Lucene search

K
suseSuseSUSE-SU-2018:0140-1
HistoryJan 19, 2018 - 6:09 p.m.

Security update for xmltooling (important)

2018-01-1918:09:11
lists.opensuse.org
31

0.004 Low

EPSS

Percentile

74.3%

This update for xmltooling fixes the following issues:

  • CVE-2018-0486: Fixed a security bug when xmltooling mishandles digital
    signatures of user attribute data, which allows remote attackers to
    obtain sensitive information or conduct impersonation attacks via a
    crafted DTD (bsc#1075975)