Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-1643

Опубликовано: 02 мая 2022
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2022-1643: xmlrpc-c security update (IMPORTANT)

[1.51.0-5.1]

  • Add missing validation of encoding (CVE-2022-25235) (#2058114)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

xmlrpc-c

1.51.0-5.el8_5.1

xmlrpc-c-c++

1.51.0-5.el8_5.1

xmlrpc-c-client

1.51.0-5.el8_5.1

xmlrpc-c-client++

1.51.0-5.el8_5.1

xmlrpc-c-devel

1.51.0-5.el8_5.1

Oracle Linux x86_64

xmlrpc-c

1.51.0-5.el8_5.1

xmlrpc-c-c++

1.51.0-5.el8_5.1

xmlrpc-c-client

1.51.0-5.el8_5.1

xmlrpc-c-client++

1.51.0-5.el8_5.1

xmlrpc-c-devel

1.51.0-5.el8_5.1

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 3 лет назад

xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.

CVSS3: 9.8
redhat
больше 3 лет назад

xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.

CVSS3: 9.8
nvd
больше 3 лет назад

xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.

CVSS3: 9.8
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 9.8
debian
больше 3 лет назад

xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain valid ...