[SECURITY] [DLA 376-1] mono security update

2015-12-30 Thread Raphael Hertzog
Package: mono Version: 2.6.7-5.1+deb6u2 CVE ID : CVE-2009-0689 Mono's string-to-double parser may crash, on specially crafted input. This could theoretically lead to arbitrary code execution. This issue has been fixed in Debian 6 Squeeze with the version 2.6.7-5.1+deb6u2 o

[SECURITY] [DLA 374-2] cacti regression update

2015-12-30 Thread Chris Lamb
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: cacti Version: 0.8.7g-1+squeeze9+deb6u12 It was discovered that there was a regression in the patch intended to fix CVE-2015-8369 in the recent upload of cacti 0.8.7g-1+squeeze9+deb6u11. For Debian 6 Squeeze, this issue has