<?xml version="1.0" encoding="UTF-8"?>
<oval_definitions xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#linux linux-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#independent independent-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>The OVAL Repository</oval:product_name>
    <oval:schema_version>5.4</oval:schema_version>
    <oval:timestamp>2015-09-03T06:25:07.437-04:00</oval:timestamp>
  </generator>
  <definitions>
    <definition id="oval:org.mitre.oval:def:24879" version="3" class="patch">
      <metadata>
        <title>DSA-2930-1 chromium-browser - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>chromium-browser</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2930-1" ref_id="DSA-2930-1"/>
        <description>Several vulnerabilties have been discovered in the chromium web browser.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:04">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:19.397-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:43.561-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:58.967-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="chromium-browser DPKG is earlier than 0:34.0.1847.137-1~deb7u1" test_ref="oval:org.mitre.oval:tst:114288"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24840" version="3" class="patch">
      <metadata>
        <title>DSA-2923-1 openjdk-7 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>openjdk-7</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2923-1" ref_id="DSA-2923-1"/>
        <description>Several vulnerabilities have been discovered in OpenJDK, animplementation of the Oracle Java platform, resulting in the executionof arbitrary code, breakouts of the Java sandbox, information disclosureor denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:11">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:15.852-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:41.824-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:55.968-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="openjdk-7 DPKG is earlier than 0:7u55-2.4.7-1~deb7u1" test_ref="oval:org.mitre.oval:tst:114136"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24811" version="3" class="patch">
      <metadata>
        <title>DSA-2931-1 openssl - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>openssl</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2931-1" ref_id="DSA-2931-1"/>
        <description>It was discovered that incorrect memory handling in OpenSSL'sdo_ssl3_write() function could result in denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:03">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:17.805-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:40.347-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:54.645-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="openssl DPKG is earlier than 0:1.0.1e-2+deb7u9" test_ref="oval:org.mitre.oval:tst:114508"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24803" version="3" class="patch">
      <metadata>
        <title>DSA-2919-1 mysql-5.5 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>mysql-5.5</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2919-1" ref_id="DSA-2919-1"/>
        <description>Several issues have been discovered in the MySQL database server. Thevulnerabilities are addressed by upgrading MySQL to the new upstreamversion 5.5.37. Please see the MySQL 5.5 Release Notes and Oracle'sCritical Patch Update advisory for further details.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:15">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:16.510-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:40.162-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:54.242-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="mysql-5.5 DPKG is earlier than 0:5.5.37-0+wheezy1" test_ref="oval:org.mitre.oval:tst:113684"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24758" version="3" class="patch">
      <metadata>
        <title>DSA-2924-1 icedove - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>icedove</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2924-1" ref_id="DSA-2924-1"/>
        <description>Multiple security issues have been found in Icedove, Debian's versionof the Mozilla Thunderbird mail and news client: multiple memory safetyerrors, buffer overflows, missing permission checks, out of bound reads,use-after-frees and other implementation errors may lead to theexecution of arbitrary code, privilege escalation, cross-site scriptingor denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:11">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:17.386-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:36.088-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:50.202-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="icedove DPKG is earlier than 0:24.5.0-1~deb7u1" test_ref="oval:org.mitre.oval:tst:114445"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24724" version="3" class="patch">
      <metadata>
        <title>DSA-2911-1 icedove - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>icedove</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2911-1" ref_id="DSA-2911-1"/>
        <description>Multiple security issues have been found in Icedove, Debian's version ofthe Mozilla Thunderbird mail and news client. Multiple memory safetyerrors, out of bound reads, use-after-frees and other implementationerrors may lead to the execution of arbitrary code, informationdisclosure or denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-24T10:52:06">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-30T15:06:34.459-04:00">DRAFT</status_change>
            <status_change date="2014-05-19T04:00:28.810-04:00">INTERIM</status_change>
            <status_change date="2014-06-09T04:01:28.465-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="icedove DPKG is earlier than 0:24.4.0-1~deb7u1" test_ref="oval:org.mitre.oval:tst:113963"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24714" version="3" class="patch">
      <metadata>
        <title>DSA-2905-1 chromium-browser - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>chromium-browser</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2905-1" ref_id="DSA-2905-1"/>
        <description>Several vulnerabilities were discovered in the chromium web browser.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-24T10:52:10">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-30T15:06:34.116-04:00">DRAFT</status_change>
            <status_change date="2014-05-19T04:00:28.209-04:00">INTERIM</status_change>
            <status_change date="2014-06-09T04:01:26.188-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="chromium-browser DPKG is earlier than 0:34.0.1847.116-1~deb7u1" test_ref="oval:org.mitre.oval:tst:114040"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24713" version="3" class="patch">
      <metadata>
        <title>DSA-2929-1 ruby-actionpack-3.2 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>ruby-actionpack-3.2</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2929-1" ref_id="DSA-2929-1"/>
        <description>Several vulnerabilities were discovered in Action Pack, a componentof Ruby on Rails.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:05">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:16.905-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:26.101-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:40.020-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="ruby-actionpack-3.2 DPKG is earlier than 0:3.2.6-6+deb7u2" test_ref="oval:org.mitre.oval:tst:114522"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24703" version="3" class="patch">
      <metadata>
        <title>DSA-2926-1 linux - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>linux</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2926-1" ref_id="DSA-2926-1"/>
        <description>Several vulnerabilities have been discovered in the Linux kernel thatmay lead to a denial of service, information leaks or privilegeescalation.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:09">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:15.584-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:25.326-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:39.183-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="linux DPKG is earlier than 0:3.2.57-3+deb7u1" test_ref="oval:org.mitre.oval:tst:114268"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24675" version="3" class="patch">
      <metadata>
        <title>DSA-2918-1 iceweasel - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>iceweasel</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2918-1" ref_id="DSA-2918-1"/>
        <description>Multiple security issues have been found in Iceweasel, Debian's versionof the Mozilla Firefox web browser: Multiple memory safety errors,buffer overflows, missing permission checks, out of bound reads,use-after-frees and other implementation errors may lead to theexecution of arbitrary code, privilege escalation, cross-site scriptingor denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:17">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:16.179-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:24.259-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:38.443-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="iceweasel DPKG is earlier than 0:24.5.0esr-1~deb7u1" test_ref="oval:org.mitre.oval:tst:114308"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24635" version="3" class="patch">
      <metadata>
        <title>DSA-2897-1 tomcat7 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>tomcat7</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2897-1" ref_id="DSA-2897-1"/>
        <description>Multiple security issues were found in the Tomcat servlet and JSP engine.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-11T11:52:11">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-23T10:28:35.329-04:00">DRAFT</status_change>
            <status_change date="2014-05-12T04:00:58.760-04:00">INTERIM</status_change>
            <status_change date="2014-06-02T04:00:18.369-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="tomcat7 DPKG is earlier than 0:7.0.28-4+deb7u1" test_ref="oval:org.mitre.oval:tst:112938"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24601" version="3" class="patch">
      <metadata>
        <title>DSA-2932-1 qemu - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>qemu</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2932-1" ref_id="DSA-2932-1"/>
        <description>Several vulnerabilities were discovered in qemu, a fast processor emulator.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:02">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:16.010-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:01:06.950-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:27.694-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="qemu DPKG is earlier than 0:1.1.2+dfsg-6a+deb7u3" test_ref="oval:org.mitre.oval:tst:114576"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24556" version="3" class="patch">
      <metadata>
        <title>DSA-2900-1 jbigkit - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>jbigkit</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2900-1" ref_id="DSA-2900-1"/>
        <description>Florian Weimer of the Red Hat product security team discovered multiplebuffer overflows in jbigkit, which could lead to the execution ofarbitrary code when processing malformed images.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-11T11:51:45">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-23T10:28:34.797-04:00">DRAFT</status_change>
            <status_change date="2014-05-12T04:00:57.921-04:00">INTERIM</status_change>
            <status_change date="2014-06-02T04:00:16.806-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="jbigkit DPKG is earlier than 0:2.0-2+deb7u1" test_ref="oval:org.mitre.oval:tst:113806"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24540" version="3" class="patch">
      <metadata>
        <title>DSA-2920-1 chromium-browser - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>chromium-browser</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2920-1" ref_id="DSA-2920-1"/>
        <description>Several vulnerabilities have been discovered in the chromium web browser.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:15">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:18.709-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:00:49.636-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:22.612-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="chromium-browser DPKG is earlier than 0:34.0.1847.132-1~deb7u1" test_ref="oval:org.mitre.oval:tst:114316"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24474" version="3" class="patch">
      <metadata>
        <title>DSA-2896-1 openssl - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>openssl</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2896-1" ref_id="DSA-2896-1"/>
        <description>A vulnerability has been discovered in OpenSSL's support for theTLS/DTLS Heartbeat extension. Up to 64KB of memory from either client orserver can be recovered by an attacker. This vulnerability might allow anattacker to compromise the private key and other sensitive data inmemory.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-11T11:52:12">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-23T10:28:34.577-04:00">DRAFT</status_change>
            <status_change date="2014-05-12T04:00:55.911-04:00">INTERIM</status_change>
            <status_change date="2014-06-02T04:00:14.024-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="openssl DPKG is earlier than 0:1.0.1e-2+deb7u5" test_ref="oval:org.mitre.oval:tst:113893"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24457" version="3" class="patch">
      <metadata>
        <title>DSA-2933-1 qemu-kvm - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>qemu-kvm</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2933-1" ref_id="DSA-2933-1"/>
        <description>Several vulnerabilities were discovered in qemu-kvm, a fullvirtualization solution on x86 hardware.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:01">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:19.576-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:00:43.726-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:19.916-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="qemu-kvm DPKG is earlier than 0:1.1.2+dfsg-6+deb7u3" test_ref="oval:org.mitre.oval:tst:114635"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24392" version="3" class="patch">
      <metadata>
        <title>DSA-2913-1 drupal7 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>drupal7</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2913-1" ref_id="DSA-2913-1"/>
        <description>An information disclosure vulnerability was discovered in Drupal, afully-featured content management framework. When pages are cached foranonymous users, form state may leak between anonymous users. Sensitiveor private information recorded for one anonymous user could thus bedisclosed to other users interacting with the same form at the sametime.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-05-21T14:54:22">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-05-23T10:33:16.346-04:00">DRAFT</status_change>
            <status_change date="2014-06-09T04:00:36.040-04:00">INTERIM</status_change>
            <status_change date="2014-06-30T04:10:11.567-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="drupal7 DPKG is earlier than 0:7.14-2+deb7u4" test_ref="oval:org.mitre.oval:tst:114309"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24287" version="3" class="patch">
      <metadata>
        <title>DSA-2895-1 prosody - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>prosody</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2895-1" ref_id="DSA-2895-1"/>
        <description>A denial-of-service vulnerability has been reported in Prosody, a XMPPserver. If compression is enabled, an attacker might send highly-compressed XMLelements (attack known as &lt;q>zip bomb&lt;/q>) over XMPP streams and consume allthe resources of the server.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-07T11:20:55">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-10T08:38:42.997-04:00">DRAFT</status_change>
            <status_change date="2014-04-28T04:07:31.876-04:00">INTERIM</status_change>
            <status_change date="2014-05-19T04:00:13.854-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="prosody DPKG is earlier than 0:0.8.2-4+deb7u1" test_ref="oval:org.mitre.oval:tst:113374"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24284" version="3" class="patch">
      <metadata>
        <title>DSA-2880-1 python2.7 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>python2.7</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2880-1" ref_id="DSA-2880-1"/>
        <description>Multiple security issues were discovered in Python.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-03-24T12:06:23">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-01T10:01:38.821-04:00">DRAFT</status_change>
            <status_change date="2014-04-21T04:00:42.674-04:00">INTERIM</status_change>
            <status_change date="2014-05-12T04:00:44.041-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="python2.7 DPKG is earlier than 0:2.7.3-6+deb7u2" test_ref="oval:org.mitre.oval:tst:112560"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24279" version="3" class="patch">
      <metadata>
        <title>DSA-2908-1 openssl - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>openssl</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2908-1" ref_id="DSA-2908-1"/>
        <description>Multiple vulnerabilities have been discovered in OpenSSL. The followingCommon Vulnerabilities and Exposures project ids identify them.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-24T10:52:08">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-30T15:06:34.908-04:00">DRAFT</status_change>
            <status_change date="2014-05-19T04:00:13.440-04:00">INTERIM</status_change>
            <status_change date="2014-06-09T04:00:33.702-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="openssl DPKG is earlier than 0:1.0.1e-2+deb7u7" test_ref="oval:org.mitre.oval:tst:113868"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24221" version="3" class="patch">
      <metadata>
        <title>DSA-2887-1 ruby-actionmailer-3.2 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>ruby-actionmailer-3.2</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2887-1" ref_id="DSA-2887-1"/>
        <description>Aaron Neyer discovered that missing input sanitising in the loggingcomponent of Ruby Actionmailer could result in denial of service througha malformed e-mail message.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-02T10:37:37">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-03T10:30:03.825-04:00">DRAFT</status_change>
            <status_change date="2014-04-21T04:00:39.597-04:00">INTERIM</status_change>
            <status_change date="2014-05-12T04:00:39.154-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="ruby-actionmailer-3.2 DPKG is earlier than 0:3.2.6-2+deb7u1" test_ref="oval:org.mitre.oval:tst:113274"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:24041" version="3" class="patch">
      <metadata>
        <title>DSA-2888-1 ruby-actionpack-3.2 - security update</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>ruby-actionpack-3.2</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2888-1" ref_id="DSA-2888-1"/>
        <description>Toby Hsieh, Peter McLarnan, Ankit Gupta, Sudhir Rao and Kevin Reintjesdiscovered multiple cross-site scripting and denial of servicevulnerabilities in Ruby Actionpack.</description>
        <oval_repository>
          <dates>
            <submitted date="2014-04-02T10:37:35">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2014-04-03T10:30:01.577-04:00">DRAFT</status_change>
            <status_change date="2014-04-21T04:00:35.728-04:00">INTERIM</status_change>
            <status_change date="2014-05-12T04:00:31.491-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="ruby-actionpack-3.2 DPKG is earlier than 0:3.2.6-6+deb7u1" test_ref="oval:org.mitre.oval:tst:113201"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:19564" version="3" class="patch">
      <metadata>
        <title>DSA-2769-1 kfreebsd-9 - several</title>
        <affected family="unix">
          <platform>Debian GNU/Linux 7</platform>
          <product>kfreebsd-9</product>
        </affected>
        <reference source="VENDOR" ref_url="http://www.debian.org/security/dsa-2769-1" ref_id="DSA-2769-1"/>
        <description>Several vulnerabilities have been discovered in the FreeBSD kernel that may lead to a denial of service or privilege escalation.</description>
        <oval_repository>
          <dates>
            <submitted date="2013-12-06T10:22:15">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </submitted>
            <status_change date="2013-12-06T14:49:52.917-05:00">DRAFT</status_change>
            <status_change date="2013-12-23T04:01:10.716-05:00">INTERIM</status_change>
            <status_change date="2014-01-13T04:00:26.436-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <extend_definition comment="Debian 7.x is installed" definition_ref="oval:org.mitre.oval:def:19338"/>
        <criterion comment="kfreebsd-9 DPKG is earlier than 0:9.0-10+deb70.4" test_ref="oval:org.mitre.oval:tst:89201"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:19338" version="7" class="inventory">
      <metadata>
        <title>Debian 7 is installed</title>
        <affected family="unix">
          <platform>Debian 7</platform>
        </affected>
        <reference source="CPE" ref_id="cpe:/o:debian:debian:7"/>
        <description>Debian 7 (wheezy) is installed</description>
        <oval_repository>
          <dates>
            <submitted date="2013-10-24T16:31:26.748+04:00">
              <contributor organization="ALTX-SOFT">Maria Kedovskaya</contributor>
            </submitted>
            <status_change date="2013-11-21T13:32:29.313-05:00">DRAFT</status_change>
            <status_change date="2013-12-09T04:00:17.274-05:00">INTERIM</status_change>
            <status_change date="2013-12-30T04:00:22.941-05:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:def:19338 - New definitions (patch) for the Debian DSA" date="2014-02-19T08:00:00.123-05:00">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </modified>
            <status_change date="2014-02-19T08:04:26.432-05:00">INTERIM</status_change>
            <status_change date="2014-03-10T04:00:21.467-04:00">ACCEPTED</status_change>
            <modified comment="EDITED oval:org.mitre.oval:ste:24187 - inventory updates for Debian 6.0, 7" date="2014-06-02T14:43:00.817-04:00">
              <contributor organization="ALTX-SOFT">Sergey Artykhov</contributor>
            </modified>
            <status_change date="2014-06-02T14:45:00.369-04:00">INTERIM</status_change>
            <status_change date="2014-06-23T04:05:36.645-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria>
        <criterion comment="Debian 7 is installed" test_ref="oval:org.mitre.oval:tst:87585"/>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114288" version="1" comment="chromium-browser DPKG is earlier than 0:34.0.1847.137-1~deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:15407"/>
      <state state_ref="oval:org.mitre.oval:ste:30907"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114136" version="1" comment="openjdk-7 DPKG is earlier than 0:7u55-2.4.7-1~deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:28312"/>
      <state state_ref="oval:org.mitre.oval:ste:31420"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114508" version="1" comment="openssl DPKG is earlier than 0:1.0.1e-2+deb7u9" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:7747"/>
      <state state_ref="oval:org.mitre.oval:ste:30964"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113684" version="1" comment="mysql-5.5 DPKG is earlier than 0:5.5.37-0+wheezy1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:26515"/>
      <state state_ref="oval:org.mitre.oval:ste:30911"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114445" version="1" comment="icedove DPKG is earlier than 0:24.5.0-1~deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:8612"/>
      <state state_ref="oval:org.mitre.oval:ste:31028"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113963" version="1" comment="icedove DPKG is earlier than 0:24.4.0-1~deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:8612"/>
      <state state_ref="oval:org.mitre.oval:ste:30710"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114040" version="1" comment="chromium-browser DPKG is earlier than 0:34.0.1847.116-1~deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:15407"/>
      <state state_ref="oval:org.mitre.oval:ste:31061"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114522" version="1" comment="ruby-actionpack-3.2 DPKG is earlier than 0:3.2.6-6+deb7u2" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:38691"/>
      <state state_ref="oval:org.mitre.oval:ste:31076"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114268" version="1" comment="linux DPKG is earlier than 0:3.2.57-3+deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:21848"/>
      <state state_ref="oval:org.mitre.oval:ste:31038"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114308" version="1" comment="iceweasel DPKG is earlier than 0:24.5.0esr-1~deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:7910"/>
      <state state_ref="oval:org.mitre.oval:ste:31409"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:112938" version="1" comment="tomcat7 DPKG is earlier than 0:7.0.28-4+deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:38870"/>
      <state state_ref="oval:org.mitre.oval:ste:30586"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114576" version="1" comment="qemu DPKG is earlier than 0:1.1.2+dfsg-6a+deb7u3" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:7822"/>
      <state state_ref="oval:org.mitre.oval:ste:31227"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113806" version="1" comment="jbigkit DPKG is earlier than 0:2.0-2+deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:38891"/>
      <state state_ref="oval:org.mitre.oval:ste:30614"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114316" version="1" comment="chromium-browser DPKG is earlier than 0:34.0.1847.132-1~deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:15407"/>
      <state state_ref="oval:org.mitre.oval:ste:31209"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113893" version="1" comment="openssl DPKG is earlier than 0:1.0.1e-2+deb7u5" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:7747"/>
      <state state_ref="oval:org.mitre.oval:ste:30773"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114635" version="1" comment="qemu-kvm DPKG is earlier than 0:1.1.2+dfsg-6+deb7u3" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:16208"/>
      <state state_ref="oval:org.mitre.oval:ste:31116"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:114309" version="1" comment="drupal7 DPKG is earlier than 0:7.14-2+deb7u4" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:28123"/>
      <state state_ref="oval:org.mitre.oval:ste:31193"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113374" version="1" comment="prosody DPKG is earlier than 0:0.8.2-4+deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:38782"/>
      <state state_ref="oval:org.mitre.oval:ste:30504"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:112560" version="1" comment="python2.7 DPKG is earlier than 0:2.7.3-6+deb7u2" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:25706"/>
      <state state_ref="oval:org.mitre.oval:ste:30150"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113868" version="1" comment="openssl DPKG is earlier than 0:1.0.1e-2+deb7u7" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:7747"/>
      <state state_ref="oval:org.mitre.oval:ste:30756"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113274" version="1" comment="ruby-actionmailer-3.2 DPKG is earlier than 0:3.2.6-2+deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:38746"/>
      <state state_ref="oval:org.mitre.oval:ste:30569"/>
    </dpkginfo_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:113201" version="1" comment="ruby-actionpack-3.2 DPKG is earlier than 0:3.2.6-6+deb7u1" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:38691"/>
      <state state_ref="oval:org.mitre.oval:ste:30796"/>
    </dpkginfo_test>
    <textfilecontent54_test id="oval:org.mitre.oval:tst:87585" version="2" comment="Debian 7 is installed" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <object object_ref="oval:org.mitre.oval:obj:26771"/>
      <state state_ref="oval:org.mitre.oval:ste:24187"/>
    </textfilecontent54_test>
    <dpkginfo_test id="oval:org.mitre.oval:tst:89201" version="1" comment="kfreebsd-9 DPKG is earlier than 0:9.0-10+deb70.4" check_existence="at_least_one_exists" check="all" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <object object_ref="oval:org.mitre.oval:obj:28266"/>
      <state state_ref="oval:org.mitre.oval:ste:24566"/>
    </dpkginfo_test>
  </tests>
  <objects>
    <dpkginfo_object id="oval:org.mitre.oval:obj:28312" version="1" comment="openjdk-7 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openjdk-7</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:26515" version="1" comment="mysql-5.5 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>mysql-5.5</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:8612" version="1" comment="icedove package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>icedove</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:21848" version="1" comment="linux package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>linux</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:7910" version="1" comment="iceweasel package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>iceweasel</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:38870" version="1" comment="tomcat7 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>tomcat7</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:7822" version="1" comment="qemu package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>qemu</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:38891" version="1" comment="jbigkit package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>jbigkit</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:15407" version="1" comment="chromium-browser package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>chromium-browser</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:16208" version="1" comment="qemu-kvm package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>qemu-kvm</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:28123" version="1" comment="drupal7 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>drupal7</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:38782" version="1" comment="prosody package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>prosody</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:25706" version="1" comment="python2.7 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>python2.7</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:7747" version="1" comment="openssl package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>openssl</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:38746" version="1" comment="ruby-actionmailer-3.2 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ruby-actionmailer-3.2</name>
    </dpkginfo_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:38691" version="1" comment="ruby-actionpack-3.2 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>ruby-actionpack-3.2</name>
    </dpkginfo_object>
    <textfilecontent54_object id="oval:org.mitre.oval:obj:26771" version="1" comment="Object holds Debian version" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <path>/etc</path>
      <filename>debian_version</filename>
      <pattern operation="pattern match">^(\d).*$</pattern>
      <instance datatype="int">1</instance>
    </textfilecontent54_object>
    <dpkginfo_object id="oval:org.mitre.oval:obj:28266" version="1" comment="kfreebsd-9 package information" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <name>kfreebsd-9</name>
    </dpkginfo_object>
  </objects>
  <states>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30907" version="1" comment="version is earlier than 0:34.0.1847.137-1~deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:34.0.1847.137-1~deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31420" version="1" comment="version is earlier than 0:7u55-2.4.7-1~deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:7u55-2.4.7-1~deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30964" version="1" comment="version is earlier than 0:1.0.1e-2+deb7u9" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.1e-2+deb7u9</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30911" version="1" comment="version is earlier than 0:5.5.37-0+wheezy1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:5.5.37-0+wheezy1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31028" version="1" comment="version is earlier than 0:24.5.0-1~deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:24.5.0-1~deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30710" version="1" comment="version is earlier than 0:24.4.0-1~deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:24.4.0-1~deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31061" version="1" comment="version is earlier than 0:34.0.1847.116-1~deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:34.0.1847.116-1~deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31076" version="1" comment="version is earlier than 0:3.2.6-6+deb7u2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.2.6-6+deb7u2</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31038" version="1" comment="version is earlier than 0:3.2.57-3+deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.2.57-3+deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31409" version="1" comment="version is earlier than 0:24.5.0esr-1~deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:24.5.0esr-1~deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30586" version="1" comment="version is earlier than 0:7.0.28-4+deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:7.0.28-4+deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31227" version="1" comment="version is earlier than 0:1.1.2+dfsg-6a+deb7u3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.2+dfsg-6a+deb7u3</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30614" version="1" comment="version is earlier than 0:2.0-2+deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.0-2+deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31209" version="1" comment="version is earlier than 0:34.0.1847.132-1~deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:34.0.1847.132-1~deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30773" version="1" comment="version is earlier than 0:1.0.1e-2+deb7u5" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.1e-2+deb7u5</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31116" version="1" comment="version is earlier than 0:1.1.2+dfsg-6+deb7u3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.1.2+dfsg-6+deb7u3</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:31193" version="1" comment="version is earlier than 0:7.14-2+deb7u4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:7.14-2+deb7u4</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30504" version="1" comment="version is earlier than 0:0.8.2-4+deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:0.8.2-4+deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30150" version="1" comment="version is earlier than 0:2.7.3-6+deb7u2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:2.7.3-6+deb7u2</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30756" version="1" comment="version is earlier than 0:1.0.1e-2+deb7u7" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:1.0.1e-2+deb7u7</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30569" version="1" comment="version is earlier than 0:3.2.6-2+deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.2.6-2+deb7u1</evr>
    </dpkginfo_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:30796" version="1" comment="version is earlier than 0:3.2.6-6+deb7u1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:3.2.6-6+deb7u1</evr>
    </dpkginfo_state>
    <textfilecontent54_state id="oval:org.mitre.oval:ste:24187" version="2" comment="State matches version 7" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent">
      <subexpression>7</subexpression>
    </textfilecontent54_state>
    <dpkginfo_state id="oval:org.mitre.oval:ste:24566" version="1" comment="version is earlier than 0:9.0-10+deb70.4" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux">
      <evr datatype="evr_string" operation="less than">0:9.0-10+deb70.4</evr>
    </dpkginfo_state>
  </states>
</oval_definitions>