OpenSSH 10.5 Fixes Security Flaws as Project Responds to AI-Assisted Bug Discovery
OpenSSH 10.5 ships with several security fixes, as developers say growing AI-assisted vulnerability research is prompting more frequent releases.
OpenSSH 10.5 ships with several security fixes, as developers say growing AI-assisted vulnerability research is prompting more frequent releases.
ClamAV 1.5.4 is now available with fixes for eight CVEs affecting ZIP, PDF, Mach-O, XAR, UnRAR, PE processing, and other components.
The Arch Linux team has suspended package adoption in the AUR while it investigates malicious adoptions and follow-up commits.
GNOME will shorten its vulnerability disclosure deadline to 30 days starting August 1, citing the growing number of AI-generated security reports.
OpenSSH 10.4 is now available with fixes for sftp, scp, and sshd, plus experimental support for ML-DSA 44 and Ed25519 composite signatures.
The Guix team urges users to upgrade after vulnerabilities were found in its substitute handling and channel update mechanisms.
ClamAV 1.5.3 open-source antivirus engine released with fixes for multiple security vulnerabilities affecting file parsing, archive scanning, and executable unpacking.
The privacy-focused Tails 7.9.1 ships with Linux kernel 6.12.94, addressing DirtyClone and another privilege-escalation vulnerability.
Canonical says Ubuntu kernel updates are available for DirtyClone, a high-severity Linux local privilege escalation flaw tracked as CVE-2026-43503.
Parrot OS 7.3 is now available, bringing Linux kernel 7.0, optimized builds for newer CPUs, official Vagrant boxes, and refreshed security tools.