You are here

Security

DSA-6127-1 linux - security update

Debian Security - 9 February, 2026 - 00:00
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

https://security-tracker.debian.org/tracker/DSA-6127-1

Categories: Security

DSA-6126-1 linux - security update

Debian Security - 9 February, 2026 - 00:00
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

https://security-tracker.debian.org/tracker/DSA-6126-1

Categories: Security

DSA-6125-1 usbmuxd - security update

Debian Security - 9 February, 2026 - 00:00
A path traversal vulnerability was discovered in usbmuxd, a multiplexor daemon used to coordinate USB connections from and to Apple devices (iPhone, iPad, iPod).

Exploiting this vulnerability enables an unprivileged user to create and delete files named `*.plist` (and, in some cases, arbitrarily named) as the user running the daemon (`usbmux` by default).

https://security-tracker.debian.org/tracker/DSA-6125-1

Categories: Security

DSA-6124-1 wireshark - security update

Debian Security - 8 February, 2026 - 00:00
Multiple vulnerabilities have been discocvered in Wireshark, a network protocol analyzer which could result in denial of service or the execution of arbitrary code.

https://security-tracker.debian.org/tracker/DSA-6124-1

Categories: Security

DSA-6123-1 xrdp - security update

Debian Security - 7 February, 2026 - 00:00
Denis Skvortsov discovered that xrdp, a Remote Desktop Protocol (RDP) server, was susceptible to an unauthenticated stack-based buffer overflow vulnerability, which may result in remote execution of arbitrary code.

https://security-tracker.debian.org/tracker/DSA-6123-1

Categories: Security

DSA-6122-1 chromium - security update

Debian Security - 5 February, 2026 - 00:00
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

https://security-tracker.debian.org/tracker/DSA-6122-1

Categories: Security

DSA-6121-1 tomcat11 - security update

Debian Security - 5 February, 2026 - 00:00

Several security vulnerabilities have been found in Tomcat 11, a Java web server and servlet engine. This update improves the handling of HTTP/2 connections and corrects various flaws which can lead to uncontrolled resource consumption and a denial of service.

https://security-tracker.debian.org/tracker/DSA-6121-1

Categories: Security

DSA-6120-1 tomcat10 - security update

Debian Security - 5 February, 2026 - 00:00

Several security vulnerabilities have been found in Tomcat 10, a Java web server and servlet engine. This update improves the handling of HTTP/2 connections and corrects various flaws which can lead to uncontrolled resource consumption and a denial of service.

https://security-tracker.debian.org/tracker/DSA-6120-1

Categories: Security

DSA-6119-1 openjdk-25 - security update

Debian Security - 5 February, 2026 - 00:00
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect certificate validation, CRLF injection or man-in-the-middle attacks.

https://security-tracker.debian.org/tracker/DSA-6119-1

Categories: Security

DSA-6118-1 thunderbird - security update

Debian Security - 3 February, 2026 - 00:00
A security issue was discovered in Thunderbird, which could result in information disclosure

https://security-tracker.debian.org/tracker/DSA-6118-1

Categories: Security

DSA-6117-1 python-django - security update

Debian Security - 31 January, 2026 - 00:00
Multiple security issues were found in Django, a Python web development framework, which could result in SQL injection, directory traversal or denial of service.

https://security-tracker.debian.org/tracker/DSA-6117-1

Categories: Security

DSA-6116-1 chromium - security update

Debian Security - 30 January, 2026 - 00:00
A security issue was discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

https://security-tracker.debian.org/tracker/DSA-6116-1

Categories: Security

DSA-6115-1 gimp - security update

Debian Security - 29 January, 2026 - 00:00
A buffer overflow was discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service or potentially the execution of arbitrary code if malformed PSP images are opened.

https://security-tracker.debian.org/tracker/DSA-6115-1

Categories: Security

DSA-6114-1 pyasn1 - security update

Debian Security - 28 January, 2026 - 00:00
It was discovered that pyasn1, a generic ASN.1 library for Python, is prone to a denial of service vulnerability, which may result in memory exhaustion from malformed OID/RELATIVE-OID with excessive continuation octets.

https://security-tracker.debian.org/tracker/DSA-6114-1

Categories: Security

DSA-6113-1 openssl - security update

Debian Security - 27 January, 2026 - 00:00
Multiple vulnerabilities have been discovered in OpenSSL, a Secure Sockets Layer toolkit, which may result in denial of service, information leaks, or potentially remote code execution.

Additional details can be found in the upstream advisory: https://openssl-library.org/news/secadv/20260127.txt

https://security-tracker.debian.org/tracker/DSA-6113-1

Categories: Security

DSA-6112-1 openjdk-21 - security update

Debian Security - 27 January, 2026 - 00:00
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect certificate validation, CRLF injection or man-in-the-middle attacks.

https://security-tracker.debian.org/tracker/DSA-6112-1

Categories: Security

DSA-6111-1 imagemagick - security update

Debian Security - 26 January, 2026 - 00:00
This update fixes multiple vulnerabilities in Imagemagick, which could result in denial of service via MSL scripts or potentially the execution of arbitrary code if malformed XBM images are processed.

https://security-tracker.debian.org/tracker/DSA-6111-1

Categories: Security

DSA-6110-1 openjdk-17 - security update

Debian Security - 25 January, 2026 - 00:00
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect certificate validation, CRLF injection or man-in-the-middle attacks.

https://security-tracker.debian.org/tracker/DSA-6110-1

Categories: Security

DSA-6109-1 incus - security update

Debian Security - 23 January, 2026 - 00:00
Two security issues were discovered in Incus, a system container and virtual machine manager, which could result the in execution of arbitrary commands via malformed images.

https://security-tracker.debian.org/tracker/DSA-6109-1

Categories: Security

DSA-6102-2 python-urllib3 - regression update

Debian Security - 22 January, 2026 - 00:00
The update for python-urllib3 announced in DSA 6102-1 introduced a regression in the patch meant to address CVE-2026-21441 for the oldstable distribution (bookworm). Updated packages are now available to correct this issue.

https://security-tracker.debian.org/tracker/DSA-6102-2

Categories: Security

Pages

Subscribe to Creative Contingencies aggregator - Security