Описание
Security update for perl-XML-LibXML
This update for perl-XML-LibXML fixes the following issues:
- CVE-2017-10672: A use-after-free allowed remote attackers to potentially execute arbitrary code by controlling the arguments to a replaceChild call (bsc#1046848)
Список пакетов
SUSE Linux Enterprise Point of Sale 11 SP3
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-LTSS
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-TERADATA
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP4
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
perl-XML-LibXML-1.66-3.3.1
Ссылки
- Link for SUSE-SU-2018:0170-1
- E-Mail link for SUSE-SU-2018:0170-1
- SUSE Security Ratings
- SUSE Bug 1046848
- SUSE CVE CVE-2017-10672 page
Описание
Use-after-free in the XML-LibXML module through 2.0129 for Perl allows remote attackers to execute arbitrary code by controlling the arguments to a replaceChild call.
Затронутые продукты
SUSE Linux Enterprise Point of Sale 11 SP3:perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-LTSS:perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-TERADATA:perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP4:perl-XML-LibXML-1.66-3.3.1
Ссылки
- CVE-2017-10672
- SUSE Bug 1046848
- SUSE Bug 1069732