SUSE-SU-2017:1538-1
Dashboard / Vulnerabilities / SUSE-SU-2017:1538-1
SUSE-SU-2017:1538-1
Summary: Security update for libxml2
Details: This update for libxml2 fixes the following security issues: * CVE-2017-9050: A heap-based buffer over-read in xmlDictAddString (bsc#1039069, bsc#1039661) * CVE-2017-9049: A heap-based buffer overflow in xmlDictComputeFastKey (bsc#1039066) * CVE-2017-9048: A stack overflow vulnerability in xmlSnprintfElementContent (bsc#1039063) * CVE-2017-9047: A stack overflow vulnerability in xmlSnprintfElementContent (bsc#1039064)
References: https://www.suse.com/support/update/announcement/2017/suse-su-20171538-1/, https://bugzilla.suse.com/1039063, https://bugzilla.suse.com/1039064, https://bugzilla.suse.com/1039066, https://bugzilla.suse.com/1039069, https://bugzilla.suse.com/1039661, https://www.suse.com/security/cve/CVE-2017-9047, https://www.suse.com/security/cve/CVE-2017-9048, https://www.suse.com/security/cve/CVE-2017-9049, https://www.suse.com/security/cve/CVE-2017-9050
Affected packages
Package
Name: libxml2
Purl: pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
