Lucene search

K
redhatRedHatRHSA-2013:0581
HistoryFeb 28, 2013 - 12:00 a.m.

(RHSA-2013:0581) Moderate: libxml2 security update

2013-02-2800:00:00
access.redhat.com
20

0.013 Low

EPSS

Percentile

85.6%

The libxml2 library is a development toolbox providing the implementation
of various XML standards.

A denial of service flaw was found in the way libxml2 performed string
substitutions when entity values for entity references replacement was
enabled. A remote attacker could provide a specially-crafted XML file that,
when processed by an application linked against libxml2, would lead to
excessive CPU consumption. (CVE-2013-0338)

All users of libxml2 are advised to upgrade to these updated packages,
which contain a backported patch to correct this issue. The desktop must
be restarted (log out, then log back in) for this update to take effect.