Advisories Blog | G5 Cyber Security

Gentoo Linux Security Advisory 200903-19

Gentoo Linux Security Advisory GLSA 200903-19 – An error in Xerces-C++ allows for a Denial of Service via malicious XML schema files. Frank Rast reported that the XML parser in Xerces-C++ does not correctly handle an XML schema definition with a large maxOccurs value, which triggers excessive memory consumption during the validation of an XML file. Versions less than 3.0.0-r1 are affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/75542/glsa-200903-19.txt

Source: https://packetstormsecurity.com/files/75542/Gentoo-Linux-Security-Advisory-200903-19.html

Exit mobile version