Linux Security Roundup: BIND, libssh, Keycloak, and rsync Patches Hit AlmaLinux, Debian, Fedora, and Ubuntu
Today's Linux security roundup delivers a massive wave of advisories across nearly every major distribution, driven by urgent patches for DNS cache poisoning in BIND and Unbound, authentication bypasses in libssh, and buffer overflows across gstreamer and .NET 10.0. Red Hat flags four critical updates for Keycloak 26.4.15 and 26.6.6, while SUSE pushes thirty-four vulnerabilities in rsync and splits Redis fixes across multiple supported branches. Ubuntu's August 18 release focuses on kernel ABI changes requiring module rebuilds, alongside a remote code execution flaw in c3p0-java, and Fedora 43 and 44 ship Python 3.14.7 and GitPython 3.1.59 to close CPU exhaustion and path traversal holes
Linux Security Roundup: BIND, libssh, Keycloak, and rsync Patches Hit AlmaLinux, Debian, Fedora, and Ubuntu
The latest Linux security roundup highlights urgent patches across major distributions, including AlmaLinux, Debian, Fedora, and Ubuntu, addressing critical vulnerabilities in BIND, libssh, and other software. Key updates include fixes for DNS cache poisoning, authentication bypasses, and buffer overflows, with various distributions issuing advisories to mitigate these threats. Red Hat emphasized security updates for Keycloak, while SUSE's advisory focused heavily on rsync, which has been affected by multiple vulnerabilities. Each distribution requires users to apply updates through their respective package managers, with specific attention to kernel changes that necessitate module rebuilds and reboots
