security advisorysecurity issuebuffer overflow
Nick Wellnhofer discovered that the xsltFormatNumberConversion function in libxslt, an XSLT processing runtime library, does not properly check for a zero byte terminating the pattern string. This flaw can be exploited to leak a couple of bytes after the buffer that holds the . - ------------------------------------------------------------------------- Debian Security Advisory DSA-3709-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/security/ Salvatore Bonaccorso November 08, 2016 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : libxslt CVE ID : CVE-2016-4738 Debian Bug : 842570 Nick Wellnhofer discovered that the xsltFormatNumberConversion function in libxslt, an XSLT processing runtime library, does not properly check for a zero byte terminating the pattern string. This flaw can be exploited to leak a couple of bytes after the buffer that holds the pattern string. For the stable distribution (jessie), this problem has been fixed in version 1.1.28-2+deb8u2. For the testing distribution (stretch), this problem has been fixed in version 1.1.29-2. For the unstable distribution (sid), this problem has been fixed in version 1.1.29-2. We recommend that you upgrade your libxslt packages. Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. . A security patch for libxslt has been released to fix vulnerabilities in the management of pattern strings; Debian users are recommended to upgrade their systems.. libxslt update, Debian advisory, XSLT security, buffer overflow risk. . Severity: Critical. LinuxSecurity.com Team
Nov 08, 2016
•Critical
Debian