Immediate updates are strongly recommended.
---
A large number of vulnerabilities (CVE-2026-6746 → CVE-2026-6786) were identified.
###
* Remote code execution
* Spoofing
* Information disclosure
* Privilege escalation
###
* Debian 12 (bookworm): `140.10.0esr-1~deb12u1`
* Debian 13 (trixie): `140.10.0esr-1~deb13u1`
---
A **TOCTOU race condition** was discovered in PackageKit.
###
* Local privilege escalation
###
* Debian 12: `1.2.6-5+deb12u1`
* Debian 13: `1.3.1-1+deb13u1`
---
Multiple vulnerabilities were fixed in **strongSwan**, an IKE/IPsec VPN suite.
###
* Infinite loops (DoS conditions)…login to view the rest of this post