Category Archives: Debian

Debian Security Advisories

DSA-3726 imagemagick – security update

Several issues have been discovered in ImageMagick, a popular set of
programs and libraries for image manipulation. These issues include
several problems in memory handling that can result in a denial of
service attack or in execution of arbitrary code by an attacker with
control on the image input.

DSA-3722 vim – security update

Florian Larysch and Bram Moolenaar discovered that vim, an enhanced vi
editor, does not properly validate values for the filetype,
syntax and keymap options, which may result in the execution of
arbitrary code if a file with a specially crafted modeline is opened.

DSA-3720 tomcat8 – security update

Multiple security vulnerabilities have been discovered in the Tomcat
servlet and JSP engine, which may result in possible timing attacks to
determine valid user names, bypass of the SecurityManager, disclosure of
system properties, unrestricted access to global resources, arbitrary
file overwrites, and potentially escalation of privileges.