Описание
Security update for expat
This update for expat fixes the following issues:
- Fixed a regression caused by the patch for CVE-2022-25236 (bsc#1196784).
Список пакетов
openSUSE Leap 15.3
expat-2.2.5-3.19.1
libexpat-devel-2.2.5-3.19.1
libexpat-devel-32bit-2.2.5-3.19.1
libexpat1-2.2.5-3.19.1
libexpat1-32bit-2.2.5-3.19.1
Ссылки
- E-Mail link for openSUSE-SU-2022:0844-1
- SUSE Security Ratings
- SUSE Bug 1196025
- SUSE Bug 1196784
- SUSE CVE CVE-2022-25236 page
Описание
xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.
Затронутые продукты
openSUSE Leap 15.3:expat-2.2.5-3.19.1
openSUSE Leap 15.3:libexpat-devel-2.2.5-3.19.1
openSUSE Leap 15.3:libexpat-devel-32bit-2.2.5-3.19.1
openSUSE Leap 15.3:libexpat1-2.2.5-3.19.1
Ссылки
- CVE-2022-25236
- SUSE Bug 1196025
- SUSE Bug 1196784
- SUSE Bug 1197217
- SUSE Bug 1200038
- SUSE Bug 1201735