Debian 10235 Published by Philipp Esselbach 0

A coturn security update has been released for Debian GNU/Linux 9 LTS to address a flaw where a remote attacker can bypass the protection via a specially crafted request using a peer address of '0.0.0.0' and trick coturn in relaying to the loopback interface.

Debian 10235 Published by Philipp Esselbach 0

A coturn security update has been released for Debian GNU/Linux 10 to address a flaw where a remote attacker can bypass the protection via a specially crafted request using a peer address of '0.0.0.0' and trick coturn in relaying to the loopback interface.

Debian 10235 Published by Philipp Esselbach 0

An apt security update has been released for Debian GNU/Linux 8 Extended LTS to fix a missing input validation in the ar/tar implementations of APT.

Debian 10235 Published by Philipp Esselbach 0

A firefox-esr security update has been released for Debian GNU/Linux 9 LTS to address a security issue which could potentially result in the execution of arbitrary code.

Debian 10235 Published by Philipp Esselbach 0

A firefox-esr security update has been released for Debian GNU/Linux 10 to address a security issue, which could potentially result in the execution of arbitrary code.

Debian 10235 Published by Philipp Esselbach 0

A libxstream-java security update has been released for Debian GNU/Linux 10 to address two security issues, which could result in the deletion of files or server-side request forgery when unmarshalling.

Debian 10235 Published by Philipp Esselbach 0

A nodejs security update has been released for Debian GNU/Linux 10 to address two vulnerabilities, which could result in denial of service and potentially the execution of arbitrary code or HTTP request smuggling.

Debian 10235 Published by Philipp Esselbach 0

A golang-websocket security update has been released for Debian GNU/Linux 9 LTS to address an integer overflow vulnerability concerning the length of websocket frames received via a websocket connection.

Debian 10235 Published by Philipp Esselbach 0

A cairo security update has been released for Debian GNU/Linux 9 LTS to address an issue where slideshow aborts with stack smashing in cairo’s composite_boxes.

Debian 10235 Published by Philipp Esselbach 0

A dovecot security update has been released for Debian GNU/Linux 8 Extended LTS to address a vulnerability where a malicious sender could crash Dovecot repeatedly by sending messages with more than 10,000 MIME parts.

Debian 10235 Published by Philipp Esselbach 0

A csync2 security update has been released for Debian GNU/Linux 9 LTS to address an issue where csync2 is not correctly checking for the return value from GnuTLS security routines.

Debian 10235 Published by Philipp Esselbach 0

A gssproxy security update has been released for Debian GNU/Linux 9 LTS to address a privilege separation caused by gssproxy not unlocking cond_mutex prior to calling pthread_exit.

Debian 10235 Published by Philipp Esselbach 0

A cairo security update has been released for Debian GNU/Linux 8 Extended LTS to address an issue where LibreOffice slideshow aborts with stack smashing in cairo’s composite_boxes.

Debian 10235 Published by Philipp Esselbach 0

A highlight.js security update has been released for Debian GNU/Linux 8 Extended LTS to address an issue that might result in strange behavior or crashes of applications that do not correctly handle unknown properties.

Debian 10235 Published by Philipp Esselbach 0

A linux-4.9 security update has been released for Debian GNU/Linux 8 Extended LTS to address several vulnerabilities that may lead to the execution of arbitrary code, privilege escalation, denial of service or information leaks.

Debian 10235 Published by Philipp Esselbach 0

A highlight.js security update has been released for Debian GNU/Linux 9 LTS to address an issue that might result in strange behavior or crashes of applications that do not correctly handle unknown properties.

Debian 10235 Published by Philipp Esselbach 0

A kitty security update has been released for Debian GNU/Linux 10 to address a security issue that allows to execute shell commands when displaying a file with cat.

Debian 10235 Published by Philipp Esselbach 0

A spip security update has been released for Debian GNU/Linux 9 LTS to address an issue that allows authenticated users to execute arbitrary code.

Debian 10235 Published by Philipp Esselbach 0

A flac security update has been released for Debian GNU/Linux 8 Extended LTS to address a possible out-of-bounds read due to a heap buffer overflow.