Principal · Últimas noticias de seguridad

CyberPanel Blog 2026-02-05 20:00 UTC · 2026-02-05 17:00 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Media drivers; - NVME drivers; - File systems infra…

Ubuntu CVE-2022-48986CVE-2024-27078CVE-2024-49959CVE-2024-50195CVE-2024-56606CVE-2024-56756CVE-2025-39993 CVSS 7.8 2026-02-05 19:23 UTC · 2026-02-05 16:23 -03
CyberPanel Blog 2026-02-05 19:00 UTC · 2026-02-05 16:00 -03
CyberPanel Blog 2026-02-05 18:30 UTC · 2026-02-05 15:30 -03

Fatih Çelik discovered that tracker-miners incorrectly handled certain malformed MP3 files. An attacker could use this issue to cause tracker-miners to crash, resulting in a denial of service, or possibly execute arbitrary code.

Ubuntu 2026-02-05 14:47 UTC · 2026-02-05 11:47 -03

Denis Ledoux discovered that Python incorrectly parsed email message headers. An attacker could possibly use this issue to inject arbitrary headers into email messages. This issue only affected python3.6, python3.7, python3.8, python3.9, p…

Ubuntu CVE-2025-11468CVE-2025-12084CVE-2025-13837CVE-2025-15282CVE-2025-15366CVE-2025-15367CVE-2026-0672CVE-2026-0865 CVSS 6.3 2026-02-05 14:05 UTC · 2026-02-05 11:05 -03

It was discovered that GLib incorrectly parsed large Base64 data. An attacker could use this issue to cause GLib to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2026-1484) It was discovered that GLib i…

Ubuntu CVE-2026-1484CVE-2026-1485CVE-2026-1489 CVSS 5.4 2026-02-05 13:12 UTC · 2026-02-05 10:12 -03
CyberPanel Blog 2026-02-05 11:00 UTC · 2026-02-05 08:00 -03
CyberPanel Blog 2026-02-05 10:00 UTC · 2026-02-05 07:00 -03
CyberPanel Blog 2026-02-05 09:30 UTC · 2026-02-05 06:30 -03

https://security-tracker.debian.org/tracker/DSA-6119-1

Debian 2026-02-05 00:00 UTC · 2026-02-04 21:00 -03

https://security-tracker.debian.org/tracker/DSA-6120-1

Debian 2026-02-05 00:00 UTC · 2026-02-04 21:00 -03

https://security-tracker.debian.org/tracker/DSA-6121-1

Debian 2026-02-05 00:00 UTC · 2026-02-04 21:00 -03

https://security-tracker.debian.org/tracker/DSA-6122-1

Debian 2026-02-05 00:00 UTC · 2026-02-04 21:00 -03

EasyApache 4 25.45

⚠️ Importante

Security and maintenance updates We released updated packages for EasyApache 4. This security release includes 7 CVE fixes for OpenSSL 1.1.1 addressing heap buffer overflow, NULL pointer dereference, and ASN1 validation issues. The release…

cPanel Release Notes (RSS) 2026-02-04 21:30 UTC · 2026-02-04 18:30 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - SMB network file system; - io_…

Ubuntu CVE-2025-38561CVE-2025-39698CVE-2025-40019 CVSS 8.8 2026-02-04 20:52 UTC · 2026-02-04 17:52 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - SPI subsystem; - SMB network f…

Ubuntu CVE-2025-38561CVE-2025-39698CVE-2025-40019CVE-2025-68746 CVSS 8.8 2026-02-04 20:43 UTC · 2026-02-04 17:43 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - SMB network file system; (CVE-20…

Ubuntu CVE-2025-38561CVE-2025-40019 CVSS 8.5 2026-02-04 20:32 UTC · 2026-02-04 17:32 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - SMB network file system; (CVE-20…

Ubuntu CVE-2025-38561CVE-2025-40019 CVSS 8.5 2026-02-04 20:31 UTC · 2026-02-04 17:31 -03

Today, we are happy to announce our first WordPress-focused micro-credential, designed to help students build practical AI skills, earn a recognized credential, and connect more directly to job opportunities. The program, AI Leaders, is a …

WordPress 2026-02-04 19:03 UTC · 2026-02-04 16:03 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - SMB network file system; - io_…

Ubuntu CVE-2025-38561CVE-2025-39698CVE-2025-40019 CVSS 8.8 2026-02-04 18:53 UTC · 2026-02-04 15:53 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - Unix domain sockets; (CVE-2025-4…

Ubuntu CVE-2025-40019CVE-2025-40214 2026-02-04 18:36 UTC · 2026-02-04 15:36 -03

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - SMB network file system; (CVE-20…

Ubuntu CVE-2025-38561CVE-2025-40019 CVSS 8.5 2026-02-04 18:04 UTC · 2026-02-04 15:04 -03
CyberPanel Blog 2026-02-04 17:00 UTC · 2026-02-04 14:00 -03
CyberPanel Blog 2026-02-04 13:30 UTC · 2026-02-04 10:30 -03

It was discovered that GitHub CLI could behave unexpectedly if users downloaded a malicious GitHub Actions workflow artifact through gh run download. An attacker could possibly use this issue to create or overwrite files in unintended dire…

Ubuntu CVE-2024-54132CVE-2024-53858 CVSS 6.5 2026-02-04 13:26 UTC · 2026-02-04 10:26 -03

It was discovered that Emacs could trigger unsafe Lisp macro expansion, when a user invoked elisp-completion-at-point on untrusted Emacs Lisp source code. An attacker could possibly use this issue to execute arbitrary code. (CVE-2024-539…

Ubuntu CVE-2024-53920CVE-2025-1244 CVSS 8.8 2026-02-04 09:51 UTC · 2026-02-04 06:51 -03

Several security issues were discovered in the libraries bundled in pip. An attacker could possibly use these issues to perform a variety of attacks, such as denial of service or arbitrary code execution.

Ubuntu 2026-02-04 08:27 UTC · 2026-02-04 05:27 -03
CyberPanel Blog 2026-02-04 04:30 UTC · 2026-02-04 01:30 -03
CyberPanel Blog 2026-02-03 18:30 UTC · 2026-02-03 15:30 -03

WordPress 6.9.1 is now available! This minor release includes fixes for 49 bugs throughout Core and the Block Editor, addressing issues affecting multiple areas of WordPress including the block editor, mail, and classic themes. For a full …

WordPress 2026-02-03 18:07 UTC · 2026-02-03 15:07 -03

It was discovered that Django exposed timing information when checking passwords. An attacker could possibly use this issue to obtain sensitive information. (CVE-2025-13473) Jiyong Yang discovered that Django incorrectly handled malformed…

Ubuntu CVE-2025-13473CVE-2025-14550CVE-2026-1207CVE-2026-1285CVE-2026-1287CVE-2026-1312 CVSS 7.5 2026-02-03 16:06 UTC · 2026-02-03 13:06 -03

Released: 2026-02-??

DirectAdmin 2026-02-03 14:00 UTC · 2026-02-03 11:00 -03

Grzegorz Grasza discovered that the Keystone Middleware incorrectly sanitized authentication headers before processing OAuth 2.0 tokens. An attacker could possibly use this issue to escalate privileges or impersonate other users.

Ubuntu 2026-02-03 13:06 UTC · 2026-02-03 10:06 -03

It was discovered that ImageMagick incorrectly handled image depth values when processing MIFF image files. An attacker could use this issue to cause a denial of service or possibly execute arbitrary code. (CVE-2025-43965) It was discover…

Ubuntu CVE-2025-43965CVE-2025-68618CVE-2025-69204 CVSS 7.5 2026-02-03 10:05 UTC · 2026-02-03 07:05 -03

Multiple security issues were discovered in MySQL and this update includes a new upstream MySQL version to fix these issues. MySQL has been updated to 8.0.45 in Ubuntu 20.04 LTS. In addition to security fixes, the updated packages contai…

Ubuntu 2026-02-03 07:52 UTC · 2026-02-03 04:52 -03

Vitaly Simonovich discovered that the GNU C Library did not properly initialize the input when WRDE_REUSE is used. An attacker could possibly use this issue to cause applications to crash, leading to a denial of service. (CVE-2025-15281) …

Ubuntu CVE-2025-15281CVE-2025-8058CVE-2026-0861CVE-2026-0915 CVSS 8.4 2026-02-03 05:15 UTC · 2026-02-03 02:15 -03

Kim Dong Han discovered that FreeRDP did not correctly validate the size of certain variables, which could cause a buffer overflow. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code.

Ubuntu 2026-02-03 03:15 UTC · 2026-02-03 00:15 -03

It was discovered that the RMI component of OpenJDK 17 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to …

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-03 00:56 UTC · 2026-02-02 21:56 -03

https://security-tracker.debian.org/tracker/DSA-6118-1

Debian 2026-02-03 00:00 UTC · 2026-02-02 21:00 -03

It was discovered that the RMI component of CRaC JDK 21 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to…

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-02 23:40 UTC · 2026-02-02 20:40 -03

It was discovered that the RMI component of OpenJDK 21 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to …

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-02 23:31 UTC · 2026-02-02 20:31 -03

It was discovered that the RMI component of OpenJDK 11 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to …

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-02 23:25 UTC · 2026-02-02 20:25 -03

It was discovered that the RMI component of OpenJDK 8 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to s…

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-02 23:02 UTC · 2026-02-02 20:02 -03

It was discovered that Filelock incorrectly handled symlinks in temp files. A local attacker could possibly use this issue to cause lock operations to fail or behave unexpectedly. (CVE-2026-22701) It was discovered that the file locking i…

Ubuntu CVE-2026-22701CVE-2025-68146 CVSS 6.3 2026-02-02 20:26 UTC · 2026-02-02 17:26 -03

It was discovered that the RMI component of CRaC JDK 17 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to…

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-02 18:10 UTC · 2026-02-02 15:10 -03

It was discovered that the RMI component of CRaC JDK 25 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to…

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-02 18:05 UTC · 2026-02-02 15:05 -03
CyberPanel Blog 2026-02-02 18:00 UTC · 2026-02-02 15:00 -03

It was discovered that the RMI component of OpenJDK 25 would establish RMI TCP endpoint connections to a remote host without setting an endpoint identification algorithm. An unauthenticated remote attacker could possibly use this issue to …

Ubuntu CVE-2026-21925CVE-2026-21932CVE-2026-21933CVE-2026-21945 CVSS 7.5 2026-02-02 17:59 UTC · 2026-02-02 14:59 -03

Multiple security issues were discovered in MySQL and this update includes new upstream MySQL versions to fix these issues. MySQL has been updated to 8.0.45 in Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. Ubuntu 25.10 has been updated to MySQL …

Ubuntu 2026-02-02 15:14 UTC · 2026-02-02 12:14 -03