The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Important: tomcat security update
An update that solves 2 vulnerabilities can now be installed.
An update that solves 10 vulnerabilities can now be installed.
An update that solves 4 vulnerabilities and has 4 bug fixes can now be installed.
An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed.
An update that solves 12 vulnerabilities and contains one feature can now be installed.
An update that solves 12 vulnerabilities and contains one feature can now be installed.
An update that solves four vulnerabilities can now be installed.
This update includes the latest upstream release of mod_md, with various bug fixes and enhancements. See https://github.com/icing/mod_md/releases for more info…
* bsc#1247674 Cross-References: * CVE-2025-54571
An update that solves one vulnerability can now be installed.
* bsc#1247674 Cross-References: * CVE-2025-54571
* bsc#1246397 Cross-References: * CVE-2025-48924
* bsc#1085999 * bsc#1246397 Cross-References: * CVE-2025-48924
* bsc#1246090 Affected Products: * openSUSE Leap 15.4
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
* bsc#1227270 * bsc#1227271 * bsc#1227353 * bsc#1228097 * bsc#1233165
ModSecurity Has Possible DoS Vulnerability. (CVE-2025-47947) ModSecurity has possible DoS vulnerability in sanitiseArg action. (CVE-2025-48866) References:
Fix improper access control vulnerability Resolves: CVE-2025-48734