Package        : xmltooling
Version        : 1.5.3-2+deb8u4
CVE ID         : CVE-2019-9628
Debian Bug     : 924346

Ross Geerlings discovered that the XMLTooling library didn't correctly
handle exceptions on malformed XML declarations, which could result in
denial of service against the application using XMLTooling.

For Debian 8 "Jessie", this problem has been fixed in version
1.5.3-2+deb8u4.

We recommend that you upgrade your xmltooling packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
- -- 
Feri

Debian LTS: DLA-1710-1: xmltooling security update

March 13, 2019
Ross Geerlings discovered that the XMLTooling library didn't correctly handle exceptions on malformed XML declarations, which could result in denial of service against the applicat...

Summary


Ross Geerlings discovered that the XMLTooling library didn't correctly
handle exceptions on malformed XML declarations, which could result in
denial of service against the application using XMLTooling.

For Debian 8 "Jessie", this problem has been fixed in version
1.5.3-2+deb8u4.

We recommend that you upgrade your xmltooling packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
- --
Feri


Severity
Package : xmltooling
Version : 1.5.3-2+deb8u4
CVE ID : CVE-2019-9628
Debian Bug : 924346

Related News