Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks. For the stable distribution (trixie), these problems have been fixed in version 6.12.90-1. Additionally this update includes a[…]
It was discovered that an incorrect implementation of ECDH encryption (with NIST, Brainpool, X448, or X25519 curves) within Libgcrypt could result in denial of service. For the oldstable distribution (bookworm), this problem has been fixed in version 1.10.1-3+deb12u1.
Cem Onat Karagun discovered two vulnerabilities in the NegoEx parsing in krb5, the MIT implementation of Kerberos. An unauthenticated remote attacker can take advantage of these flaws to cause a denial of service. For the oldstable distribution (bookworm), this problem[…]
Dirk Mueller discovered that a flaw in the function performing a credential check on the command socket of haveged, a userspace entropy daemon, may result in local privilege escalation. For the oldstable distribution (bookworm), this problem has been fixed in[…]
Martino Spagnuolo reported that the HTTP/3 parsing code in HAProxy, a fast and reliable load balancing reverse proxy, does not properly validate the received body size and the announced content-length header, which may result in HTTP request smuggling. For the[…]
Several vulnerabilities were discovered in NSS, a set of cryptographic libraries, which may result in or denial of service or potentially the execution of arbitrary code. For the stable distribution (trixie), these problems have been fixed in version 2:3.110-1+deb13u2.
Two security vulnerabilities were discovered in OpenVPN, which could result in denial of service or a leak of packet data from a previous handshake. For the oldstable distribution (bookworm), these problems have been fixed in version 2.6.14-0+deb12u1.
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the oldstable distribution (bookworm), these problems have been fixed in version 1:140.11.0esr-1~deb12u1. For the stable distribution (trixie), these problems have been fixed in
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 148.0.7778.178-1~deb12u1.
Letzte Änderung am Freitag, 01 Januar 2016 20:59