Tumbleweed Users Face Urgent 2000+ Package Updates
openSUSE rebuilds the entire codebase of Tumbleweed after a backdoor discovery in the xz library. Immediate update required!
openSUSE rebuilds the entire codebase of Tumbleweed after a backdoor discovery in the xz library. Immediate update required!
After Linux XZ Tarball's backdoor discovery, Debian's devs decided to pause the 12.6 release for an in-depth analysis of CVE effects.
The Dirty Pipe vulnerability allows attackers to overwrite data in read-only files and to privilege themselves with code injection.
Security vendor Qualys found the flaw and published details in a coordinated disclosure.
It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device.
KDE Ark Archive Tool contains a path traversal vulnerability that could be exploited by potential hackers to overwrite files or execute remote code on a system.