Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Fedora 29: FEDORA-2018-a0d02065d0 Critical: xml-security-c Null Pointer Fix

fedora
Calendar Grey November 27, 2018
Dist Fedora Esm H88
A patch released for null reference concerns in xml-security-c for Fedora 29 mitigates significant vulnerabilities present in the software.
Security fix for a null pointer dereference in xml-security-c.

Summary

The xml-security-c library is a C++ implementation of the XML Digital

Signature specification. The library makes use of the Apache XML project's

Xerces-C XML Parser and Xalan-C XSLT processor. The latter is used for

processing XPath and XSLT transforms.

Security fix for a null pointer dereference in xml-security-c.

* Fri Nov 16 2018 Pete Walter - 2.0.2-1

- Update to 2.0.2

- Remove explicit attr modes

[ 1 ] Bug #1612388 - xml-security-c: null pointer dereference in xml-security-c

https://bugzilla.redhat.com/show_bug.cgi?id=1612388

su -c 'dnf upgrade --advisory FEDORA-2018-a0d02065d0' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 29
Version: 2.0.2
Release: 1.fc29
URL: Summary : C++ Implementation of W3C security standards for XML

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here