Two vulnerabilities were discovered in wordpress, a web blogging tool.
The Common Vulnerabilities and Exposures project identifies the
following problems:
Category Archives: Debian
Debian Security Advisories
DSA-3471 qemu – security update
Several vulnerabilities were discovered in qemu, a full virtualization
solution on x86 hardware.
DSA-3470 qemu-kvm – security update
Several vulnerabilities were discovered in qemu-kvm, a full
virtualization solution on x86 hardware.
DSA-3467 tiff – security update
Several vulnerabilities have been found in tiff, a Tag Image File Format
library. Multiple out-of-bounds read and write flaws could cause an
application using the tiff library to crash.
DSA-3468 polarssl – security update
It was discovered that polarssl, a library providing SSL and TLS
support, contained two heap-based buffer overflows that could allow a
remote attacker to trigger denial of service (via application crash)
or arbitrary code execution.
DSA-3466 krb5 – security update
Several vulnerabilities were discovered in krb5, the MIT implementation
of Kerberos. The Common Vulnerabilities and Exposures project identifies
the following problems:
DSA-3465 openjdk-6 – security update
Several vulnerabilities have been discovered in OpenJDK, an
implementation of the Oracle Java platform, resulting in breakouts of
the Java sandbox, information disclosure, denial of service and insecure
cryptography.
DSA-3464 rails – security update
Multiple security issues have been discovered in the Ruby on Rails web
application development framework, which may result in denial of service,
cross-site scripting, information disclosure or bypass of input
validation.
DSA-3463 prosody – security update
It was discovered that insecure handling of dialback keys may allow
a malicious XMPP server to impersonate another server.
DSA-3462 radicale – security update
Two vulnerabilities were fixed in radicale, a CardDAV/CalDAV server.