For Debian GNU/Linux 9 (Stretch) and 10 (Buster) Extended LTS, the following updates have been issued:
- ELA-1391-1: A security update for GIMP, addressing an out-of-bounds write vulnerability related to FLI file parsing (CVE-2025-2761).
For Debian GNU/Linux 10 (Buster) Extended LTS, the updates include:
- ELA-1390-1: A security update for glib2.0, fixing an integer overflow issue in the function g_date_time_new_from_iso8601 (CVE-2025-3360).
- ELA-1386-1: A security update for atop, enhancing data validation when connecting to the atopgpud daemon (CVE-2025-31160).
- ELA-1392-1: A security update for Twitter Bootstrap 4, addressing a cross-site scripting vulnerability in the carousel component (CVE-2024-6531).
For Debian GNU/Linux 11 (Bullseye) LTS, the update includes:
- DLA-4128-1: A security update for glib2.0, similar to the one for Buster, which fixes the integer overflow issue (CVE-2025-3360).
Users are advised to upgrade their packages to mitigate these vulnerabilities. More detailed information can be found in the respective security tracker pages and Debian LTS advisories.
In summary, these updates demonstrate Debian's commitment to ensuring the security of its software environment through timely patches and advisories. Users should stay vigilant and regularly apply updates to maintain system integrity and protect against potential security threats. For future updates, users can refer to the Debian security wiki and tracker pages to keep abreast of any new vulnerabilities and corresponding fixes
Glib2.0, GIMP, Atop, Bootstrap4 updates for Debian
Debian GNU/Linux has undergone multiple security updates, encompassing glib2.0, gimp, atop, and twitter-bootstrap4:
Debian GNU/Linux 9 (Stretch) and 10 (Buster) Extended LTS:
ELA-1391-1 gimp security update
Debian GNU/Linux 10 (Buster) Extended LTS:
ELA-1390-1 glib2.0 security update
ELA-1386-1 atop security update
ELA-1392-1 twitter-bootstrap4 security update
Debian GNU/Linux 11 (Bullseye) LTS:
[DLA 4128-1] glib2.0 security updateGlib2.0, GIMP, Atop, Bootstrap4 updates for Debian @ Linux Compatible