Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Mageia 8 Security Update: MGASA-2021-0474 Addresses XStream and XMLPull

mageia
Calendar Grey October 13, 2021
Dist Mageia Esm H88
The Mageia security notice MGASA-2021-0474 deals with various vulnerabilities found in XStream, offering critical patches.
Multiple security vulnerabilities have been discovered in XStream

Summary

Multiple security vulnerabilities have been discovered in XStream. See references for details.

References

- https://bugs.mageia.org/show_bug.cgi?id=29512

- https://lists.debian.org/debian-lts-announce/2021/09/msg00017.html

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/QGXIU3YDPG6OGTDHMBLAFN7BPBERXREB/

- https://www.cve.org/CVERecord?id=CVE-2021-39139

- https://www.cve.org/CVERecord?id=CVE-2021-39140

- https://www.cve.org/CVERecord?id=CVE-2021-39141

- https://www.cve.org/CVERecord?id=CVE-2021-39144

- https://www.cve.org/CVERecord?id=CVE-2021-39145

- https://www.cve.org/CVERecord?id=CVE-2021-39146

- https://www.cve.org/CVERecord?id=CVE-2021-39147

- https://www.cve.org/CVERecord?id=CVE-2021-39148

- https://www.cve.org/CVERecord?id=CVE-2021-39149

- https://www.cve.org/CVERecord?id=CVE-2021-39150

- https://www.cve.org/CVERecord?id=CVE-2021-39151

- https://www.cve.org/CVERecord?id=CVE-2021-39152

- https://www.cve.org/CVERecord?id=CVE-2021-39153

- https://www.cve.org/CVERecord?id=CVE-2021-39154

Resolution

SRPMS

- 8/core/xstream-1.4.18-1.mga8

- 8/core/xmlpull-1.2.0-1.mga8

- 8/core/mxparser-1.2.2-1.mga8

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 13 Oct 2021
URL: https://advisories.mageia.org/MGASA-2021-0474.html
Type: security
CVE: CVE-2021-39139, CVE-2021-39140, CVE-2021-39141, CVE-2021-39144, CVE-2021-39145, CVE-2021-39146, CVE-2021-39147, CVE-2021-39148, CVE-2021-39149, CVE-2021-39150, CVE-2021-39151, CVE-2021-39152, CVE-2021-39153, CVE-2021-39154

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here