[SECURITY] [DLA 563-1] libgd2 security update

2016-07-26 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: libgd2 Version: 2.0.36~rc1~dfsg-6.1+deb7u5 CVE ID : CVE-2016-6161 A global out of bounds read when encoding gif from malformed input was found in this software. When given invalid inputs, we might be fed the EOF

[SECURITY] [DLA 562-1] gosa security update

2016-07-26 Thread Markus Koschany
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: gosa Version: 2.7.4-4.3~deb7u3 CVE ID : CVE-2015-8771 GOsa² is a combination of system-administrator and end-user web interface, designed to handle LDAP based setups. A code injection vulnerability in the Samba

[SECURITY] [DLA 561-1] uclibc security update

2016-07-26 Thread Markus Koschany
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: uclibc Version: 0.9.32-1+deb7u1 CVE ID : CVE-2016-2224 CVE-2016-2225 CVE-2016-6264 Several vulnerabilities have been discovered in uClibc, an implementation of the standard C library that is much smaller than glibc,