You are here

Debian Security

Subscribe to Debian Security feed
Debian Security Advisories
Updated: 1 hour 26 min ago

DSA-5976-1 chromium - security update

14 August, 2025 - 00:00
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

https://security-tracker.debian.org/tracker/DSA-5976-1

Categories: Security

DSA-5975-1 linux - security update

13 August, 2025 - 00:00
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

https://security-tracker.debian.org/tracker/DSA-5975-1

Categories: Security

DSA-5974-1 pgpool2 - security update

13 August, 2025 - 00:00
Two security issues were found in pgpool-II, the connection pool server and replication proxy for PostgreSQL, which could result in authentication bypass and exposure of sensitive information.

https://security-tracker.debian.org/tracker/DSA-5974-1

Categories: Security

DSA-5973-1 linux - security update

12 August, 2025 - 00:00
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

https://security-tracker.debian.org/tracker/DSA-5973-1

Categories: Security

DSA-5972-1 openjdk-17 - security update

12 August, 2025 - 00:00
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in denial of service, information disclosure or weakened TLS connections.

https://security-tracker.debian.org/tracker/DSA-5972-1

Categories: Security

DSA-5971-1 chromium - security update

6 August, 2025 - 00:00
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

https://security-tracker.debian.org/tracker/DSA-5971-1

Categories: Security

DSA-5970-1 sope - security update

31 July, 2025 - 00:00
Stefan Buehler discovered a flaw in sope, the set of Objective-C frameworks powering SOGo, which may result in denial of service via a specially crafted POST request.

https://security-tracker.debian.org/tracker/DSA-5970-1

Categories: Security

DSA-5969-1 redis - security update

31 July, 2025 - 00:00
Several security issues were discovered in Redis, a persistent key-value database, which could result in the execution of arbitrary code or denial of service.

https://security-tracker.debian.org/tracker/DSA-5969-1

Categories: Security

DSA-5968-1 chromium - security update

30 July, 2025 - 00:00
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

https://security-tracker.debian.org/tracker/DSA-5968-1

Categories: Security

DSA-5967-1 php8.2 - security update

28 July, 2025 - 00:00
Multiple security issues were found in PHP, a widely-used open source general purpose scripting language which could result in denial of service or server side request forgery.

https://security-tracker.debian.org/tracker/DSA-5967-1

Categories: Security

DSA-5966-1 thunderbird - security update

27 July, 2025 - 00:00
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code.

https://security-tracker.debian.org/tracker/DSA-5966-1

Categories: Security

DSA-5965-1 chromium - security update

24 July, 2025 - 00:00
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

https://security-tracker.debian.org/tracker/DSA-5965-1

Categories: Security

DSA-5964-1 firefox-esr - security update

23 July, 2025 - 00:00
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code.

https://security-tracker.debian.org/tracker/DSA-5964-1

Categories: Security

DSA-5963-1 chromium - security update

17 July, 2025 - 00:00
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. Google is aware that an exploit for CVE-2025-6558 exists in the wild.

https://security-tracker.debian.org/tracker/DSA-5963-1

Categories: Security

DSA-5962-1 gnutls28 - security update

16 July, 2025 - 00:00
Multiple security issues were discovered in GNU TLS, which could result in denial of service.

https://security-tracker.debian.org/tracker/DSA-5962-1

Categories: Security

DSA-5961-1 slurm-wlm - security update

8 July, 2025 - 00:00
Sekou Diakite from HPE discovered a mistake with permission handling for Coordinators within the accounting system of Slurm Workload Manager, a cluster resource management and job scheduling system, that it could allow a Coordinator to promote a user to Administrator.

- -

https://security-tracker.debian.org/tracker/DSA-5961-1

Categories: Security

DSA-5960-1 djvulibre - security update

7 July, 2025 - 00:00
Antonio Morales discovered an out-of-bounds write in the MMRDecoder::scanruns method in djvulibre, a library and set of tools to handle documents in the DjVu format, which may result in the execution of arbitrary code if a specially crafted document is processed.

https://security-tracker.debian.org/tracker/DSA-5960-1

Categories: Security

DSA-5959-1 thunderbird - security update

6 July, 2025 - 00:00
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code.

https://security-tracker.debian.org/tracker/DSA-5959-1

Categories: Security

DSA-5958-1 jpeg-xl - security update

4 July, 2025 - 00:00
Multiple vulnerabilities are discovered in jpeg-xl, the JPEG XL ("JXL") image coding library, including out of bounds read/write and stack based buffer overflow, which may cause excessive memory usage and denial of service attacks.

CVE-2023-0645

Specifically crafted file could cause an out of bounds read in the exif handler of libjxl.

CVE-2023-35790

Integer underflow in patch decoding code of libjxl.

CVE-2024-11403

Out of bounds write in the JPEG decoder used for recompression of JPEG files.

CVE-2024-11498

Specifically crafted file could cause the JPEG XL decoder to use large amounts of stack space, potentially exhausting the stack.

https://security-tracker.debian.org/tracker/DSA-5958-1

Categories: Security

DSA-5957-1 mediawiki - security update

3 July, 2025 - 00:00
Multiple security issues were discovered in MediaWiki, a website engine for collaborative work, which could result in cross-site scripting, information disclosure, HTML injection or incorrect tracking of authentication events.

https://security-tracker.debian.org/tracker/DSA-5957-1

Categories: Security

Pages