apticron report [Tue, 22 Sep 2015 00:38:11 +0200]
========================================================================
apticron has detected that some packages need upgrading on:
quigon.federez.net
[ 160.228.155.65 ]
The following packages are currently pending an upgrade:
linux-image-3.16.0-4-amd64 3.16.7-ckt11-1+deb8u4
linux-libc-dev 3.16.7-ckt11-1+deb8u4
========================================================================
Package Details:
Lecture des fichiers de modifications (« changelog »)...
--- Modifications pour linux (linux-image-3.16.0-4-amd64 linux-libc-dev) ---
linux (3.16.7-ckt11-1+deb8u4) jessie-security; urgency=medium
* ipv6: addrconf: validate new MTU before applying it (CVE-2015-0272)
* virtio-net: drop NETIF_F_FRAGLIST (CVE-2015-5156)
* vhost: actually track log eventfd file (CVE-2015-6252)
* aufs3: mmap: Fix races in madvise_remove() and sys_msync() (Closes: #796036)
* RDS: verify the underlying transport exists before creating a connection
(CVE-2015-6937)
* vfs: Fix possible escape from mount namespace (CVE-2015-2925):
- namei: lift (open-coded) terminate_walk() in follow_dotdot_rcu() into
callers
- dcache: Handle escaped paths in prepend_path
- vfs: Test for and handle paths that are unreachable from their mnt_root
-- Ben Hutchings <ben(a)decadent.org.uk> Sat, 19 Sep 2015 15:07:53 +0200
========================================================================
You can perform the upgrade by issuing the command:
apt-get dist-upgrade
as root on
quigon.federez.net
--
apticron