Debian Security Advisories
Debian Security Advisories (DSAs) cover the stable Debian distribution, the foundation beneath countless servers, containers and derivative distributions. Because Debian packages are the upstream of so much infrastructure, a DSA is often the clearest signal of which fixed package version actually closes a CVE.
CSIRTS.com ingests Debian Security Advisories every 3 hours, normalizes each advisory into a common schema and cross-references every CVE against the CISA KEV catalog and public exploit datasets. Publishes DSA advisories for Debian stable packages. Also available via RSS, JSON API and the MCP server.
Latest from Debian Security Advisories
DSA-6465-1 openssl - security update
DSA-6464-1 erlang - security update
DSA-6462-1 zfs-linux - security update
DSA-6463-1 webkit2gtk - security update
DSA-6460-1 openjdk-25 - security update
DSA-6461-1 thunderbird - security update
DSA-6459-1 libnet-dns-perl - security update
DSA-6457-1 openjdk-21 - security update
DSA-6458-1 gst-plugins-bad1.0 - security update
DSA-6456-1 spip - security update
DSA-6455-1 chromium - security update
DSA-6453-1 libgit2 - security update
DSA-6454-1 sabnzbdplus - security update
DSA-6452-1 designate - security update
DSA-6451-1 firefox-esr - security update
DSA-6449-1 swift - security update
DSA-6450-1 srt - security update
DSA-6447-1 librabbitmq - security update
DSA-6448-1 spip - security update
DSA-6446-1 expat - security update
DSA-6445-1 ironic - security update
DSA-6444-1 neutron - security update
DSA-6443-1 docker.io - security update
DSA-6441-1 python-httplib2 - security update
Browse all 111 advisories from Debian Security Advisories →
Never miss a Debian Security Advisories advisory. The daily briefing covers every new advisory from this source — alongside the other feeds we watch for you. Subscribe free — one email every morning after 06:00 UTC, one-click unsubscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.