Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
A newly published CVE-2026-54411 details a vulnerability in Linux-PAM versions up to 1.7.2. The issue lies in the pam_userdb module's plaintext-password comparison, which has an observable timing discrepancy. This flaw allows local or network-adjacent attackers to recover plaintext passwords by meas...
Oracle has released multiple security updates for its Linux distributions, addressing several critical vulnerabilities. Key updates include patches for CVE-2026-59090 and CVE-2026-18301 in GIMP, and multiple CVEs in FreeRDP, libssh, and Grafana. Affected systems include Oracle Linux 8, 9, and 10, wi...
SUSE has released updates addressing a critical buffer overflow vulnerability (CVE-2026-25506) in the munge package, affecting multiple SUSE Linux versions. The vulnerability, which was published on February 10, 2026, could allow for potential exploitation if not patched. Users are advised to apply...