US-CERT
Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information
 

 View Notes By
Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric

 Other Documents
Technical Alerts

Technical Bulletins

Alerts

Security Tips

Fedora Project Information for VU#493966

Date Notified:
Date Updated:
Statement Date:
Status Summary:Vulnerable

Vendor Statement

Please see http://www.redhat.com/archives/fedora-announce-list/2004-February/msg00029.html

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

SECURITY: Update of libxml2 2.6.6 available


  • From: Daniel Veillard <veillard redhat com>
  • To: fedora-announce-list redhat com
  • Subject: SECURITY: Update of libxml2 2.6.6 available
  • Date: Wed, 25 Feb 2004 16:43:43 -0500


    ---------------------------------------------------------------------
    Fedora Update Notification
    FEDORA-2004-087
    2004-02-25
    ---------------------------------------------------------------------

    Name : libxml2
    Version : 2.6.6
    Release : 3
    Summary : Library providing XML and HTML support
    Description :
    This library allows to manipulate XML files. It includes support
    to read, modify and write XML and HTML files. There is DTDs support
    this includes parsing and validation even with complex DtDs, either
    at parse time or later once the document has been modified. The output
    can be a simple SAX stream or and in-memory DOM like representations.
    In this case one can use the built-in XPath and XPointer implementation
    to select subnodes or ranges. A flexible Input/Output mechanism is
    available, with existing HTTP and FTP modules and combined to an
    URI library.

    ---------------------------------------------------------------------
    Update Information:

    Updated libxml2 packages are available to fix an overflow when parsing
    the URI for remote resources.
    ---------------------------------------------------------------------
    * Thu Feb 12 2004 Daniel Veillard <veillard redhat com>

    - upstream release 2.6.6 see
    http://xmlsoft.org/news.html


    ---------------------------------------------------------------------
    This update can be downloaded from:
    http://download.fedora.redhat.com/pub/fedora/linux/core/updates/1/

    c46c9ba42ba7d27bfcf48899119a1d40 SRPMS/libxml2-2.6.6-3.src.rpm
    d7a9dec974250e425d6052e0f648b6c5 i386/libxml2-2.6.6-3.i386.rpm
    0758aa446c1a43d18bc016df35288806 i386/libxml2-devel-2.6.6-3.i386.rpm
    07843af17c126497f4baa8d279c7d920 i386/libxml2-python-2.6.6-3.i386.rpm
    ae7105805216615e6460c60be9c679da i386/debug/libxml2-debuginfo-2.6.6-3.i386.rpm

    This update can also be installed with the Update Agent; you can
    launch the Update Agent with the 'up2date' command.
    ---------------------------------------------------------------------

    Daniel

    --
    Daniel Veillard | Red Hat Network
    https://rhn.redhat.com/
    veillard redhat com | libxml GNOME XML XSLT toolkit
    http://xmlsoft.org/
    http://veillard.com/ | Rpmfind RPM search engine http://rpmfind.net/





    [Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]
     

    If you have feedback, comments, or additional information about this vulnerability, please send us email.
     

Produced 2009 by US-CERT, a government organization
Disclaimers and copyright information