Here is a roundup of last week's Linux security updates for AlmaLinux, Debian GNU/Linux, Fedora Linux, Gentoo Linux, Oracle Linux, Red Hat Enterprise Linux, Rocky Linux, Slackware Linux, SUSE Linux, and Ubuntu Linux.
AlmaLinux
- ALSA-2024:6969: container-tools:rhel8 security update (Moderate)
- ALSA-2024:6973: dovecot security update (Moderate)
- ALSA-2024:6963: gtk3 security update (Moderate)
- ALSA-2024:6964: virt:rhel and virt-devel:rhel security update (Moderate)
- ALSA-2024:6987: emacs security update (Moderate)
- ALSA-2024:6975: python3 security update (Moderate)
- ALSA-2024:6989: expat security update (Moderate)
- ALSA-2024:7001: kernel-rt security update (Important)
- ALSA-2024:6986: nano security update (Low)
- ALSA-2024:6908: go-toolset:rhel8 security update (Important)
- ALSA-2024:6961: python3.12 security update (Moderate)
- ALSA-2024:6962: python3.11 security update (Moderate)
- ALSA-2024:6913: golang security update (Important)
- ALSA-2024:6946: grafana-pcp security update (Important)
- ALSA-2024:6947: grafana security update (Important)
- ALSA-2024:7136: git-lfs security update (Important)
- ALSA-2024:7135: git-lfs security update (Important)
- ALSA-2024:7260: net-snmp security update (Moderate)
- ALSA-2024:7204: osbuild-composer security update (Important)
- ALSA-2024:7262: osbuild-composer security update (Important)
- ALSA-2024:7346: cups-filters security update (Important)
Debian GNU/Linux
- ELA-1182-1 apache2 security update
- [SECURITY] [DLA 3894-1] booth security update
- [SECURITY] [DLA 3895-1] puredata security update
- [SECURITY] [DLA 3896-1] mediawiki security update
- [SECURITY] [DLA 3897-1] trafficserver security update
- [SECURITY] [DSA 5775-1] chromium security update
- ELA-1183-1 apache2 security update
- ELA-1185-1 iproute2 security update
- ELA-1184-1 zeromq3 security update
- [SECURITY] [DLA 3898-1] nghttp2 security update
- [SECURITY] [DLA 3899-1] python-asyncssh security update
- [SECURITY] [DSA 5777-1] booth security update
- [SECURITY] [DSA 5776-1] tryton-server security update
- [SECURITY] [DLA 3900-1] ruby-httparty security update
- [SECURITY] [DLA 3903-1] unbound security update
- [SECURITY] [DLA 3902-1] ruby-rails-html-sanitizer security update
- [SECURITY] [DLA 3901-1] ruby-loofah security update
Fedora Linux
- [SECURITY] Fedora 39 Update: openssl-3.1.4-4.fc39
- [SECURITY] Fedora 41 Update: chromium-129.0.6668.58-1.fc41
- [SECURITY] Fedora 41 Update: iwd-2.22-1.fc41
- [SECURITY] Fedora 40 Update: chisel-1.10.0-1.fc40
- [SECURITY] Fedora 39 Update: chisel-1.10.0-1.fc39
- [SECURITY] Fedora 41 Update: chisel-1.10.0-1.fc41
- [SECURITY] Fedora 39 Update: chromium-129.0.6668.70-1.fc39
- [SECURITY] Fedora 40 Update: chromium-129.0.6668.70-1.fc40
- [SECURITY] Fedora 40 Update: cups-browsed-2.0.1-3.fc40
- [SECURITY] Fedora 40 Update: libppd-2.1~b1-2.fc40
- [SECURITY] Fedora 40 Update: libcupsfilters-2.1~b1-3.fc40
- [SECURITY] Fedora 40 Update: cups-2.4.10-7.fc40
- [SECURITY] Fedora 39 Update: libppd-2.1~b1-2.fc39
- [SECURITY] Fedora 39 Update: cups-browsed-2.0.1-3.fc39
- [SECURITY] Fedora 39 Update: cups-2.4.10-7.fc39
- [SECURITY] Fedora 39 Update: libcupsfilters-2.1~b1-3.fc39
- [SECURITY] Fedora 41 Update: libcupsfilters-2.1~b1-3.fc41
- [SECURITY] Fedora 41 Update: cups-browsed-2.0.1-3.fc41
- [SECURITY] Fedora 41 Update: libppd-2.1~b1-2.fc41
- [SECURITY] Fedora 41 Update: cups-2.4.10-7.fc41
- [SECURITY] Fedora 41 Update: chromium-129.0.6668.70-1.fc41
- [SECURITY] Fedora 40 Update: cjson-1.7.18-1.fc40
Gentoo Linux
- [ GLSA 202409-10 ] Xen: Multiple Vulnerabilities
- [ GLSA 202409-09 ] Exo: Arbitrary Code Execution
- [ GLSA 202409-08 ] OpenVPN: Multiple Vulnerabilities
- [ GLSA 202409-07 ] Rust: Multiple Vulnerabilities
- [ GLSA 202409-06 ] file: Stack Buffer Overread
- [ GLSA 202409-05 ] PJSIP: Heap Buffer Overflow
- [ GLSA 202409-04 ] calibre: Multiple Vulnerabilities
- [ GLSA 202409-03 ] GPL Ghostscript: Multiple Vulnerabilities
- [ GLSA 202409-02 ] PostgreSQL: Privilege Escalation
- [ GLSA 202409-01 ] Portage: Unverified PGP Signatures
- [ GLSA 202409-19 ] Emacs, org-mode: Command Execution Vulnerability
- [ GLSA 202409-18 ] liblouis: Multiple Vulnerabilities
- [ GLSA 202409-17 ] VLC: Multiple Vulnerabilities
- [ GLSA 202409-16 ] Slurm: Multiple Vulnerabilities
- [ GLSA 202409-15 ] stb: Multiple Vulnerabilities
- [ GLSA 202409-14 ] Mbed TLS: Multiple Vulnerabilities
- [ GLSA 202409-13 ] gst-plugins-good: Multiple Vulnerabilities
- [ GLSA 202409-12 ] pypy, pypy3: Multiple Vulnerabilities
- [ GLSA 202409-11 ] Oracle VirtualBox: Multiple Vulnerabilities
- [ GLSA 202409-20 ] curl: Multiple Vulnerabilities
- [ GLSA 202409-24 ] Tor: Multiple Vulnerabilities
- [ GLSA 202409-23 ] ZNC: Remote Code Execution
- [ GLSA 202409-22 ] GCC: Flawed Code Generation
- [ GLSA 202409-21 ] Hunspell: Multiple Vulnerabilities
- [ GLSA 202409-25 ] Xpdf: Multiple Vulnerabilities
- [ GLSA 202409-32 ] nginx: Multiple Vulnerabilities
- [ GLSA 202409-31 ] Apache HTTPD: Multiple Vulnerabilities
- [ GLSA 202409-30 ] yt-dlp: Multiple Vulnerabilities
- [ GLSA 202409-29 ] Docker: Multiple Vulnerabilities
- [ GLSA 202409-28 ] HashiCorp Consul: Multiple Vulnerabilities
- [ GLSA 202409-27 ] tmux: Null Pointer Dereference
- [ GLSA 202409-26 ] IcedTea: Multiple Vulnerabilities
Oracle Linux
- ELBA-2024-12628 Oracle Linux 8 oracle-ovirt-release-45-el8 bug fix update
- ELSA-2024-6947 Important: Oracle Linux 9 grafana security update
- ELSA-2024-6946 Important: Oracle Linux 9 grafana-pcp security update
- ELSA-2024-6913 Important: Oracle Linux 9 golang security update
- ELSA-2024-6908 Important: Oracle Linux 8 go-toolset:ol8 security update
- ELSA-2024-6837 Important: Oracle Linux 8 pcp security update
- ELSA-2024-12684 Moderate: Oracle Linux 7 kernel security update
- ELSA-2024-6784 Moderate: Oracle Linux 8 ruby:3.3 security update
- ELSA-2024-6684 Important: Oracle Linux 8 thunderbird security update
- ELBA-2024-12681 Oracle Linux 8 crash bug fix update
- ELSA-2024-6682 Important: Oracle Linux 8 firefox security update
- ELBA-2024-6841 Oracle Linux 9 git-lfs bug fix and enhancement update
- ELSA-2024-6848 Important: Oracle Linux 9 pcp security update
- ELSA-2024-6757 Moderate: Oracle Linux 9 libnbd security update
- ELSA-2024-6783 Moderate: Oracle Linux 9 openssl security update
- ELSA-2024-6681 Important: Oracle Linux 9 firefox security update
- ELSA-2024-6683 Important: Oracle Linux 9 thunderbird security update
- ELBA-2024-6177 Oracle Linux 9 pybind
- ELBA-2024-12681 Oracle Linux 9 crash bug fix update
- ELBA-2024-6177 pybind11 bug fix update
- ELSA-2024-6997 Important: Oracle Linux 9 kernel security update
- ELSA-2024-7136 Important: Oracle Linux 9 git-lfs security update
- ELSA-2024-6964 Moderate: Oracle Linux 8 virt:ol and virt-devel:rhel security update
- ELSA-2024-6961 Moderate: Oracle Linux 8 python3.12 security update
- ELSA-2024-6963 Moderate: Oracle Linux 8 gtk3 security update
- ELBA-2024-6967 Oracle Linux 8 xmlsec1 bug fix update
- ELBA-2024-6966 Oracle Linux 8 llvm-toolset:ol8 bug fix and enhancement update
- ELSA-2024-5324 Important: Oracle Linux 7 firefox security update (aarch64)
- ELSA-2024-6785 Moderate: Oracle Linux 9 ruby:3.3 security update
- ELSA-2024-7260 Moderate: Oracle Linux 9 net-snmp security update
- ELSA-2024-7204 Important: Oracle Linux 9 osbuild-composer security update
- ELSA-2024-7135 Important: Oracle Linux 8 git-lfs security update
- ELSA-2024-7000 Important: Oracle Linux 8 kernel security update
- ELSA-2024-6989 Moderate: Oracle Linux 8 expat security update
- ELSA-2024-6987 Moderate: Oracle Linux 8 emacs security update
- ELSA-2024-6986 Low: Oracle Linux 8 nano security update
- ELBA-2024-6984 Oracle Linux 8 firewalld bug fix and enhancement update
- ELBA-2024-6988 Oracle Linux 8 glibc bug fix update
- ELBA-2024-6983 Oracle Linux 8 libuser bug fix and enhancement update
- ELBA-2024-6985 Oracle Linux 8 avahi bug fix update
- ELBA-2024-6982 Oracle Linux 8 blktrace bug fix update
- ELBA-2024-6981 Oracle Linux 8 libldb bug fix update
- ELBA-2024-6979 Oracle Linux 8 stunnel bug fix update
- ELBA-2024-6972 Oracle Linux 8 gnome-keyring bug fix update
- ELSA-2024-6973 Moderate: Oracle Linux 8 dovecot security update
- ELBA-2024-6971 Oracle Linux 8 edk2 bug fix and enhancement update
- ELBA-2024-6978 Oracle Linux 8 samba bug fix update
- ELSA-2024-6975 Moderate: Oracle Linux 8 python3 security update
- ELBA-2024-6976 Oracle Linux 8 findutils bug fix update
- ELBA-2024-6974 Oracle Linux 8 libX11 bug fix update
- ELBA-2024-6970 Oracle Linux 8 cloud-init bug fix and enhancement update
- ELSA-2024-6962 Moderate: Oracle Linux 8 python3.11 security update
- ELSA-2024-6969 Moderate: Oracle Linux 8 container-tools:ol8 security update
- ELBA-2024-6968 Oracle Linux 8 tigervnc bug fix update
- ELSA-2024-5324 Important: Oracle Linux 7 firefox security update
- ELBA-2024-6965 Oracle Linux 8 pacemaker bug fix update
Red Hat Enterprise Linux
- RHSA-2024:6909: Important: python3.9 security update
- RHSA-2024:6912: Moderate: go-toolset:rhel8 security update
- RHSA-2024:6908: Important: go-toolset:rhel8 security update
- RHSA-2024:6915: Moderate: python39:3.9 security update
- RHSA-2024:6913: Important: golang security update
- RHSA-2024:6914: Important: golang security update
- RHSA-2024:6907: Important: python-setuptools security update
- RHSA-2024:6931: Important: edk2 security update
- RHSA-2024:6947: Important: grafana security update
- RHSA-2024:6946: Important: grafana-pcp security update
- RHSA-2024:6437: Moderate: Red Hat build of Quarkus 3.8.6 release and security update
- RHSA-2024:7002: Important: kernel security update
- RHSA-2024:6999: Important: kernel security update
- RHSA-2024:6962: Moderate: python3.11 security update
- RHSA-2024:6961: Moderate: python3.12 security update
- RHSA-2024:6991: Important: kernel security update
- RHSA-2024:7003: Important: kernel-rt security update
- RHSA-2024:7005: Important: kernel-rt security update
- RHSA-2024:7001: Important: kernel-rt security update
- RHSA-2024:6995: Important: kernel-rt security update
- RHSA-2024:6992: Important: kernel security update
- RHSA-2024:6990: Important: kernel-rt security update
- RHSA-2024:6964: Moderate: virt:rhel and virt-devel:rhel security update
- RHSA-2024:6969: Moderate: container-tools:rhel8 security update
- RHSA-2024:6975: Moderate: python3 security update
- RHSA-2024:6987: Moderate: emacs security update
- RHSA-2024:6997: Important: kernel security update
- RHSA-2024:6973: Moderate: dovecot security update
- RHSA-2024:7000: Important: kernel security update
- RHSA-2024:7004: Important: kernel security update
- RHSA-2024:6989: Moderate: expat security update
- RHSA-2024:6986: Low: nano security update
- RHSA-2024:6994: Important: kernel security update
- RHSA-2024:6993: Important: kernel security update
- RHSA-2024:6998: Important: kernel security update
- RHSA-2024:6963: Moderate: gtk3 security update
- RHSA-2024:6811: Important: OpenShift Container Platform 4.13.51 bug fix and security update
- RHSA-2024:7074: Moderate: Network Observability 1.6.2 for OpenShift
- RHSA-2024:6827: Moderate: OpenShift Container Platform 4.16.14 security update
- RHSA-2024:6824: Moderate: OpenShift Container Platform 4.16.14 security update
- RHSA-2024:7052: Important: Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.6.GA)
- RHSA-2024:6928: Important: Red Hat JBoss Core Services Apache HTTP Server 2.4.57 SP6 security update
- RHSA-2024:6927: Moderate: Red Hat JBoss Core Services Apache HTTP Server 2.4.57 SP6 security update
- RHSA-2024:7136: Important: git-lfs security update
- RHSA-2024:7137: Moderate: python39:3.9 security update
- RHSA-2024:7135: Important: git-lfs security update
- RHSA-2024:6818: Moderate: OpenShift Container Platform 4.15.34 bug fix and security update
- RHSA-2024:7102: Important: grafana security update
- RHSA-2024:7103: Important: grafana-pcp security update
- RHSA-2024:7101: Important: httpd security update
- RHSA-2024:7164: Important: Migration Toolkit for Containers (MTC) 1.8.4 security and bug fix update
- RHSA-2024:7260: Moderate: net-snmp security update
- RHSA-2024:7262: Important: osbuild-composer security update
- RHSA-2024:7261: Important: osbuild-composer security update
- RHSA-2024:7237: Moderate: Logging for Red Hat OpenShift - 5.8.13
- RHSA-2024:7227: Important: kernel security update
- RHSA-2024:7213: Low: Updated service-interconnect rhel9 container images for 1.4 LTS
- RHSA-2024:7203: Important: git-lfs security update
- RHSA-2024:7204: Important: osbuild-composer security update
- RHSA-2024:7206: Important: osbuild-composer security update
- RHSA-2024:7207: Important: osbuild-composer security update
- RHSA-2024:7205: Important: osbuild-composer security update
- RHSA-2024:7208: Important: osbuild-composer security update
- RHSA-2024:7202: Important: grafana security update
- RHSA-2024:7312: Moderate: Red Hat Ansible Automation Platform 2.4 Product Security and Bug Fix Update
- RHSA-2024:7346: Important: cups-filters security update
Rocky Linux
- RXSA-2024:6567: Moderate: kernel security update
- RXSA-2024:5101: Important: kernel security update
- RLSA-2024:5815: Moderate: nodejs:20 security update
- RLSA-2024:6147: Moderate: nodejs:18 security update
- RLBA-2024:6469: net-snmp bug fix update
- RLSA-2024:5929: Important: postgresql:16 security update
- RLSA-2024:5693: Important: tomcat security update
- RLBA-2024:6679: nss bug fix and enhancement update
- RLSA-2024:5999: Important: postgresql security update
- RLBA-2024:6287: libguestfs bug fix and enhancement update
- RLBA-2024:6143: virt-v2v bug fix and enhancement update
- RLSA-2024:6529: Moderate: dovecot security update
- RLSA-2024:6146: Moderate: python3.12 security update
- RLBA-2024:6669: libvirt bug fix and enhancement update
- RLBA-2024:6416: augeas bug fix and enhancement update
- RLBA-2024:5691: ca-certificates bug fix and enhancement update
- RLSA-2024:6464: Moderate: glib2 security update
- RLBA-2024:6577: mdadm bug fix update
- RLSA-2024:6567: Moderate: kernel security update
- RLBA-2024:6133: rteval bug fix update
Slackware Linux
SUSE Linux
- openSUSE-SU-2024:14357-1: moderate: chromedriver-129.0.6668.58-1.1 on GA media
- openSUSE-SU-2024:14355-1: moderate: stgit-2.4.12-1.1 on GA media
- openSUSE-SU-2024:14353-1: moderate: onefetch-2.22.0-1.1 on GA media
- openSUSE-SU-2024:14356-1: moderate: system-user-zabbix-6.0.33-1.1 on GA media
- openSUSE-SU-2024:14354-1: moderate: rage-encryption-0.10.0+0-3.1 on GA media
- SUSE-SU-2024:3354-1: important: Security update for wpa_supplicant
- SUSE-SU-2024:3357-1: important: Security update for python310
- SUSE-SU-2024:3358-1: important: Security update for ffmpeg-4
- openSUSE-SU-2024:14359-1: moderate: cargo-c-0.10.3~git0.ee7d7ef-2.1 on GA media
- openSUSE-SU-2024:14358-1: moderate: MozillaFirefox-130.0.1-1.1 on GA media
- openSUSE-SU-2024:0312-1: important: Security update for chromium
- openSUSE-SU-2024:0311-1: important: Security update for chromium
- SUSE-SU-2024:3408-1: important: Security update for the Linux Kernel
- openSUSE-SU-2024:14361-1: moderate: libecpg6-17~rc1-1.1 on GA media
- SUSE-SU-2024:3411-1: important: Security update for python39
- openSUSE-SU-2024:14362-1: moderate: python310-azure-identity-1.18.0-1.1 on GA media
- openSUSE-SU-2024:14360-1: moderate: postgresql16-16.4-1.1 on GA media
- SUSE-SU-2024:3397-1: moderate: Security update for libmfx
- SUSE-SU-2024:3396-1: important: Security update for qemu
- SUSE-SU-2024:3404-1: moderate: Security update for rage-encryption
- SUSE-SU-2024:3383-1: important: Security update for the Linux Kernel
- openSUSE-SU-2024:14363-1: moderate: cargo-audit-0.20.0~git66.972ac93-3.1 on GA media
- openSUSE-SU-2024:14364-1: moderate: obs-service-cargo-1.3.6-5.1 on GA media
- openSUSE-SU-2024:14365-1: moderate: traefik-3.1.4-1.1 on GA media
- SUSE-SU-2024:3427-1: important: Security update for python311
- SUSE-SU-2024:3421-1: moderate: Security update for xen
- SUSE-SU-2024:3428-1: moderate: Security update for apr
- SUSE-SU-2024:3418-1: important: Security update for python311
- SUSE-SU-2024:3422-1: moderate: Security update for xen
- SUSE-SU-2024:3423-1: important: Security update for xen
- SUSE-SU-2024:3424-1: moderate: Security update for xen
- SUSE-SU-2024:3454-1: important: Security update for kubernetes1.28
- SUSE-SU-2024:3455-1: important: Security update for kubernetes1.27
- SUSE-SU-2024:3456-1: important: Security update for kubernetes1.26
- SUSE-SU-2024:3457-1: important: Security update for kubernetes1.25
- SUSE-SU-2024:3453-1: important: Security update for kubernetes1.24
- SUSE-SU-2024:3458-1: important: Security update for kubernetes1.24
- SUSE-SU-2024:3459-1: important: Security update for kubernetes1.24
- SUSE-SU-2024:3444-1: low: Security update for opensc
- SUSE-SU-2024:3445-1: low: Security update for opensc
- openSUSE-SU-2024:0314-1: important: Security update for chromium
- openSUSE-SU-2024:14366-1: moderate: libopenssl-3-devel-3.1.4-14.1 on GA media
- openSUSE-SU-2024:14367-1: moderate: traefik2-2.11.10-1.1 on GA media
- openSUSE-SU-2024:0319-1: moderate: Security update for coredns
Ubuntu Linux
- [USN-6992-2] Firefox regressions
- [USN-7028-1] Linux kernel vulnerabilities
- [USN-7020-2] Linux kernel vulnerabilities
- [USN-7021-2] Linux kernel vulnerabilities
- [USN-7029-1] Linux kernel vulnerabilities
- [USN-7007-3] Linux kernel vulnerabilities
- [USN-6999-2] Linux kernel vulnerabilities
- [USN-7030-1] py7zr vulnerability
- [USN-7031-2] Puma vulnerability
- [USN-7031-1] Puma vulnerability
- [USN-7009-2] Linux kernel vulnerabilities
- [USN-7032-1] Tomcat vulnerability
- [USN-7035-1] AppArmor vulnerability
- [USN-7034-1] ca-certificates update
- [USN-7036-1] Rack vulnerabilities
- [USN-7021-3] Linux kernel vulnerabilities
- [USN-7020-3] Linux kernel vulnerabilities
- [USN-7034-2] ca-certificates update
- [USN-7003-4] Linux kernel vulnerabilities
- [USN-7037-1] OpenJPEG vulnerability
- [USN-7038-1] APR vulnerability
- [USN-7039-1] Linux kernel vulnerabilities
- [USN-7043-1] cups-filters vulnerabilities
- [USN-7045-1] libppd vulnerability
- [USN-7042-1] cups-browsed vulnerability
- [USN-7041-1] CUPS vulnerability
- [USN-7044-1] libcupsfilters vulnerability
- [USN-7040-1] ConfigObj vulnerability