Security News

Cybersecurity news aggregator

🐧
MEDIUM Updates Debian Security

DSA-6426-1 icinga2 - security update

  • What: Security update for Icinga 2 with multiple CVEs
  • Impact: Debian users need to apply patches to address vulnerabilities
Read Full Article →

[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index] [SECURITY] [DSA 6426-1] icinga2 security update To: debian-security-announce@lists.debian.org Subject: [SECURITY] [DSA 6426-1] icinga2 security update From: Aron Xu <aron@debian.org> Date: Mon, 10 Aug 2026 11:51:02 +0000 Message-id: <[🔎] E1wtOX0-0000000F0QR-2Nha@seger.debian.org> Reply-to: debian-security-announce-request@lists.debian.org -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6426-1 security@debian.org https://www.debian.org/security/ Sebastiaan Couwenberg August 10, 2026 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : icinga2 CVE ID : CVE-2025-61907 CVE-2025-61908 CVE-2025-61909 CVE-2026-61550 CVE-2026-61551 CVE-2026-61552 Multiple vulnerabilities were discovered in Icinga 2, a monitoring and alerting system, which may result in denial of service, information disclosure, privilege escalation or the compromise of a monitoring node. The fix for CVE-2025-61909 changes /etc/logrotate.d/icinga2, which is a configuration file. If it was modified locally, dpkg will not replace it and the fix will not take effect. After the upgrade, please make sure the postrotate section is updated. For the stable distribution (trixie), these problems have been fixed in version 2.14.6-1+deb13u1. We recommend that you upgrade your icinga2 packages. For the detailed security status of icinga2 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/icinga2 Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQEzBAEBCAAdFiEExq6D0hxncEPaPayX+GQ1dHE8m64FAmp5utkACgkQ+GQ1dHE8 m656oAf/XqrvOCagMHfJwOr+opjiNArCe5vfP5uXZGgW/KjP8TPtppApT3Zk+mVY CgLpr8dkOIL7ZKEywMFmgcuv3A/0WDhGNolHo5z7VNUJot0bhhQaH0Dw4cl2Q1dq 5+GHITL7qBR0Z/iU/t8kerVjpEgw9dSucFjTetGEd5oaAQ95+7jUn0l3I3YMlGKI NlhGkJEeUkBAi1L6BBV7W8yZE8wjMr8JYNggwCW5/lPi1IgyE+QCmB8IdH7FUcmf 70xKKw/l0Q7mUm3qgnzXSDWfdW97qVo/jqZiAFbg1Hur1cM1Kp2XTW5VI95qpPtT Pbpv9+onGDWarScDvd/IE6PMcP1HOQ== =rHqS -----END PGP SIGNATURE----- Reply to: debian-security-announce@lists.debian.org Aron Xu (on-list) Aron Xu (off-list) Prev by Date: [SECURITY] [DSA 6425-1] openjdk-21 security update Previous by thread: [SECURITY] [DSA 6425-1] openjdk-21 security update Index(es): Date Thread

Share this article