Linux Security Roundup: Unbound, Chromium, and WebkitGTK Lead the List
A wave of distro security advisories landedtoday, and the same cluster of flaws is showing up across AlmaLinux, RHEL, Oracle Linux, Rocky Linux, and SUSE. The most urgent target is unbound, which received Critical ratings for DNSSEC remote code execution on nearly every major distribution. Fedora's webkitgtk 2.54.0 jump quietly fixed hundreds of ANGLE and Skia CVEs on top of its listed 26 WebKit bugs. If you run a DNSSEC resolver or a Chromium-based browser on any of these distros, point your patch commands at those two first.
Linux Security Roundup: Unbound, Chromium, and WebkitGTK Lead the List @ Linux Compatible
Linux Security Roundup: Unbound, Chromium, and WebkitGTK Lead the List
A recent wave of security advisories has highlighted critical vulnerabilities across various Linux distributions, particularly focusing on the unbound DNS resolver, which poses a severe remote code execution risk. Fedora's webkitgtk upgrade also addresses numerous CVEs, including hundreds from ANGLE and Skia, emphasizing the importance of patching these components first if they are in use. Other distributions like AlmaLinux, RHEL, and SUSE have also reported similar vulnerabilities, urging users to prioritize updates for critical packages. Overall, system administrators are advised to apply these patches promptly, especially for the unbound and Chromium-related updates, to mitigate potential security threats
