[SECURITY] [DLA 1325-1] drupal7 security update

2018-03-28 Thread Markus Koschany
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: drupal7 Version: 7.14-2+deb7u18 CVE ID : CVE-2018-7600 Jasper Mattsson found a remote code execution vulnerability in the Drupal content management system. This potentially allows attackers to exploit multiple attack

[SECURITY] [DLA 1324-1] libdatetime-timezone-perl security update

2018-03-28 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: libdatetime-timezone-perl Version: 1:1.58-1+2018d This update includes the changes in tzdata 2018d for the Perl bindings. For the list of changes, see DLA-1323-1. For Debian 7 "Wheezy", these problems have been fixed in ver

[SECURITY] [DLA 1323-1] tzdata security update

2018-03-28 Thread Emilio Pozuelo Monfort
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Package: tzdata Version: 2018d-0+deb7u1 This update includes the changes in tzdata 2018d. Notable changes are: - Palestine started Daylight Saving Time (DST) on March 24, rather than on March 31st. For Debian 7 "Wheezy", these p

[SECURITY] [DLA 1322-1] graphicsmagick security update

2018-03-28 Thread Markus Koschany
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: graphicsmagick Version: 1.3.16-1.1+deb7u19 CVE ID : CVE-2017-18219 CVE-2017-18220 CVE-2017-18229 CVE-2017-18230 CVE-2017-18231 CVE-2018-9018 Various security issues were discovered in Graphicsmagick,