Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-2492

Опубликовано: 21 авг. 2017
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2017-2492: xmlsec1 security update (MODERATE)

[1.2.20-7]

  • CVE-2017-1000061
  • Related: #1472092
  • Fix mis-applied patch hunk

[1.2.20-6]

  • CVE-2017-1000061
  • Resolves: #1472092

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

xmlsec1

1.2.20-7.el7_4

xmlsec1-devel

1.2.20-7.el7_4

xmlsec1-gcrypt

1.2.20-7.el7_4

xmlsec1-gcrypt-devel

1.2.20-7.el7_4

xmlsec1-gnutls

1.2.20-7.el7_4

xmlsec1-gnutls-devel

1.2.20-7.el7_4

xmlsec1-nss

1.2.20-7.el7_4

xmlsec1-nss-devel

1.2.20-7.el7_4

xmlsec1-openssl

1.2.20-7.el7_4

xmlsec1-openssl-devel

1.2.20-7.el7_4

Oracle Linux x86_64

xmlsec1

1.2.20-7.el7_4

xmlsec1-devel

1.2.20-7.el7_4

xmlsec1-gcrypt

1.2.20-7.el7_4

xmlsec1-gcrypt-devel

1.2.20-7.el7_4

xmlsec1-gnutls

1.2.20-7.el7_4

xmlsec1-gnutls-devel

1.2.20-7.el7_4

xmlsec1-nss

1.2.20-7.el7_4

xmlsec1-nss-devel

1.2.20-7.el7_4

xmlsec1-openssl

1.2.20-7.el7_4

xmlsec1-openssl-devel

1.2.20-7.el7_4

Связанные CVE

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 8 лет назад

xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansion when parsing crafted input documents, resulting in possible information disclosure or denial of service

CVSS3: 6.5
redhat
больше 8 лет назад

xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansion when parsing crafted input documents, resulting in possible information disclosure or denial of service

CVSS3: 7.1
nvd
больше 8 лет назад

xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansion when parsing crafted input documents, resulting in possible information disclosure or denial of service

CVSS3: 7.1
debian
больше 8 лет назад

xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansio ...

CVSS3: 7.1
github
больше 3 лет назад

xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansion when parsing crafted input documents, resulting in possible information disclosure or denial of service

Уязвимость ELSA-2017-2492