-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian Security Advisory DSA-3813-1 security@xxxxxxxxxx https://www.debian.org/security/ Moritz Muehlenhoff March 19, 2017 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : r-base CVE ID : CVE-2016-8714 Cory Duplantis discovered a buffer overflow in the R programming langauage. A malformed encoding file may lead to the execution of arbitrary code during PDF generation. For the stable distribution (jessie), this problem has been fixed in version 3.1.1-1+deb8u1. For the upcoming stable distribution (stretch), this problem has been fixed in version 3.3.3-1. For the unstable distribution (sid), this problem has been fixed in version 3.3.3-1. We recommend that you upgrade your r-base packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@xxxxxxxxxxxxxxxx -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAljOcR4ACgkQEMKTtsN8 TjbGTxAAus59Z/WsWGJk6EZ1B+3P3ZNqXoJKuTii9++Rd+l8gUsvfrGY4wEpdnbQ NmXwcu7Np/vrFDetzq0oWyEfsueMYFeZlHWTmqkErTNcjOXs7dpfswa2k2CscdQE 1OgBACtc00a5pHFiJlww0WTlu53trEbFuFWoIbIlrpClIA8tabYAVCY33U3kRUwl fyCtW3V3/7eYdzMWHc2pOWg3WiUrumzZzjElrrdB6eaVa/VVxltHolDo3mHU3bRZ 02oVtn2ik8NmZkiFG/tSz0PIABmiXPjHiCOh8uhW6E8VtXopUOufxAquy7z22NNM +xGBdtl81t9eaj5JID4213loFr46iBzTw/j9cu889pQtCRzoNv8zp35AaQYnzysW 5I7E3bsft8Z9zFwjdpAG9NqV7IVfLR/aO7cIUuAV0H9D2FDfPXp8ZF4SJCSe7dUY a1w0pPI+cjMNQ2fUFSNuqD4YBoBaO8AZnd0ShtKdP1Ojtn963xrN4trQQ/PlfNIz sl94JmtI7OmAJUpl00cF+AN+d77TmU8hLnxHGutpqLIJDz9x15zyk5OCj+WSDGLy HQy/Q/KEAJnaGAQD5eGticpk/EsdBxjBN3zUHM1Ap33+6AILKCsmfEF+0pgw8fmz avFgnD4G+e8+e+YweOz/N93MWwV6Tw6NMgX7qCrtb7qw78H7I/I= =Cb2D -----END PGP SIGNATURE-----