Category: Internet News

CentOS repositories and test builds of RHEL 10 for RISC-V have been published.

The CentOS project has announced the preparation of git repositories with changes necessary for building and running the distribution on systems with RISC-V processors. RISC-V specific changes are available in the project's git repositories in the "c10s-rv" branches. In the near future, the prepared changes will be moved from separate repositories into the main CentOS Stream composition, which will allow the formation of standard CentOS Stream builds for RISC-V. Meanwhile, […]

The release of the minimalist distribution Alpine Linux 3.22

The release of Alpine Linux 3.22 is now available, a minimalist distribution built on the Musl C library and BusyBox utilities. This distribution features enhanced security requirements and is compiled with Stack Smashing Protection (SSP). OpenRC is used as the initialization system, and its proprietary package manager, apk, is employed for package management. Alpine is utilized for creating the official Docker container images and […]

Vulnerabilities in apport and systemd-coredump allow for extracting system users' password hashes.

Qualys has identified two vulnerabilities in the apport (CVE-2025-5054) and systemd-coredump (CVE-2025-4598) tools, which are used for handling core files produced after process crashes. The vulnerabilities allow access to core files saved after the crash of suid applications or certain system background processes, which may contain cached credentials or encryption keys in their memory. The apport utility is automatically triggered to save core dumps […]

The openSUSE distribution has released the alternative installer Agama 15

The developers of the openSUSE project have introduced the Agama 15 installer, designed to replace the classic installation interface of SUSE and openSUSE, notably separating the user interface from the internal components of YaST. Agama supports various frontends, such as a frontend for managing installations via a web interface. The code for the installer components is released under the GPLv2 license and is written in Ruby, Rust, and JavaScript/TypeScript. For testing the new […]

Vulnerabilities in Kea DHCP and cyrus-imapd packages allow for privilege escalation in the system.

Vulnerabilities have been identified in the configurations of the Kea DHCP server, developed by the ISC consortium as a replacement for the classic ISC DHCP, used by various distributions. In certain situations, these vulnerabilities may allow a local user to execute code with root privileges or overwrite any file in the system: CVE-2025-32801 — allows a local user to gain root privileges on systems where Kea runs as the root user or gain full control […]

Release of web browser Chrome 137

Google has released version 137 of the Chrome web browser. At the same time, a stable release of the open-source project Chromium, which serves as the foundation for Chrome, is available. The Chrome browser differs from Chromium by using Google logos, providing a crash notification system, including modules for playing copy-protected video content (DRM), an automatic update installation system, always having Sandbox isolation enabled, supplying keys to Google APIs, and transmitting RLZ parameters […]

Release of the window manager plwm 0.4, written in Prolog

The release of the plwm 0.4 window manager has been announced, developed in Prolog and supporting a tiling window layout. The project's goals include achieving a high quality codebase and documentation, ease of configuration to personal preferences, and addressing the typical needs of users of tiling window managers. The project's code is distributed under the MIT license. It can utilize the SWI-Prolog toolkit for running. On this […]

Vulnerability in GitHub's MCP server leading to information leakage from private repositories.

A vulnerability has been discovered in the GitHub MCP Server, the implementation of the MCP (Model Context Protocol) by GitHub, which allows for the extraction of data from the private repositories of users utilizing AI assistants for automating their repository interactions. The MCP protocol is designed to link AI models with various data sources. The GitHub MCP Server facilitates seamless integration of large language models with the GitHub API, providing these models with additional […]

Vulnerability in GNU sort leading to buffer overflow

A vulnerability (CVE-2025-5278) has been identified in the sort utility included with the GNU Coreutils package, which leads to out-of-bounds data access when sorting using the syntax ‘+POS1[.C1][OPTS]’ used for selecting sort keys from processed data. This problem is caused by an integer wraparound in the begfield() function, allowing the reading of one byte of data outside of the buffer. The vulnerability can be exploited to call […]

Release of KaOS 2025.05 distribution

KaOS 2025.05 has been released, a distribution with a continuous update model aimed at providing a desktop based on the latest KDE releases and applications using Qt. Among the specific design features, the vertical panel placed on the right side of the screen can be noted. The distribution is developed with a focus on Arch Linux but maintains its own independent repository containing over 1500 packages, and also offers […]

The Thunderbird 139.0 email client has been released

The release of the Thunderbird 139.0 email client, developed by the community and based on Mozilla technologies, is now available. Thunderbird 139 is built on the Firefox 139 codebase and is categorized as an intermediate version, with updates released until the next version. In the long-term support ESR branch, updates will be released for a year, culminating in Thunderbird 128.11.0. Key changes in Thunderbird: […]

Release of GNU Automake 1.18, a tool for generating build files

The release of Automake 1.18 has been announced, a utility for automatically generating makefiles compliant with the GNU coding standards. In this new version: Support for the Algol 68 programming language has been added, utilizing the GNU Algol 68 compiler. By default, it has transitioned to the ustar tar archive format, which supports longer filenames. Support for obtaining the date via the environment variable has been added in the mdate-sh script used during Texinfo assembly […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster