Debian 10967 Published by Philipp Esselbach 0

A libbsd security update has been released for Debian GNU/Linux 7 Extended LTS to address an out-of-bounds read vulnerability during string comparisons.

Debian 10967 Published by Philipp Esselbach 0

A bluez security update has been released for both Debian GNU/Linux 9 and 10 to fix an issue that BlueZ's HID and HOGP profile implementations don't specifically require bonding between the device and the host.

Debian 10967 Published by Philipp Esselbach 0

A php5 security update has been released for Debian GNU/Linux 8 LTS to address the following two security issues: 1) CVE-2020-7062 is about a possible null pointer derefernce, which would
likely lead to a crash, during a failed upload with progress tracking, 2) CVE-2020-7063 is about wrong file permissions of files added to tar with Phar::buildFromIterator when extracting them again.

Debian 10967 Published by Philipp Esselbach 0

A okular security update has been released for both Debian GNU/Linux 8 LTS to address a security issue which allows code execution via an action link in a PDF document.

Debian 10967 Published by Philipp Esselbach 0

A ruby2.1 security update has been released for Debian GNU/Linux 8 LTS to address a heap overflow vulnerability in the Psych::Emitter startdocument function of Ruby.

Debian 10967 Published by Philipp Esselbach 0

A icu security update has been released for both Debian GNU/Linux 9 and 10 to address an integer overflow in the International Components for Unicode (ICU) library which could result in denial of service and potentially the execution of arbitrary code.

Debian 10967 Published by Philipp Esselbach 0

A weechat security update has been released for Debian GNU/Linux 8 LTS to fix an issue with crafted messages, that could result in a buffer overflow and application crash.

Debian 10967 Published by Philipp Esselbach 0

A graphicsmagick security update has been released for Debian GNU/Linux 8 LTS to address a vulnerability that allows an attacker to read arbitrary files via a crafted image because of TranslateTextEx for SVG.

Debian 10967 Published by Philipp Esselbach 0

A thunderbird security update has been released for Debian GNU/Linux 8 LTS to address multiple security issues which could potentially result in the execution of arbitrary code.

Debian 10967 Published by Philipp Esselbach 0

A python-bleach security update has been released for Debian GNU/Linux 10 to address a mutation XSS vulnerability in bleach.clean when strip=False and 'math' or 'svg' tags and one or more of the RCDATA tags were whitelisted.

Debian 10967 Published by Philipp Esselbach 0

An icu security update has been released for Debian GNU/Linux 8 LTS to address an integer overflow in the International Components for Unicode (ICU) library could result in denial of service and potentially the execution of arbitrary code.