Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [SECURITY] [DSA 2924-1] icedove security update

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [SECURITY] [DSA 2924-1] icedove security update


Chronologisch Thread 
  • From: Moritz Muehlenhoff <jmm AT debian.org>
  • To: debian-security-announce AT lists.debian.org
  • Subject: [IT-SecNots] [SECURITY] [DSA 2924-1] icedove security update
  • Date: Mon, 5 May 2014 17:31:23 +0200
  • List-archive: <https://service.piratenpartei.de/pipermail/it-securitynotifies>
  • List-id: Sicherheitsankündigungen <it-securitynotifies.lists.piratenpartei.de>
  • Old-return-path: <jmm AT inutil.org>
  • Priority: urgent
  • Resent-date: Mon, 5 May 2014 15:31:47 +0000 (UTC)
  • Resent-from: debian-security-announce AT lists.debian.org
  • Resent-message-id: <M-g5p6eLk2E.A.CT.j76ZTB@bendel>
  • Resent-sender: debian-security-announce-request AT lists.debian.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -------------------------------------------------------------------------
Debian Security Advisory DSA-2924-1 security AT debian.org
http://www.debian.org/security/ Moritz Muehlenhoff
May 05, 2014 http://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : icedove
CVE ID : CVE-2014-1518 CVE-2014-1523 CVE-2014-1524 CVE-2014-1529
CVE-2014-1530 CVE-2014-1531 CVE-2014-1532

Multiple security issues have been found in Icedove, Debian's version
of the Mozilla Thunderbird mail and news client: Multiple memory safety
errors, buffer overflows, missing permission checks, out of bound reads,
use-after-frees and other implementation errors may lead to the
execution of arbitrary code, privilege escalation, cross-site scripting
or denial of service.

For the stable distribution (wheezy), these problems have been fixed in
version 24.5.0-1~deb7u1.

For the testing distribution (jessie), these problems have been fixed in
version 24.5.0-1.

For the unstable distribution (sid), these problems have been fixed in
version 24.5.0-1.

We recommend that you upgrade your icedove packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/

Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=BY66
-----END PGP SIGNATURE-----


--
To UNSUBSCRIBE, email to debian-security-announce-REQUEST AT lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster AT lists.debian.org
Archive: https://lists.debian.org/20140505153123.GA7158 AT pisco.westfalen.local




  • [IT-SecNots] [SECURITY] [DSA 2924-1] icedove security update, Moritz Muehlenhoff, 05.05.2014

Archiv bereitgestellt durch MHonArc 2.6.19.

Seitenanfang