A gst-plugins-good0.10 security update has been released for Debian GNU/Linux 8 LTS to address two memory handling issues.
A dosfstools security update has been released for Debian GNU/Linux 8 LTS to address both an invalid memory and heap overflow vulnerability in dosfstools.
A bind9 security update has been released for Debian GNULinux 8 LTS to address two vulnerabilities in BIND.
A gst-plugins-ugly0.10 security update has been released for Debian GNU/Linux 8 LTS to address two memory management issues.
A salt security update has been released for Debian GNU/Linux 8 LTS to address several vulnerabilities.
A libexif security update has been released for Debian GNU/Linux 8 LTS to address various minor vulnerabilities.
A tomcat8 security update has been released for Debian GNU/Linux 8 LTS to address several security vulnerabilities in the Tomcat servlet and JSP engine.
A sqlite3 security update has been released for Debian GNU/Linux 8 LTS to address an integer overflow vulnerability in the sqlite3_str_vappendf function of src/printf.c.
An unbound security update has been released for both Debian GNU/Linux 9 and 10 to address two vulnerabilities in Unbound.
A drupal7 security update has been released for Debian GNU/Linux 9 to address several vulnerabilities in Drupal 7.
A transmission security update has been released for Debian GNU/Linux 8 LTS to address a denial of service (crash) or possible execution of arbitrary code.
A cracklib2 security update has been released for Debian GNU/Linux 8 LTS to address a stack-based buffer overflow when parsing large GECOS fields in cracklib2
A feh security update has been released for Debian GNU/Linux 8 LTS to address an out-of-boundary heap write with the image viewer feh while receiving an IPC message.
A tomcat7 security update has been released for Debian GNU/Linux 7 Extended LTS to address a potential remote code execution via deserialization of local files on the filesystem within tomcat7.
A netqmail security update has been released for Debian GNU/Linux 9 and 10 to multiple vulnerabilities in qmail.
A tomcat7 security update has been released for Debian GNU/Linux 8 LTS to address a potential remote code execution via deserialization in tomcat7.
A ruby-rack security update has been released for Debian GNU/Linux 8 LTS to address a possible directory traversal vulnerability in the Rack::Directory app that is bundled with Rack.
A pdns-recursor security update has been released for Debian GNU/Linux 10 to address two vulnerabilities, a traffic amplification attack against third party authoritative name servers (NXNSAttack) and insufficient validation of NXDOMAIN responses lacking an SOA.
A dovecot security update has been released for Debian GNU/Linux 10 to address several vulnerabilities, which could cause crashes in the submission, submission-login or lmtp services, resulting in denial of service.
A bind9 security update has been released for both Debian GNU/Linux 9 and 10 to address several vulnerabilities.