DSA-4494 kconfig – security update

Dominik Penner discovered that KConfig, the KDE configuration settingsframework, supported a feature to define shell command execution in.desktop files. If a user is provided with a malformed .desktop file(e.g. if its embedded into a downloaded archive and it gets opened ina file browser) arbitrary commands could get executed. This updateremoves this feature. More info: https://www.debian.org/security/2019/dsa-4494

DSA-4493 postgresql-11 – security update

Two security issues have been discovered in the PostgreSQL databasesystem, which could result in privilege escalation, denial of service ormemory disclosure. More info: https://www.debian.org/security/2019/dsa-4493
Translate »