[SECURITY] [DLA 1163-1] apr-util security update

2017-11-06 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: apr-util Version: 1.4.1-3+deb7u1 CVE ID : CVE-2017-12618 Debian Bug : #879996 It was discovered that there was an out-of-bounds read access in apr-util, a support/portability library used by many applications. A

[SECURITY] [DLA 1162-1] apr security update

2017-11-06 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: apr Version: 1.4.6-3+deb7u2 CVE ID : CVE-2017-12613 Debian Bug : #879708 It was discovered that there was an out-of-bounds memory vulnerability in apr, a support/portability library for various applications. Whe