it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Salvatore Bonaccorso <carnil AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 4753-1] mupdf security update
- Date: Sat, 29 Aug 2020 15:17:18 +0000
- List-archive: https://lists.debian.org/msgid-search/E1kC2bW-0000Bh-Nb AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Date:Message-Id:Subject:To:From:Reply-To:Cc:MIME-Version :Content-Type:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=RAKaRiQ1LJ1WzITruZwFvvQILabo28aWa2pZfdaD6O4=; b=KK cMCU8xXH4A2kSduvJsoPRkop6BWRGmaGu34Xbg40Z1oESbVAQXrVU5FFu0Ez/uPFxz3D6l7aaD+fs 4Cfc8WgSIV/MOH1bvw+NEAZT04qSMTf3i7ITCwOKRVQpAg3woX2m2SJj1YQkDtBQtid7RGWrB8yH6 /no6Pp75rt5HYKtl3flul+EkKs1KZj/DBHjsqMbqBJTVu/Q+vXAVirJw5X7cjYQxJPUoly8zzJH0M Emd91GsEv/VuC9aBXWbNWI79MMIKORC4LqzlzUkxr/HvmRKxSW66mJldrFNx8SzBGK0Q+q2rzhBnJ XcCCY5sylgoHGxA6SxZginlXfDD2t37Q==;
- Old-return-path: <carnil AT seger.debian.org>
- Priority: urgent
- Resent-date: Sat, 29 Aug 2020 15:17:34 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <Odp1yBYQ1KI.A.k8B.OGnSfB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-4753-1 security AT debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
August 29, 2020 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : mupdf
CVE ID : CVE-2019-13290
Debian Bug : 931475
A heap-based buffer overflow flaw was discovered in MuPDF, a lightweight
PDF viewer, which may result in denial of service or the execution of
arbitrary code if a malformed PDF file is opened.
For the stable distribution (buster), this problem has been fixed in
version 1.14.0+ds1-4+deb10u1.
We recommend that you upgrade your mupdf packages.
For the detailed security status of mupdf please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/mupdf
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----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=taBI
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 4753-1] mupdf security update, Salvatore Bonaccorso, 29.08.2020
Archiv bereitgestellt durch MHonArc 2.6.19.