Debian GNU/Linux has issued two significant security updates for the Konsole terminal emulator, applicable to both Debian 10 (Buster) Extended LTS and Debian 11 (Bullseye) LTS.
The updates are as follows:
1. ELA-1466-1: This update addresses a vulnerability identified as CVE-2025-49091, which was discovered by Dennis Dast. The issue concerns how Konsole handles the telnet URI scheme, potentially allowing for the execution of arbitrary code under certain configurations. The update for Debian 10 includes the version 4:18.04.0-1+deb10u1.
2. DSA 5945-1: This update also tackles the same vulnerability (CVE-2025-49091) for Debian 11, with a fixed version of 4:22.12.3-1+deb12u1.
Users are strongly advised to upgrade their Konsole packages to mitigate the risks associated with this vulnerability.
For those seeking more information, Debian provides a security tracker page dedicated to Konsole, where users can access detailed security status updates. Additionally, the Debian Security Advisories page offers guidance on how to apply these updates and addresses frequently asked questions.
In summary, these updates are critical for maintaining system security, particularly for users utilizing the affected versions of Konsole. It is essential for system administrators and users alike to remain vigilant and ensure that their software is up-to-date to protect against potential security threats
The updates are as follows:
1. ELA-1466-1: This update addresses a vulnerability identified as CVE-2025-49091, which was discovered by Dennis Dast. The issue concerns how Konsole handles the telnet URI scheme, potentially allowing for the execution of arbitrary code under certain configurations. The update for Debian 10 includes the version 4:18.04.0-1+deb10u1.
2. DSA 5945-1: This update also tackles the same vulnerability (CVE-2025-49091) for Debian 11, with a fixed version of 4:22.12.3-1+deb12u1.
Users are strongly advised to upgrade their Konsole packages to mitigate the risks associated with this vulnerability.
For those seeking more information, Debian provides a security tracker page dedicated to Konsole, where users can access detailed security status updates. Additionally, the Debian Security Advisories page offers guidance on how to apply these updates and addresses frequently asked questions.
In summary, these updates are critical for maintaining system security, particularly for users utilizing the affected versions of Konsole. It is essential for system administrators and users alike to remain vigilant and ensure that their software is up-to-date to protect against potential security threats
Konsole security updates for Debian 10 and 11
Debian GNU/Linux has received two Konsole security updates for Debian 10 (Buster) Extended LTS and 11 (Bullseye) LTS:
ELA-1466-1 konsole security update
[DSA 5945-1] konsole security updateKonsole security updates for Debian 10 and 11 @ Linux Compatible