Product
Last Report

Click here to browse the Windows compatibility database

Click here to browse the Linux compatibility database

Click here to browse the macOS compatibility database

Date: 2026-05-07 10:28 | Last update:



2026-05-07

Reviews 52631 Published by Philipp Esselbach 0

Dell returns to its flagship lineup with the XPS 16, offering premium build quality and strong performance at a high cost. PNY tackles the graphics market with a compact RTX 5080 that overclocks NVIDIA's latest chip for impressive 4K gaming without taking up much space. The SteelSeries Aerox 3 Wireless Gen 2 catches attention through its bold magenta aesthetic while maintaining reliable wireless connectivity for daily tasks. Meanwhile, the CPS PcCooler YT1000 provides modern ATX 3.1 stability and efficiency, though buyers should weigh those strengths against some brand pedigree concerns.

Computers: Dell XPS 16 (2026) Review: A flagship return to form
Graphics Cards: PNY GeForce RTX 5080 Slim OC Review - A Compact 4K Powerhouse
Input: SteelSeries Aerox 3 Wireless Gen 2 Review: The Bright and Bold
Power: CPS PcCooler YT1000 ATX 3.1 Power Supply Unit Review

Linux 3351 Published by Philipp Esselbach 0

The latest stable LTS kernel updates tackle a heavy batch of memory safety issues across the networking stack, patching use-after-free races and routing cache bugs that routinely crash systems under load. Storage and filesystem code gets tighter bounds checking to stop out-of-bounds reads on corrupted images while fixing deadlock loops in journaling and RAID stripe handling. Graphics and peripheral drivers finally resolve initialization crashes on RDNA4 hardware, clean up resource leaks during probe failures, and correct audio notification logic that was flooding userspace with false events. Security hardening rounds out the release with stricter crypto digest validation, KVM nested virtualization consistency checks, and relaxed userfaultfd restrictions to keep sandboxed workloads running smoothly.

Linux 3351 Published by Philipp Esselbach 0

The 7.0.4 kernel finally stops AMD RDNA4 graphics cards from tripping over empty memory tables during boot, so you can actually get past a black screen and into your desktop without staring at a kernel oops. Memory management got patched to keep the slab allocator from corrupting itself when non-maskable interrupts sneak in on single-processor systems, while the networking stack finally rejects malformed packet rules that used to trigger undefined behavior and silent crashes. Nested virtualization logic now properly syncs guest state before resuming execution, and filesystem drivers like NTFS3 and ext2 got stricter bounds checking to stop crafted disk images from reading past allocated buffers or triggering panic conditions. It is a solid stability bump that quietly patches the race conditions and buffer overflows most people never notice until their server decides to reboot itself, so just run your updates and get back to actually using your machine.

Software 44349 Published by Philipp Esselbach 0

Mesa 26.1.0 delivers a solid graphics stack update that finally gives Intel virtual machines faster VirtIO-GPU passthrough without the usual emulation overhead. The project officially drops support for VirGL, which means anyone still relying on that legacy translation layer needs to migrate to native Vulkan drivers before the code completely rots. Developers packed in dozens of new Vulkan and OpenGL extensions across AMD, Intel, PowerVR, and ARM hardware to close feature gaps that modern games and productivity apps actually need. The release also patches several driver crashes and enforces stricter build requirements like static C++ linking for Rusticl, so users can expect a noticeably more stable rendering pipeline without chasing experimental gimmicks.

Ubuntu 7075 Published by Philipp Esselbach 0

Ubuntu issued a series of security patches to fix critical flaws across several widely used software packages. The updates target WebKitGTK and Apache HTTP Server, which contain multiple vulnerabilities that could allow remote attackers to execute arbitrary code or crash the systems through malicious web content and network traffic. Additional fixes resolve issues in EditorConfig, Dynaconf, and nghttp2 that previously left these tools vulnerable to local crashes or unsafe template evaluation. System administrators should apply the recommended package updates immediately and restart any dependent applications to fully mitigate the risks across supported Ubuntu releases.

[USN-8237-1] WebKitGTK vulnerabilities
[USN-8238-1] EditorConfig vulnerability
[USN-8231-1] Dynaconf vulnerability
[USN-8239-1] Apache HTTP Server vulnerabilities
[USN-8233-2] nghttp2 vulnerability

SUSE 5639 Published by Philipp Esselbach 0

SUSE issued a comprehensive set of security patches that address numerous vulnerabilities across their Linux distributions. These updates tackle critical flaws in essential software like the Linux kernel live patch, Python three, Java twenty one OpenJDK, and curl, alongside moderate fixes for applications including Thunderbird, Erlang, and OpenSSL three. System administrators can mitigate risks involving privilege escalation, credential exposure, and remote service disruptions by running the provided zypper or YaST commands on their specific SUSE Linux Enterprise or openSUSE Leap installations. Each advisory includes detailed package lists and targeted installation steps to help organizations quickly secure their environments against these newly disclosed threats.

SUSE-SU-2026:1700-1: important: Security update for PackageKit
SUSE-SU-2026:1705-1: important: Security update for java-21-openjdk
openSUSE-SU-2026:10685-1: moderate: libthrift-0_23_0-0.23.0-1.1 on GA media
openSUSE-SU-2026:10683-1: moderate: skim-4.6.1-1.1 on GA media
openSUSE-SU-2026:10682-1: moderate: rclone-1.74.0-1.1 on GA media
openSUSE-SU-2026:10687-1: moderate: MozillaThunderbird-140.10.1-1.1 on GA media
openSUSE-SU-2026:10681-1: moderate: python311-social-auth-core-4.8.7-1.1 on GA media
openSUSE-SU-2026:10678-1: moderate: liblxc-devel-7.0.0-1.1 on GA media
SUSE-SU-2026:1715-1: important: Security update for python3
SUSE-SU-2026:1711-1: moderate: Security update for openssl-3
SUSE-SU-2026:1714-1: important: Security update for erlang
SUSE-SU-2026:1723-1: moderate: Security update for openCryptoki
SUSE-SU-2026:1717-1: important: Security update for curl
SUSE-SU-2026:1718-1: important: Security update for the Linux Kernel (Live Patch 40 for SUSE Linux Enterprise 15 SP4)

Rocky Linux 903 Published by Philipp Esselbach 0

Rocky Linux administrators must install several new security patches that fix vulnerabilities across versions 8 through 10. These updates cover critical software including the kernel, OpenSSH, Grafana, Go toolsets, and corosync while carrying moderate or important severity ratings. You can find detailed CVSS base scores for every listed vulnerability by visiting the official errata links provided in each advisory. Delaying these installations leaves your infrastructure open to known exploits that might disrupt daily operations or expose sensitive information.

RLSA-2026:13673: Moderate: corosync security update
RLSA-2026:13672: Important: fence-agents security update
RLSA-2026:13670: Moderate: python-tornado security update
RLSA-2026:13284: Important: LibRaw security update
RLSA-2026:13657: Moderate: corosync security update
RLSA-2026:13285: Important: libcap security update
RLSA-2026:13383: Important: openssh security update
RLSA-2026:13641: Moderate: python-tornado security update
RLSA-2026:13644: Moderate: corosync security update
RLSA-2026:13566: Important: kernel security update
RLSA-2026:13498: Important: dovecot security update
RLSA-2026:11712: Important: grafana security update
RLSA-2026:13515: Moderate: freeipmi security update
RLSA-2026:11881: Important: grafana-pcp security update
RLSA-2026:10217: Important: golang security update
RLSA-2026:11711: Important: grafana security update
RLSA-2026:13565: Important: kernel security update
RLSA-2026:10219: Important: golang security update
RLSA-2026:11704: Important: grafana-pcp security update
RLSA-2026:13578: Important: kernel-rt security update
RLSA-2026:11507: Important: grafana security update
RLSA-2026:10704: Important: go-toolset:rhel8 security update
RLSA-2026:11514: Important: grafana-pcp security update
RLSA-2026:13577: Important: kernel security update

Red Hat 9406 Published by Philipp Esselbach 0

Red Hat has released a series of security advisories to address critical vulnerabilities across its enterprise software ecosystem. These updates target widely used packages like Firefox, the Linux kernel, and OpenShift Container Platform while covering multiple RHEL versions from seven through ten. Most of the patches carry an Important severity rating, though a few components such as corosync and capstone are classified as Moderate based on their Common Vulnerability Scoring System metrics. Administrators should review the detailed references for each advisory to apply the necessary fixes before those vulnerabilities can be exploited in production environments.

RHSA-2026:13922: Important: firefox security update
RHSA-2026:13917: Important: fence-agents security update
RHSA-2026:13811: Important: OpenShift Container Platform 4.21.14 bug fix and security update
RHSA-2026:13977: Important: firefox security update
RHSA-2026:13936: Important: kernel security update
RHSA-2026:13923: Moderate: capstone security update
RHSA-2026:13916: Important: fence-agents security update
RHSA-2026:14303: Important: thunderbird security update
RHSA-2026:14276: Important: Red Hat AMQ Broker 7.12.7 release and security update
RHSA-2026:14272: Important: Red Hat AMQ Broker 7.13.5 release and security update
RHSA-2026:14230: Important: kernel security update
RHSA-2026:14224: Important: LibRaw security update
RHSA-2026:14213: Moderate: corosync security update
RHSA-2026:14212: Moderate: corosync security update
RHSA-2026:14216: Moderate: corosync security update
RHSA-2026:14214: Moderate: corosync security update
RHSA-2026:14215: Moderate: corosync security update
RHSA-2026:14205: Moderate: corosync security update
RHSA-2026:14200: Important: git-lfs security update
RHSA-2026:14437: Important: sudo security update
RHSA-2026:14339: Important: kernel security update
RHSA-2026:14391: Important: Red Hat build of Cryostat security update
RHSA-2026:13727: Important: OpenShift Container Platform 4.18.40 bug fix and security update
RHSA-2026:14301: Important: kernel-rt security update
RHSA-2026:14228: Important: sudo security update
RHSA-2026:14223: Important: thunderbird security update
RHSA-2026:14210: Moderate: corosync security update
RHSA-2026:14211: Moderate: corosync security update

Oracle Linux 6479 Published by Philipp Esselbach 0

Oracle has pushed out a massive wave of security patches and bug fixes across versions seven through ten of its Linux distribution. These updates tackle serious flaws in core packages like the kernel, OpenSSH, Dovecot, and systemd that could otherwise let attackers escalate privileges or crash systems entirely. System administrators running x86_64 or aarch64 hardware need to apply these changes right away because multiple advisories carry an important severity rating. Beyond the critical fixes, the release also bundles routine stability improvements for everyday tools like Samba, Thunderbird, and cloud-init.

ELSA-2026-13916 Important: Oracle Linux 10 fence-agents security update
ELSA-2026-13651 Moderate: Oracle Linux 10 systemd security update
ELSA-2026-13643 Important: Oracle Linux 10 osbuild-composer security update
ELSA-2026-13642 Important: Oracle Linux 10 image-builder security update
ELSA-2026-13566 Important: Oracle Linux 10 kernel security update
ELSA-2026-13641 Moderate: Oracle Linux 10 python-tornado security update
ELSA-2026-13498 Important: Oracle Linux 10 dovecot security update
ELBA-2026-13648 Oracle Linux 10 util-linux bug fix and enhancement update
ELSA-2026-13380 Important: Oracle Linux 10 openssh security update
ELBA-2026-13653 Oracle Linux 10 samba bug fix and enhancement update
ELBA-2026-13647 Oracle Linux 10 libguestfs bug fix and enhancement update
ELSA-2026-13515 Moderate: Oracle Linux 10 freeipmi security update
ELBA-2026-13652 Oracle Linux 10 libdnf bug fix and enhancement update
ELBA-2026-13646 Oracle Linux 10 virt-v2v bug fix and enhancement update
ELBA-2026-13645 Oracle Linux 10 passt bug fix and enhancement update
ELBA-2026-50252 Oracle Linux 10 oracle-indexhtml bug fix update
ELSA-2026-13857 Important: Oracle Linux 9 dovecot security update
ELSA-2026-13677 Moderate: Oracle Linux 9 systemd security update
ELSA-2026-13978 Moderate: Oracle Linux 9 libsoup security update
ELBA-2026-13678 Oracle Linux 9 samba bug fix and enhancement update
ELSA-2026-13671 Important: Oracle Linux 9 image-builder security update
ELSA-2026-13381 Important: Oracle Linux 9 openssh security update
ELSA-2026-13917 Important: Oracle Linux 9 fence-agents security update
ELSA-2026-13670 Moderate: Oracle Linux 9 python-tornado security update
ELSA-2026-13565 Important: Oracle Linux 9 kernel security update
ELBA-2026-13674 Oracle Linux 9 keylime bug fix and enhancement update
ELSA-2026-13577 Important: Oracle Linux 8 kernel security update
ELSA-2026-13830 Important: Oracle Linux 8 dovecot security update
ELSA-2026-13383 Important: Oracle Linux 8 openssh security update
ELSA-2026-13285 Important: Oracle Linux 8 libcap security update
ELSA-2026-13537 Important: Oracle Linux 8 thunderbird security update
ELSA-2026-13284 Important: Oracle Linux 8 LibRaw security update
ELSA-2026-13414 Important: Oracle Linux 8 tigervnc security update
ELBA-2026-13659 Oracle Linux 8 device-mapper-multipath bug fix and enhancement update
ELBA-2026-13662 Oracle Linux 8 dbus bug fix and enhancement update
ELBA-2026-13660 Oracle Linux 8 rng-tools bug fix and enhancement update
ELBA-2026-13658 Oracle Linux 8 krb5 bug fix and enhancement update
ELBA-2026-13656 Oracle Linux 8 lapack bug fix and enhancement update
ELBA-2026-13655 Oracle Linux 8 ksh bug fix and enhancement update
ELBA-2026-50248 Oracle Linux 8 cloud-init bug fix update
ELSA-2026-9614 Important: Oracle Linux 7 python security update
ELSA-2026-9745 Important: Oracle Linux 7 python3 security update

Fedora Linux 9342 Published by Philipp Esselbach 0

Fedora administrators need to apply a fresh batch of critical security patches for versions 42 through 44 right away. These updates cover essential network utilities and development tools including Kerberos, PowerDNS, Squid, and the official GitHub command line client. Each package closes specific loopholes that could let attackers crash services or run unauthorized code on your machines. You can push all these fixes to your system by running a simple dnf upgrade command in your terminal.

Fedora 43 Update: krb5-1.22.2-4.fc43
Fedora 43 Update: pyOpenSSL-26.1.0-1.fc43
Fedora 43 Update: forgejo-runner-12.7.3-2.fc43
Fedora 43 Update: squid-7.5-1.fc43
Fedora 43 Update: pdns-5.0.4-1.fc43
Fedora 42 Update: pdns-5.0.4-1.fc42
Fedora 42 Update: vim-9.2.390-1.fc42
Fedora 42 Update: xorg-x11-server-Xwayland-24.1.11-1.fc42
Fedora 43 Update: gnutls-3.8.13-1.fc43
Fedora 43 Update: nano-8.5-3.fc43
Fedora 43 Update: dovecot-2.4.3-2.fc43
Fedora 44 Update: gh-2.92.0-1.fc44
Fedora 44 Update: dovecot-2.4.3-2.fc44

Debian 10892 Published by Philipp Esselbach 0

A batch of urgent security updates rolled out covers several widely used tools including OpenJDK Java runtimes, Apache HTTP Server, Wireshark, lrzip, and ImageMagick. These patches fix serious flaws that could let attackers execute arbitrary code, leak private data, crash systems through denial of service attacks, or bypass Kerberos authentication checks. You should upgrade your affected packages right away since Debian has already released stable versions for all supported distributions. Detailed tracking pages and official documentation provide straightforward instructions for applying these critical fixes to your environment.

[DLA 4566-1] openjdk-11 security update
[DLA 4565-1] openjdk-17 security update
ELA-1708-1 openjdk-11 security update
[DSA 6248-1] apache2 security update
[DSA 6249-1] wireshark security update
[DLA 4567-1] lrzip security update
ELA-1710-1 imagemagick security update

AlmaLinux 2557 Published by Philipp Esselbach 0

AlmaLinux distributed a batch of security errata for versions 8 through 10 throughout. The updates address moderate and important vulnerabilities in widely used software including the Linux kernel, Tornado web framework, Dovecot mail server, and several cluster management utilities. These patches fix critical weaknesses that could otherwise allow attackers to launch denial of service attacks, inject cookies, or escalate system privileges. IT administrators should apply these updates immediately to keep their networks secure and prevent potential service disruptions.

ALSA-2026:13670: python-tornado security update (Moderate)
ALSA-2026:13657: corosync security update (Moderate)
ALSA-2026:13902: resource-agents security update (Important)
ALSA-2026:13651: systemd security update (Moderate)
ALSA-2026:3840: image-builder security update (Important)
ALSA-2026:1838: image-builder security update (Moderate)
ALSA-2026:13916: fence-agents security update (Important)
ALSA-2026:13642: image-builder security update (Important)
ALSA-2026:13515: freeipmi security update (Moderate)
ALSA-2026:13641: python-tornado security update (Moderate)
ALSA-2026:13643: osbuild-composer security update (Important)
ALSA-2026:13498: dovecot security update (Important)
ALSA-2026:13565: kernel security update (Important)
ALSA-2026:13566: kernel security update (Important)
ALSA-2026:13917: fence-agents security update (Important)
ALSA-2026:13857: dovecot security update (Important)
ALSA-2026:13978: libsoup security update (Moderate)
ALSA-2026:14200: git-lfs security update (Important)
2026-05-06

Fedora Linux 9342 Published by Philipp Esselbach 0

Fedora Linux 42 drops official support next week, leaving anyone still running it without security patches or bug fixes after May 13. Systems left unpatched will quickly become vulnerable to known exploits, so checking the current release version and running the official upgrade tool becomes mandatory. The upgrade process relies on standard package managers that handle dependencies automatically, though skipping third party scripts keeps the system from breaking during the transition. Newer Fedora branches will continue receiving steady maintenance until roughly a month after Fedora 45 ships, making the switch the only sensible move for anyone wanting a secure desktop.

Software 44349 Published by Philipp Esselbach 0

Inkscape 1.4.4 drops as a routine maintenance patch that finally stops the software from randomly crashing or refusing to open in the first place. The update patches twenty stability issues and eighteen smaller bugs while quietly smoothing out the viewport when dealing with heavy vector files. Designers will appreciate the new rotation shortcut for geometric shapes, a fresh color palette, and native Windows on ARM builds that actually perform without lag. This version also serves as a practical bridge to convert multipage documents before the upcoming 1.5 format ships.

Software 44349 Published by Philipp Esselbach 0

UniGetUI 2026.1.9 arrives as a straight stability patch that quietly fixes the exact bugs making the package manager frustrating to use. macOS users finally get proper code signing, which stops the operating system from flagging the app as unverified every time it launches. Windows owners benefit from repaired privilege elevation, a fixed webview crash, and a portable installer that no longer deletes itself during updates. The release skips flashy new features in favor of routine maintenance, so users should just let the update run and get back to managing software without the usual hiccups.

Software 44349 Published by Philipp Esselbach 0

Goverlay 1.8.0 finally gives Linux gamers a proper way to manage performance tweaks per title without wrecking their global settings. The interface gets a complete redesign with a darker theme, collapsible sidebar, and a live system status card that actually replaces the need for separate monitoring tools. Users can now click any Steam game to apply isolated configurations, toggle active overlays with visual badges, and reset changes with a single right click. Long standing bugs like lost OptiScaler preferences, accidental ReShade file deletion, and cluttered home directories finally get patched out.

Software 44349 Published by Philipp Esselbach 0

VKD3D-Proton 3.0.1 drops with a solid focus on smoother frame pacing and mobile GPU optimization through deferred clears and dedicated transfer queues. The update patches several shader compiler crashes while slipping in targeted workarounds for stubborn titles like Crimson Desert and Spider Man 2. NVIDIA Reflex timing and ExecuteIndirect batching also get tuned to cut down stutter during heavy asset streaming. This release quietly strips out legacy code and preps the translation layer for the upcoming descriptor heap overhaul, so users can just install it and let the backend handle the rest.

Software 44349 Published by Philipp Esselbach 0

Fish Shell 4.7.0 finally patches the exact bugs that make terminal work feel like a chore, including history corruption from abrupt shutdowns and theme variables leaking into background scripts. Interactive users will notice smoother completion paging, properly sorted directory lists, and private mode history that actually stays isolated. Developers get cleaner config path handling, modernized translation workflows, and fixed man page completions for newer coreutils versions. Long-standing regressions like broken vi mode editing and double command execution on failures finally disappear, making the upgrade worth the restart.

Reviews 52631 Published by Philipp Esselbach 0

Here is a roundup of today's reviews. Cougar steps away from conventional designs with the CFV235 Vision case, swapping traditional layouts for a central floating ventilation setup and an integrated LCD panel that catches the eye. On the laptop front, reviewers praise the Lenovo Yoga Slim 7i Aura Edition for prioritizing a lightweight chassis and impressive battery life over raw processing power. Budget builders will appreciate several other picks, including the CPS PCCOOLER RT720 TC air cooler that balances cooling performance with a clean aesthetic alongside the EPOMAKER TH108 Pro keyboard equipped with Creamy Jade switches. The roundup concludes by highlighting the MSI Z890 GAMING PLUS WIFI6E motherboard as an accessible platform for Intel Core Ultra processors while pointing to the Inland QN450 SSD as a highly efficient storage drive that beats rivals on value.

Casing: Cougar CFV235 Vision Review – Floating Design Meets Display
Computers: Lenovo Yoga Slim 7i Aura Edition (2026) Review: Vibrant display, lightweight design, and an endurance champ
Cooling: CPS PCCOOLER RT720 TC Review
Input: EPOMAKER TH108 Pro Review
Motherboards: MSI Z890 GAMING PLUS WIFI6E Motherboard Review
Storage: Inland QN450 1TB SSD Review: Maximum efficiency, minimum spend

Software 44349 Published by Philipp Esselbach 0

PHP 8.5.6 drops a necessary cleanup batch that patches multiple security vulnerabilities and squashes persistent memory leaks across the core runtime and popular extensions. Server admins should upgrade immediately since the update fixes critical CVEs in MBString, SOAP, and Standard modules that could easily trigger crashes or expose injection risks under heavy load. The release also stabilizes Opcache by resolving JIT assertion failures and branch optimization bugs that previously caused random segfaults during complex script execution. Windows developers get improved Curl compression support while various other extensions receive targeted memory management fixes without introducing unnecessary bloat, so just grab the update and keep your error logs quiet.

Ubuntu 7075 Published by Philipp Esselbach 0

Ubuntu issued an emergency update for nghttp2 after discovering that flawed session termination checks could let remote attackers crash the HTTP/2 library and cause service outages. Django developers patched three separate weaknesses in the Python web framework, including cookie caching errors that risked session theft, malformed ASGI requests that drained system resources, and cache middleware bugs capable of leaking confidential data. Mako also needed a quick fix since improperly handled double slashes inside URIs could trick the template engine into revealing sensitive network information. Container users must apply new Docker releases to stop BuildKit from bypassing directory restrictions through weak path validation and Git URL fragment checks.

[USN-8233-1] nghttp2 vulnerability
[USN-8232-1] Django vulnerabilities
[USN-8234-1] Mako vulnerability
[USN-8230-1] Docker vulnerabilities

SUSE 5639 Published by Philipp Esselbach 0

SUSE has released a batch of moderate security updates to patch multiple vulnerabilities across several key software packages. The fixes target widely used tools such as Xen, curl, Firefox, Grafana, and Prometheus on openSUSE Tumbleweed, Leap 15.4, and SUSE Linux Enterprise Micro systems. These patches resolve specific cross-referenced CVEs that could potentially allow local privilege escalation or denial of service attacks. Administrators need to apply the updates right away through zypper or YaST, and they must reboot any machines running Xen to complete the process.

SUSE-SU-2026:1692-1: moderate: Security update for xen
openSUSE-SU-2026:10676-1: moderate: golang-github-prometheus-prometheus-3.11.3-1.1 on GA media
openSUSE-SU-2026:10675-1: moderate: dpkg-1.22.22-1.1 on GA media
openSUSE-SU-2026:10674-1: moderate: curl-8.20.0-1.1 on GA media
openSUSE-SU-2026:10673-1: moderate: coredns-1.14.3-1.1 on GA media
openSUSE-SU-2026:10670-1: moderate: avahi-0.8-43.1 on GA media
openSUSE-SU-2026:10677-1: moderate: grafana-11.6.14+security01-2.1 on GA media
openSUSE-SU-2026:10671-1: moderate: bubblewrap-0.11.2-1.1 on GA media
openSUSE-SU-2026:10668-1: moderate: MozillaFirefox-150.0.1-1.1 on GA media
openSUSE-SU-2026:10669-1: moderate: alloy-1.16.0-2.1 on GA media
openSUSE-SU-2026:10672-1: moderate: cmctl-2.5.0-1.1 on GA media

Slackware 1257 Published by Philipp Esselbach 0

Slackware users need to upgrade hunspell to version 1.7.3 across both the stable release and current development branches to patch critical security vulnerabilities. The updated binaries are available on official FTP servers hosted by the OSU Open Source Lab, so you can grab them directly from your preferred mirror. Make sure to download the correct build for your system architecture and verify the provided MD5 signatures before installing anything. A quick root command using upgradepkg will handle the rest and keep your spelling tools running securely.

hunspell (SSA:2026-125-01)

Red Hat 9406 Published by Philipp Esselbach 0

Red Hat has issued a batch of security advisories targeting multiple packages across its enterprise Linux distribution. The updates primarily focus on critical components like the kernel, sudo, and Firefox, while also addressing libraries such as LibRaw and nginx. Most of these patches carry an Important severity rating, though a handful are classified as Moderate based on their potential impact. Administrators managing RHEL versions six through ten should apply these fixes promptly to maintain system stability and protect against known vulnerabilities.

RHSA-2026:13582: Important: firefox security update
RHSA-2026:13577: Important: kernel security update
RHSA-2026:13578: Important: kernel-rt security update
RHSA-2026:13857: Important: dovecot security update
RHSA-2026:13860: Important: LibRaw security update
RHSA-2026:13854: Important: LibRaw security update
RHSA-2026:13839: Important: nginx security update
RHSA-2026:13845: Important: webkit2gtk3 security update
RHSA-2026:13812: Important: updated RHEL-8 based Middleware Containers container images
RHSA-2026:13830: Important: dovecot security update
RHSA-2026:13750: Important: openssh security update
RHSA-2026:13692: Important: python3.11 security update
RHSA-2026:13680: Important: nginx security update
RHSA-2026:13673: Moderate: corosync security update
RHSA-2026:13682: Important: firefox security update
RHSA-2026:13664: Important: kernel security update
RHSA-2026:13665: Important: firefox security update
RHSA-2026:13734: Important: kernel security update
RHSA-2026:13731: Important: sudo security update
RHSA-2026:13693: Important: .NET 8.0 security update
RHSA-2026:13677: Moderate: systemd security update
RHSA-2026:13672: Important: fence-agents security update
RHSA-2026:13671: Important: image-builder security update
RHSA-2026:13670: Moderate: python-tornado security update
RHSA-2026:13683: Important: firefox security update
RHSA-2026:13657: Moderate: corosync security update
RHSA-2026:13681: Important: kernel security update
RHSA-2026:13644: Moderate: corosync security update
RHSA-2026:13651: Moderate: systemd security update
RHSA-2026:13643: Important: osbuild-composer security update
RHSA-2026:13642: Important: image-builder security update
RHSA-2026:13641: Moderate: python-tornado security update
RHSA-2026:13634: Important: nginx security update
RHSA-2026:13631: Important: Red Hat Build of Apache Camel 4.14 for Quarkus 3.27 update is now available (RHBQ 3.27.3.SP1)
RHSA-2026:13600: Important: firefox security update
RHSA-2026:13583: Important: firefox security update
RHSA-2026:13596: Important: firefox security update
RHSA-2026:11721: Important: Red Hat build of Quarkus 3.27.3.SP1 security update
RHSA-2026:13902: Important: resource-agents security update
RHSA-2026:13889: Important: sudo security update
RHSA-2026:13895: Important: sudo security update
RHSA-2026:13888: Important: sudo security update
RHSA-2026:13891: Important: sudo security update
RHSA-2026:13896: Important: sudo security update
RHSA-2026:13892: Important: sudo security update
RHSA-2026:13887: Important: kernel security update
RHSA-2026:13870: Important: LibRaw security update
RHSA-2026:13868: Important: LibRaw security update
RHSA-2026:13867: Important: rh-podman-desktop security update

Fedora Linux 9342 Published by Philipp Esselbach 0

Fedora 44 users need to install three security updates released this week to fix critical flaws across essential networking software. The pyOpenSSL library reaches version 26.1.0 after patching a bug that allowed NUL bytes to silently truncate certificate fields and break data consistency. Squid advances to its seventh major release by addressing two distinct security flaws tied to ICP traffic processing. PowerDNS also receives a major bump to 5.0.4, which closes a file descriptor exhaustion exploit, stops database corruption from malformed records, and blocks information leaks caused by unsafe LDAP queries.

Fedora 44 Update: pyOpenSSL-26.1.0-1.fc44
Fedora 44 Update: squid-7.5-1.fc44
Fedora 44 Update: pdns-5.0.4-1.fc44

Debian 10892 Published by Philipp Esselbach 0

Debian LTS has released security patches for libarchive and pyjwt to address multiple critical flaws across several supported distributions. The libarchive update fixes four separate vulnerabilities that could trigger infinite loops, leak sensitive memory data, crash applications, or allow arbitrary code execution on older architectures. A separate advisory corrects a pyjwt specification violation where the library improperly accepted JSON Web Tokens containing unrecognized critical header parameters. Administrators managing Debian 11 or older extended support releases should upgrade these packages immediately to close these security gaps.

[DLA 4563-1] libarchive security update
[DLA 4564-1] pyjwt security update
ELA-1707-1 pyjwt security update

AlmaLinux 2557 Published by Philipp Esselbach 0

AlmaLinux released a batch of security advisories to patch critical vulnerabilities across multiple system packages. Most notifications carry an Important severity rating and cover essential tools such as the Linux kernel, Thunderbird, TigerVNC, LibRaw, Dovecot, systemd, and image builder. Engineers addressed a wide array of dangerous flaws including memory corruption issues, privilege escalation risks, and information disclosure bugs that could compromise system stability. Administrators need to install these updates quickly because the patches also fix denial of service vulnerabilities in several widely deployed services.

ALSA-2026:13578: kernel-rt security update (Important)
ALSA-2026:13537: thunderbird security update (Important)
ALSA-2026:13414: tigervnc security update (Important)
ALSA-2026:13577: kernel security update (Important)
ALSA-2026:13284: LibRaw security update (Important)
ALSA-2026:13677: systemd security update (Moderate)
ALSA-2026:13671: image-builder security update (Important)
ALSA-2026:13830: dovecot security update (Important)
ALSA-2026:3839: image-builder security update (Important)

[ Archive ]