Wheezy update of libxml2?

2016-12-31 Thread Ola Lundqvist
Hello dear maintainer(s), the Debian LTS team would like to fix the security issues which are currently open in the Wheezy version of libxml2: https://security-tracker.debian.org/tracker/CVE-2016-9318 https://security-tracker.debian.org/tracker/CVE-2016-9597

[SECURITY] [DLA 771-1] hdf5 security update

2016-12-31 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: hdf5 Version: 1.8.8-9+deb7u1 CVE ID : CVE-2016-4330 CVE-2016-4331 CVE-2016-4332 CVE-2016-4333 Debian Bug : 845301 Cisco Talos discovered that hdf5, a file format and library for storing scientific data,

Re: Wheezy update of imagemagick?

2016-12-31 Thread Bastien ROUCARIES
On Sat, Dec 31, 2016 at 11:07 AM, Emilio Pozuelo Monfort wrote: > On 28/12/16 23:08, Roberto C. Sánchez wrote: >> Hi Ola, >> >> The issues CVE-2016-8677 and CVE-2016-9559 were fixed by Antione when he >> uploaded that latest imagemagick update to LTS. However, the >>

Re: Wheezy update of imagemagick?

2016-12-31 Thread Emilio Pozuelo Monfort
On 28/12/16 23:08, Roberto C. Sánchez wrote: > Hi Ola, > > The issues CVE-2016-8677 and CVE-2016-9559 were fixed by Antione when he > uploaded that latest imagemagick update to LTS. However, the > announcement (DLA-756-1) did not list those issues among the issues that > were addressed by that