shield
Security update for libxml2
SUSE-SLE-SDK-12-SP1-2017-833
This update for libxml2 fixes the following issues: * Fix NULL dereference in xpointer.c when in recovery mode [bsc#1014873] * CVE-2016-9597: An XML document with many opening tags could have caused a overflow of the stack not detected by the recursion limits, allowing for DoS (bsc#1017497) * CVE-2014-0191: External parameter entity loaded when entity substitution is disabled could cause a DoS. (bsc#876652) * CVE-2016-9318: XML External Entity (XXE) could be abused via crafted document. (bsc#1010675)
-
Release DateMay 22 2017
-
ReferencesBugzilla: 1017497, 876652, 1010675, 1014873, 1013930
CVEs: CVE-2014-0191, CVE-2016-9318, CVE-2016-9597 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
SUSE Linux Enterprise Software Development Kit 12.1 ppc64le
-
Packageslibxml2
A Library to Manipulate XML Fileslibxml2-devel2.9.1-26.12.1 lock src
Include Files and Libraries mandatory for Development2.9.1-26.12.1 lock rpm
SUSE Linux Enterprise Software Development Kit 12.1 x86_64
-
Packageslibxml2
A Library to Manipulate XML Fileslibxml2-devel2.9.1-26.12.1 lock src
Include Files and Libraries mandatory for Development2.9.1-26.12.1 lock rpm
SUSE Linux Enterprise Software Development Kit 12.1 s390x
-
Packageslibxml2
A Library to Manipulate XML Fileslibxml2-devel2.9.1-26.12.1 lock src
Include Files and Libraries mandatory for Development2.9.1-26.12.1 lock rpm