Описание
Security update for xerces-c
This update for xerces-c fixes the following issue:
- CVE-2017-12627: Processing of external DTD paths could have resulted in a null pointer dereference under certain conditions (bsc#1083630)
This update was imported from the SUSE:SLE-15:Update update project.
Список пакетов
openSUSE Leap 15.0
libxerces-c-3_1-3.1.4-lp150.2.3.1
libxerces-c-3_1-32bit-3.1.4-lp150.2.3.1
libxerces-c-devel-3.1.4-lp150.2.3.1
xerces-c-3.1.4-lp150.2.3.1
xerces-c-doc-3.1.4-lp150.2.3.1
Ссылки
- E-Mail link for openSUSE-SU-2019:1283-1
- SUSE Security Ratings
- SUSE Bug 1083630
- SUSE CVE CVE-2017-12627 page
Описание
In Apache Xerces-C XML Parser library before 3.2.1, processing of external DTD paths can result in a null pointer dereference under certain conditions.
Затронутые продукты
openSUSE Leap 15.0:libxerces-c-3_1-3.1.4-lp150.2.3.1
openSUSE Leap 15.0:libxerces-c-3_1-32bit-3.1.4-lp150.2.3.1
openSUSE Leap 15.0:libxerces-c-devel-3.1.4-lp150.2.3.1
openSUSE Leap 15.0:xerces-c-3.1.4-lp150.2.3.1
Ссылки
- CVE-2017-12627
- SUSE Bug 1083630