[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

[SECURITY] Fedora 8 Update: libxml2-2.6.31-1.fc8



--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-0462
2008-01-11 21:20:07
--------------------------------------------------------------------------------

Name        : libxml2
Product     : Fedora 8
Version     : 2.6.31
Release     : 1.fc8
URL         : http://xmlsoft.org/
Summary     : Library providing XML and HTML support
Description :
This library allows to manipulate XML files. It includes support
to read, modify and write XML and HTML files. There is DTDs support
this includes parsing and validation even with complex DtDs, either
at parse time or later once the document has been modified. The output
can be a simple SAX stream or and in-memory DOM like representations.
In this case one can use the built-in XPath and XPointer implementation
to select subnodes or ranges. A flexible Input/Output mechanism is
available, with existing HTTP and FTP modules and combined to an
URI library.

--------------------------------------------------------------------------------
Update Information:

This release fixes a potential Denial of Service attack
on services using libxml2 to parse user provided XML.
All users are invited to upgrade.
Fixes CVE-2007-6284

--------------------------------------------------------------------------------
ChangeLog:

* Fri Jan 11 2008 Daniel Veillard <veillard redhat com> 2.6.31-1.fc8
- upstream release 2.6.31 see http://xmlsoft.org/news.html
- many bug fixed upstream
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #425927 - CVE-2007-6284 libxml2: infinite loop in UTF-8 decoding
        https://bugzilla.redhat.com/show_bug.cgi?id=425927
--------------------------------------------------------------------------------
Updated packages:

14ef5a9b22f253d602ecad6e18aab5fa6f7c001b libxml2-debuginfo-2.6.31-1.fc8.ppc64.rpm
6b29be9e824206d11399e8f9b6930528f79e70e2 libxml2-python-2.6.31-1.fc8.ppc64.rpm
7c922eb24c4d6acff23d43a393dbf890b51d2278 libxml2-devel-2.6.31-1.fc8.ppc64.rpm
1ec9f2e3e7243eae9f9c775ac64c22e90b8f8819 libxml2-2.6.31-1.fc8.ppc64.rpm
dc44788ae761e342cc8a1c5247a47f064a09e139 libxml2-python-2.6.31-1.fc8.i386.rpm
cb26ffccdea107e3032a1c33eddea24a9a194c5d libxml2-2.6.31-1.fc8.i386.rpm
af00df6bc0eab70326bea298761eaf0cda2dd103 libxml2-debuginfo-2.6.31-1.fc8.i386.rpm
9fb682fbd4cd3dfea253ec7a3d5e53d6ceec1979 libxml2-devel-2.6.31-1.fc8.i386.rpm
4c07f95dc42e480156e64f9b18329d9cae519cce libxml2-debuginfo-2.6.31-1.fc8.x86_64.rpm
3136beb9b3ac26bee6e147fc9f14212838313aec libxml2-python-2.6.31-1.fc8.x86_64.rpm
7dcccaab4e3b01a296109ee58143c8e669f4a1dc libxml2-devel-2.6.31-1.fc8.x86_64.rpm
11d6ad1d5ba49fd23d8ddf8ff59cb95904f3a5a8 libxml2-2.6.31-1.fc8.x86_64.rpm
73c47f66694054436f9cec3a28033c316a19b7b9 libxml2-debuginfo-2.6.31-1.fc8.ppc.rpm
63df7b2c7e5c03da23670660af897c11220394fb libxml2-python-2.6.31-1.fc8.ppc.rpm
96a7875229c90ea5b0dc3d6d304517ca80694917 libxml2-devel-2.6.31-1.fc8.ppc.rpm
082fb8aaf87475cdce1aa3751325fb33ab496798 libxml2-2.6.31-1.fc8.ppc.rpm
244f22ddcd9d82516bdebb544b2270f78ce74e08 libxml2-2.6.31-1.fc8.src.rpm

This update can be installed with the "yum" update program.  Use 
su -c 'yum update libxml2' 
at the command line.  For more information, refer to "Managing Software
with yum", available at http://docs.fedoraproject.org/yum/.
--------------------------------------------------------------------------------


[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]