Linux Security Roundup: Ubuntu Re-fixes Nginx, SUSE Patches 139 Firefox Vulnerabilities
Ubuntu re-patches nginx to resolve a regression and close three CVEs, while simultaneously fixing local privilege escalation holes in libinput and dracut that affect the 24.04 and 26.04 releases. SUSE leads the enterprise charge with a Firefox update that quietly closes 139 vulnerabilities across SLE and Micro variants, alongside important patches for clamav and python39. Fedora and RHEL round out the wave with twelve and seventeen advisories respectively, targeting predictable session IDs in perl-Dancer2, memory leaks in perl-Protocol-HTTP2, and widespread nginx fixes across EL8 and EL9. Debian keeps it surgical with a single privilege escalation fix for the L2TP VPN plugin in trixie, though you will need to verify your Ubuntu Pro subscriptions to cover the remaining notices.
Linux Security Roundup: Ubuntu Re-fixes Nginx, SUSE Patches 139 Firefox Vulnerabilities
Recent Linux security updates include Ubuntu re-patching nginx to address a regression and close three CVEs, while also fixing local privilege escalation vulnerabilities in libinput and dracut. SUSE has released a significant Firefox update that resolves 139 vulnerabilities alongside important patches for clamav and python39. Fedora and RHEL have issued numerous advisories addressing session ID predictability and memory leaks among other issues, while Debian has targeted a single privilege escalation flaw in the L2TP VPN plugin. Overall, these updates emphasize the need for users to apply patches promptly to mitigate potential security risks across various Linux distributions
