SUSE-SU-2017:1587-1
Dashboard / Vulnerabilities / SUSE-SU-2017:1587-1
SUSE-SU-2017:1587-1
Summary: Security update for libxml2
Details: This update for libxml2 fixes the following issues: - CVE-2017-9050: heap-based buffer overflow (xmlDictAddString func) [bsc#1039069, bsc#1039661] - CVE-2017-9049: heap-based buffer overflow (xmlDictComputeFastKey func) [bsc#1039066] - CVE-2017-9048: stack overflow vulnerability (xmlSnprintfElementContent func) [bsc#1039063] - CVE-2017-9047: stack overflow vulnerability (xmlSnprintfElementContent func) [bsc#1039064]
References: https://www.suse.com/support/update/announcement/2017/suse-su-20171587-1/, https://bugzilla.suse.com/1039063, https://bugzilla.suse.com/1039064, https://bugzilla.suse.com/1039066, https://bugzilla.suse.com/1039069, https://bugzilla.suse.com/1039661, https://www.suse.com/security/cve/CVE-2017-9047, https://www.suse.com/security/cve/CVE-2017-9048, https://www.suse.com/security/cve/CVE-2017-9049, https://www.suse.com/security/cve/CVE-2017-9050
Affected packages
Package
Name: libxml2
Purl: pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012
Affected ranges
Type: ECOSYSTEM
Events:
