Linux Security Roundup: Ubuntu Reverts nginx Fix; BIND, MySQL, and OpenShift Hit with Critical CVEs

Published by

Linux distributions have released critical security updates this week, addressing vulnerabilities in BIND, MySQL, and nginx, among others. Ubuntu faced scrutiny for reverting a broken nginx fix while AlmaLinux and RHEL issued patches for various security issues, especially in BIND and MySQL, which are under active exploitation. Other distributions like Debian and Gentoo also pushed updates to tackle multiple CVEs, including significant flaws in Firefox ESR and libraries like libssh2 and quickjs-ng that could lead to arbitrary code execution. Administrators are urged to apply these updates promptly to maintain system security and mitigate potential risks



Linux Security Roundup: Ubuntu Reverts nginx Fix; BIND, MySQL, and OpenShift Hit with Critical CVEs

Linux distributions pushed significant security updates today with BIND facing widespread exploitation attempts as AlmaLinux and Ubuntu released patches for cache poisoning and DNSSEC validation flaws. MySQL 8.4 jumped versions while AlmaLinux shipped a rebased build to address roughly two dozen issues touching the optimizer and replication engine, and RHEL rolled out updates for OpenShift and MicroShift. Ubuntu's release drew attention for a messy nginx revert after an initial regex fix caused breakage in the wild, alongside patches for .NET, libheif, and legacy curl packages. Other critical advisories include SUSE closing 19 holes in Erlang, Debian's Firefox ESR update with 28 CVEs, and Gentoo's urgent push for remote code execution fixes in quickjs-ng and libssh2.

Linux Security Roundup: Ubuntu Reverts nginx Fix; BIND, MySQL, and OpenShift Hit with Critical CVEs @ Linux Compatible