Vulnerability Bulletins |
DSA-3243 libxml-libxml-perl - security update |
|
| Affected software | Debian |
|
Tilmann Haak from xing.com discovered that XML::LibXML, a Perl interfaceto the libxml2 library, did not respect the expand_entities parameter todisable processing of external entities in some circumstances. This mayallow attackers to gain read access to otherwise protected resources,depending on how the library is used. More info: https://www.debian.org/security/2015/dsa-3243 |
|






