Debian Security Advisory(Debian安全报告) DSA-4407-1 xmltooling
Package??????? : xmltooling
CVE ID???????? : CVE-2019-9628
?
Ross Geerlings發(fā)現(xiàn)xmltools庫沒有正確處理關(guān)于錯誤(畸形)XML聲明上的異常,使用xmltools可能導(dǎo)致應(yīng)用程序拒絕服務(wù)。
這個問題在1.6.0-4+deb9u2版本中得到了修復(fù)。
有關(guān)xmltools的詳細安全狀態(tài),請參閱其安全跟蹤器頁面:https://secur-tracker.debian.org/tracker/xmltools
--------------------
Package??????? : xmltooling
CVE ID???????? : CVE-2019-9628
Ross Geerlings discovered that the XMLTooling library didn't correctly?handle exceptions on malformed XML declarations, which could result in?denial of service against the application using XMLTooling.
This problem has been fixed in?version 1.6.0-4+deb9u2.
For the detailed security status of xmltooling please refer to?its security tracker page at:https://security-tracker.debian.org/tracker/xmltooling
?
轉(zhuǎn)載于:https://www.cnblogs.com/iAmSoScArEd/p/10532858.html
總結(jié)
以上是生活随笔為你收集整理的Debian Security Advisory(Debian安全报告) DSA-4407-1 xmltooling的全部內(nèi)容,希望文章能夠幫你解決所遇到的問題。
- 上一篇: 小程序真的能帮商家挣到钱吗
- 下一篇: 中国在两年内赶超美国AI?李开复:不一定