Linux Security Roundup: Ubuntu's 101-CVE Kernel and a Critical freerdp Fix

Published by

Ubuntu recently released a significant kernel update containing 101 CVEs for its Google Container Engine image, impacting 38 subsystems, which appears to address a backlog rather than an immediate crisis. Red Hat and Rocky Linux both flagged a Critical freerdp fix, while Debian issued a large 62-CVE patch for Firefox ESR, along with advisories for redis and webkit2gtk. Fedora and SUSE also provided updates, including important fixes for WordPress and OpenSSL vulnerabilities, while AlmaLinux and Rocky Linux focused on essential patches. Users are advised to prioritize Critical and high-severity fixes before moving on to Important and Moderate updates during their maintenance windows



Linux Security Roundup: Ubuntu's 101-CVE Kernel and a Critical freerdp Fix

Ubuntu shipped 101 CVEs in a single kernel update for its Google Container Engine image on 26.04 LTS, hitting 38 subsystems and pointing more to a cleared backlog than a fresh emergency. Red Hat and Rocky Linux both tagged freerdp Critical for version 10, making it the top fix for anyone running remote desktop protocols. Debian leads with a sprawling 62-CVE Firefox ESR patch alongside a redis advisory and a "fix for the fix" for webkit2gtk, while Fedora, SUSE, and the rest close out the day with notable items including Fedora's WordPress RCE and SUSE's high-rated python-anyio flaw. Patch the Critical and high-severity fixes first, then work through the Important and Moderate updates at your next maintenance window.

Linux Security Roundup: Ubuntu's 101-CVE Kernel and a Critical freerdp Fix @ Linux Compatible