James Forshaw discovered that Apache XML Security for Java incorrectly validated CanonicalizationMethod parameters. An attacker could use this flaw to spoof XML signatures (CVE-2013-2172).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2014-0002.json"