USN-3356-2: Expat vulnerability
USN-3356-2: Expat vulnerability Ubuntu Security Notice USN-3356-2 19th July, 2017 expat vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary Expat could be made to hang if it received specially crafted input. Software description expat – XML parsing C library Details USN-3356-1 fix a vulnerability in Expat. This update providesthe corresponding udpate for Ubuntu 12.04 ESM. Original advisory details: It was discovered that Expat incorrectly handled certain external entities. A remote attacker could possibly use this issue to cause Expat to hang, resulting in a denial of service. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 12.04 LTS: libexpat1 2.0.1-7.2ubuntu1.5 lib64expat1 2.0.1-7.2ubuntu1.5 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References [ more… ]