You are here
Security
DSA-5887-1 exim4 - security update
DSA-5886-1 ruby-rack - security update
DSA-5885-1 webkit2gtk - security update
CVE-2024-44192
Tashita Software Security discovered that processing maliciously crafted web content may lead to an unexpected process crash.
CVE-2024-54467
Narendra Bhati discovered that a malicious website may exfiltrate data cross-origin.
CVE-2025-24201
Apple discovered that maliciously crafted web content may be able to break out of Web Content sandbox.
DSA-5884-1 libxslt - security update
DSA-5883-1 mercurial - security update
DSA-5882-1 chromium - security update
DSA-5881-1 rails - security update
DSA-5880-1 freetype - security update
DSA-5879-1 opensaml - security update
DSA-5878-1 php8.2 - security update
DSA-5877-1 chromium - security update
DSA-5876-1 thunderbird - security update
DSA-5875-1 chromium - security update
DSA-5874-1 firefox-esr - security update
DSA-5873-1 libreoffice - security update
DSA-5872-1 xorg-server - security update
DSA-5871-1 emacs - security update
CVE-2024-53920
Elisp byte-compilation ('elisp-flymake-byte-compile') in the Flymake mode is now disabled for untrusted files.
CVE-2025-1244
An incomplete escaping of shell meta characters in the man reader component could potentially result in the execution of arbitrary shell commands. Discovered by Maxim Nikulin.
DSA-5870-1 openh264 - security update
DSA-5869-1 chromium - security update
DSA-5868-1 openssh - security update
Details can be found in the Qualys advisory at https://www.qualys.com/2025/02/18/openssh-mitm-dos.txt
Pages
