Vulnerability Bulletins

DSA-3243 libxml-libxml-perl - security update

   
Affected software Debian
 
Tilmann Haak from xing.com discovered that XML::LibXML, a Perl interfaceto the libxml2 library, did not respect the expand_entities parameter todisable processing of external entities in some circumstances. This mayallow attackers to gain read access to otherwise protected resources,depending on how the library is used.

More info:

https://www.debian.org/security/2015/dsa-3243