shield
Security update for xerces-c
SUSE-SLE-SDK-12-SP1-2016-1271
xerces-c was updated to fix one security issue. This security issue was fixed: - CVE-2016-2099: Use-after-free vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ did not properly handle exceptions raised in the XMLReader class, which allowed context-dependent attackers to have unspecified impact via an invalid character in an XML document (bsc#979208). - CVE-2016-4463: Apache Xerces-C XML Parser crashed on malformed DTD (bnc#985860).
-
Release DateAug 25 2016
-
References
-
Typesecurity
-
Severitymoderate
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Software Development Kit 12.1 ppc64le
-
Packageslibxerces-c-devel
A validating XML parser - Development Filesxerces-c3.1.1-12.3 lock rpm
A Validating XML Parser3.1.1-12.3 lock src
SUSE Linux Enterprise Software Development Kit 12.1 x86_64
-
Packageslibxerces-c-devel
A validating XML parser - Development Filesxerces-c3.1.1-12.3 lock rpm
A Validating XML Parser3.1.1-12.3 lock src
SUSE Linux Enterprise Software Development Kit 12.1 s390x
-
Packageslibxerces-c-devel
A validating XML parser - Development Filesxerces-c3.1.1-12.3 lock rpm
A Validating XML Parser3.1.1-12.3 lock src