[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[TAF] wml://security/2011/dsa-229{2,3,4}.wml



Salut,

Plusieurs annonces de sécurité sont à traduire, par avance merci au
volontaire de répondre par un [ITT] sur le groupe, ou même un ITT
individuel par annonce, comme vous préférez (par exemple en utilisant le
sujet « [ITT] wml://security/2011/dsa-2292.wml » pour la première).

Un script dans le dépôt du site web permet de traduire les morceaux
habituels : french/security/dsa-translator.pl.

Amicalement

David


<define-tag description>missing input sanisiting</define-tag>
<define-tag moreinfo>
<p>It was discovered that insufficient input saniting in Freetype's code to
parse Type1 could lead to the execution of arbitrary code.</p>

<p>For the oldstable distribution (lenny), this problem has been fixed in
version 2.3.7-2+lenny6.</p>

<p>For the stable distribution (squeeze), this problem has been fixed in
version 2.4.2-2.1+squeeze1.</p>

<p>For the unstable distribution (sid), this problem has been fixed in
version 2.4.6-1.</p>

<p>We recommend that you upgrade your freetype packages.</p>
</define-tag>

# do not modify the following line
#include "$(ENGLISHDIR)/security/2011/dsa-2294.data"
# $Id: dsa-2294.wml,v 1.1 2011-08-15 09:13:59 kaare Exp $
<define-tag description>buffer overflow</define-tag>
<define-tag moreinfo>
<p>Tomas Hoger found a buffer overflow in the X.Org libXfont library,
which may allow for a local privilege escalation through crafted
font files.</p>

<p>For the oldstable distribution (lenny), this problem has been fixed in
version 1.3.3-2.</p>

<p>For the stable distribution (squeeze), this problem has been fixed in
version 1.4.1-3.</p>

<p>For the unstable distribution (sid), this problem has been fixed in
version 1.4.4-1.</p>

<p>We recommend that you upgrade your libxfont packages.</p>
</define-tag>

# do not modify the following line
#include "$(ENGLISHDIR)/security/2011/dsa-2293.data"
# $Id: dsa-2293.wml,v 1.1 2011-08-12 21:54:25 spaillard Exp $
<define-tag description>denial of service</define-tag>
<define-tag moreinfo>
<p>David Zych discovered that the ISC DHCP crashes when processing
certain packets, leading to a denial of service.</p>

<p>For the oldstable distribution (lenny), this problem has been fixed in
version 3.1.1-6+lenny6 of the dhcp3 package.</p>

<p>For the stable distribution (squeeze), this problem has been fixed in
version 4.1.1-P1-15+squeeze3 of the isc-dhcp package.</p>

<p>For the testing distribution (wheezy) and the unstable distribution
(sid), this problem will be fixed soon.</p>

<p>We recommend that you upgrade your ISC DHCP packages.</p>
</define-tag>

# do not modify the following line
#include "$(ENGLISHDIR)/security/2011/dsa-2292.data"
# $Id: dsa-2292.wml,v 1.1 2011-08-11 09:09:26 kaare Exp $

Attachment: signature.asc
Description: OpenPGP digital signature


Reply to: