
Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Backport fix for CVE-2025-11277

upstream stable upgrade from 2.41.1 to 2.41.3 (CVE-2025-14104 and other issues)

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Backport fixes for CVE-2025-64181 etc. in OpenEXRCore

This is the second maintenance release of Python 3.14

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

libsoup could be made to crash if it received specially crafted network traffic.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

usbmuxd could be made to overwrite files.

Several security issues were fixed in the Linux kernel.

Fixed aarch64 crashes Updated to latest upstream (146.0)

Update to 143.0.7499.109 * High: Under coordination * Medium CVE-2025-14372: Use after free in Password Manager * Medium CVE-2025-14373: Inappropriate implementation in Toolbar

Multiple vulnerabilities were discovered in the VLC media player, which could result in denial of service or potentially the execution of arbitrary code if a malformed video file is opened. For the oldstable distribution (bookworm), this problem has been fixed in version 3.0.22-0+deb12u1.

Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed in version 1:140.6.0esr-1~deb12u1. For the stable distribution (trixie), these problems have been fixed in

Apply fuse2fs patches that were accidentally empty Update to upstream 1.4.5, including a fix for CVE-2025-65105

Apply fuse2fs patches that were accidentally empty Update to upstream 1.4.5, including a fix for CVE-2025-65105

Several security issues were fixed in the Linux kernel.

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. An additional CVE (that has yet to be assigned) is fixed in this release; Google is aware of an expoit in the wild for that issue. For the oldstable distribution (bookworm), these problems have been fixed

Upgrade to 4.3.5 upstream version.

Update brotli to 1.2.0 and python-urllib3 to 2.6.1. In python-urllib3: Fixed a security issue where streaming API could improperly handle highly compressed HTTP content (“decompression bombs”) leading to excessive resource consumption even when a small amount of data was requested. Reading small
50 queries. 9.25 mb Memory usage. 1.769 seconds.