apticron report [Sun, 19 Jun 2016 10:48:22 +0200]
========================================================================
apticron has detected that some packages need upgrading on:
hexagon.federez.net
[ 5.39.82.35 2001:41d0:8:9423::1 5.39.82.35 2001:41d0:8:9423::1 ]
The following packages are currently pending an upgrade:
libxslt1.1 1.1.28-2+deb8u1
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour libxslt (libxslt1.1) ---
libxslt (1.1.28-2+deb8u1) jessie-security; urgency=high
* Non-maintainer upload by the Security Team.
* Fix for type confusion in preprocessing attributes (CVE-2015-7995)
(Closes: #802971)
* Always initialize EXSLT month and day to 1
* Fix use-after-free in xsltDocumentFunctionLoadDocument
* Fix xsltNumberFormatGetMultipleLevel (CVE-2016-1683)
* Round xsl:number values to nearest integer
* Handle negative xsl:number values
* Lower bound for format token "a"
* Lower and upper bound for format token "i" (CVE-2016-1684)
* Fix double free in libexslt hash functions
* Fix buffer overflow in exsltDateFormat
* Fix OOB heap read in xsltExtModuleRegisterDynamic
-- Salvatore Bonaccorso <carnil(a)debian.org> Sat, 18 Jun 2016 19:27:31 +0200
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on
hexagon.federez.net
--
apticron