en

Ubuntu update for libxml2


ID: IRCAD2015114157

Release Date: 2015-11-17

Software:

Ubuntu 15.10

Ubuntu 15.04

Ubuntu 14.04 LTS

Ubuntu 12.04 LTS

Description:

Florian Weimer discovered that libxml2 incorrectly handled certain XML data. If a user or automated system were tricked into opening a specially crafted document, an attacker could possibly cause resource consumption, resulting in a denial of service. This issue only affected Ubuntu 12.04 LTS, Ubuntu 14.04 LTS and Ubuntu 15.04. Michal Zalewski discovered that libxml2 incorrectly handled certain XML data. If a user or automated system were tricked into opening a specially crafted document, an attacker could possibly cause libxml2 to crash, resulting in a denial of service. This issue only affected Ubuntu 12.04 LTS, Ubuntu 14.04 LTS and Ubuntu 15.04. Various other issues were also addressed.

Solution

Apply updates.

Ubuntu 15.10:

libxml2 2.9.2+zdfsg1-4ubuntu0.1

Ubuntu 15.04:

libxml2 2.9.2+dfsg1-3ubuntu0.1

Ubuntu 14.04 LTS:

libxml2 2.9.1+dfsg1-3ubuntu4.5

Ubuntu 12.04 LTS:

libxml2 2.7.8.dfsg-5.1ubuntu4.12

References:

http://www.ubuntu.com/usn/usn-2812-1

https://packetstormsecurity.com/files/134383/Ubuntu-Security-Notice-USN-2812-1.html


The Wall

No comments
You need to sign in to comment