[SECURITY] [DLA 357-1] libphp-snoopy security update

2015-11-30 Thread Scott Kitterman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: libphp-snoopy Version: 2.0.0-1~deb6u1 CVE ID : CVE-2008-7313 CVE-2014-5008 Debian Bug : 778634 It was discovered that missing input sanitizing in Snoopy, a PHP class that simulates a web browser may result in the

[SECURITY] [DLA 356-1] libsndfile security update

2015-11-30 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: libsndfile Version: 1.0.21-3+squeeze2 CVE ID : CVE-2014-9496 CVE-2014-9756 CVE-2015-7805 Debian Bug : 774162 804445 804447 CVE-2014-9496 The sd2_parse_rsrc_fork function in sd2.c in libsndfile allows at