Debian LTS Linux Security is the community’s central source for information on Linux and open source security. We follow the open source trends as they affect the community. We produce content that appeals to administrators, developers, home users, and security professionals.
Stay Vigilant with Timely Linux Security Advisories LinuxSecurity.com is the community’s central source for information on Linux and open source security. We follow the open source trends as they affect the commu
- Debian 11: openjdk-17 Critical Security Update DLA-4275-1 CVE-2025-30749on August 19, 2025 at 8:06 am
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in denial of service, information disclosure or weakened TLS connections.
- Debian 11: Critical Buffer Overflow Vulnerability DLA-4274-1 CVE-2025-47917on August 18, 2025 at 5:33 pm
Multiple vulnerabilities have been fixed in mbedtls, a lightweight crypto and SSL/TLS library. CVE-2025-47917
- Debian 11: postgresql-13 Critical Security Update DLA-4273-1on August 14, 2025 at 5:12 pm
It was discovered that there were a number of vulnerabilities in postgresql-13, the widely-popular database management system: * CVE-2025-8713: The fix for CVE-2017-7484 (plus followup fixes),
- Debian 11: Critical Local Vulnerabilities DLA-4272-1 CVE-2025-54389 CVE-2025-54409on August 14, 2025 at 3:26 pm
Rajesh Pangare discovered two vulnerabilities in aide, an advanced intrusion detection system. A local attacker can take advantage of these flaws to hide the addition or removal of a file from the the report,
- Debian LTS: linux-6.1 Major Privilege Escalation and DoS Risk DLA-4271-1on August 12, 2025 at 10:14 pm
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
- Debian 11: apache2 Critical Access Control Denial of Service DLA-4270-1on August 12, 2025 at 4:39 pm
Multiple vulnerabilities have been addressed in Apache, a widely used web server. Please note that the fix for CVE-2025-23048, included in this DLA,
- Debian 11: ca-certificates-java Important Upgrade Bugfix DLA-4269-1on August 11, 2025 at 6:48 pm
Several bugs were fixed that could, under certain circumstances, disrupt the upgrade of the Java and ca-certificates packages. For Debian 11 bullseye, this problem has been fixed in version
- Debian 11: DLA-4268-1 node-tmp Important Arbitrary File Write Fixon August 11, 2025 at 10:33 am
Arbitrary file write has been fixed in node-tmp, a temporary file and directory creator for Node.js. For Debian 11 bullseye, this problem has been fixed in version
- Debian: gnutls28 Critical Buffer Overrun & Double-free Fix DLA-4267-1on August 9, 2025 at 3:35 pm
Multiple vulnerabilities have been fixed in GnuTLS, a library implementing the SSL, TLS and DTLS protocols. CVE-2025-6395