Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2008-0836

Опубликовано: 21 авг. 2008
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2008-0836: libxml2 security update (MODERATE)

[2.6.26-2.1.2.3.0.1]

  • Add libxml2-enterprise.patch and update logos in tarball

[2.6.26-2.1.2.3]

  • Patch to fix recursive entities handling CVE-2008-3281
  • Resolves: rhbz#458095

Обновленные пакеты

Oracle Linux 5

Oracle Linux x86_64

libxml2

2.6.26-2.1.2.3.0.1

libxml2-devel

2.6.26-2.1.2.3.0.1

libxml2-python

2.6.26-2.1.2.3.0.1

Oracle Linux i386

libxml2

2.6.26-2.1.2.3.0.1

libxml2-devel

2.6.26-2.1.2.3.0.1

libxml2-python

2.6.26-2.1.2.3.0.1

Связанные CVE

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

redhat
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

CVSS3: 6.5
nvd
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

CVSS3: 6.5
debian
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during e ...

CVSS3: 6.5
github
около 3 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.