Описание
ELSA-2022-1643: xmlrpc-c security update (IMPORTANT)
[1.51.0-5.1]
- Add missing validation of encoding (CVE-2022-25235) (#2058114)
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
xmlrpc-c
1.51.0-5.el8_5.1
xmlrpc-c-c++
1.51.0-5.el8_5.1
xmlrpc-c-client
1.51.0-5.el8_5.1
xmlrpc-c-client++
1.51.0-5.el8_5.1
xmlrpc-c-devel
1.51.0-5.el8_5.1
Oracle Linux x86_64
xmlrpc-c
1.51.0-5.el8_5.1
xmlrpc-c-c++
1.51.0-5.el8_5.1
xmlrpc-c-client
1.51.0-5.el8_5.1
xmlrpc-c-client++
1.51.0-5.el8_5.1
xmlrpc-c-devel
1.51.0-5.el8_5.1
Связанные CVE
Связанные уязвимости
xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.
xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.
xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.
xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain valid ...