SECURITY Signal 170
AlmaLinux, Debian, Fedora, SUSE, Oracle, and Mageia issue security updates across kernel, nodejs, firefox, and dozens more
Illustration only Photo by Julie Marsh 🇨🇦 on Unsplash
Multiple Linux distributions released security patches on 2026-09-02 and 2026-09-03 covering a wide range of packages including the kernel, nodejs, firefox, freerdp, php, nginx, postgresql, and python-cryptography.
Routine but broad security updates across six distributions mean most Linux administrators will have packages requiring attention. Several of the patched packages, such as nginx, freerdp, postgresql, and python-cryptography, are commonly exposed to network traffic.
Written by elseif from the cluster below · every claim links back to a sourceThe three things worth knowing
AlmaLinux patched kernel, kernel-rt, nodejs:24, php, and freerdp across versions 8 and 10.
SUSE issued the largest batch of updates, covering firefox, nodejs20, postgresql14, python-cryptography, apptainer, cosign, and many others across SLE12, SLE15, and openSUSE.
Several packages received coordinated patches across multiple distributions, including freerdp (AlmaLinux, Fedora, Oracle), nodejs (AlmaLinux, Oracle, SUSE), and firefox variants (Debian, Fedora, SUSE).
THE CLUSTER