Linux Security Roundup: Daily Patches Hit StrongSwan, PostgreSQL, and 389 Directory Server Across Five Major Distros
Major Linux distributions shipped coordinated security updates today, with Debian prioritizing eleven CVEs in strongSwan that cover authentication bypasses and IKEv2 use-after-free conditions alongside a single jbig2dec denial-of-service fix. RHEL escalated 389 Directory Server to Critical across every active branch from RHEL 7 ELS through 10.0 EUS, while SUSE pushed a heavy bulletin that patched 28 vulnerabilities in PostgreSQL 18, nine in WebKitGTK, and several privilege escalation bugs in swtpm. Fedora absorbed a dozen Chromium CVEs spanning V8 type confusion and Skia out-of-bounds writes, and Oracle completed its container toolchain supply chain cleanup by rebuilding Buildah, skopeo, and runc against newer Go releases to close out cgroup regressions and memory vulnerabilities. The underlying risk of skipping these patches far outweighs the operational overhead, so start your rollout with the directory and VPN stacks before moving to the database and browser updates.
Linux Security Roundup: Daily Patches Hit StrongSwan, PostgreSQL, and 389 Directory Server Across Five Major Distros
Major Linux distributions released coordinated security updates targeting critical vulnerabilities today, with Debian focusing on strongSwan, RHEL on 389 Directory Server, and SUSE addressing multiple issues in PostgreSQL and other components. Debian's strongSwan update includes patches for authentication bypasses and use-after-free vulnerabilities, while RHEL escalated the 389 Directory Server to Critical status across various active branches due to significant vulnerabilities. SUSE's extensive patching covers 28 vulnerabilities in PostgreSQL and several other components, including WebKitGTK and OpenSSL, while Fedora addressed multiple CVEs in Chromium and other packages. Oracle also updated its container toolchain to mitigate vulnerabilities, emphasizing the importance of applying these patches promptly to minimize security risks
