Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2018:0170-1

Опубликовано: 22 янв. 2018
Источник: suse-cvrf

Описание

Security update for perl-XML-LibXML

This update for perl-XML-LibXML fixes the following issues:

  • CVE-2017-10672: A use-after-free allowed remote attackers to potentially execute arbitrary code by controlling the arguments to a replaceChild call (bsc#1046848)

Список пакетов

SUSE Linux Enterprise Point of Sale 11 SP3
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-LTSS
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-TERADATA
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP4
perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
perl-XML-LibXML-1.66-3.3.1

Описание

Use-after-free in the XML-LibXML module through 2.0129 for Perl allows remote attackers to execute arbitrary code by controlling the arguments to a replaceChild call.


Затронутые продукты
SUSE Linux Enterprise Point of Sale 11 SP3:perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-LTSS:perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP3-TERADATA:perl-XML-LibXML-1.66-3.3.1
SUSE Linux Enterprise Server 11 SP4:perl-XML-LibXML-1.66-3.3.1

Ссылки