apticron report [Sat, 04 Mar 2017 23:38:18 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
imagemagick 8:6.8.9.9-5+deb8u7
imagemagick-6.q16 8:6.8.9.9-5+deb8u7
imagemagick-common 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2-extra 8:6.8.9.9-5+deb8u7
libmagickwand-6.q16-2 8:6.8.9.9-5+deb8u7
munin-common 2.0.25-1+deb8u3
munin-node 2.0.25-1+deb8u3
munin-plugins-core 2.0.25-1+deb8u3
munin-plugins-extra 2.0.25-1+deb8u3
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour munin (munin-common munin-node munin-plugins-core munin-plugins-extra) ---
munin (2.0.25-1+deb8u3) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: use Scalar::Util::looks_like_number.
Fix regression, causing munin-cgi-graph to spam munin logs with Perl
warnings of uninitialized value use for $size_x, $size_y, $upper_limit
or $lower_limit. (Closes: #856536)
-- Salvatore Bonaccorso <carnil(a)debian.org> Fri, 03 Mar 2017 06:10:34 +0100
munin (2.0.25-1+deb8u2) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: handle the empty string in CGI arguments.
Fix regression in zooming functionality via munin-cgi-graph introduced
by the original fix for CVE-2017-6188. (Closes: #856455)
-- Salvatore Bonaccorso <carnil(a)debian.org> Wed, 01 Mar 2017 21:05:07 +0100
--- Modifications pour imagemagick (imagemagick imagemagick-6.q16 imagemagick-common libmagickcore-6.q16-2 libmagickcore-6.q16-2-extra libmagickwand-6.q16-2) ---
imagemagick (8:6.8.9.9-5+deb8u7) jessie-security; urgency=medium
* Fix Ipl file missing malloc check (Closes: #851483).
Fix CVE-2016-10145.
* Fix wpg file off by one (Closes: #851483).
Fix CVE-2016-10145.
* Fix a memory leak in caption coders (Closes: #851380).
Fix CVE-2016-10146.
* Fix possible buffer overflow when writing compressed TIFFS.
(Closes: #848139). Fix CVE-2016-8707.
* Fix a double free in profile due to overflow
(Closes: #851383). Fix CVE-2017-5506.
* Fix memory leak in MPC file handling (Closes: #851382).
Fix CVE-2017-5507
* Fix Heap-Buffer-Overflow in TIFF coder (Closes: #851381).
Fix CVE-2017-5508
* Fix improper cast that could cause an overflow. (Closes: #851374).
Fix CVE-2017-5511.
* Fix memory corruption heap overflow in psb file. (Closes: #851376).
Fix CVE-2017-5510.
* Detect write error in ReadGROUP4Image. (Closes: #849439).
Fix CVE-2016-10062
-- Bastien Roucariès <roucaries.bastien+debian(a)gmail.com> Sun, 12 Feb 2017 22:08:25 +0100
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron
apticron report [Fri, 03 Mar 2017 23:38:18 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
imagemagick 8:6.8.9.9-5+deb8u7
imagemagick-6.q16 8:6.8.9.9-5+deb8u7
imagemagick-common 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2-extra 8:6.8.9.9-5+deb8u7
libmagickwand-6.q16-2 8:6.8.9.9-5+deb8u7
munin-common 2.0.25-1+deb8u3
munin-node 2.0.25-1+deb8u3
munin-plugins-core 2.0.25-1+deb8u3
munin-plugins-extra 2.0.25-1+deb8u3
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour munin (munin-common munin-node munin-plugins-core munin-plugins-extra) ---
munin (2.0.25-1+deb8u3) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: use Scalar::Util::looks_like_number.
Fix regression, causing munin-cgi-graph to spam munin logs with Perl
warnings of uninitialized value use for $size_x, $size_y, $upper_limit
or $lower_limit. (Closes: #856536)
-- Salvatore Bonaccorso <carnil(a)debian.org> Fri, 03 Mar 2017 06:10:34 +0100
munin (2.0.25-1+deb8u2) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: handle the empty string in CGI arguments.
Fix regression in zooming functionality via munin-cgi-graph introduced
by the original fix for CVE-2017-6188. (Closes: #856455)
-- Salvatore Bonaccorso <carnil(a)debian.org> Wed, 01 Mar 2017 21:05:07 +0100
--- Modifications pour imagemagick (imagemagick imagemagick-6.q16 imagemagick-common libmagickcore-6.q16-2 libmagickcore-6.q16-2-extra libmagickwand-6.q16-2) ---
imagemagick (8:6.8.9.9-5+deb8u7) jessie-security; urgency=medium
* Fix Ipl file missing malloc check (Closes: #851483).
Fix CVE-2016-10145.
* Fix wpg file off by one (Closes: #851483).
Fix CVE-2016-10145.
* Fix a memory leak in caption coders (Closes: #851380).
Fix CVE-2016-10146.
* Fix possible buffer overflow when writing compressed TIFFS.
(Closes: #848139). Fix CVE-2016-8707.
* Fix a double free in profile due to overflow
(Closes: #851383). Fix CVE-2017-5506.
* Fix memory leak in MPC file handling (Closes: #851382).
Fix CVE-2017-5507
* Fix Heap-Buffer-Overflow in TIFF coder (Closes: #851381).
Fix CVE-2017-5508
* Fix improper cast that could cause an overflow. (Closes: #851374).
Fix CVE-2017-5511.
* Fix memory corruption heap overflow in psb file. (Closes: #851376).
Fix CVE-2017-5510.
* Detect write error in ReadGROUP4Image. (Closes: #849439).
Fix CVE-2016-10062
-- Bastien Roucariès <roucaries.bastien+debian(a)gmail.com> Sun, 12 Feb 2017 22:08:25 +0100
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron
apticron report [Sun, 05 Mar 2017 23:38:18 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
imagemagick 8:6.8.9.9-5+deb8u7
imagemagick-6.q16 8:6.8.9.9-5+deb8u7
imagemagick-common 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2 8:6.8.9.9-5+deb8u7
libmagickcore-6.q16-2-extra 8:6.8.9.9-5+deb8u7
libmagickwand-6.q16-2 8:6.8.9.9-5+deb8u7
munin-common 2.0.25-1+deb8u3
munin-node 2.0.25-1+deb8u3
munin-plugins-core 2.0.25-1+deb8u3
munin-plugins-extra 2.0.25-1+deb8u3
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour munin (munin-common munin-node munin-plugins-core munin-plugins-extra) ---
munin (2.0.25-1+deb8u3) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: use Scalar::Util::looks_like_number.
Fix regression, causing munin-cgi-graph to spam munin logs with Perl
warnings of uninitialized value use for $size_x, $size_y, $upper_limit
or $lower_limit. (Closes: #856536)
-- Salvatore Bonaccorso <carnil(a)debian.org> Fri, 03 Mar 2017 06:10:34 +0100
munin (2.0.25-1+deb8u2) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* cgi: handle the empty string in CGI arguments.
Fix regression in zooming functionality via munin-cgi-graph introduced
by the original fix for CVE-2017-6188. (Closes: #856455)
-- Salvatore Bonaccorso <carnil(a)debian.org> Wed, 01 Mar 2017 21:05:07 +0100
--- Modifications pour imagemagick (imagemagick imagemagick-6.q16 imagemagick-common libmagickcore-6.q16-2 libmagickcore-6.q16-2-extra libmagickwand-6.q16-2) ---
imagemagick (8:6.8.9.9-5+deb8u7) jessie-security; urgency=medium
* Fix Ipl file missing malloc check (Closes: #851483).
Fix CVE-2016-10145.
* Fix wpg file off by one (Closes: #851483).
Fix CVE-2016-10145.
* Fix a memory leak in caption coders (Closes: #851380).
Fix CVE-2016-10146.
* Fix possible buffer overflow when writing compressed TIFFS.
(Closes: #848139). Fix CVE-2016-8707.
* Fix a double free in profile due to overflow
(Closes: #851383). Fix CVE-2017-5506.
* Fix memory leak in MPC file handling (Closes: #851382).
Fix CVE-2017-5507
* Fix Heap-Buffer-Overflow in TIFF coder (Closes: #851381).
Fix CVE-2017-5508
* Fix improper cast that could cause an overflow. (Closes: #851374).
Fix CVE-2017-5511.
* Fix memory corruption heap overflow in psb file. (Closes: #851376).
Fix CVE-2017-5510.
* Detect write error in ReadGROUP4Image. (Closes: #849439).
Fix CVE-2016-10062
-- Bastien Roucariès <roucaries.bastien+debian(a)gmail.com> Sun, 12 Feb 2017 22:08:25 +0100
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron
apticron report [Wed, 22 Mar 2017 23:38:22 +0100]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
imagemagick 8:6.8.9.9-5+deb8u8
imagemagick-6.q16 8:6.8.9.9-5+deb8u8
imagemagick-common 8:6.8.9.9-5+deb8u8
libdatetime-timezone-perl 1:1.75-2+2017a
libmagickcore-6.q16-2 8:6.8.9.9-5+deb8u8
libmagickcore-6.q16-2-extra 8:6.8.9.9-5+deb8u8
libmagickwand-6.q16-2 8:6.8.9.9-5+deb8u8
tzdata 2017a-0+deb8u1
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour imagemagick (imagemagick imagemagick-6.q16 imagemagick-common libmagickcore-6.q16-2 libmagickcore-6.q16-2-extra libmagickwand-6.q16-2) ---
imagemagick (8:6.8.9.9-5+deb8u8) jessie-security; urgency=high
* Fix a few security bugs:
+ Assertion failure in TGA coder (Closes: #856878).
Fix CVE-2017-6498.
+ Out of bound in sun file coder (Closes: #856879).
Fix CVE-2017-6500.
+ Memory leak in libmagick++ library (Closes: #856880).
Fix CVE-2017-6499.
+ Missing null pointer check in xcf coder (Closes: #856881)
and psd coder (Closes: #856882).
Fix CVE-2017-6501 and CVE-2017-6497.
+ Fix a memory leak in options handler (Closes: #857426, LP: #1671630)
* Fix a regression in jessie, Fix artefacts running -sharpen
on CMYK images (Closes: #844594).
-- Bastien Roucariès <roucaries.bastien+debian(a)gmail.com> Sat, 11 Mar 2017 16:11:35 +0100
--- Modifications pour libdatetime-timezone-perl ---
libdatetime-timezone-perl (1:1.75-2+2017a) jessie; urgency=medium
* Update to Olson database version 2017a.
This update contains contemporary changes to Mongolia and Chile.
-- gregor herrmann <gregoa(a)debian.org> Thu, 09 Mar 2017 23:26:36 +0100
--- Modifications pour tzdata ---
tzdata (2017a-0+deb8u1) stable; urgency=medium
* New upstream version, affecting the following future timestamp:
- Mongolia no longer observes DST.
- Magallanes region diverges from Santiago starting 2017-05-13,
the America/Punta_Arenas zone has been added.
* Allow partially translated choices in debconf templates.
* Update translations from the sid package.
-- Aurelien Jarno <aurel32(a)debian.org> Sun, 12 Mar 2017 22:27:35 +0100
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on quigon.federez.net
--
apticron
This is the mail system at host nonagon.crans.org.
I'm sorry to have to inform you that your message could not
be delivered to one or more recipients. It's attached below.
For further assistance, please send mail to postmaster.
If you do so, please include this problem report. You can
delete your own text from the attached returned message.
The mail system
<monitoring(a)federez.net> (expanded from <root>): host
smtp.crans.org[138.231.136.39] said: 550 5.1.0 <root(a)nonagon.crans.org>:
Sender address rejected: User unknown in relay recipient table (in reply to
RCPT TO command)
ONLINE SAS
Assistance technique
BP 438 - 75366 Paris CEDEX 08
France
Tél : 01 84 13 00 00
Objet : Alerte monitoring
Madame, Monsieur,
Notre système de monitoring a détecté une anomalie sur votre serveur
Dedibox sd-78525 (dodecagon) pendant la surveillance du service ping
le 22/03/2017 à 11:57:41
Pensez a consulter notre page d'etat des services pour voir si votre problème
est isolé ou général : http://status.online.net/
Vous trouverez de l'aide pour diagnostiquer votre problème dans
la documentation : http://documentation.online.net/fr/serveur-dedie/rescue
Si vous avez des questions, veuillez contacter notre assistance https://console.online.net/assistance/
Cordialement,
--
L'assistance technique Online
This is the mail system at host quigon.rez-gif.supelec.fr.
####################################################################
# THIS IS A WARNING ONLY. YOU DO NOT NEED TO RESEND YOUR MESSAGE. #
####################################################################
Your message could not be delivered for more than 4 hour(s).
It will be retried until it is 60 day(s) old.
For further assistance, please send mail to postmaster.
If you do so, please include this problem report. You can
delete your own text from the attached returned message.
The mail system
<logwatch(a)federez.net>: host 127.0.0.1[127.0.0.1] said: 451 4.5.0 id=23607-09-6
- Temporary MTA failure on relaying, From MTA() during fwd-connect (No
greeting, dt: 35.036 s): id=23607-09-6 (in reply to end of DATA command)
This is the mail system at host quigon.rez-gif.supelec.fr.
####################################################################
# THIS IS A WARNING ONLY. YOU DO NOT NEED TO RESEND YOUR MESSAGE. #
####################################################################
Your message could not be delivered for more than 4 hour(s).
It will be retried until it is 60 day(s) old.
For further assistance, please send mail to postmaster.
If you do so, please include this problem report. You can
delete your own text from the attached returned message.
The mail system
<root(a)quigon.rez-gif.supelec.fr> (expanded from <root>): host
127.0.0.1[127.0.0.1] said: 451 4.5.0 id=18654-04-4 - Temporary MTA failure
on relaying, From MTA() during fwd-connect (No greeting, dt: 35.036 s):
id=18654-04-4 (in reply to end of DATA command)