A tika security update has been released for Debian GNU/Linux 8 LTS to address two security issues.
Updated PHP 5.4 packages has been released for Debian GNU/Linux 7 Extended LTS to address two security issues.
A libbsd security update has been released for Debian GNU/Linux 7 Extended LTS to address an out-of-bounds read vulnerability during string comparisons.
A bluez security update has been released for both Debian GNU/Linux 9 and 10 to fix an issue that BlueZ's HID and HOGP profile implementations don't specifically require bonding between the device and the host.
A php5 security update has been released for Debian GNU/Linux 8 LTS to address the following two security issues: 1) CVE-2020-7062 is about a possible null pointer derefernce, which would
likely lead to a crash, during a failed upload with progress tracking, 2) CVE-2020-7063 is about wrong file permissions of files added to tar with Phar::buildFromIterator when extracting them again.
likely lead to a crash, during a failed upload with progress tracking, 2) CVE-2020-7063 is about wrong file permissions of files added to tar with Phar::buildFromIterator when extracting them again.
A okular security update has been released for both Debian GNU/Linux 8 LTS to address a security issue which allows code execution via an action link in a PDF document.
A ruby2.1 security update has been released for Debian GNU/Linux 8 LTS to address a heap overflow vulnerability in the Psych::Emitter startdocument function of Ruby.
A icu security update has been released for both Debian GNU/Linux 9 and 10 to address an integer overflow in the International Components for Unicode (ICU) library which could result in denial of service and potentially the execution of arbitrary code.
A tomcat8 security update has been released for Debian GNU/Linux 8 LTS to address the possibility of a man-in-the-middle attack.
An e2fsprogs security update has been released for Debian GNU/Linux 7 Extended LTS to address an out-of-bounds write on the stack.
A weechat security update has been released for Debian GNU/Linux 8 LTS to fix an issue with crafted messages, that could result in a buffer overflow and application crash.
An e2fsprogs security update has been released for Debian GNU/Linux 8 LTS to address an out-of-bounds write on the stack.
A phpmyadmin security update has been released to address two SQL injection vulnerabilities in phpMyAdmin.
A chromium security update has been released for DebianGNU/Linux 10 to address several vulnerabilities in the chromium web browser.
A jackson-databind security update has been released for Debian GNU/Linux 8 LTS to address two security issues in FasterXML jackson-databind.
A graphicsmagick security update has been released for Debian GNU/Linux 8 LTS to address a vulnerability that allows an attacker to read arbitrary files via a crafted image because of TranslateTextEx for SVG.
A thunderbird security update has been released for Debian GNU/Linux 8 LTS to address multiple security issues which could potentially result in the execution of arbitrary code.
An amd64-microcode security update has been released for Debian GNU/Linux 8 LTS.
A python-bleach security update has been released for Debian GNU/Linux 10 to address a mutation XSS vulnerability in bleach.clean when strip=False and 'math' or 'svg' tags and one or more of the RCDATA tags were whitelisted.
An icu security update has been released for Debian GNU/Linux 8 LTS to address an integer overflow in the International Components for Unicode (ICU) library could result in denial of service and potentially the execution of arbitrary code.