Fedora 43 ruby-Puma Severe Web Request Manipulation 2026-5dcb750495

08.05.2026 08:30 Starman versions before 0.4018 for Perl allows HTTP Request Smuggling via Improper Header Precedence. Starman incorrectly prioritizes "Content-Length" over "Transfer-Encoding: chunked" when both headers are present in an HTTP request. Per RFC 7230 3.3.3, Transfer-Encoding must take precedence. An attacker could exploit this to smuggle malicious HTTP requests via a front-end reverse

Fedora 42 OpenSSL Critical Update Validate RSA Encryption 2026-7af660d639

08.05.2026 08:30 Validate RSA_public_encrypt result in RSASVE

Arch Linux 2026 perl-HTTPD-CGI Significant URI Parsing Flaw 3c5a7d4b5e

08.05.2026 08:30 Starman versions before 0.4018 for Perl allows HTTP Request Smuggling via Improper Header Precedence. Starman incorrectly prioritizes "Content-Length" over "Transfer-Encoding: chunked" when both headers are present in an HTTP request. Per RFC 7230 3.3.3, Transfer-Encoding must take precedence. An attacker could exploit this to smuggle malicious HTTP requests via a front-end reverse

Fedora 44 perl-Starman Important HTTP Request Smuggling 2026-5bb108e1b7

08.05.2026 08:30 Starman versions before 0.4018 for Perl allows HTTP Request Smuggling via Improper Header Precedence. Starman incorrectly prioritizes "Content-Length" over "Transfer-Encoding: chunked" when both headers are present in an HTTP request. Per RFC 7230 3.3.3, Transfer-Encoding must take precedence. An attacker could exploit this to smuggle malicious HTTP requests via a front-end reverse

Ubuntu 24.04 PostfixAdmin An Important Fix for XSS Attack USN-8242-2

08.05.2026 08:30 PostfixAdmin could be made to run malicious JavaScript in the user's browser if it received specially crafted input.

Ubuntu 22.04 CiviCRM Important JavaScript Execution Risk USN-8242-1

08.05.2026 08:30 CiviCRM could be made to run malicious JavaScript in the user's browser if it received specially crafted input.

Debian Oldstable LibreOffice Important Buffer Overflow Vuln DSA-6251-1

08.05.2026 02:15 Dun Anh Nguyen discovered a buffer overflow in LibreOffice, which could result in an out-of-bounds write if OOXML documents with malformed encryption parameters are opened. For the oldstable distribution , this problem has been fixed in version 4:7.4.7-1+deb12u11.

Ubuntu 18.04 16.04 HtmlUnit Important Remote Code Exec USN-8220-1

08.05.2026 02:15 HtmlUnit could be made to run programs as your login if it opened a malicious website.

Ubuntu 24.04 LTS Linux Xilinx Kernel Critical Security Flaws USN-8261-1

08.05.2026 02:15 Several security issues were fixed in the Linux kernel.

Ubuntu 24.04 linux-azure-fips Critical Integrity Loss Flaw USN-8260-1

08.05.2026 02:15 Several security issues were fixed in the Linux kernel.

openSUSE Tumbleweed nix Moderate Security Fix CVE-2026-44028

08.05.2026 02:15 An update that solves one vulnerability can now be installed.

openSUSE Tumbleweed traefik Moderate Buffer Overflow Vuln 2026-10697-1

08.05.2026 02:15 An update that solves 6 vulnerabilities can now be installed.

Rocky Linux 10 Thunderbird Security Update RLSA-2026-12480

07.05.2026 19:45 Important: thunderbird security update

Rocky Linux Y 11 RLSA-2026-13918 storage-tools Critical Vulnerability Fixed

07.05.2026 19:45 Important: fence-agents security update

Rocky Linux 9 RLSA-2026-14237 Strengthened Defense Against Cyber Threats

07.05.2026 19:45 Important: fence-agents security update