Описание
ELSA-2012-1512: libxml2 security update (IMPORTANT)
[2.7.6-8.0.1.el6_3.4 ]
- Update doc/redhat.gif in tarball
- Add libxml2-oracle-enterprise.patch and update logos in tarball
[2.7.6-8.el6_3.4]
- fix out of range heap access (CVE-2012-5134)
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
libxml2
2.6.26-2.1.15.0.1.el5_8.6
libxml2-devel
2.6.26-2.1.15.0.1.el5_8.6
libxml2-python
2.6.26-2.1.15.0.1.el5_8.6
Oracle Linux x86_64
libxml2
2.6.26-2.1.15.0.1.el5_8.6
libxml2-devel
2.6.26-2.1.15.0.1.el5_8.6
libxml2-python
2.6.26-2.1.15.0.1.el5_8.6
Oracle Linux i386
libxml2
2.6.26-2.1.15.0.1.el5_8.6
libxml2-devel
2.6.26-2.1.15.0.1.el5_8.6
libxml2-python
2.6.26-2.1.15.0.1.el5_8.6
Oracle Linux 6
Oracle Linux x86_64
libxml2
2.7.6-8.0.1.el6_3.4
libxml2-devel
2.7.6-8.0.1.el6_3.4
libxml2-python
2.7.6-8.0.1.el6_3.4
libxml2-static
2.7.6-8.0.1.el6_3.4
Oracle Linux i686
libxml2
2.7.6-8.0.1.el6_3.4
libxml2-devel
2.7.6-8.0.1.el6_3.4
libxml2-python
2.7.6-8.0.1.el6_3.4
libxml2-static
2.7.6-8.0.1.el6_3.4
Связанные CVE
Связанные уязвимости
Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.
Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.
Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.
Heap-based buffer underflow in the xmlParseAttValueComplex function in ...
Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in Google Chrome before 23.0.1271.91 and other products, allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted entities in an XML document.