-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - --- english/security/2016/dsa-3582.wml 2016-05-18 10:20:37.000000000 +0500 +++ russian/security/2016/dsa-3582.wml 2016-05-20 17:12:50.045652497 +0500 @@ -1,17 +1,19 @@ - -<define-tag description>security update</define-tag> +#use wml::debian::translation-check translation="1.1" maintainer="Lev Lamberov" +<define-tag description>обновление безопаÑноÑÑи</define-tag> <define-tag moreinfo> - -<p>Gustavo Grieco discovered that Expat, an XML parsing C library, does not - -properly handle certain kinds of malformed input documents, resulting in - -buffer overflows during processing and error reporting. A remote - -attacker can take advantage of this flaw to cause an application using - -the Expat library to crash, or potentially, to execute arbitrary code - -with the privileges of the user running the application.</p> +<p>ÐÑÑÑаво ÐÑико обнаÑÑжил, ÑÑо Expat, библиоÑека Ð´Ð»Ñ ÑзÑка C Ð´Ð»Ñ Ð²ÑÐ¿Ð¾Ð»Ð½ÐµÐ½Ð¸Ñ Ð³ÑаммаÑиÑеÑкого +ÑазбоÑа XML, непÑавилÑно обÑабаÑÑÐ²Ð°ÐµÑ Ð½ÐµÐºÐ¾ÑоÑÑе Ð²Ð¸Ð´Ñ Ð½ÐµÐ¿ÑавилÑно ÑÑоÑмиÑованнÑÑ Ð´Ð¾ÐºÑменÑов, ÑÑо пÑÐ¸Ð²Ð¾Ð´Ð¸Ñ Ðº +пеÑÐµÐ¿Ð¾Ð»Ð½ÐµÐ½Ð¸Ñ Ð±ÑÑеÑа в Ñ Ð¾Ð´Ðµ обÑабоÑки и вÑвода ÑообÑÐµÐ½Ð¸Ñ Ð¾Ð± оÑибке. УдалÑннÑй злоÑмÑÑленник +Ð¼Ð¾Ð¶ÐµÑ Ð¸ÑполÑзоваÑÑ ÑÑÑ ÑÑзвимоÑÑÑ Ð´Ð»Ñ Ð°Ð²Ð°Ñийной оÑÑановки пÑиложениÑ, иÑполÑзÑÑÑего +библиоÑÐµÐºÑ Expat, либо поÑенÑиалÑного вÑÐ¿Ð¾Ð»Ð½ÐµÐ½Ð¸Ñ Ð¿ÑоизволÑного кода +Ñ Ð¿Ñавами полÑзоваÑелÑ, запÑÑÑивÑего Ñакое пÑиложение.</p> - -<p>For the stable distribution (jessie), this problem has been fixed in - -version 2.1.0-6+deb8u2. Additionally this update refreshes the fix for - -<a href="https://security-tracker.debian.org/tracker/CVE-2015-1283">CVE-2015-1283</a> to avoid relying on undefined behavior.</p> +<p>Ð ÑÑабилÑном вÑпÑÑке (jessie) ÑÑа пÑоблема бÑла иÑпÑавлена в +веÑÑии 2.1.0-6+deb8u2. ÐÑоме Ñого, данное обновление ÑодеÑÐ¶Ð¸Ñ Ð¾Ð±Ð½Ð¾Ð²Ð»ÐµÐ½Ð¸Ðµ иÑпÑÐ°Ð²Ð»ÐµÐ½Ð¸Ñ +<a href="https://security-tracker.debian.org/tracker/CVE-2015-1283">CVE-2015-1283</a> Ñ ÑелÑÑ +избежаÑÑ Ð½ÐµÐ¾Ð¿ÑеделÑнного поведениÑ.</p> - -<p>We recommend that you upgrade your expat packages.</p> +<p>РекомендÑеÑÑÑ Ð¾Ð±Ð½Ð¾Ð²Ð¸ÑÑ Ð¿Ð°ÐºÐµÑÑ expat.</p> </define-tag> # do not modify the following line - --- english/security/2016/dsa-3583.wml 2016-05-19 09:58:22.000000000 +0500 +++ russian/security/2016/dsa-3583.wml 2016-05-20 17:15:32.326057270 +0500 @@ -1,19 +1,20 @@ - -<define-tag description>security update</define-tag> +#use wml::debian::translation-check translation="1.1" maintainer="Lev Lamberov" +<define-tag description>обновление безопаÑноÑÑи</define-tag> <define-tag moreinfo> - -<p>It was discovered that the swift3 (S3 compatibility) middleware plugin - -for Swift performed insufficient validation of date headers which might - -result in replay attacks.</p> +<p>ÐÑло обнаÑÑжено, ÑÑо swift3, (S3-ÑовмеÑÑимое) дополнение +Ð´Ð»Ñ Swift, вÑполнÑÐµÑ Ð½ÐµÐ´Ð¾ÑÑаÑоÑнÑÑ Ð¿ÑовеÑÐºÑ Ð·Ð°Ð³Ð¾Ð»Ð¾Ð²ÐºÐ¾Ð² даннÑÑ , ÑÑо Ð¼Ð¾Ð¶ÐµÑ +пÑиводиÑÑ Ðº аÑакам ÑеÑез повÑоÑÑ.</p> - -<p>For the stable distribution (jessie), this problem has been fixed in - -version 1.7-5+deb8u1.</p> +<p>Ð ÑÑабилÑном вÑпÑÑке (jessie) ÑÑа пÑоблема бÑла иÑпÑавлена в +веÑÑии 1.7-5+deb8u1.</p> - -<p>For the testing distribution (stretch), this problem has been fixed - -in version 1.9-1.</p> +<p>Ð ÑеÑÑиÑÑемом вÑпÑÑке (stretch) ÑÑа пÑоблема бÑла иÑпÑавлена +в веÑÑии 1.9-1.</p> - -<p>For the unstable distribution (sid), this problem has been fixed in - -version 1.9-1.</p> +<p>РнеÑÑабилÑном вÑпÑÑке (sid) ÑÑа пÑоблема бÑла иÑпÑавлена в +веÑÑии 1.9-1.</p> - -<p>We recommend that you upgrade your swift-plugin-s3 packages.</p> +<p>РекомендÑеÑÑÑ Ð¾Ð±Ð½Ð¾Ð²Ð¸ÑÑ Ð¿Ð°ÐºÐµÑÑ swift-plugin-s3.</p> </define-tag> # do not modify the following line - --- english/security/2016/dsa-3584.wml 2016-05-20 00:11:27.000000000 +0500 +++ russian/security/2016/dsa-3584.wml 2016-05-20 17:18:27.043093784 +0500 @@ -1,20 +1,21 @@ - -<define-tag description>security update</define-tag> +#use wml::debian::translation-check translation="1.1" maintainer="Lev Lamberov" +<define-tag description>обновление безопаÑноÑÑи</define-tag> <define-tag moreinfo> - -<p>Gustavo Grieco discovered several flaws in the way librsvg, a SAX-based - -renderer library for SVG files, parses SVG files with circular - -definitions. A remote attacker can take advantage of these flaws to - -cause an application using the librsvg library to crash.</p> +<p>ÐÑÑÑаво ÐÑико обнаÑÑжил неÑколÑко ÑÑзвимоÑÑей в ÑпоÑобе, иÑполÑзÑемом librsvg, библиоÑеке +Ð´Ð»Ñ Ð¾ÑÑиÑовки гÑаÑики на оÑнове SAX Ð´Ð»Ñ Ñайлов в ÑоÑмаÑе SVG, Ð´Ð»Ñ Ð³ÑаммаÑиÑеÑкого ÑазбоÑа Ñайлов +SVG Ñ ÐºÑÑговÑми опÑеделениÑми. УдалÑннÑй злоÑмÑÑленник Ð¼Ð¾Ð¶ÐµÑ Ð¸ÑполÑзоваÑÑ ÑÑи ÑÑзвимоÑÑи Ð´Ð»Ñ +вÑзова аваÑийной оÑÑановки пÑиложениÑ, иÑполÑзÑÑÑего librsvg.</p> - -<p>For the stable distribution (jessie), these problems have been fixed in - -version 2.40.5-1+deb8u2.</p> +<p>Ð ÑÑабилÑном вÑпÑÑке (jessie) ÑÑи пÑÐ¾Ð±Ð»ÐµÐ¼Ñ Ð±Ñли иÑпÑÐ°Ð²Ð»ÐµÐ½Ñ Ð² +веÑÑии 2.40.5-1+deb8u2.</p> - -<p>For the testing distribution (stretch), these problems have been fixed - -in version 2.40.12-1.</p> +<p>Ð ÑеÑÑиÑÑемом вÑпÑÑке (stretch) ÑÑи пÑÐ¾Ð±Ð»ÐµÐ¼Ñ Ð±Ñли иÑпÑÐ°Ð²Ð»ÐµÐ½Ñ +в веÑÑии 2.40.12-1.</p> - -<p>For the unstable distribution (sid), these problems have been fixed in - -version 2.40.12-1.</p> +<p>РнеÑÑабилÑном вÑпÑÑке (sid) ÑÑи пÑÐ¾Ð±Ð»ÐµÐ¼Ñ Ð±Ñли иÑпÑÐ°Ð²Ð»ÐµÐ½Ñ Ð² +веÑÑии 2.40.12-1.</p> - -<p>We recommend that you upgrade your librsvg packages.</p> +<p>РекомендÑеÑÑÑ Ð¾Ð±Ð½Ð¾Ð²Ð¸ÑÑ Ð¿Ð°ÐºÐµÑÑ librsvg.</p> </define-tag> # do not modify the following line -----BEGIN PGP SIGNATURE-----
iQIcBAEBCgAGBQJXPwDcAAoJEF7nbuICFtKliR4P/2iuTqmBwLNG4af+UByiyh45 steaqjx6ejx9oaiJIWOtxxN6HnGNLNSXJai11w/zw8kpAQQZZqSrerAtujjLKGqb qI5GpgjJh+1SXSeDys6HDmBKEvYF6PxMy4yHbVEn1nIT5fOEIadd+D42jdEbr19e Hy6hpVsvp1rs3h56sL3gW46Di9n6GtdjKosRLSdFgDx1wBl/Bzq5dfhjBqSQyovM a5kuRjWh3uoGvCUNaxJ8u1OCXfgzDFjKuIUa1FzuQCMRukNMh/mYz9TR/wZsl9yJ HVZiZCfDVA3nVb9kgb9i1FLw5pqYVNByLlYKt+fsmXdVKwepMPPW0rM0plos1Ldl 4ZRy1TIVe6JEHI0qjhQsEqflzW22glMSCFei2nA0Jq+QzkGMUQ4/wExKUd54fejA I36VJH1Azer3ktckneJFvXio4HRwsFONAm+NhJ+meza8hfZOZ8LFG6Z8VhVMSrUA nsaA+EK/Vncokgnx2HZppzKcYOBWw1P1TMB0onrypOCBj7bLb7tq0lK6w7PA+NeL kc0mxxDve2jDHZ0FNNAABf8NH2QUr2F6fVy0iLFlMoxOMcXKX+pwxNsZ3Lq277M4 4k7i3ybxjPt9UU5qOO9IgAJSyJow6eAJzEeEEaxktzzhduEc3/3WiRicIaRQFJqy wvP15ct4wCDqRDgo3XCT =ewk1 -----END PGP SIGNATURE-----