it-securitynotifies AT lists.piratenpartei.de
Betreff: Sicherheitsankündigungen
Listenarchiv
- From: Salvatore Bonaccorso <carnil AT debian.org>
- To: debian-security-announce AT lists.debian.org
- Subject: [IT-SecNots] [SECURITY] [DSA 4800-1] libproxy security update
- Date: Sat, 28 Nov 2020 20:24:49 +0000
- List-archive: https://lists.debian.org/msgid-search/E1kj6m1-0003Wu-Un AT seger.debian.org
- List-id: <debian-security-announce.lists.debian.org>
- List-url: <http://lists.debian.org/debian-security-announce/>
- Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Date:Message-Id:Subject:To:From:Reply-To:Cc:MIME-Version :Content-Type:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=6dhTCv4DPyGKBCxth8XEEwqf8radefrDBYNAEcGgGbI=; b=jJ 1OrAZWdSuNTokiQO5C0hhR0TDvp92x5Vjfy2NJy5uv7jDI0bK6ML70SGoMEEmCMtKMI57IfUctTKR n29jZKddjCBlFOns+FrPlPiAIy5y7FT4aq8LtFFUsivyuAd+CDX+WjBy+hTabg9TZMIrH5kfj39Bg PClcucm3LyCP5KLnOIvMj8Y6roDmHlazLUD+bvtnXXixYsAfDRJpChXhJI6DDH4D8z5EHeRUlAbxq I3i31Y+AS2KH4dQKpR49ubnR7z3+WlM8IHnLeOndwe63fG2GDkc0g8XHEK0wTWOYqunKMDkmazFny R0bCoZRP5ZGJqafLflLgWCi3UxNtLSOg==;
- Old-return-path: <carnil AT seger.debian.org>
- Priority: urgent
- Resent-date: Sat, 28 Nov 2020 20:25:09 +0000 (UTC)
- Resent-from: debian-security-announce AT lists.debian.org
- Resent-message-id: <liMKxk6eDrO.A.RjE.lIrwfB@bendel>
- Resent-sender: debian-security-announce-request AT lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-4800-1 security AT debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
November 28, 2020 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : libproxy
CVE ID : CVE-2020-25219 CVE-2020-26154
Debian Bug : 968366 971394
Two vulnerabilities were discovered in libproxy, an automatic proxy
configuration management library, which could result in denial of
service, or possibly, execution of arbitrary code.
For the stable distribution (buster), these problems have been fixed in
version 0.4.15-5+deb10u1.
We recommend that you upgrade your libproxy packages.
For the detailed security status of libproxy please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/libproxy
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAl/CsThfFIAAAAAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2
NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND
z0QHNQ/+KeeiXOgCF5TqJaI8wsFh6wIxZ7JaalX6Ps/N0IZTsbXF8b7SxIiPcEEO
aw5MqYfmnhSlCN8f8HEpqIixdHDN4J+uLihus5yzsS/s8Th9/aXbOa2ZGc4ck8tw
7RIAfmBG6YSaNUuYInEvQrZaiLSPn/pF3PEMY9CtPrhctwK1+XMBc5Kmdu0o17fT
pu2GuzUgprLRkS10la1GZIujq5NsWB8ywFolbSmXHIcLf0l6BnstLNLCpbNlcqsC
mWbSMn0UZ+Eazc8OtfdXIP2eFbYfXENI+A+8RxuKELAtrT4wC94YZkES8gzqhb92
ndx/yCbyGR96BdKBEZ7lVXK25bmxKP7igG+30y/qZE8Oj4EUI1Dn+J/OZ9Nva0rT
lxeqPxtgN7pj+sQD+5NmqHCRj/TmKQXJwZfWmgrvtTQ7l2qbI21CbvjeG2sZLiUa
xADZ1rZu8stzvSJLljidi1cZsSwRoWJsZwNqfWWJYZUUaShLBI8ITHQZgX2X0bca
8HVW9CqxcM8AtemwjdXzTa9RVfE3cNq/PfNAVc/QOiN4p0zK3pykte4d3aRzb6Un
wDwzm/HbIFmJoAsy6GHuXLZuQWcjuZVmGvMd1gmF9GrQHMX+hnsHdKAPsW+6SH6R
denOzLMjuiG3BZ2qergUqV0S5DNigLBxZMB7scErENIssRu/5eQ=
=xNP+
-----END PGP SIGNATURE-----
- [IT-SecNots] [SECURITY] [DSA 4800-1] libproxy security update, Salvatore Bonaccorso, 28.11.2020
Archiv bereitgestellt durch MHonArc 2.6.19.