Описание
ELSA-2022-9962: expat security update (IMPORTANT)
[2.0.1-13.0.2]
- Ensure raw tagnames are safe exiting internalEntityParser [CVE-2022-40674][Orabug: 34694174]
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
expat
2.0.1-13.0.2.el6_8
expat-devel
2.0.1-13.0.2.el6_8
Oracle Linux i686
expat
2.0.1-13.0.2.el6_8
expat-devel
2.0.1-13.0.2.el6_8
Связанные CVE
Связанные уязвимости
CVSS3: 8.1
ubuntu
почти 3 года назад
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.
CVSS3: 8.1
redhat
почти 3 года назад
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.
CVSS3: 8.1
nvd
почти 3 года назад
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.
CVSS3: 8.1
debian
почти 3 года назад
libexpat before 2.4.9 has a use-after-free in the doContent function i ...