Debian Linux Security

Debian Linux Security LinuxSecurity Advisories is the community’s central source for information on Linux and open source security. We follow the open source trends as they affect the community. We produce content that appeals to administrators, developers, home users, and security professionals.

Stay Vigilant with Timely Linux Security Advisories LinuxSecurity.com is the community’s central source for information on Linux and open source security. We follow the open source trends as they affect the commu

  • Debian Trixie: c-ares Critical Denial of Service Advisory DSA-6084-1
    on December 18, 2025 at 1:49 pm

    It was discovered that c-ares, a library that performs DNS requests and name resolution asynchronously, does not properly handle termination of queries which may result in denial of service. For the stable distribution (trixie), this problem has been fixed in version 1.34.5-1+deb13u1.

  • Debian: webkit2gtk Important Memory Corruption Issues DSA-6083-1
    on December 18, 2025 at 8:22 am

    The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2025-14174 Apple and the Google Threat Analysis Group discovered that processing maliciously crafted web content may lead to memory

  • Debian: vlc Critical Denial of Service and Code Execution DSA-6082-1
    on December 14, 2025 at 7:42 pm

    Multiple vulnerabilities were discovered in the VLC media player, which could result in denial of service or potentially the execution of arbitrary code if a malformed video file is opened. For the oldstable distribution (bookworm), this problem has been fixed in version 3.0.22-0+deb12u1.

  • Debian: Thunderbird Critical Arbitrary Code Exec DSA-6081-1 CVE-2025-14321
    on December 14, 2025 at 11:11 am

    Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed in version 1:140.6.0esr-1~deb12u1. For the stable distribution (trixie), these problems have been fixed in

  • Debian: Chromium Important DSA-6080-1 Code Exec DoS Issues
    on December 12, 2025 at 12:16 pm

    Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. An additional CVE (that has yet to be assigned) is fixed in this release; Google is aware of an expoit in the wild for that issue. For the oldstable distribution (bookworm), these problems have been fixed

  • Debian: Important DoS Vulnerabilities in FFmpeg DSA-6080-1 Advisory
    on December 10, 2025 at 10:27 pm

    Several vulnerabilities have been discovered in the FFmpeg multimedia framework, which could result in denial of service or potentially the execution of arbitrary code if malformed files/streams are processed. For the oldstable distribution (bookworm), this problem has been fixed in version 7:5.1.8-0+deb12u1.

  • Debian: firefox-esr Critical Privilege Escalation DSA-6078-1 CVE-2025-14321
    on December 10, 2025 at 10:23 pm

    Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code, sandbox escape, same-origin policy bypass or privilege escalation. For the oldstable distribution (bookworm), these problems have been fixed in version 140.6.0esr-1~deb12u1.

  • Debian: pdns-recursor Critical Denial of Service Vulnerability DSA-6077-1
    on December 10, 2025 at 9:49 am

    Insufficient validation of incoming notifies over TCP in PDNS Recursor, a resolving name server, could result in denial of service. For the stable distribution (trixie), this problem has been fixed in version 5.2.7-0+deb13u1. We recommend that you upgrade your pdns-recursor packages.

  • Debian: libpng1.6 Critical Info Leak & DoS Vulnerabilities DSA-6076-1
    on December 10, 2025 at 8:54 am

    Several vulnerabilities were reported in the libpng PNG library, which could lead to information leaks, denial of service or potentially the execution of arbitrary code if a specially crafted image is processed. For the oldstable distribution (bookworm), these problems have been fixed in version 1.6.39-2+deb12u1.

Share Websitecyber
We are an ethical website cyber security team and we perform security assessments to protect our clients.