[<prev day] [month] [year] [list]
oss-security mailing list - 2026/05/20
- CVE-2026-41054: haveged — privilege escalation via command socket (Jiri Hladky <hladky.jiri@...il.com>)
- PCManFM-Qt allows arbitrary files to be opened via the
org.freedesktop.FileManager1.ShowFolders method (Aaron Rainbolt <arraybolt3@...eup.net>)
- Heads-up: Upcoming Samba security releases (2026-05-26) (Douglas Bagnall <douglas.bagnall@...alyst.net.nz>)
- QEMU CXL Memory Corruption Vulnerability ("QEMUtiny") (Brett Sheffield <bacs@...recast.net>)
- Unbound: 1.25.1 addresses multiple CVE items (Yorgos Thessalonikefs <yorgos@...etlabs.nl>)
- rsync 3.4.3 released: six CVEs (CVE-2026-29518, CVE-2026-43617,
CVE-2026-43618, CVE-2026-43619, CVE-2026-43620, CVE-2026-4… (Andrew Tridgell <tridge60@...il.com>)
- Re: On the issue of MIME handlers that execute
arbitrary code (e.g. Wine) (Simon McVittie <smcv@...ian.org>)
- Re: PCManFM-Qt allows arbitrary files to be opened
via the org.freedesktop.FileManager1.ShowFolders method (Simon McVittie <smcv@...ian.org>)
- Re: PCManFM-Qt allows arbitrary files to be opened via
the org.freedesktop.FileManager1.ShowFolders method (gabriel.corona@...e.fr)
- Re: PCManFM-Qt allows arbitrary files to be opened via
the org.freedesktop.FileManager1.ShowFolders method (gabriel.corona@...e.fr)
- ISC has disclosed six vulnerabilities in BIND 9 (CVE-2026-3039,
CVE-2026-3592, CVE-2026-3593, CVE-2026-5946, CVE-2026-5947, C… (Michał Kępień <michal@....org>)
- PowerDNS Security Advisory 2026-06: Multiple Issues (Miod Vallat <miod.vallat@...erdns.com>)
- Re: On the issue of MIME handlers that execute
arbitrary code (e.g. Wine) (gabriel.corona@...e.fr)
- Re: Logic bug in the Linux kernel's __ptrace_may_access() function (Qualys Security Advisory <qsa@...lys.com>)
- Re: Logic bug in the Linux kernel's __ptrace_may_access() function (Qualys Security Advisory <qsa@...lys.com>)
- Re: Multiple vulnerabilities in AppArmor (Qualys Security Advisory <qsa@...lys.com>)
- Re: Coordinated Disclosure in the LLM Age (Alan Coopersmith <alan.coopersmith@...cle.com>)
- Re: On the issue of MIME handlers that execute
arbitrary code (e.g. Wine) (Demi Marie Obenour <demiobenour@...il.com>)
- CVE-2026-4802 [cockpit] Arbitrary code execution in the logs page via
a specially crafted link (Jelle van der Waa <jelle@...aa.nl>)
- Re: On the issue of MIME handlers that execute
arbitrary code (e.g. Wine) (Gabriel Corona <gabriel.corona@...e.fr>)
- CVE-2026-47373: Crypt::SaltedHash versions through 0.09 for Perl is
susceptible to timing attacks (Robert Rothenberg <rrwo@...nsec.org>)
- CVE-2026-47372: Crypt::SaltedHash versions through 0.09 for Perl
generate insecure random values for salts (Robert Rothenberg <rrwo@...nsec.org>)
22 messages
Powered by blists - more mailing lists
Please check out the
Open Source Software Security Wiki, which is counterpart to this
mailing list.
Confused about mailing lists and their use?
Read about mailing lists on Wikipedia
and check out these
guidelines on proper formatting of your messages.