[SECURITY] [DLA 639-1] mactelnet security update

2016-09-25 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: mactelnet Version: 0.3.4-1+deb7u1 CVE ID : CVE-2016-7115 CVE-2016-7115 Buffer overflow in the handle_packet function in mactelnet.c in the client in MAC-Telnet 0.4.3 and earlier allows remote TELNET servers t

[SECURITY] [DLA 638-1] policycoreutils security update

2016-09-25 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: policycoreutils Version: 2.1.10-9+deb7u1 CVE ID : CVE-2016-7545 Debian Bug : 838599 It was discovered that there was a sandbox escape via the "TIOCSTI" ioctl in policycoreutils, a set of programs required for the

[SECURITY] [DLA 637-1] openssl security update

2016-09-25 Thread Kurt Roeckx
Package: openssl Version: 1.0.1t-1+deb7u1 CVE ID : CVE-2016-2177 CVE-2016-2178 CVE-2016-2179 CVE-2016-2180 CVE-2016-2181 CVE-2016-2182 CVE-2016-6302 CVE-2016-6303 CVE-2016-6304 CVE-2016-6306 Several vulnerabilities were discovered in OpenS