--- ../../english/security/2018/dsa-4216.wml 2018-06-04 20:44:35.167815744 +0500 +++ 2018/dsa-4216.wml 2018-06-04 20:49:37.982021568 +0500 @@ -1,27 +1,28 @@ -<define-tag description>security update</define-tag> +#use wml::debian::translation-check translation="012397a8cf378f88a443716d86936f74eb6de448" mindelta="1" maintainer="Lev Lamberov" +<define-tag description>обновление безопаÑноÑÑи</define-tag> <define-tag moreinfo> -<p>It was discovered that Prosody, a lightweight Jabber/XMPP server, does -not properly validate client-provided parameters during XMPP stream -restarts, allowing authenticated users to override the realm associated -with their session, potentially bypassing security policies and allowing -impersonation.</p> +<p>ÐÑло обнаÑÑжено, ÑÑо Prosody, легковеÑнÑй ÑеÑÐ²ÐµÑ Jabber/XMPP, непÑавилÑно +вÑполнÑÐµÑ Ð¿ÑовеÑÐºÑ Ð¿ÐµÑедаваемÑÑ ÐºÐ»Ð¸ÐµÐ½Ñом паÑамеÑÑов в Ñ Ð¾Ð´Ðµ пеÑезапÑÑков XMPP-поÑока, +позволÑÑ Ð°ÑÑенÑиÑиÑиÑованнÑм полÑзоваÑелÑм пеÑеопÑеделÑÑÑ ÑвÑзаннÑÑ Ñ Ð¸Ñ ÑеÑÑией +поименованнÑÑ Ð¾Ð±Ð»Ð°ÑÑÑ, поÑенÑиалÑно Ð¾Ð±Ñ Ð¾Ð´Ñ Ð¾Ð³ÑаниÑÐµÐ½Ð¸Ñ Ð¿Ñавил безопаÑноÑÑи и +вÑÐ´Ð°Ð²Ð°Ñ ÑÐµÐ±Ñ Ð·Ð° кого-Ñо дÑÑгого.</p> -<p>Details can be found in the upstream advisory at +<p>ÐодÑобноÑÑи могÑÑ Ð±ÑÑÑ Ð½Ð°Ð¹Ð´ÐµÐ½Ñ Ð² ÑекомендаÑии оÑновной веÑки ÑазÑабоÑки по адÑеÑÑ <a href="https://prosody.im/security/advisory_20180531/">https://prosody.im/security/advisory_20180531/</a></p> -<p>For the oldstable distribution (jessie), this problem has been fixed -in version 0.9.7-2+deb8u4.</p> +<p>РпÑедÑдÑÑем ÑÑабилÑном вÑпÑÑке (jessie) ÑÑа пÑоблема бÑла иÑпÑавлена +в веÑÑии 0.9.7-2+deb8u4.</p> -<p>For the stable distribution (stretch), this problem has been fixed in -version 0.9.12-2+deb9u2.</p> +<p>Ð ÑÑабилÑном вÑпÑÑке (stretch) ÑÑа пÑоблема бÑла иÑпÑавлена в +веÑÑии 0.9.12-2+deb9u2.</p> -<p>We recommend that you upgrade your prosody packages.</p> +<p>РекомендÑеÑÑÑ Ð¾Ð±Ð½Ð¾Ð²Ð¸ÑÑ Ð¿Ð°ÐºÐµÑÑ prosody.</p> -<p>For the detailed security status of prosody please refer to its security -tracker page at: -<a href="https://security-tracker.debian.org/tracker/prosody">https://security-tracker.debian.org/tracker/prosody</a></p> +<p>С подÑобнÑм ÑÑаÑÑÑом поддеÑжки безопаÑноÑÑи prosody можно ознакомиÑÑÑÑ Ð½Ð° +ÑооÑвеÑÑÑвÑÑÑей ÑÑÑаниÑе оÑÑÐ»ÐµÐ¶Ð¸Ð²Ð°Ð½Ð¸Ñ Ð±ÐµÐ·Ð¾Ð¿Ð°ÑноÑÑи по адÑеÑÑ +<a href="https://security-tracker.debian.org/tracker/prosody">\ +https://security-tracker.debian.org/tracker/prosody</a></p> </define-tag> # do not modify the following line #include "$(ENGLISHDIR)/security/2018/dsa-4216.data" -# $Id: $