SUSE-SU-2017:1813-1
Dashboard / Vulnerabilities / SUSE-SU-2017:1813-1
SUSE-SU-2017:1813-1
Summary: Security update for libxml2
Details: This update for libxml2 fixes the following issues: Security issues fixed: * CVE-2017-0663: Fixed a heap buffer overflow in xmlAddID (bsc#1044337) * CVE-2017-5969: Fixed a NULL pointer deref in xmlDumpElementContent (bsc#1024989) * CVE-2017-7375: Prevented an unwanted external entity reference (bsc#1044894) * CVE-2017-7376: Increase buffer space for port in HTTP redirect support (bsc#1044887)
References: https://www.suse.com/support/update/announcement/2017/suse-su-20171813-1/, https://bugzilla.suse.com/1024989, https://bugzilla.suse.com/1044337, https://bugzilla.suse.com/1044887, https://bugzilla.suse.com/1044894, https://www.suse.com/security/cve/CVE-2017-0663, https://www.suse.com/security/cve/CVE-2017-5969, https://www.suse.com/security/cve/CVE-2017-7375, https://www.suse.com/security/cve/CVE-2017-7376
Affected packages
Package
Name: libxml2
Purl: pkg:rpm/suse/libxml2&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4
Affected ranges
Type: ECOSYSTEM
Events:
