|
|
Subscribe / Log in / New account

Security advisories for Monday

Arch Linux has updated imagemagick (two vulnerabilities), kcoreaddons (HTML injection), messagelib (two vulnerabilities), and wpa_supplicant (two vulnerabilities).

Debian has updated php5 (multiple vulnerabilities).

Debian-LTS has updated mat (information leak).

Fedora has updated libdwarf (F24: two vulnerabilities), libXfixes (F24: integer overflow), libXi (F24: insufficient validation), libXrandr (F24: insufficient validation), libXrender (F24: insufficient validation), libXtst (F24: insufficient validation), libXv (F24: insufficient validation), libXvMC (F24: insufficient validation), mingw-c-ares (F24; F23: code execution), mingw-openjpeg2 (F24; F23: denial of service), openjpeg2 (F23: denial of service), php-ZendFramework (F24; F23: SQL injection), and python-pillow (F24: memory disclosure).

Gentoo has updated libgcrypt (multiple vulnerabilities) and quagga (code execution).

Mageia has updated graphicsmagick (multiple vulnerabilities).

Red Hat has updated python-django (RHELOSP7 for RHEL7; RHELOSP6 for RHEL7; RHELOSP5 for RHEL7; RHELOSP5 for RHEL6: cross-site request forgery).

SUSE has updated php5 (SLE12-SP1: multiple vulnerabilities) and systemd (SLE12-SP1; SLE12: denial of service).


to post comments

Security advisories for Monday

Posted Oct 10, 2016 22:04 UTC (Mon) by flussence (guest, #85566) [Link] (2 responses)

Beware of this libXi 1.7.7 update: I started getting segfaults in all GTK2-using software when I have a tablet plugged in, and the backtrace points to XListInputDevices returning garbage.

Still trying to figure out what's going on here...

Security advisories for Monday

Posted Oct 13, 2016 22:01 UTC (Thu) by whot (subscriber, #50317) [Link] (1 responses)

Security advisories for Monday

Posted Oct 16, 2016 1:05 UTC (Sun) by flussence (guest, #85566) [Link]

Thanks for the speedy fix, to both of you :-)


Copyright © 2016, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds