You are here

LinuxSecurity.com

Subscribe to Feed LinuxSecurity.com
The central voice for Linux and Open Source security news.
Përditësimi: 23 orë 42 min më parë

Command Injection Flaw in shell-quote Can Execute Linux Commands

Enj, 01/10/2026 - 1:00pd
The maintainers of shell-quote, a JavaScript library for building shell commands, released version 1.11.0 on September 29, 2026, to fix CVE-2026-102422.

Linux Perf Filter Can Expose the Kernel’s Randomized Address

Mër, 30/09/2026 - 2:45pd
A newly reported Linux perf filter flaw lets an unprivileged user find where the kernel is loaded on a tested x86-64 configuration.

Linux File Truncation Patch Targets Data Loss Beyond the Requested Range

Mër, 30/09/2026 - 2:30pd
A Linux patch series addresses how file truncation or hole punching could discard valid data beyond the range an application asked to remove.

Linux Tracing Patch Addresses a Probe Use-After-Free Race

Mër, 30/09/2026 - 2:23pd
A proposed Linux tracing patch addresses a race that could free a function probe while its return callback is still using it.

Linux Memory Fault Bug Can Release a Lock Twice on SuperH

Mër, 30/09/2026 - 2:15pd
A proposed Linux patch addresses a double unlock in the SuperH architecture’s page-fault handling.

How to Review Linux Security Boundaries: Three Kernel Examples

Mër, 30/09/2026 - 1:35pd
A Linux security review can find a check, a lock, or a safe-looking range and still miss the failure.

Faqet