[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 2383-1] nfdump security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian LTS Advisory DLA-2383-1                debian-lts@lists.debian.org
https://www.debian.org/lts/security/                    Thorsten Alteholz
September 26, 2020                            https://wiki.debian.org/LTS
- -------------------------------------------------------------------------

Package        : nfdump
Version        : 1.6.15-3+deb9u1
CVE ID         : CVE-2019-14459 CVE-2019-1010057


Two issues have been found in nfdump, a netflow capture daemon.
Both issues are related to either a buffer overflow or an integer overflow, which could result in a denial of service or a local code execution.


For Debian 9 stretch, these problems have been fixed in version
1.6.15-3+deb9u1.

We recommend that you upgrade your nfdump packages.

For the detailed security status of nfdump please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/nfdump

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

-----BEGIN PGP SIGNATURE-----
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=3ujC
-----END PGP SIGNATURE-----


Reply to: