[SECURITY] [DLA 369-1] pygments security update

2015-12-15 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: pygments Version: 1.3.1+dfsg-1+deb6u11 CVE ID : CVE-2015-8557 Debian Bug : 802828 It was discovered that there was a shell injection vulnerability in pygments, a syntax highlighting package written in Python. Fo

[SECURITY] [DLA 359-1] MySQL 5.5 packages added; end of support for MySQL 5.1

2015-12-15 Thread Santiago Ruano Rincón
Oracle, the upstream maintainer of MySQL, no longer supports MySQL version 5.1, which is included in Debian 6.0 "squeeze". MySQL 5.1 likely suffers from multiple vulnerabilities fixed in newer versions after the end of upstream support, but Oracle does not disclose enough information either to veri