Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Mageia 6: MGASA-2018-0381 Moderate: xml-security-c Denial Of Service

mageia
Calendar Grey September 21, 2018
Dist Mageia Esm H88
Recent updates for xml-security-c address security vulnerabilities in Mageia 6, eliminating a Denial of Service concern related to improperly formatted XML content.
It was discovered that the Apache XML Security for C++ library performed insufficient validation of KeyInfo hints, which could result in denial of service via NULL pointer derefere...

Summary

It was discovered that the Apache XML Security for C++ library performed insufficient validation of KeyInfo hints, which could result in denial of service via NULL pointer dereferences when processing malformed XML data. References:

References

- https://bugs.mageia.org/show_bug.cgi?id=23401

- https://issues.apache.org/jira/projects/SANTUARIO/issues/SANTUARIO-491

Resolution

SRPMS

- 6/core/xml-security-c-1.7.3-2.1.mga6

Publication date: 21 Sep 2018
URL: https://advisories.mageia.org/MGASA-2018-0381.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here