MGASA-2017-0254

Source
https://advisories.mageia.org/MGASA-2017-0254.html
Import Source
https://advisories.mageia.org/MGASA-2017-0254.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2017-0254
Related
Published
2017-08-10T20:26:02Z
Modified
2017-08-10T20:08:37Z
Summary
Updated perl-XML-LibXML packages fix security vulnerability
Details

Use-after-free in the XML-LibXML module through 2.0129 for Perl allows attackers to execute arbitrary code by controlling the arguments to a replaceChild call (CVE-2017-10672)

References
Credits

Affected packages

Mageia:6 / perl-XML-LibXML

Package

Name
perl-XML-LibXML
Purl
pkg:rpm/mageia/perl-XML-LibXML?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.12.900-1.1.mga6

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / perl-XML-LibXML

Package

Name
perl-XML-LibXML
Purl
pkg:rpm/mageia/perl-XML-LibXML?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.12.100-1.1.mga5

Ecosystem specific

{
    "section": "core"
}