securityonline.info 14 Sept 2026, 07:43 UTC

Debian 13.7 Ships 213 Fixes for Flaws in Core Components

Debian 13.7 Ships 213 Fixes for Flaws in Core Components

DEBIAN has released version 13.7, the seventh security-maintenance update in the Debian 13.x series. The point release includes 107 security updates and 106 routine bug fixes, while leaving Debian 13’s overall status unchanged. It also refreshes the installer media, allowing fresh installations to start with the latest fixes already included. Debian recommends that users running Debian 13.x upgrade to 13.7.

The update addresses vulnerabilities in several core components. Reported examples include a heap overflow in alsa-lib, arbitrary code injection in ansible-core, buffer overflows and out-of-bounds reads in dnsmasq, out-of-bounds access and file-disclosure issues in glib2.0, and buffer overflow and underflow flaws in glibc.

The article does not provide individual CVE identifiers or claim that any of these vulnerabilities are being exploited; it directs users to Debian’s Security Tracker for affected and fixed versions.

Debian 13.7 updates the installer kernel to 6.12.107+deb13, retaining the Linux 6.12 LTS series rather than moving to Linux 7.0. Debian 13.x continues to support amd64, arm64, armel, armhf, ppc64el, riscv64 and s390x architectures. Existing users should apply the available updates through Debian’s normal package-management process, while those planning new deployments can use the refreshed installation images.

View full article

Article by CyberSIXT