[Secure-testing-team] Bug#714241: xml-security-c: CVE-2013-2210

2013-06-27 Thread Salvatore Bonaccorso
Package: xml-security-c Severity: grave Tags: security patch Justification: user security hole Hi Russ, the following vulnerability was published for xml-security-c. It looks the fix for CVE-2013-2154 introduced the possibility of a heap overflow. CVE-2013-2210[0]: heap overflow during XPointer

[Secure-testing-team] Bug#714340: suds: CVE-2013-2217: Insecure temporary directory use when initializing file-based URL cache

2013-06-27 Thread Salvatore Bonaccorso
Package: suds Severity: important Tags: security upstream Hi, the following vulnerability was published for suds. CVE-2013-2217[0]: Insecure temporary directory use when initializing file-based URL cache If you fix the vulnerability please also make sure to include the CVE (Common