Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.61564
Category:Fedora Local Security Checks
Title:Fedora Core 9 FEDORA-2008-7395 (libxml2)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to libxml2
announced via advisory FEDORA-2008-7395.

This library allows to manipulate XML files. It includes support
to read, modify and write XML and HTML files. There is DTDs support
this includes parsing and validation even with complex DtDs, either
at parse time or later once the document has been modified. The output
can be a simple SAX stream or and in-memory DOM like representations.
In this case one can use the built-in XPath and XPointer implementation
to select subnodes or ranges. A flexible Input/Output mechanism is
available, with existing HTTP and FTP modules and combined to an
URI library.

ChangeLog:

* Mon Aug 25 2008 Daniel Veillard 2.6.31-3.fc9
- fix for entities recursion problem
- Resolve: rhbz#459713
* Thu May 15 2008 Daniel Veillard 2.6.31-2.fc9
- try to fix multiarch problems like #440206

References:

[ 1 ] Bug #458086 - CVE-2008-3281 libxml2 denial of service
https://bugzilla.redhat.com/show_bug.cgi?id=458086

Solution: Apply the appropriate updates.

This update can be installed with the yum update program. Use
su -c 'yum update libxml2' at the command line.
For more information, refer to Managing Software with yum,
available at http://docs.fedoraproject.org/yum/.

http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2008-7395

Risk factor : Medium

CVSS Score:
4.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2008-3281
1020728
http://www.securitytracker.com/id?1020728
20081031 VMSA-2008-0017 Updated ESX packages for libxml2, ucd-snmp, libtiff
http://www.securityfocus.com/archive/1/497962/100/0/threaded
30783
http://www.securityfocus.com/bid/30783
31558
http://secunia.com/advisories/31558
31566
http://secunia.com/advisories/31566
31590
http://secunia.com/advisories/31590
31728
http://secunia.com/advisories/31728
31748
http://secunia.com/advisories/31748
31855
http://secunia.com/advisories/31855
31982
http://secunia.com/advisories/31982
32488
http://secunia.com/advisories/32488
32807
http://secunia.com/advisories/32807
32974
http://secunia.com/advisories/32974
35379
http://secunia.com/advisories/35379
ADV-2008-2419
http://www.vupen.com/english/advisories/2008/2419
ADV-2008-2843
http://www.vupen.com/english/advisories/2008/2843
ADV-2008-2971
http://www.vupen.com/english/advisories/2008/2971
ADV-2009-1522
http://www.vupen.com/english/advisories/2009/1522
ADV-2009-1621
http://www.vupen.com/english/advisories/2009/1621
APPLE-SA-2009-06-08-1
http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html
APPLE-SA-2009-06-17-1
http://lists.apple.com/archives/security-announce/2009/Jun/msg00005.html
DSA-1631
http://www.debian.org/security/2008/dsa-1631
FEDORA-2008-7395
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00347.html
FEDORA-2008-7594
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00261.html
GLSA-200812-06
http://security.gentoo.org/glsa/glsa-200812-06.xml
MDVSA-2008:180
http://www.mandriva.com/security/advisories?name=MDVSA-2008:180
MDVSA-2008:192
http://www.mandriva.com/security/advisories?name=MDVSA-2008:192
RHSA-2008:0836
https://rhn.redhat.com/errata/RHSA-2008-0836.html
SUSE-SR:2008:018
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00004.html
USN-640-1
http://www.ubuntu.com/usn/usn-640-1
USN-644-1
https://usn.ubuntu.com/644-1/
[Security-announce] 20081030 VMSA-2008-0017 Updated ESX packages for libxml2, ucd-snmp, libtiff
http://lists.vmware.com/pipermail/security-announce/2008/000039.html
[xml] 20080820 Security fix for libxml2
http://mail.gnome.org/archives/xml/2008-August/msg00034.html
http://support.apple.com/kb/HT3613
http://support.apple.com/kb/HT3639
http://svn.gnome.org/viewvc/libxml2?view=revision&revision=3772
http://wiki.rpath.com/Advisories:rPSA-2008-0325
http://www.vmware.com/security/advisories/VMSA-2008-0017.html
http://xmlsoft.org/news.html
https://bugzilla.redhat.com/show_bug.cgi?id=458086
oval:org.mitre.oval:def:6496
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6496
oval:org.mitre.oval:def:9812
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9812
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.