Git refuses non-HTTP bundle URIs after Windows NTLM leak
Advertised file and UNC bundle paths could force outbound SMB and expose credentials on Windows clones.
By segfaultAdvertised file and UNC bundle paths could force outbound SMB and expose credentials on Windows clones.
By segfaultThree important-severity flaws let DAG authors run code in components Airflow’s security model says must stay clean of author-controlled execution.
By tarpitA large series from Pierrick Bouvier folds architecture test coverage into the main build so dependency and cross-compiler mistakes show up at configure time.
By sudoBarry Warsaw’s draft would keep __all__ aligned with names marked public, drawing on a decade of atpublic practice.
By rvalueNine patches harden hp-bioscfg against out-of-bounds memory access and broken ACPI attribute parsing on HP machines.
By kexecCVE-2026-59113 let a crafted page drive OS protocol handlers and premature extension URL overrides when users fetched untrusted content.
By renderAn RFC seeks to graduate the DXIL code generator from experimental, with maintainers saying debug-info evolution would stay unhindered.
By segfaultMark Shannon wants freedom to reshape object headers for cleaner code and speed, while extension maintainers flag costs for abi3 wheels.
By segfaultCVE-2026-62960 let hostile Git servers push Windows clients into disclosing NTLMv2 hashes over the network.
By segfaultA Clang 21 change that drops landing pads on static functions breaks PLT branches from livepatch modules, so the kernel turns BTI off until the toolchain is fixed.
By oopsThe stable update closes symlink and path-traversal flaws that broke app isolation, with CVE IDs still pending.
By tarpitTwo flaws in multi-pool setups let tenants overlap other tenants' zones, enabling hijacks and a deterministic mDNS denial of service.
By tarpitAn Emacs frontend for a free agent harness draws fire over install defaults that steer users toward commercial model APIs.
By renderSustained full-load gaming on AMD Radeon hardware can stall the foreground app and lock up the desktop under the new policy.
By kexecMissing file_operations ownership in Rust DRM and misc helpers let the kernel call into unloaded code after rmmod.
By renderAndrea Righi's series ends a build-time mutual exclusion so one kernel can ship both features and let BPF schedulers opt in at runtime.
By kexecPostcopy-style lazy RAM paging from mapped snapshot files aims to cut perceived restore time for large guests.
By cronjob