Category: Internet News

libinput 1.31.3 with a fix for a vulnerability that leads to root code execution

A corrective release of libinput 1.31.3 has been published — a library for processing input devices used by modern Linux desktops in conjunction with Wayland compositors and X.Org. libinput is responsible for device detection, event processing, and input abstraction: from mice and touchpads to graphic tablets. The project is distributed under the MIT license. The main change in this release is the fix of a vulnerability in the libinput-device-group udev helper program. The problem was related to […]

An attack on HTTP/2 implementations leading to exhaustion of available memory

Information has been revealed about the 'HTTP/2 Bomb' vulnerability, affecting various implementations of the HTTP/2 protocol and allowing denial of service through exhaustion of all available process memory. The issue has been confirmed in HTTP servers nginx, Apache httpd (CVE-2026-49975), Microsoft IIS, Envoy (CVE-2026-47774), and Cloudflare Pingora in default configuration. The vulnerability exploits a method akin to a zip bomb applied to the header compression functionality in HTTP/2. […]

A vulnerability in libinput, allowing privilege escalation in the system.

A vulnerability (CVE not assigned) has been found in the libinput library, which provides a unified input stack for Wayland and X.Org Server. This vulnerability allows local users to execute code with root privileges by connecting a virtual input device, emulated in user space via uinput or uhid. The issue has been resolved in releases 1.31.3 and 1.30.4. The vulnerability exists in the udev handler of libinput-device-group and is caused by a lack of proper […]

Release of the filtering proxy Privoxy 4.2.0

The release of the Privoxy 4.2.0 proxy server has been published, designed for creating personal web content filters. With Privoxy, users can cut out ads, discard tracking cookies, remove pop-ups, block the loading of third-party JavaScript code, and make arbitrary user-defined modifications to web pages. Privoxy can be installed both on local user systems and on servers to create a centralized content filtering infrastructure […]

Fedora Linux helped identify a security issue in the Outlook email client

Fedora Linux mail server administrators noticed problems with the Microsoft Outlook email client after updating the distribution. Diagnostics revealed that in the new version of the IMAP/POP3 server package Dovecot 2.4.3, authentication via IMAP and POP3 protocols was disabled by default, allowing plain text password transmission in sessions without […]

Ubuntu will start updating AMD ROCm through SRU

Canonical announced that after including AMD ROCm in the Ubuntu 26.04 LTS archives, it plans to deliver newer versions of ROCm through the Stable Release Updates mechanism. This means that the AMD computing stack for AI/ML and HPC will be updated as part of the regular stable updates for Ubuntu, without needing to wait for the next distribution release. The announcement was published on June 3, 2026, in the blog […]

Regressions in rsync 3.4.3 and acceptance of changes prepared using AI

Following the release of the rsync file synchronization utility 3.4.3 with fixes for 6 vulnerabilities, regressions affecting previously working configurations have been noted. Additionally, misunderstanding and dissatisfaction were caused by the addition of about 50 changes to the rsync repositories over the past two weeks, prepared using the AI model Claude. Some users linked the onset of regressions to the generation of low-quality vulnerability fixes using […]

ZX Spectrum Emulator Glukalka 3.1

The version 3.1 of the ZX Spectrum emulator Glukalka is ready for desktop. New in this version: Full functionality on all versions of Qt 4-6 (game loading from the web works). Functionality has been restored in OpenGL mode. Improved file splitting algorithm for music dumping. Sound is played through OpenAL (Mac), QtMultimedia (if the plugin is available), and Alsa (Linux). Minor fixes and improvements, […]

GitHub CLI 2.93.0 and GCLI 2.12.0

On May 27, version 2.93.0 of the GitHub CLI console utility was released, intended for working with GitHub repositories. The utility is written in Go and distributed under the MIT license. Key changes Security A security vulnerability was discovered and fixed, where API requests to TUF repository mirrors using the commands gh attestation, gh release verify, and gh release verify-asset were processed incorrectly […]

Microsoft introduced Coreutils for Windows, the Intelligent Terminal emulator, and containers in WSL

Microsoft has introduced a port of the Coreutils utility suite for the Windows platform. It includes several dozen utilities, such as sort, cat, chmod, chown, cp, find, sleep, tee, echo, uptime, and ls. This toolkit allows users to directly utilize standard utilities available in Linux and macOS on Windows without the need for a WSL layer. The project's goal is to simplify the transition between Unix-like systems, […]

Release of Ubuntu Sway Remix 26.04 LTS

The release of Ubuntu Sway Remix 26.04 LTS is now available, providing a pre-configured and ready-to-use desktop environment based on the Sway tiling window manager. This distribution is an unofficial edition of Ubuntu 26.04, crafted with both experienced GNU/Linux users and newcomers in mind, who wish to try a tiling window manager environment without the need for lengthy setups. Builds have been prepared for download […]

X.Org Server and XWayland have received urgent security updates.

The developers of X.Org have released xorg-server 21.1.23 and XWayland 24.1.12, addressing a total of nine vulnerabilities in the X.Org X Server and XWayland. The fixes were published on June 2, 2026; source archives xorg-server-21.1.23 and xwayland-24.1.12 are already available in the official X.Org directory. The issues affect both the classic X.Org Server and XWayland, a component through which X11 applications operate within a Wayland session. Therefore, the update is important […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster