-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-3018-1 security@debian.org http://www.debian.org/security/ Moritz Muehlenhoff September 03, 2014 http://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : iceweasel CVE ID : CVE-2014-1562 CVE-2014-1567 Multiple security issues have been found in Iceweasel, Debian's version of the Mozilla Firefox web browser: Multiple memory safety errors and use-after-frees may lead to the execution of arbitrary code or denial of service. For the stable distribution (wheezy), these problems have been fixed in version 24.8.0esr-1~deb7u1. For the unstable distribution (sid), these problems have been fixed in version 31.1.0esr-1. We recommend that you upgrade your iceweasel packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBAgAGBQJUBvDNAAoJEBDCk7bDfE42YkUP/2k6jVEvp3zJbGr71NbE5ogH IPQDnS3rub5ba+09YfdbRyATSR2qrbOhyT7+u1zPE2Cpf0Xpne7iVgvTtW6f+So+ BXeGLNtwmFCXUI206z3oo09RDvK04xI51HTwyn4Lzsu/pgImUEA9uh+51j64Zqzx h2eQ3Cwz7H0liLMS1oMl+jquqh4Vfk4XTwizmqxwmDSaSgqI+mJ8BEeeWaKx5+j8 44rwlVDef6mI4BDYUofl1MjX9/qq9b23xCPKhNI+7Jv00/p6vtrcITfjjb8NbouQ YrSW7DVZ+P4mlGq9j8zUXeNxL2pZMd1ma3oooR2UzgzFDTm4dPs4k1ojp7gZ+D+u XjAQOYbFWBlEqQOXPFytbAn894G28CSf39XwxSBqZgsF7+7HQjwBFHXSPiN9XbWr yfs2KaAgOIDGAUIsi/SVDjA7Vlo/5YzIO2dowQwhyclZl+8HLDP+EFGmyJEIPS5Y +Ds+BzuQaTyFknRR7yZYQsILTDQPp1EASKkWfJmwpRa8S/dUEwGUPzSPgAKRxBuU gHE8yTiE9rS61+mS0anso6AM2H0KA78vgBRi2W028/T04/QyoOBaNJg5UWnCpDE4 yTJ1f9Elv0MMbmbw66UKRYZiHJC4mowxOPJTeAndZhqaRi8h3uupk1nl8/R4FxqR AQTqGXjxNoIEkNG9wODI =Yg+l -----END PGP SIGNATURE-----