Описание
Security update for xerces-c
This update for xerces-c fixes the following issue:
- CVE-2017-12627: Processing of external DTD paths could have resulted in a null pointer dereference under certain conditions (bsc#1083630)
Список пакетов
SUSE Linux Enterprise Module for Basesystem 15
libxerces-c-3_1-3.1.4-3.3.25
libxerces-c-devel-3.1.4-3.3.25
Ссылки
- Link for SUSE-SU-2019:0977-1
- E-Mail link for SUSE-SU-2019:0977-1
- SUSE Security Ratings
- SUSE Bug 1083630
- SUSE CVE CVE-2017-12627 page
Описание
In Apache Xerces-C XML Parser library before 3.2.1, processing of external DTD paths can result in a null pointer dereference under certain conditions.
Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15:libxerces-c-3_1-3.1.4-3.3.25
SUSE Linux Enterprise Module for Basesystem 15:libxerces-c-devel-3.1.4-3.3.25
Ссылки
- CVE-2017-12627
- SUSE Bug 1083630