[SECURITY] [DLA 1999-1] symfony security update

2019-11-18 Thread Roberto C . Sánchez
Package: symfony Version: 2.3.21+dfsg-4+deb8u6 CVE ID : CVE-2019-18886 CVE-2019-18887 CVE-2019-1 Multiple vulnerabilities have been found in the Symfony PHP framework which could lead to a timing attack/information leak, argument injection and code execution via

[SECURITY] [DLA 1998-1] python-psutil security update

2019-11-18 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: python-psutil Version: 2.1.1-1+deb8u1 CVE ID : CVE-2019-18874 Debian Bug : #944605 It was discovered that there were multiple double free vulnerabilities in python-psutil, a Python module providing convenience

[SECURITY] [DLA 1997-1] thunderbird security update

2019-11-18 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: thunderbird Version: 1:68.2.2-1~deb8u1 CVE ID : CVE-2019-11755 CVE-2019-11757 CVE-2019-11759 CVE-2019-11760 CVE-2019-11761 CVE-2019-11762 CVE-2019-11763 CVE-2019-11764 CVE-2019-15903

[SECURITY] [DLA 1996-1] libapache2-mod-auth-openidc security update

2019-11-18 Thread Markus Koschany
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: libapache2-mod-auth-openidc Version: 1.6.0-1+deb8u2 CVE ID : CVE-2019-14857 Debian Bug : 942165 A security vulnerability was found in libapache2-mod-auth-openidc, the OpenID Connect authentication module for the