UI thread, and revive the external executable launch workflow. The update is available now via Flatpak and cpak, keeping the 143,000-download-strong community on stable ground before the next major feature push lands.

Reviews 52716 Published by Philipp Esselbach 0

Today's hardware roundups cover the InWin Covalent and Cooler Master HAF II 500 chassis, plus a $1,959 GMKtec Evo-T2 packing Intel's Panther Lake. TechPowerUp and TweakTown break down the Logitech G Pro X2 Superstrike mouse and the D-Link F518 hotspot, while Tom's Hardware labels the QIDI Plus5 a genuine rival to Bambu Lab's 3D printers. Keep in mind that review scores often shift once firmware updates drop.

Software 44719 Published by Philipp Esselbach 0

Shelly ALPM v3.0.5 hit the GitHub releases today, bringing just an updated Polkit warning and a routine branch back-merge to the v3.x line. The release lands just one day after the feature-packed v3.0.4, signaling that the team behind the Zig rewrite is shifting focus from rapid-fire development to post-stabilization polish. The quiet bump sits on top of the core architecture introduced back in late July, where the project finally ditched its .NET runtime to link directly to libalpm for genuine native performance across its GTK4 UI, CLI, and TUI modes. You can grab the 6.8 MB UI bundle directly from the GitHub releases page, or sync it through the AUR if you're running a CachyOS or Arch-based install.

Security 10977 Published by Philipp Esselbach 0

rsync 3.5.0 has arrived, delivering fixes for 33 CVEs across symlink race conditions, daemon protocol flaws, and authentication bypasses. The release introduces secure_relative_open(), a hardened path-resolution framework that pins directory file descriptors and blocks out-of-tree symlink hops. If you run rsync with elevated privileges or rely on it for CI/CD and cloud backups, updating immediately is non-negotiable. Backports for the 3.4.1 and 3.2.7 branches are rolling out alongside the main release this week.

Software 44719 Published by Philipp Esselbach 0

AM, the open-source AppImage package manager for GNU/Linux, has released version 10.4, expanding its supported app database to 3,388 entries with a major focus on headless automation. The headline update introduces a global -y flag and enhanced non-interactive installation support, making the tool far more suitable for CI/CD pipelines, container builds, and unattended deployments without requiring manual prompts. Driven by a surge in community contributions following the maintainer's reduced involvement, the release also adds useful utilities like a relocate option for preserving portable profiles, a downgrade command, and fuzzy search suggestions for typos. Unlike Flatpak or Snap, AM keeps apps running natively outside of system package managers, though users should note that the script-based database relies on community-maintained installers rather than strict sandboxes.

Software 44719 Published by Philipp Esselbach 0

Python's core team has released security-only source-only updates for Python 3.10.21, 3.11.16, and 3.12.14, confirming all three versions are now in maintenance mode with no further release cadence. The updates prioritize critical path traversal bypasses in tarfile and ZIP extraction on Windows, while also blocking remote code execution vectors in webbrowser, cookie handling, and WSGI status fields. Denial-of-service protections have been strengthened against exponential complexity attacks in csv, HTML parsing, and XML modules, complemented by a bundle update to libexpat 2.8.3 for improved billion laughs and hash flooding defenses. Users should upgrade immediately, especially those processing untrusted archives or structured data, as these patches address high-severity CVEs including a tarfile link-target escape and cookie control character injection.

Ubuntu 7183 Published by Philipp Esselbach 0

Ubuntu issued a series of security notices, addressing multiple flaws across the Yelp help browser, the node-follow-redirects module, the libgit2 library, and the Linux kernel. The patches correct weaknesses that could let attackers steal credentials via improperly stripped HTTP redirect headers, expose user data through lax content security policies in help documents, or trigger crashes and arbitrary code execution through malformed Git protocol packets. Kernel updates cover dozens of cloud, IoT, and real-time variants for Ubuntu 14.04 through 26.04 LTS, and the required system reboot combined with an ABI change means users must reinstall any third-party kernel modules they previously compiled.

[USN-8627-1] Yelp vulnerability
[USN-8632-1] follow-redirects vulnerability
[USN-8628-1] libgit2 vulnerabilities
[USN-8631-1] Linux kernel vulnerabilities
[USN-8635-1] Linux kernel (Azure) vulnerabilities
[USN-8629-1] Linux kernel vulnerabilities
[USN-8633-1] Linux kernel vulnerabilities
[USN-8636-1] Linux kernel vulnerabilities
[USN-8630-1] Linux kernel vulnerabilities
[USN-8634-1] Linux kernel vulnerabilities

SUSE 5737 Published by Philipp Esselbach 0

SUSE rolled out a fresh batch of security patches for their 2026 releases, targeting known vulnerabilities across dozens of system packages. The update cycle prioritizes critical fixes for Chromium alongside important advisories for the Linux kernel, OpenVPN, dracut, and RPM.

openSUSE-SU-2026:11500-1: moderate: stunnel-5.80-1.1 on GA media
openSUSE-SU-2026:11495-1: moderate: git-cliff-2.13.1-1.1 on GA media
openSUSE-SU-2026:11498-1: moderate: python313-scikit-learn-1.9.0-1.1 on GA media
openSUSE-SU-2026:11494-1: moderate: clusterctl-1.14.0-1.1 on GA media
SUSE-SU-2026:3596-1: important: Security update for openvpn
SUSE-SU-2026:3599-1: important: Security update for dracut
SUSE-SU-2026:3600-1: important: Security update for rpm
openSUSE-SU-2026:21561-1: critical: Security update for chromium
openSUSE-SU-2026:21563-1: important: Security update for librest0_7
openSUSE-SU-2026:21567-1: moderate: Security update for zk
openSUSE-SU-2026:21557-1: moderate: Security update for gleam
openSUSE-SU-2026:21553-1: important: Security update for GraphicsMagick
openSUSE-SU-2026:21551-1: important: Security update for govulncheck-vulndb
openSUSE-SU-2026:21548-1: important: Security update for gd
openSUSE-SU-2026:21546-1: important: Security update for nodejs24
openSUSE-SU-2026:21545-1: important: Security update for nodejs22
SUSE-SU-2026:3593-1: important: Security update for the Linux Kernel
SUSE-SU-2026:3595-1: important: Security update for the Linux Kernel
openSUSE-SU-2026:0281-1: critical: Security update for chromium

Rocky Linux 978 Published by Philipp Esselbach 0

Rocky Linux published fifteen security advisories to patch known vulnerabilities across Linux versions 8, 9, and 10. The errata target the main kernel, storage networking utilities like isns-utils and iscsi-initiator-utils, and high-availability cluster packages including fence-agents and resource-agents. Each notice rates the update as Important or Moderate and provides official CVSS severity scores for every linked CVE. Server operators need to install these patches promptly to close security gaps and maintain system stability.

RLSA-2026:53847: Important: isns-utils security update
RLSA-2026:53365: Important: fence-agents security update
RLSA-2026:53844: Important: iscsi-initiator-utils security, bug fix, and enhancement update
RLSA-2026:53452: Moderate: gstreamer1-plugins-good security update
RLSA-2026:53329: Important: kernel security, bug fix, and enhancement update
RLSA-2026:53364: Important: resource-agents security update
RLSA-2026:53363: Important: fence-agents security update
RLSA-2026:53848: Important: isns-utils security update
RLSA-2026:53846: Important: isns-utils security update
RLSA-2026:53435: Important: udisks2 security update
RLSA-2026:53330: Important: kernel security, bug fix, and enhancement update
RLSA-2026:53845: Important: iscsi-initiator-utils security, bug fix, and enhancement update
RLSA-2026:53451: Moderate: gstreamer1-plugins-good security update
RLSA-2026:47126: Moderate: resource-agents security update
RLSA-2026:47117: Moderate: libgcrypt security update

Red Hat 9487 Published by Philipp Esselbach 0

Red Hat has issued a batch of security advisories addressing vulnerabilities across Red Hat Enterprise Linux versions 7 through 10. The patches target widely used components including Firefox, the Linux kernel, Python 3.9, MariaDB 10.11, and ldns. Administrators should review the Common Vulnerability Scoring System ratings attached to each advisory before deploying the fixes to extended support channels or standard RHEL installations.

RHSA-2026:54168: Important: rhc-worker-playbook security update
RHSA-2026:54142: Important: mariadb:10.11 security update
RHSA-2026:54254: Important: ldns security update
RHSA-2026:54246: Moderate: kernel security update
RHSA-2026:54244: Important: ldns security update
RHSA-2026:54247: Moderate: kernel-rt security update
RHSA-2026:54191: Important: rhc-worker-script security update
RHSA-2026:54182: Important: firefox security update
RHSA-2026:54181: Important: firefox security update
RHSA-2026:54178: Moderate: grafana security, bug fix, and enhancement update
RHSA-2026:54185: Important: firefox security update
RHSA-2026:54180: Important: firefox security update
RHSA-2026:54343: Important: kernel security, bug fix, and enhancement update
RHSA-2026:47117: Moderate: libgcrypt security update
RHSA-2026:47126: Moderate: resource-agents security update
RHSA-2026:47129: Moderate: resource-agents security update
RHSA-2026:54339: Important: firefox security update
RHSA-2026:54268: Important: python3.9 security update
RHSA-2026:54272: Important: abrt security update
RHSA-2026:54290: Moderate: python-idna security update
RHSA-2026:54248: Important: firefox security update
RHSA-2026:54249: Important: firefox security update
RHSA-2026:54259: Important: firefox security update
RHSA-2026:54210: Moderate: dhcpcd security update
RHSA-2026:54435: Important: Streams for Apache Kafka 3.2.1 release and security update
RHSA-2026:54417: Important: python-pillow security update
RHSA-2026:54443: Important: kernel security, bug fix, and enhancement update
RHSA-2026:54401: Important: rhc security update
RHSA-2026:54377: Important: ldns security update

Oracle Linux 6533 Published by Philipp Esselbach 0

Oracle issued a batch of security and bug fix advisories for Oracle Linux 7, 8, 9, and 10, ranging from Important to Moderate severity levels across multiple subsystems. The kernel includes Unbreakable Enterprise kernel updates for versions 8, 9, and 10, while version 7 receives standard kernel patches and microcode_ctl enhancements. Administrators should prioritize patches for widely used components like OpenJDK 1.8, Sudo, Dovecot, PostgreSQL, and Ruby 3.3, as these advisories address security vulnerabilities that could impact system integrity. Supporting packages also receive fixes, including GStreamer plugins, PipeWire, libarchive, libguestfs, fence-agents, and the leapp-repository, rounding out the maintenance cycle for these operating system releases.

ELSA-2026-500150 Important: Unbreakable Enterprise kernel security update
ELSA-2026-53451 Moderate: Oracle Linux 10 gstreamer1-plugins-good security update
ELSA-2026-53435 Important: Oracle Linux 10 udisks2 security update
ELSA-2026-53846 Important: Oracle Linux 10 isns-utils security update
ELSA-2026-53330 Important: Oracle Linux 10 kernel security, bug fix, and enhancement update
ELSA-2026-49526 Important: Oracle Linux 10 osbuild-composer security update
ELSA-2026-34911 Important: Oracle Linux 10 kernel security, bug fix, and enhancement update
ELBA-2026-50139-0 Oracle Linux 10 tuned bug fix and enhancement update
ELBA-2026-39299 Oracle Linux 10 microcode_ctl bug fix and enhancement update
ELSA-2026-500162 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
ELSA-2026-53847 Important: Oracle Linux 9 isns-utils security update
ELSA-2026-53452 Moderate: Oracle Linux 9 gstreamer1-plugins-good security update
ELSA-2026-53365 Important: Oracle Linux 9 fence-agents security update
ELSA-2026-53329 Important: Oracle Linux 9 kernel security, bug fix, and enhancement update
ELSA-2026-52395 Important: Oracle Linux 9 postgresql security update
ELSA-2026-52674 Moderate: Oracle Linux 9 libarchive security update
ELSA-2026-47082 Important: Oracle Linux 9 pipewire security update
ELSA-2026-42877 Important: Oracle Linux 9 java-1.8.0-openjdk security update
ELBA-2026-39314 Oracle Linux 9 microcode_ctl bug fix and enhancement update
ELSA-2026-500162 Important: Oracle Linux 9 Unbreakable Enterprise kernel security update
ELBA-2026-500146 Oracle Linux 9 libguestfs bug fix update
ELSA-2026-500162 Important: Oracle Linux 8 Unbreakable Enterprise kernel security update
ELBA-2026-500147 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update
ELSA-2026-53363 Important: Oracle Linux 8 fence-agents security update
ELSA-2026-50728 Important: Oracle Linux 8 ruby:3.3 security, bug fix, and enhancement update
ELBA-2026-47114 Oracle Linux 8 microcode_ctl bug fix and enhancement update
ELSA-2026-42877 Important: Oracle Linux 8 java-1.8.0-openjdk security update
ELBA-2026-500165 Oracle Linux 8 leapp-repository bug fix update
ELSA-2026-49513 Important: Oracle Linux 7 dovecot security update
ELSA-2026-8517 Important: Oracle Linux 7 libarchive security update
ELSA-2026-47176 Important: Oracle Linux 7 gstreamer1-plugins-bad-free security update
ELSA-2026-43575 Moderate: Oracle Linux 7 gnutls security update
ELSA-2026-41904 Important: Oracle Linux 7 evince security update
ELSA-2026-37397 Important: Oracle Linux 7 ruby security update
ELSA-2026-26564 Important: Oracle Linux 7 dovecot security update
ELSA-2026-13895 Important: Oracle Linux 7 sudo security update

Gentoo 2533 Published by Philipp Esselbach 0

Gentoo Linux released security advisory GLSA 202608-02 to patch multiple vulnerabilities in media-libs/freetype for versions below 2.14.3. The flaws encompass an out-of-bounds read and information disclosure risk across nine CVE identifiers, with no known workaround available. Administrators must update the font engine to version 2.14.3 or later to resolve the issues. Install the fix by running emerge --sync and then emerge --ask --oneshot --verbose ">=media-libs/freetype-2.14.3".

[ GLSA 202608-02 ] FreeType: Multiple Vulnerabilities

Fedora Linux 9451 Published by Philipp Esselbach 0

Fedora 43 and 44 received a coordinated batch of security-focused package updates. The release upgrades cri-o1.34 to version 1.34.11, vaultwarden to 1.37.1, sqlite to 3.51.2, linux-firmware to 20260810, apr-util to 1.6.5, and libcupsfilters to 2.1.1. These changes close multiple critical vulnerabilities, including arbitrary code execution flaws in sqlite FTS5, denial of service risks in vaultwarden and cri-o, and XML stack attacks in apr-util. Users can apply the patches immediately by running the standard dnf upgrade command paired with the corresponding Fedora advisory ID.

Fedora 43 Update: cri-o1.34-1.34.11-1.fc43
Fedora 43 Update: vaultwarden-1.37.1-1.fc43
Fedora 44 Update: sqlite-3.51.2-2.fc44
Fedora 44 Update: linux-firmware-20260810-1.fc44
Fedora 44 Update: apr-util-1.6.5-1.fc44
Fedora 44 Update: libcupsfilters-2.1.1-9.fc44
Fedora 44 Update: cri-o1.34-1.34.11-1.fc44
Fedora 44 Update: vaultwarden-1.37.1-1.fc44

Debian 11039 Published by Philipp Esselbach 0

Debian and Freexian LTS distributions released security patches addressing more than forty CVEs across BIND DNS, PHP, Django, Flatpak, and several other widely used packages. The BIND9 update backports the software from Debian 10 to stretch, which fixes thirteen CVEs but breaks binary compatibility and requires third-party applications to rebuild against the new libraries. PHP 7.0 and 7.3 patches eliminate stack exhaustion crashes in phar archives and close a SQL injection route in the psql extension, while Django updates block a denial-of-service trigger and cross-site scripting flaws in the admin interface. Additional fixes target Flatpak local privilege escalation, SPIP remote code execution, Neutron network state mutation, jq arbitrary code execution, and libgd2 malformed GIF processing.

ELA-1802-1 bind9 security update (by )
ELA-1801-1 jq security update (by )
ELA-1803-1 ca-certificates CA certificates update (by )
ELA-1802-1 bind9 security update (by )
ELA-1807-1 php7.0 security update (by )
ELA-1806-1 php7.3 security update (by )
ELA-1805-1 libgd2 security update (by )
ELA-1804-1 libconfig-inifiles-perl security update (by )
[DLA 4735-1] neutron security update
[DSA 6434-1] lemonldap-ng security update
[DSA 6432-1] flatpak security update
[DLA 4736-1] python-django security update
[DSA 6435-1] spip security update

AlmaLinux 2626 Published by Philipp Esselbach 0

AlmaLinux issued a batch of security advisories, affecting versions 8, 9, and 10 of its operating system. The updates address vulnerabilities across essential components including the Linux kernel, PostgreSQL, Firefox, iSCSI utilities, and the automatic bug reporting tool. Remediated flaws span denial of service attacks, arbitrary code execution, privilege escalation, and memory corruption issues tied to dozens of tracked CVE identifiers. Organizations running these versions must install the updated packages immediately to prevent unauthorized access and service interruptions.

ALSA-2026:53365: fence-agents security update (Important)
ALSA-2026:49607: frr10 security, bug fix, and enhancement update (Important)
ALSA-2026:53844: iscsi-initiator-utils security, bug fix, and enhancement update (Important)
ALSA-2026:53847: isns-utils security update (Important)
ALSA-2026:47104: firefox security update (Important)
ALSA-2026:52395: postgresql security update (Important)
ALSA-2026:52772: perl-DBI:1.641 security update (Important)
ALSA-2026:53848: isns-utils security update (Important)
ALSA-2026:53452: gstreamer1-plugins-good security update (Moderate)
ALSA-2026:53363: fence-agents security update (Important)
ALSA-2026:53364: resource-agents security update (Important)
ALSA-2026:52396: postgresql:12 security update (Important)
ALSA-2026:52765: kernel security update (Moderate)
ALSA-2026:52761: kernel-rt security update (Moderate)
ALSA-2026:53845: iscsi-initiator-utils security, bug fix, and enhancement update (Important)
ALSA-2026:53846: isns-utils security update (Important)
ALSA-2026:27742: postgresql18 security update (Important)
ALSA-2026:24348: postgresql-jdbc security update (Important)
ALSA-2026:51295: kernel security, bug fix, and enhancement update (Moderate)
ALSA-2026:52841: nodejs-nodemon security update (Important)
ALSA-2026:52675: libarchive security update (Moderate)
ALSA-2026:38490: xorg-x11-server-Xwayland security update (Important)
ALSA-2026:38497: gegl04 security update (Important)
ALSA-2026:49838: osbuild-composer security, bug fix, and enhancement update (Important)
ALSA-2026:54272: abrt security update (Important)
ALSA-2026:54246: kernel security update (Moderate)
ALSA-2026:54290: python-idna security update (Moderate)

[ Archive ]