Two vulnerabilities were found in PHP, a general-purpose scripting
language commonly used for web application development.
Category Archives: Debian
Debian Security Advisories
DSA-3381 openjdk-7 – security update
Several vulnerabilities have been discovered in OpenJDK, an
implementation of the Oracle Java platform, resulting in the execution
of arbitrary code, breakouts of the Java sandbox, information disclosure,
or denial of service.
DSA-3379 miniupnpc – security update
Aleksandar Nikolic of Cisco Talos discovered a buffer overflow
vulnerability in the XML parser functionality of miniupnpc, a UPnP IGD
client lightweight library. A remote attacker can take advantage of this
flaw to cause an application using the miniupnpc library to crash, or
potentially to execute arbitrary code with the privileges of the user
running the application.
DSA-3378 gdk-pixbuf – security update
Several vulnerabilities have been discovered in gdk-pixbuf, a toolkit
for image loading and pixel buffer manipulation. The Common
Vulnerabilities and Exposures project identifies the following problems:
DSA-3377 mysql-5.5 – security update
Several issues have been discovered in the MySQL database server. The
vulnerabilities are addressed by upgrading MySQL to the new upstream
version 5.5.46. Please see the MySQL 5.5 Release Notes and Oracle’s
Critical Patch Update advisory for further details:
DSA-3376 chromium-browser – security update
Several vulnerabilities have been discovered in the chromium web browser.
DSA-3374 postgresql-9.4 – security update
Several vulnerabilities have been found in PostgreSQL-9.4, a SQL
database system.
DSA-3375 wordpress – security update
Several vulnerabilities have been fixed in WordPress, the popular
blogging engine.
DSA-3373 owncloud – security update
Multiple vulnerabilities were discovered in ownCloud, a cloud storage
web service for files, music, contacts, calendars and many more. These
flaws may lead to the execution of arbitrary code, authorization bypass,
information disclosure, cross-site scripting or denial of service.
DSA-3372 linux – security update
Several vulnerabilities have been discovered in the Linux kernel that
may lead to a privilege escalation, denial of service, unauthorised
information disclosure or unauthorised information modification.