[SECURITY] [DLA 1025-1] bind9 security update

2017-07-13 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: bind9 Version: 1:9.8.4.dfsg.P1-6+nmu2+deb7u17 CVE ID : CVE-2017-3142 CVE-2017-3143 CVE-2017-3142 An attacker who is able to send and receive messages to an authoritative DNS server and who has knowledge

[SECURITY] [DLA 1024-1] nginx security update

2017-07-13 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: nginx Version: 1.2.1-2.2+wheezy4+deb7u1 CVE ID : CVE-2017-7529 Debian Bug : #868109 It was discovered that there was vulnerability in the range filter of nginx, a web/proxy server. A specially crafted request