[SECURITY] [DLA 2123-1] pure-ftpd security update

2020-02-27 Thread Roberto C . Sánchez
Package: pure-ftpd Version: 1.0.36-3.2+deb8u1 CVE ID : CVE-2020-9274 Debian Bug : 925666 An uninitialized pointer vulnerability was discovered in pure-ftpd, a secure and efficient FTP server, which could result in an out-of-bounds memory read and potential

[SECURITY] [DLA 2122-1] libusbmuxd security update

2020-02-27 Thread Dylan Aïssi
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: libusbmuxd Version: 1.0.9-1+deb8u1 CVE ID : CVE-2016-5104 Debian Bug : 825554 It was discovered that libusbmuxd incorrectly handled socket permissions. A remote attacker could use this issue to access services

[SECURITY] [DLA 2121-1] libimobiledevice security update

2020-02-27 Thread Dylan Aïssi
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: libimobiledevice Version: 1.1.6+dfsg-3.1+deb8u1 CVE ID : CVE-2016-5104 Debian Bug : 825553 It was discovered that libimobiledevice incorrectly handled socket permissions. A remote attacker could use this issue