[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[DONE] wml://security/2015/dla-{245,238,181}.wml



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- --- english/security/2015/dla-181.wml	2016-04-09 01:32:24.000000000 +0500
+++ russian/security/2015/dla-181.wml	2016-04-26 22:13:13.420545088 +0500
@@ -1,14 +1,15 @@
- -<define-tag description>LTS security update</define-tag>
+#use wml::debian::translation-check translation="1.2" maintainer="Lev Lamberov"
+<define-tag description>обновление безопаÑ?ноÑ?Ñ?и LTS</define-tag>
 <define-tag moreinfo>
- -<p>Anton Rager and Jonathan Brossard from the Salesforce.com Product
- -Security Team and Ben Laurie of Google discovered a denial of service
- -vulnerability in xerces-c, a validating XML parser library for C++. The
- -parser mishandles certain kinds of malformed input documents, resulting
- -in a segmentation fault during a parse operation. An unauthenticated
- -attacker could use this flaw to cause an application using the
- -xerces-c library to crash.</p>
+<p>Ð?нÑ?он РÑ?йджеÑ? и Ð?жонаÑ?ан Ð?Ñ?оÑ?Ñ?аÑ? из командÑ? безопаÑ?ноÑ?Ñ?и пÑ?одÑ?кÑ?ов
+Salesforce.com, а Ñ?акже Ð?ен Ð?оÑ?Ñ?и из Google обнаÑ?Ñ?жили оÑ?каз в обÑ?лÑ?живании
+в xerces-c, библиоÑ?еке длÑ? гÑ?аммаÑ?иÑ?еÑ?кого Ñ?азбоÑ?а и пÑ?овеÑ?ки XML длÑ? C++. Ð?од,
+вÑ?полнÑ?Ñ?Ñ?ий гÑ?аммаÑ?иÑ?еÑ?кий Ñ?азбоÑ?, непÑ?авилÑ?но обÑ?абаÑ?Ñ?ваеÑ? некоÑ?оÑ?Ñ?е видÑ? некоÑ?Ñ?екÑ?нÑ?Ñ? вÑ?однÑ?Ñ? докÑ?менÑ?ов, Ñ?Ñ?о пÑ?иводиÑ?
+к оÑ?ибке Ñ?егменÑ?иÑ?ованиÑ? в Ñ?оде гÑ?аммаÑ?иÑ?еÑ?кого Ñ?азбоÑ?а. Ð?еаÑ?Ñ?енÑ?иÑ?иÑ?иÑ?ованнÑ?й
+злоÑ?мÑ?Ñ?ленник можеÑ? иÑ?полÑ?зоваÑ?Ñ? даннÑ?Ñ? Ñ?Ñ?звимоÑ?Ñ?Ñ? длÑ? вÑ?зова аваÑ?ийной оÑ?Ñ?ановки пÑ?иложениÑ?,
+иÑ?полÑ?зÑ?Ñ?Ñ?его библиоÑ?екÑ? xerces-c.</p>
 
- -<p>For Debian 6 <q>Squeeze</q>, these issues have been fixed in xerces-c version 3.1.1-1+deb6u1</p>
+<p>Ð? Debian 6 <q>Squeeze</q> Ñ?Ñ?и пÑ?облемÑ? бÑ?ли иÑ?пÑ?авленÑ? в xerces-c веÑ?Ñ?ии 3.1.1-1+deb6u1</p>
 </define-tag>
 
 # do not modify the following line
- --- english/security/2015/dla-238.wml	2016-04-07 03:10:34.000000000 +0500
+++ russian/security/2015/dla-238.wml	2016-04-26 22:09:54.161255941 +0500
@@ -1,16 +1,17 @@
- -<define-tag description>LTS security update</define-tag>
+#use wml::debian::translation-check translation="1.1" maintainer="Lev Lamberov"
+<define-tag description>обновление безопаÑ?ноÑ?Ñ?и LTS</define-tag>
 <define-tag moreinfo>
- -<p>Tavis Ormandy discovered that FUSE, a Filesystem in USErspace, does not
- -scrub the environment before executing mount or umount with elevated
- -privileges. A local user can take advantage of this flaw to overwrite
- -arbitrary files and gain elevated privileges by accessing debugging
- -features via the environment that would not normally be safe for
- -unprivileged users.</p>
+<p>ТÑ?виÑ? Ð?Ñ?манди обнаÑ?Ñ?жил, Ñ?Ñ?о FUSE, Ñ?айловаÑ? Ñ?иÑ?Ñ?ема в пÑ?оÑ?Ñ?Ñ?анÑ?Ñ?ве полÑ?зоваÑ?елÑ?, не
+вÑ?полнÑ?еÑ? оÑ?иÑ?Ñ?кÑ? окÑ?Ñ?жениÑ? до запÑ?Ñ?ка mount или umount Ñ? повÑ?Ñ?еннÑ?ми
+пÑ?авами доÑ?Ñ?Ñ?па. Ð?окалÑ?нÑ?й полÑ?зоваÑ?елÑ? можеÑ? иÑ?полÑ?зоваÑ?Ñ? Ñ?Ñ?Ñ? Ñ?Ñ?звимоÑ?Ñ?Ñ? длÑ? пеÑ?езапиÑ?и
+пÑ?оизволÑ?нÑ?Ñ? Ñ?айлов и полÑ?Ñ?ениÑ? повÑ?Ñ?еннÑ?Ñ? пÑ?ивилегий пÑ?Ñ?Ñ?м обÑ?аÑ?ениÑ? к Ñ?Ñ?нкÑ?иÑ?м оÑ?ладки
+Ñ?еÑ?ез окÑ?Ñ?жение, коÑ?оÑ?ое в обÑ?Ñ?ной Ñ?иÑ?Ñ?аÑ?ии не Ñ?Ñ?иÑ?алоÑ?Ñ? бÑ? безопаÑ?нÑ?м
+длÑ? непÑ?ивилегиÑ?ованнÑ?Ñ? полÑ?зоваÑ?елей.</p>
 
- -<p>For the old-oldstable distribution (squeeze-lts), this problem has been
- -fixed in version 2.8.4-1.1+deb6u1.</p>
+<p>Ð? пÑ?едÑ?дÑ?Ñ?ем Ñ?Ñ?аÑ?ом Ñ?Ñ?абилÑ?ном вÑ?пÑ?Ñ?ке (squeeze-lts) Ñ?Ñ?а пÑ?облема бÑ?ла
+иÑ?пÑ?авлена в веÑ?Ñ?ии 2.8.4-1.1+deb6u1.</p>
 
- -<p>We recommend that you upgrade your fuse packages.</p>
+<p>РекомендÑ?еÑ?Ñ?Ñ? обновиÑ?Ñ? пакеÑ?Ñ? fuse.</p>
 </define-tag>
 
 # do not modify the following line
- --- english/security/2015/dla-245.wml	2016-04-07 03:10:35.000000000 +0500
+++ russian/security/2015/dla-245.wml	2016-04-26 22:07:05.686751889 +0500
@@ -1,16 +1,17 @@
- -<define-tag description>LTS security update</define-tag>
+#use wml::debian::translation-check translation="1.1" maintainer="Lev Lamberov"
+<define-tag description>обновление безопаÑ?ноÑ?Ñ?и LTS</define-tag>
 <define-tag moreinfo>
- -<p>Alexander Cherepanov discovered that p7zip is susceptible to a
- -directory traversal vulnerability.  While extracting an archive, it
- -will extract symlinks and then follow them if they are referenced in
- -further entries.  This can be exploited by a rogue archive to write
- -files outside the current directory.</p>
+<p>Ð?лекÑ?андÑ? ЧеÑ?епанов обнаÑ?Ñ?жил, Ñ?Ñ?о p7zip можеÑ? Ñ?одеÑ?жаÑ?Ñ?
+Ñ?Ñ?звимоÑ?Ñ?Ñ?, пÑ?иводÑ?Ñ?Ñ?Ñ? к обÑ?одÑ? каÑ?алога.  Ð?о вÑ?емÑ? Ñ?аÑ?паковки аÑ?Ñ?ива пÑ?огÑ?амма
+Ñ?аÑ?паковÑ?ваеÑ? Ñ?имволÑ?нÑ?е Ñ?Ñ?Ñ?лки и пеÑ?еÑ?одиÑ? по ним в Ñ?ом Ñ?лÑ?Ñ?ае, еÑ?ли они иÑ?полÑ?зÑ?Ñ?Ñ?Ñ?Ñ?
+в поÑ?ледÑ?Ñ?Ñ?иÑ? запиÑ?Ñ?Ñ?.  ЭÑ?о можеÑ? иÑ?полÑ?зоваÑ?Ñ?Ñ?Ñ? Ñ?пеÑ?иалÑ?но Ñ?Ñ?оÑ?миÑ?ованнÑ?м аÑ?Ñ?ивом длÑ? запиÑ?и
+Ñ?айлов за пÑ?еделами Ñ?екÑ?Ñ?его каÑ?алога.</p>
 
- -<p>For the oldoldstable distribution (squeeze), this problem has been
- -fixed in version 9.04~dfsg.1-1+deb6u1.</p>
+<p>Ð? пÑ?едÑ?дÑ?Ñ?ем Ñ?Ñ?аÑ?ом Ñ?Ñ?абилÑ?ном вÑ?пÑ?Ñ?ке (squeeze) Ñ?Ñ?а пÑ?облема бÑ?ла
+иÑ?пÑ?авлена в веÑ?Ñ?ии 9.04~dfsg.1-1+deb6u1.</p>
 
- -<p>For the oldstable distribution (wheezy) and stable distribution
- -(jessie), this problem will be fixed soon.</p>
+<p>Ð? пÑ?едÑ?дÑ?Ñ?ем Ñ?Ñ?абилÑ?ном (wheezy) и Ñ?Ñ?абилÑ?ном (jessie) вÑ?пÑ?Ñ?каÑ?
+Ñ?Ñ?а пÑ?облема бÑ?деÑ? иÑ?пÑ?авлена позже.</p>
 </define-tag>
 
 # do not modify the following line
-----BEGIN PGP SIGNATURE-----
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=VZkt
-----END PGP SIGNATURE-----


Reply to: