Fedora 42 RoundcubeWebmail Important CSS Injection Fix CVE-2026-26079

20.02.2026 14:32 Release 1.6.13 Managesieve: Fix handling of string-list format values for date tests in Out of Office Fix remote image blocking bypass via SVG content reported by nullcathedral Fix CSS injection vulnerability reported by CERT Polska

Fedora 42 python-azure-core Essential Patch CVE-2026-21227

20.02.2026 14:32 Update to 1.38.0 to address CVE-2026-21226

Fedora 42 azure-cli Critical CVE-2026-21226 Advisory FEDORA-2026-3beebfc8ff

20.02.2026 14:32 Update to 1.38.0 to address CVE-2026-21226

Fedora 43 Chromium Update 2026-443f9ace49 Critical Heap Overflow

20.02.2026 14:32 Update to 145.0.7632.75 CVE-2026-2441: Use after free in CSS CVE-2026-2313: Use after free in CSS CVE-2026-2314: Heap buffer overflow in Codecs CVE-2026-2315: Inappropriate implementation in WebGPU

Ubuntu 20.04 LTS Linux Kernel Important Vulnerabilities USN-7990-5

20.02.2026 08:15 Several security issues were fixed in the Linux kernel.

Debian DSA-6145-1 Nova Image Resize Issue CVE-2026-24708

20.02.2026 08:15 Dan Smith discovered that nova, a cloud computing fabric controller, calls qemu-img without format restrictions for resize, which may result in unsafe image resize operations that could destroy data on the host system. Only compute nodes using the Flat image backend are affected. For the oldstable distribution , this problem has been fixed

Debian trixie inetutils Critical Telnetd Authentication Bypass DSA-6144-1

20.02.2026 08:15 Ron Ben Yizhak discovered that the inetutils implementation of telnetd didn't sanitise the CREDENTIALS_DIRECTORY environment variable before passing it to the login binary. This could be exploited to bypass authentication and login as root. For the stable distribution , this problem has been fixed in

Debian libvpx Critical DoS Buffer Overflow CVE-2026-2447 DSA-6143-1

20.02.2026 08:15 A buffer overflow was discovered in libvpx, a library implementing the VP8/VP9 open video codecs, which could result in denial of service or potentially the execution of arbitrary code. For the oldstable distribution , these problems have been fixed in version 1.12.0-1+deb12u5.

Debian gegl Important Buffer Overflow DoS Advisory DSA-6142-1 CVE-2026-2049

20.02.2026 02:00 A heap-based buffer overflow was discovered in the RGBE/HDR parser of GEGL, a graph-based image processing library, which could result in denial of service or the execution of arbitrary code if malformed files are processed. For the oldstable distribution , this problem has been fixed

openSUSE python-nltk Security Issue CVE-2025-14009 with ZIP Extraction

20.02.2026 02:00 An update that fixes one vulnerability is now available.

openSUSE python-nltk Important Secure ZIP Extraction Issue 2026-0056-1

20.02.2026 02:00 An update that fixes one vulnerability is now available.

openSUSE Tumbleweed rclone Moderate Security Fix CVE-2025-68121

20.02.2026 02:00 An update that solves one vulnerability can now be installed.

openSUSE Tumbleweed python313 Serious Threat Issues 2026-10334-3

20.02.2026 02:00 An update that solves 5 vulnerabilities can now be installed.

openSUSE Tumbleweed istioctl Moderate Remote Access Flaw 2026-10220-1

20.02.2026 02:00 An update that solves 2 vulnerabilities can now be installed.

Ubuntu 22.04 LTS Kernel Critical Security Flaws USN-8033-7

19.02.2026 19:31 Several security issues were fixed in the Linux kernel.