Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Debian 7 Wheezy DLA-990-1: Moderate Expat Infinite Loop Issue

debian lts
Calendar Grey June 18, 2017
Dist Debian Esm H88
Identified endless cycle in expat framework. Update to version 2.1.0-1+deb7u5 for improved security.
It was discovered that there was an infinite loop vulnerability in expat, a XML parsing C library: https://libexpat.github.io/doc/cve-2017-9233/

Summary

https://libexpat.github.io/doc/cve-2017-9233/

For Debian 7 "Wheezy", this issue has been fixed in expat version
2.1.0-1+deb7u5.

We recommend that you upgrade your expat packages.


Regards,

- --
,'`.
: :' : Chris Lamb
`. `'` lamby@debian.org / chris-lamb.co.uk
`-



Package: expat
Version: 2.1.0-1+deb7u5
CVE ID: CVE-2017-9233

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here