Lucene search

K
suseSuseSUSE-SU-2017:1701-1
HistoryJun 27, 2017 - 12:11 a.m.

Security update for jakarta-taglibs-standard (important)

2017-06-2700:11:17
lists.opensuse.org
22

0.07 Low

EPSS

Percentile

94.0%

This update for jakarta-taglibs-standard fixes the following issues:

  • CVE-2015-0254: Apache Standard Taglibs allowed remote attackers to
    execute arbitrary code or conduct external XML entity (XXE) attacks via
    a crafted XSLT extension in a (1) x:parse or (2) x:transform JSTL XML
    tag. (bsc#920813)