Debian 10715 Published by Philipp Esselbach 0

A php5 security update has been released for Debian GNU/Linux 8 LTS. Several security bugs have been identified and fixed in php5, a server-side, HTML-embedded scripting language.
The affected components include the exif module and handling of filenames with \0 embedded.

Debian 10715 Published by Philipp Esselbach 0

An openssl1.0 security update has been released for Debian GNU/Linux 9. Guido Vranken discovered an overflow bug in the x64_64 Montgomery squaring procedure used in exponentiation with 512-bit moduli.

Debian 10715 Published by Philipp Esselbach 0

A mediawiki security update has been released for Debian GNU/Linux 9 and 10. It was discovered that the Title blacklist functionality in MediaWiki, a website engine for collaborative work, could by bypassed.

Debian 10715 Published by Philipp Esselbach 0

A freeimage security update has been released for both Debian GNU/Linux 9 and 10. It was found that freeimage, a graphics library, was affected by two security issues.

Debian 10715 Published by Philipp Esselbach 0

A debian-lan-config security update has been released for both Debian GNU/Linux 9 and 10. It was discovered that debian-lan-config, a FAI config space for the Debian-LAN system, configured too permissive ACLs for the Kerberos admin server, which allowed password changes for other user principals.

Debian 10715 Published by Philipp Esselbach 0

A tomcat8 security update has been released for Debian GNU/Linux 9. Several issues were discovered in the Tomcat servlet and JSP engine, which could result in session fixation attacks, information disclosure, cross- site scripting, denial of service via resource exhaustion and insecure redirects.