Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2021:168-1 Important: Libxml2 Security Update Overview

suse
Calendar Grey May 20, 2021
Dist Suse Esm H88
The latest update from SUSE bolsters container safety by implementing vital fixes for libxml2, tackling important vulnerabilities and risks.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-SU-2021:1654-1 Released: Wed May 19 16:43:36 2021 Summary: Security update for libxml2 Type: security Severity: important

References

References : 1185408 1185409 1185410 1185698 CVE-2021-3516 CVE-2021-3517 CVE-2021-3518

CVE-2021-3537

1185408,1185409,1185410,1185698,CVE-2021-3516,CVE-2021-3517,CVE-2021-3518,CVE-2021-3537

This update for libxml2 fixes the following issues:

- CVE-2021-3537: NULL pointer dereference in valid.c:xmlValidBuildAContentModel (bsc#1185698)

- CVE-2021-3518: Fixed a use after free in xinclude.c:xmlXIncludeDoProcess (bsc#1185408).

- CVE-2021-3517: Fixed a heap based buffer overflow in entities.c:xmlEncodeEntitiesInternal (bsc#1185410).

- CVE-2021-3516: Fixed a use after free in entities.c:xmlEncodeEntitiesInternal (bsc#1185409).

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2021:168-1
Container Tags : suse/sle15:15.0 , suse/sle15:15.0.4.22.396
Container Release : 4.22.396
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here