Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.703321
Kategorie:Debian Local Security Checks
Titel:Debian Security Advisory DSA 3321-1 (xmltooling - security update)
Zusammenfassung:The InCommon Shibboleth Training team discovered that XMLTooling, a;C++ XML parsing library, did not properly handle an exception when;parsing well-formed but schema-invalid XML. This could allow remote;attackers to cause a denial of service (crash) via crafted XML data.
Beschreibung:Summary:
The InCommon Shibboleth Training team discovered that XMLTooling, a
C++ XML parsing library, did not properly handle an exception when
parsing well-formed but schema-invalid XML. This could allow remote
attackers to cause a denial of service (crash) via crafted XML data.

Affected Software/OS:
xmltooling on Debian Linux

Solution:
For the oldstable distribution (wheezy), this problem has been fixed
in version 1.4.2-5+deb7u1.

For the stable distribution (jessie), this problem has been fixed in
version 1.5.3-2+deb8u1.

For the unstable distribution (sid), this problem will be fixed shortly.

We recommend that you upgrade your xmltooling packages.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2015-0851
BugTraq ID: 76134
http://www.securityfocus.com/bid/76134
Debian Security Information: DSA-3321 (Google Search)
http://www.debian.org/security/2015/dsa-3321
CopyrightCopyright (c) 2015 Greenbone Networks GmbH http://greenbone.net

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.