Category: Blog

A vulnerability in PackageKit allows obtaining root privileges in various Linux distributions

A vulnerability, Pack2TheRoot (CVE-2026-41651), has been identified in PackageKit, a D-Bus layer that unifies package management operations, allowing an unprivileged user to install or remove arbitrary packages and gain root access to the system. The issue manifests starting with version 1.0.2 (2014) and has been addressed in the PackageKit 1.3.5 release. The problem was discovered by researchers from Deutsche Telekom using the AI model Claude Opus. A functional exploit has been prepared that operates in […]

The Intel Open Ecosystem Community and Evangelism project has been discontinued

It is no secret that Intel has been systematically reducing its involvement in open source lately. Of the approximately 1,300 company repositories on GitHub, 903 are already archived, and the latest wave of closures occurred in December of last year (see: https://www.phoronix.com/news/Intel-OSS-Projects-Ended-2025). Now, as Intel is winding down its open-source activities, it has also ceased promoting the benefits of open source: the company has no remaining employees […]

Ubuntu 26.04 distribution is available

The Ubuntu 26.04 'Resolute Raccoon' distribution has been released, classified as an LTS (Long-Term Support) release, with updates being provided for 15 years (5 years for the general public, plus another 10 years for users of the Ubuntu Pro service). Installation images have been created for Ubuntu, Ubuntu Server, Lubuntu, Kubuntu, Ubuntu Budgie, Ubuntu Studio, Xubuntu, Ubuntu Kylin (the edition for China), Ubuntu […]

Vulnerability in the IndexedDB API allows for user identification in Firefox and Tor Browser.

A vulnerability has been identified in the Gecko browser engine (CVE-2026-6770) that allows the creation of unique identifiers for tracking the opening of different sites from a single browser. The issue manifests in all browsers based on Firefox, including Tor Browser, and operates even in private browsing mode. The identifiers remain valid within the current browser process and are reset after the browser is restarted. The vulnerability has been fixed in Firefox versions 150/140.10.0 […]

ONLYOFFICE has been deemed incompatible with AGPLv3

On April 15, the FSF declared the ONLYOFFICE license incompatible with the AGPLv3 license. The conflict arose surrounding the Euro-Office project — a European fork of the ONLYOFFICE suite. In March 2026, the creators of Euro-Office removed some additional clauses from the AGPLv3 license that ONLYOFFICE had added in 2021. These clauses, in particular, required all derivative products to retain the original logo […]

QEMU 11.0

On April 21, a major release of QEMU version 11.0 took place — a free, open-source program for emulating hardware across various platforms. The update includes: a new CPU model for Intel Diamond Rapids; a new 'nitro' accelerator for launching Nitro Enclaves (which allows running isolated environments (enclaves) directly through QEMU on hosts that support Nitro technology, without the need to use […]

Release of QEMU emulator 11.0.0

The release of QEMU 11.0.0 has been announced. As an emulator, QEMU allows running programs built for one hardware platform on a system with a completely different architecture, for example, running an ARM application on an x86-compatible PC. In virtualization mode, QEMU's execution performance in an isolated environment is close to that of a hardware system due to direct instruction execution on the CPU and utilizing […]

The WSL9x project for running modern Linux kernels in a Windows 95 environment

An independent enthusiast, not affiliated with Microsoft, has implemented the WSL9x (Windows 9x Subsystem for Linux) toolkit, allowing modern Linux kernels to run within the Windows 95/98/ME kernel. This project enables running Linux and Windows 9x applications side by side on the same system, similar to how the WSL layer allows Linux applications to work on modern versions of Windows. Supported […]

Preparation has begun for the removal of old network drivers from the kernel

Andrew Lunn has sent out a series of patches to begin the removal of several ISA and PCMCIA era network drivers from the Linux kernel. He details the recent maintenance burden due to artificial intelligence/fuzzing: "Until recently, these old drivers didn't require much maintenance. Now, with more newcomers using AI, testers are utilizing […]

NTFS-3G FUSE 2026.2.25

On April 21, the latest version of the NTFS-3G FUSE driver was released. This release primarily focuses on bug fixes. What's new: fix in the build script (bashism) that incorrectly used specific Bash commands where a universal standard should have been employed; creating a new NTFS partition via the mkntfs utility is now defined with microsecond accuracy; fix for two cases related […]

Plans to implement the Fedora verified participant status

The Fedora project is considering introducing a verified participant status (Fedora Verified), which would highlight developers who have contributed to the project's development and deserve certain privileges, such as participating in decision-making. The main reason for the proposed changes is the uncertainty about who can participate in community voting. Obtaining the "Fedora Verified" status will allow participation in voting […]

Firefox 150

Firefox 150 is now available. Among the interesting new features are managing the placement of open tabs, adding some editing features to the PDF viewer, and addressing numerous vulnerabilities, including those identified using neural networks. Linux: Support for the emoji picker provided by GTK has been added (usually triggered by the Ctrl+. combination). Official builds are available as RPM packages. The context menu for links now includes the option "Open link […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster