Linux 4.19 has been packaged for Debian GNU/Linux 9 LTS as linux-4.19 to provide a supported upgrade path for systems that currently use kernel packages from the stretch-backports suite.
A roundcube security update security update has been released for Debian GNU/Linux 9 LTS to address a cross-site scripting vulnerabilities in handling invalid svg and math tag content.
A golang-github-seccomp-libseccomp-golang security update has been released for Debian GNU/Linux 9 LTS to fix an issue where multiple syscall arguments could bypass intended access restrictions by specifying a single matching argument.
A firmware-nonfree new upstream version has been released for Debian GNU/Linux 9 LTS to include additional firmware that may be requested by some drivers in Linux 4.19.
A roundcube security update security update has been released for Debian GNU/Linux 10 to address a cross-site scripting vulnerabilities in handling invalid svg and math tag content.
A ruby-kramdown security update has been released for Debian GNU/Linux 10 to address a flaw in ruby-kramdown, which could result in unintended read access to files or unintended embedded Ruby code execution when the {::options /} extension is used together with the 'template' option.
A xrdp security update has been released for Debian GNU/Linux 9 to address an issue where xrdp-sesman service in xrdp can be crashed by connecting over port 3350 and supplying a malicious payload.
A ruby-kramdown has been released for Debian GNU/Linux 9 LTS to address an issue where ruby-kramdown processes the template option inside Kramdown documents by default, which allows unintended read access or unintended embedded Ruby code execution.
A pillow security update has been released for Debian GNU/Linux 9 LTS to address multiple out-of-bounds issues.
A pillow security update has been released for Debian GNU/Linux 8 Extended LTS to address multiple out-of-bounds issues.
A wpa security update has been released for Debian GNU/Linux 9 LTS to address two security issues.
A gupnp security update has been released for Debian GNU/Linux 8 Extended LTS to address an issue in the SUBSCRIBE method of UPnP.
Ondřej Surý has released new PHP packages for Debian GNU/Linux 9 LTS and 10.
A gupnp security update has been released for Debian GNU/Linux 9 LTS to address an issue in the SUBSCRIBE method of UPnP.
A gupnp security update has been released for Debian GNU/Linux 8 Extended LTS to address an issue in the SUBSCRIBE method of UPnP.
A firejail security update has been released for Debian GNU/Linux 10 to address two vulnerabilities.
A clamav security update has been released for Debian GNU/Linux 9 LTS to address several vulnerabilities.
A json-c security update has been released for Debian GNU/Linux 10 to address an integer overflow in the json-c JSON library.
A net-snmp security update has been released for Debian GNU/Linux 9 LTS to address a privilege escalation vulnerability due to incorrect symlink handling.
A net-snmp security update has been released for Debian GNU/Linux 8 Extended LTS to address a privilege escalation vulnerability.