[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (146 articles)

|

// AI-powered summary generated at 20:00

> USN-8597-1: Linux kernel (IBM) vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose se...
> Ubuntu 22.04 LTS Kernel Significant NTFS Exploit Privilege Escalation Alert
Ubuntu has released a security update fixing multiple vulnerabilities in the Linux kernel, affecting the NTFS file system and some AMD processors, requiring kernel recompilation for third-party modules.
> USN-8576-2: Linux kernel (NVIDIA Tegra) vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose se...
> Ubuntu 22.04 LTS Linux Kernel Important Security Flaws USN-8575-2
Ubuntu has released updates for its Linux kernel to address multiple security vulnerabilities affecting Ubuntu 20.04 and 22.04 LTS, requiring users to reboot after installation.
> USN-8575-2: Linux kernel vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose se...
> Check Point warns of SmartConsole zero-day exploited in attacks
Israeli cybersecurity firm Check Point Software has addressed an actively exploited zero-day flaw in the company's SmartConsole graphical user interface (GUI) admin panel. [...]
> Ubuntu Linux Kernel Critical Privilege Escalation Issues USN-8596-1
Ubuntu Security Notice USN-8596-1 details several security vulnerabilities in the Linux kernel affecting Ubuntu 22.04 and 24.04, requiring immediate system updates and potential recompilation of third-party modules.
> USN-8596-1: Linux kernel (NVIDIA) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information. (CVE-2025-54505) It was discovered that some AMD Zen 2 processors did not properly isolate shared...
> CVE-2026-16277 Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbaddrlist()
Information published.
> CVE-2026-12080 Qemu-kvm: qemu-guest-agent: local privilege escalation via symlink attack in guest-ssh-add-authorized-keys
Information published.
> Ubuntu 22.04 LTS Linux Kernel Critical Risk Multiple Issues USN-8595-1
Ubuntu 22.04 LTS has addressed multiple vulnerabilities in the Linux oracle-6.8 kernel affecting AMD processors, enhancing security and requiring users to update and reboot their systems.
> CVE-2026-15788 WCOW cache mount source selector resolves NTFS junctions outside of cache root
Information published.
> CVE-2026-26081 HAProxy Community Edition 3.0 through 3.3 before 3.3.3 lacks a length check for the NEW_TOKEN format. HAProxy Enterprise and ALOHA are also affected.
Information published.
> Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs
RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS filesystem and gain persistent root access. Qualys said default installations of Red Hat Enterprise Linux and its derivatives, Fedora Server, an...
> CVE-2026-26080 HAProxy Community Edition 3.2.x through 3.3.x before 3.3.3 can enter a loop or crash because varint is mishandled. HAProxy Enterprise and ALOHA are also affected.
Information published.
> CVE-2026-15588 Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering
Information published.
> Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
A new study of organizations which have fallen victim to ransomware suggests the rise of AI-tools being used by hackers is making life harder for defenders
> CVE-2026-63308 Helm Files.Lines Denial of Service via Empty Chart Files
Information published.
> CVE-2026-50243 'response-ip'/'rpz' can rewrite BOGUS answers instead of returning SERVFAIL
Information published.
> USN-8595-1: Linux kernel (Oracle) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information. (CVE-2025-54505) It was discovered that some AMD Zen 2 processors did not properly isolate shared...