Linux Security Roundup: RHEL Directory Server Gets Only Critical Rating as Vendors Ship 150+ CVEs

Published by

Eight major Linux vendors have released a significant number of security updates, with Red Hat leading the way by issuing 48 errata, including a Critical rating for its Directory Server module. The updates predominantly focus on kernel vulnerabilities, with SUSE reporting 153 CVEs and Oracle’s UEK kernels also addressing several hundred issues. Noteworthy updates include Fedora's Xwayland addressing 12 CVEs, Ubuntu's Erlang patch for 30 vulnerabilities, and various fixes across other distributions like AlmaLinux, Debian, and Rocky Linux. Users are advised to prioritize these updates, particularly the kernel and critical security patches, and to ensure they reboot their systems after applying necessary updates



Linux Security Roundup: RHEL Directory Server Gets Only Critical Rating as Vendors Ship 150+ CVEs

Eight major Linux vendors shipped a large round of security updates, led by Red Hat's 48 errata and its lone Critical rating on the Red Hat Directory Server redhat-ds:11 module. Kernel rollups dominated across the board, with SUSE logging 153 CVEs (84 in the kernel alone) and Oracle's UEK 5.15 and 6.12 builds each carrying several hundred. Notable non-kernel hits include Fedora Xwayland's 12 CVEs, Ubuntu's Erlang fix for 30 issues, and a glibc TOCTOU privilege-escalation flaw in SLE 15. Patch priority starts with the directory server, then the kernel reboots, then the Important and Moderate fixes.

Linux Security Roundup: RHEL Directory Server Gets Only Critical Rating as Vendors Ship 150+ CVEs @ Linux Compatible