Ubuntu has issued a libXpm fix for images containing zero-dimension values. Its advisory says a local attacker could use a crafted XPM image to exhaust resources and deny service. Updated packages are listed for Ubuntu 22.04, 24.04 and 26.04 LTS; the notice does not establish that the issue has been exploited in the wild.
An update for freerdp is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for ruby is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for gawk is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for multiple packages is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for ghostscript is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
Canonical has released kernel fixes for Ubuntu 14.04 and 16.04 LTS, addressing NFS server, IPv6 and Netfilter flaws that could allow system compromise. USN-8864-1 covers several kernel variants; most listed fixes require Ubuntu Pro's Legacy Support add-on, while FIPS packages have separate Pro availability. Ubuntu says a reboot is required after updating, and the changed kernel interface requires rebuilding and reinstalling third-party modules.