#use wml::debian::translation-check translation="54ed69c467a43952f4d70f1aaf9fbc9a5d4b6fcd" maintainer="Sebul" mindelta="-1" # 주의: 불완전한 번역. 번역을 마친 다음 위의 'mindelta="-1"'을 지우십시오. 보안 업데이트

Lukas Kupczyk reported a vulnerability in the handling of chunked HTTP in openconnect, an open client for Cisco AnyConnect, Pulse and GlobalProtect VPN. A malicious HTTP server (after having accepted its identity certificate), can provide bogus chunk lengths for chunked HTTP encoding and cause a heap-based buffer overflow.

For the oldstable distribution (stretch), this problem has been fixed in version 7.08-1+deb9u1.

For the stable distribution (buster), this problem has been fixed in version 8.02-1+deb10u1.

openconnect 패키지를 업그레이드 하는 게 좋음.

For the detailed security status of openconnect please refer to its security tracker page at: https://security-tracker.debian.org/tracker/openconnect

# do not modify the following line #include "$(ENGLISHDIR)/security/2020/dsa-4607.data"