14.05.2026 23:45 Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For Debian 11 bullseye, these problems have been fixed in version 1:140.10.2esr-1~deb11u1. We recommend that you upgrade your thunderbird packages.
14.05.2026 23:45 It was discovered that missing input sanitising in the DIGEST-MD5 parser of the GNU SASL library could result in denial of service. For the oldstable distribution , this problem has been fixed in version 2.2.0-1+deb12u1. For the stable distribution , this problem has been fixed in
14.05.2026 23:45 Multiple security issues were discovered in PostgreSQL, which may result in authorisation bypass, execution of arbitrary code, information disclosure, privilege escalation, SQL injection or denial of service. For the stable distribution , these problems have been fixed in version 17.10-0+deb13u1.
14.05.2026 23:45 Multiple security issues were discovered in PostgreSQL, which may result in authorisation bypass, execution of arbitrary code, information disclosure, privilege escalation, SQL injection or denial of service. For the oldstable distribution , these problems have been fixed in version 15.18-0+deb12u1.
14.05.2026 23:45 Several vulnerabilities have been discovered in the FFmpeg multimedia framework, which could result in denial of service or potentially the execution of arbitrary code if malformed files/streams are processed. For the stable distribution , this problem has been fixed in version 7:7.1.4-0+deb13u1.
14.05.2026 23:45 nginx could be made to crash or run programs if it received specially crafted network traffic.
14.05.2026 17:15 It was discovered that nghttp2, an implementation of the HTTP/2 protocol, could be crashed via an assertion failure. A remote attacker could exploit this to cause a DoS attack by sending a malformed frame immediately after triggering the termination path. For the oldstable distribution , this problem has been fixed
14.05.2026 17:15 MGASA-2026-0137 - Updated perl-XML-LibXML packages fix security vulnerability
14.05.2026 17:15 MGASA-2026-0136 - Updated perl-Net-CIDR-Lite packages fix security vulnerabilities
14.05.2026 17:15 MGASA-2026-0135 - Updated dnsmasq packages fix security vulnerabilities
14.05.2026 17:15 MGASA-2026-0134 - Updated redis packages fix security vulnerabilities
14.05.2026 17:15 MGASA-2026-0133 - Updated flatpak packages fix security vulnerabilities
14.05.2026 10:32 The 6.19.14-102 stable kernel update contains a fix for the Fragnesia CVE-2026-46300.
14.05.2026 10:32 Fixes CVE-2026-5766: Potential denial-of-service vulnerability in ASGI requests via file upload limit bypass Fixes CVE-2026-35192: Session fixation via public cached pages and SESSION_SAVE_EVERY_REQUEST Fixes CVE-2026-6907: Potential exposure of private data due to incorrect
14.05.2026 10:32 Update to 3.1.50; fixes CVE-2026-42215 / GHSA-mv93-w799-cj2w. Fixes security defects GHSA-rpm5-65cw-6hj4, GHSA-x2qx-6953-8485, GHSA-7545-fcxq-7j24, and GHSA-v87r-6q3f-2j67.

