Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:0899

Опубликовано: 15 мар. 2022
Источник: rocky
Оценка: Moderate

Описание

Moderate: libxml2 security update

The libxml2 library is a development toolbox providing the implementation of various XML standards.

Security Fix(es):

  • libxml2: Use-after-free of ID and IDREF attributes (CVE-2022-23308)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
libxml2i68612.el8_5libxml2-2.9.7-12.el8_5.i686.rpm
libxml2x86_6412.el8_5libxml2-2.9.7-12.el8_5.x86_64.rpm
python3-libxml2x86_6412.el8_5python3-libxml2-2.9.7-12.el8_5.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 4 года назад

valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.

CVSS3: 8.1
redhat
почти 4 года назад

valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.

CVSS3: 7.5
nvd
почти 4 года назад

valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.

CVSS3: 7.5
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 7.5
debian
почти 4 года назад

valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF ...