Ubuntu has patched a Kdenlive project-file issue affecting 26.04 LTS. The advisory says dangerous proxy parameters could pass through to MLT consumer properties and allow attacker-controlled projects to execute commands. It lists updates for Kdenlive and the MLT packages, tying the risk to opening a malicious project rather than ordinary video playback.
An update for kernel is now available for NVIDIA for RHEL 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for freerdp is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for ruby is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for gawk is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for multiple packages is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for ghostscript is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.