Request Tracker, Sidekiq, AIDE updates for Ubuntu

Published by

Ubuntu Linux has recently released security updates addressing vulnerabilities in Request Tracker, Sidekiq, and AIDE. The updates are crucial for maintaining the security of the respective software across various Ubuntu versions.

Request Tracker (USN-7692-1)
On August 13, 2025, Ubuntu issued security notice USN-7692-1, which identified several vulnerabilities in Request Tracker (version 5). The affected Ubuntu releases include 22.04 LTS, 24.04 LTS, and 25.04. Key issues include:

- Timing attacks allowing sensitive data access (CVE-2021-38562).
- Cross-site scripting (XSS) vulnerabilities via malicious attachments and URL parameters (CVE-2022-25802, CVE-2025-30087).
- Information leaks due to improper handling of emails and caching (CVE-2023-41259, CVE-2024-3262).
- An obsolete cryptographic algorithm used in email encryption (CVE-2025-2545).

To correct these issues, users are advised to update to the specified package versions for their respective Ubuntu releases.

Sidekiq (USN-7695-1)
On August 14, 2025, Ubuntu released security notice USN-7695-1, addressing vulnerabilities in Sidekiq (version 6.3.1). The affected versions include 18.04 LTS, 20.04 LTS, and 22.04 LTS. Notable vulnerabilities include:

- Insufficient input sanitization leading to XSS (CVE-2021-30151).
- Input bound issues causing potential denial of service (CVE-2022-23837).

As with Request Tracker, users should update their systems to the recommended package versions to mitigate risks.

AIDE (USN-7697-1)
Also on August 14, 2025, security notice USN-7697-1 was issued for AIDE (Advanced Intrusion Detection Environment) which impacts multiple versions of Ubuntu, including 14.04 LTS through 25.04. Vulnerabilities include:

- Incorrect handling of filenames and extended file attributes that could allow a local attacker to bypass file detection or cause denial of service (CVE-2025-54389, CVE-2025-54409).

Users are encouraged to update to the latest version of AIDE as specified for their release.

General Update Instructions
For all software mentioned, users should perform a standard system update to apply the necessary changes and ensure their systems are secure. It is also recommended to restart the affected services after updates.

Conclusion
These updates are part of ongoing efforts by Ubuntu to enhance security and protect users from potential exploits. Users should remain vigilant and regularly update their systems, especially when security notices are released.

For detailed references to the vulnerabilities and package information, users can visit the official Ubuntu security notice pages linked in the original announcement

Request Tracker, Sidekiq, AIDE updates for Ubuntu

Ubuntu Linux has been updated with security updates, including fixes for Request Tracker, Sidekiq, and AIDE vulnerabilities:

[USN-7692-1] Request Tracker vulnerabilities
[USN-7695-1] Sidekiq vulnerabilities
[USN-7697-1] AIDE vulnerabilities

Request Tracker, Sidekiq, AIDE updates for Ubuntu @ Linux Compatible