Author: Yuri Gagarin

Release of the text recognition program dpScreenOCR 1.5.0

The release of the dpScreenOCR 1.5.0 program, utilizing Tesseract for optical character recognition, has occurred. Pre-built binaries are available for Linux and Windows (package repositories for Debian and Ubuntu are also available). The program's code is written in C++ and distributed under the zlib license. dpScreenOCR allows capturing an arbitrary area of the screen using a global hotkey and mouse, from which the text will be recognized. In […]

Incident of commit hijacking in the Linux kernel branch by Kesa Cook

Linus Torvalds has demanded that the administrator of kernel.org immediately block the account of Kees Cook, the former chief sysadmin of kernel.org and leader of the Ubuntu Security Team, who maintains 14 security-related subsystems in the kernel. Konstantin Ryabtsev, responsible for the infrastructure work of kernel.org, carried out the block. The reason for the block was a pull request to include changes in the 6.16 kernel branch, referring to a git repository, in which […]

Release of the SQLite DBMS 3.50

The release of SQLite 3.50 has been published, a lightweight DBMS designed as a plug-in library. The SQLite code is released into the public domain, meaning it can be used without restrictions and freely for any purpose. Financial support for SQLite developers is provided by a consortium specifically created for this purpose. Key changes: New SQL functions unistr() and unistr_quote() have been added to replace escaped sequences (\uXXXX) with unicode characters and vice versa. In […]

Release of the VeraCrypt disk partition encryption system 1.26.24

The VeraCrypt project has released version 1.26.24, which is a continuation of the disk encryption system TrueCrypt that has ceased to exist. VeraCrypt is notable for replacing the RIPEMD-160 algorithm used in TrueCrypt with SHA-512 and SHA-256, increasing the number of hashing iterations, simplifying the build process for Linux and macOS, and addressing issues identified during the audit of TrueCrypt's source code. The code developed by the VeraCrypt project is distributed under the Apache […]

CentOS repositories and test builds of RHEL 10 for RISC-V have been published.

The CentOS project has announced the preparation of git repositories with changes necessary for building and running the distribution on systems with RISC-V processors. RISC-V specific changes are available in the project's git repositories in the "c10s-rv" branches. In the near future, the prepared changes will be moved from separate repositories into the main CentOS Stream composition, which will allow the formation of standard CentOS Stream builds for RISC-V. Meanwhile, […]

The release of the minimalist distribution Alpine Linux 3.22

The release of Alpine Linux 3.22 is now available, a minimalist distribution built on the Musl C library and BusyBox utilities. This distribution features enhanced security requirements and is compiled with Stack Smashing Protection (SSP). OpenRC is used as the initialization system, and its proprietary package manager, apk, is employed for package management. Alpine is utilized for creating the official Docker container images and […]

Vulnerabilities in apport and systemd-coredump allow for extracting system users' password hashes.

Qualys has identified two vulnerabilities in the apport (CVE-2025-5054) and systemd-coredump (CVE-2025-4598) tools, which are used for handling core files produced after process crashes. The vulnerabilities allow access to core files saved after the crash of suid applications or certain system background processes, which may contain cached credentials or encryption keys in their memory. The apport utility is automatically triggered to save core dumps […]

The openSUSE distribution has released the alternative installer Agama 15

The developers of the openSUSE project have introduced the Agama 15 installer, designed to replace the classic installation interface of SUSE and openSUSE, notably separating the user interface from the internal components of YaST. Agama supports various frontends, such as a frontend for managing installations via a web interface. The code for the installer components is released under the GPLv2 license and is written in Ruby, Rust, and JavaScript/TypeScript. For testing the new […]

Vulnerabilities in Kea DHCP and cyrus-imapd packages allow for privilege escalation in the system.

Vulnerabilities have been identified in the configurations of the Kea DHCP server, developed by the ISC consortium as a replacement for the classic ISC DHCP, used by various distributions. In certain situations, these vulnerabilities may allow a local user to execute code with root privileges or overwrite any file in the system: CVE-2025-32801 — allows a local user to gain root privileges on systems where Kea runs as the root user or gain full control […]

Release of web browser Chrome 137

Google has released version 137 of the Chrome web browser. At the same time, a stable release of the open-source project Chromium, which serves as the foundation for Chrome, is available. The Chrome browser differs from Chromium by using Google logos, providing a crash notification system, including modules for playing copy-protected video content (DRM), an automatic update installation system, always having Sandbox isolation enabled, supplying keys to Google APIs, and transmitting RLZ parameters […]

Release of the window manager plwm 0.4, written in Prolog

The release of the plwm 0.4 window manager has been announced, developed in Prolog and supporting a tiling window layout. The project's goals include achieving a high quality codebase and documentation, ease of configuration to personal preferences, and addressing the typical needs of users of tiling window managers. The project's code is distributed under the MIT license. It can utilize the SWI-Prolog toolkit for running. On this […]

Vulnerability in GitHub's MCP server leading to information leakage from private repositories.

A vulnerability has been discovered in the GitHub MCP Server, the implementation of the MCP (Model Context Protocol) by GitHub, which allows for the extraction of data from the private repositories of users utilizing AI assistants for automating their repository interactions. The MCP protocol is designed to link AI models with various data sources. The GitHub MCP Server facilitates seamless integration of large language models with the GitHub API, providing these models with additional […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster