Vulnerability Bulletins

DSA-2857 libspring-java - several vulnerabilities

   
Affected software Debian
 
It was discovered by the Spring development team that the fix for theXML External Entity (XXE) Injection(CVE-2013-4152) in the Spring Framework was incomplete.

More info:

http://www.debian.org/security/2014/dsa-2857