[Secure-testing-team] Bug#717936: bind9: CVE-2013-4854: A specially crafted query can cause BIND to terminate abnormally

2013-07-26 Thread Salvatore Bonaccorso
Package: bind9 Severity: grave Tags: security upstream patch Hi, the following vulnerability was published for bind9. CVE-2013-4854[0]: A specially crafted query can cause BIND to terminate abnormally See [1] for the upstream knowledge base entry. If you fix the vulnerability please also make

[Secure-testing-team] Bug#717895: xymon: remote file deletion vulnerability

2013-07-26 Thread Salvatore Bonaccorso
Package: xymon Severity: important Tags: security upstream Hi Christoph According to [1] xymon is vulnerable to ta file deletion vulnerability, which I have not further investigated. Forwarding this to the BTS. At first glance the impact is limited (according to mitigation factors section). Upst