Several security holes affect Tails 0.20.1.
We strongly urge you to upgrade to Tails 0.21 as soon as possible in case you are still using an older version.
Details
- Tails:
- An attacker able to run arbitrary code as the desktop user could obtain the public IP.
- An attacker able to run arbitrary code as the desktop user could leverage this feature to gain persistent root access, as long as persistence was enabled.
- Iceweasel:
- GnuPG: Debian Security Advisory 2773
- libxml2: Debian Security Advisory 2779
- python-crypto: Debian Security Advisory 2781
- python-openssl: Debian Security Advisory 2763
