Vulnerability Bulletins

DSA-3493 xerces-c - security update

   
Affected software Debian
 
Gustavo Grieco discovered that xerces-c, a validating XML parser libraryfor C++, mishandles certain kinds of malformed input documents,resulting in buffer overflows during processing and error reporting.These flaws could lead to a denial of service in applications using thexerces-c library, or potentially, to the execution of arbitrary code.

More info:

https://www.debian.org/security/2016/dsa-3493