Red Hat has announced a series of security updates for several key components of Red Hat Enterprise Linux (RHEL). These updates include important security patches for PostgreSQL versions 12 and 13, Python 3.12, Qt5-qt3d, and a Red Hat build of Keycloak. Additionally, there are updates for the OpenShift Container Platform and the Satellite 6 Client.
HTTPD, UDisks2, PostgreSQL, PAM, Kernel updates for Oracle Linux
Oracle Linux has released a series of critical security updates for various versions of its operating system, addressing vulnerabilities in key packages such as httpd, udisks2, PostgreSQL, PAM, and the kernel. These updates target Oracle Linux versions 7, 8, 9, and 10, with vulnerabilities classified as moderate or important. The following advisories detail specific updates:
UDisks2 update for Fedora 41
Fedora 41 has released an important update for the UDisks2 package to address a security vulnerability identified as CVE-2025-8067. This issue involved an out-of-bounds read that could potentially compromise the UDisks daemon. The update, which upgrades the udisks2 package to version 2.10.2, is now available for users to install.
Linux Kernel 6.16.5 released
The Linux kernel version 6.16.5 has officially been released, providing users with the latest updates and improvements. The full source code can be accessed [here](https://cdn.kernel.org/pub/linux/kernel/v6.x/linux-6.16.5.tar.xz), while a patch file for those updating from a previous version is available [here](https://cdn.kernel.org/pub/linux/kernel/v6.x/patch-6.16.5.xz). Additionally, the PGP signature for verification purposes can be found [here](https://cdn.kernel.org/pub/linux/kernel/v6.x/linux-6.16.5.tar.sign).
Linux Kernel 6.12.45 released
The Linux kernel version 6.12.45 has officially been released. Users can access the full source code, patch files, and the PGP signature for verification through the provided links.
Linux Kernel 6.1.150 released
The Linux kernel version 6.1.150 has officially been released, providing users with the latest updates and enhancements.
Linux Kernel 6.6.104 released
The Linux kernel version 6.6.104 has officially been released, providing users with the latest updates and improvements.
Linux Kernel 5.15.191 released
The Linux kernel version 5.15.191 has been officially released. This update includes various enhancements and fixes, contributing to the overall stability and performance of the Linux operating system.
Linux Kernel 5.4.298 released
The Linux kernel version 5.4.298 has been officially released. This update includes the full source code and a patch, both of which are available for download through the provided links. Additionally, a PGP signature file is also accessible to verify the integrity of the release.
Linux Kernel 5.10.242 released
The Linux kernel version 5.10.242 has officially been released. This update is now available for users and developers who wish to download it.
GNOME 49.rc released: The final release is imminent
The GNOME Release Team has announced the release of GNOME 49.rc, the latest development version of the GNOME desktop environment, which indicates that the final version is on the horizon. This release includes extensive updates across various modules, focusing on performance, stability, security, and user experience, alongside numerous bug fixes and the deprecation of outdated code.
KMail, PIM, Messagelib, Kernel, Ruby updates for Ubuntu
Ubuntu Linux has announced a series of critical security updates targeting various components, including KMail, KDE PIM, PIM Messagelib, the Linux kernel for Azure, and Ruby programming language installations. These updates address multiple vulnerabilities that could be exploited by attackers, with specific details outlined below.
Node-Cipher-Base updates for Debian
A security update has been released for the node-cipher-base package in Debian GNU/Linux 11 (Bullseye) LTS. This update addresses a vulnerability, designated as CVE-2025-9287, which was due to incomplete type checks when validating input. The issue has been resolved in version 1.0.4-4+deb11u1 of the package.
HTTPD, Pam, PostgreSQL updates for AlmaLinux
The AlmaLinux team has issued critical security updates for three significant software packages: httpd (Apache HTTP Server), pam (Pluggable Authentication Modules), and PostgreSQL 12.
Libmuopen64plus-devel, Nvidia-Open-Driver, Python-Aiohttp, Munge updates for SUSE
Recent updates have been released for various openSUSE and SUSE systems, focusing on improving security and software functionality. Key updates include:
PostgreSQL, Python-Request, HTTPD, Satellite, Kernel updates for RHEL
Red Hat has issued critical security updates for several packages within its Red Hat Enterprise Linux (RHEL) ecosystem, including PostgreSQL, Python Requests, HTTPD, Satellite, and kernel updates. These updates are applicable to multiple RHEL versions, notably RHEL 8 and RHEL 9, and are categorized based on their severity, which varies from moderate to important.
Exiv2 and Libsixel updates for Fedora
Summary of Fedora Security Updates for Exiv2 and Libsixel
Python-Eventlet and Python-H2 updates for Debian 11 LTS
Summary and Extension of Debian 11 LTS Updates for Python Packages
Kernel, PostgreSQL, mod_http2 updates for AlmaLinux
The AlmaLinux team has announced several important security updates aimed at addressing vulnerabilities in key packages such as kernel-rt, kernel, PostgreSQL 15, and mod_http2. These updates, deemed moderate to important in severity, apply to both AlmaLinux 8 and 9 versions. Among the critical security fixes, there are patches for potential use-after-free bugs in the kernel and significant fixes for code execution vulnerabilities within PostgreSQL 15.
Rekor, Libudisks2, Python, and more updates for SUSE
SUSE Linux systems have recently received several security updates addressing vulnerabilities across various packages. The highlighted packages include rekor, libudisks2, traefik2, python311-eventlet, jupyter-bqplot-jupyterlab, kured, dcmtk, govulncheck-vulndb, ucode-intel, and python-future. Each update is characterized by its severity rating and associated vulnerabilities, along with CVE identifiers and CVSS scores indicating the potential impact.