Home / mailings [SECURITY] [DSA 6474-1] cockpit security update
Posted on 27 August 2026
Debian Security Advisory- -------------------------------------------------------------------------
Debian Security Advisory DSA-6474-1 security@debian.org
https://www.debian.org/security/ Moritz Muehlenhoff
August 27, 2026 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : cockpit
CVE ID : CVE-2026-4802 CVE-2026-76235
Two security vulnerabilities were discovered in Cockpit, a web console
for Linux servers, which could result in the execution of arbitrary code
or denial of service.
For the stable distribution (trixie), these problems have been fixed in
version 337-1+deb13u2.
We recommend that you upgrade your cockpit packages.
For the detailed security status of cockpit please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/cockpit
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce@lists.debian.org
