• [SECURITY] [DSA 5033-1] fort-validator security update

    From Moritz Muehlenhoff@21:1/5 to All on Thu Dec 30 20:40:01 2021
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-5033-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff December 30, 2021 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : fort-validator
    CVE ID : CVE-2021-3907 CVE-2021-3909 CVE-2021-43173 CVE-2021-43114

    Multiple vulnerabilities were discovered in the FORT RPKI validator, which could result in denial of service or path traversal.

    For the stable distribution (bullseye), these problems have been fixed in version 1.5.3-1~deb11u1.

    We recommend that you upgrade your fort-validator packages.

    For the detailed security status of fort-validator please refer to
    its security tracker page at: https://security-tracker.debian.org/tracker/fort-validator

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: debian-security-announce@lists.debian.org
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmHOCVIACgkQEMKTtsN8 TjZDPw/+K7rcQja35QZH0Iy9l8v5cLsBXkRu4VBqiaywoyLT2CwR1ywD5vpt5f1l KFpMsBHpuwTLIOXORwMeE58aC6d5fJrM1weF4Ak8K+WWNI66DeyLubjuDp0IO43y 0Yb734HdS+UWh5mf9fL92GF8KYx6tjvGC0eQ6cB/aB0yKBY06xbrNano3uC4Di5j wZIcjxx/7DCP3HUOgDtKVpFtK6EUKBbFh3qivhh00CFCovWaf4XmVl5aG6VHpDUt 1s0Fcm+kBvSyRmrAbpIdqBo4VL4Ekh+1PNeUP+s7ZUrFApf6iv6vWKXYJzFUq+co LOoSDcD6C7HirhNyzCiY+uNxWJs2uDPw+WormYMqTlS4Z8oY4bQKBD4RnF93Krzh 2KWrSLdaoJxrUfJf0fHQtgX6B5SCKpQhTscBz0pCqMKPgJWPBDxV3V2CP7vnmyYx uQM6dJub6hWIKLT35/XCs7d7nEhMqu3cV/iis8irkgPt8unaYg5Xd9I2KFJshzq8 mI9yw4Z19SLSaa7lTciyU37aN5aZ86nmBQ2/QsB6lPbPtCS/y/0Ui8PbTOjzhfg0 cbMaMRAvwbEwW8VSMhTUxRygHPCvKEVpUWAyqMOq5CwrSXR8bgJSCJT6+n1bJVrg 5wHcA1EsohxQy9dlfd/aMMJS3v95LbO2x5bBFoSOKqmdh1g/y4Q=
    =UATn
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)