{"id":33472,"date":"2019-10-23T02:14:21","date_gmt":"2019-10-22T17:14:21","guid":{"rendered":"https:\/\/jirak.net\/wp\/usn-4164-1-libxslt-vulnerabilities\/"},"modified":"2019-10-23T04:34:17","modified_gmt":"2019-10-22T19:34:17","slug":"usn-4164-1-libxslt-vulnerabilities","status":"publish","type":"post","link":"https:\/\/jirak.net\/wp\/usn-4164-1-libxslt-vulnerabilities\/","title":{"rendered":"USN-4164-1: Libxslt vulnerabilities"},"content":{"rendered":"<p>USN-4164-1: Libxslt vulnerabilities<\/p>\n<h2 id=\"libxslt-vulnerabilities\">libxslt vulnerabilities<\/h2>\n<p>A security issue affects these releases of Ubuntu and its derivatives:<\/p>\n<ul>\n<li>Ubuntu 19.10<\/li>\n<li>Ubuntu 19.04<\/li>\n<li>Ubuntu 18.04 LTS<\/li>\n<li>Ubuntu 16.04 LTS<\/li>\n<li>Ubuntu 14.04 ESM<\/li>\n<li>Ubuntu 12.04 ESM<\/li>\n<\/ul>\n<h3 id=\"summary\">Summary<\/h3>\n<p>Several security issues were fixed in Libxslt.<\/p>\n<h3 id=\"software-description\">Software Description<\/h3>\n<ul>\n<li>libxslt &#8211; XSLT processing library<\/li>\n<\/ul>\n<h3 id=\"details\">Details<\/h3>\n<p>It was discovered that Libxslt incorrectly handled certain documents.<br \/>\nAn attacker could possibly use this issue to access sensitive information.<br \/>\nThis issue not affected Ubuntu 19.10. (CVE-2019-13117, CVE-2019-13118)<\/p>\n<p>It was discovered that Libxslt incorrectly handled certain documents.<br \/>\nAn attacker could possibly use this issue to execute arbitrary code.<br \/>\n(CVE-2019-18197)<\/p>\n<h2 id=\"update-instructions\">Update instructions<\/h2>\n<p>The problem can be corrected by updating your system to the following package versions:<\/p>\n<dl>\n<dt>Ubuntu 19.10<\/dt>\n<dd><a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\">libxslt1.1<\/a> &#8211; <a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\/1.1.33-0ubuntu1.1\">1.1.33-0ubuntu1.1<\/a><\/dd>\n<dt>Ubuntu 19.04<\/dt>\n<dd><a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\">libxslt1.1<\/a> &#8211; <a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\/1.1.32-2ubuntu0.2\">1.1.32-2ubuntu0.2<\/a><\/dd>\n<dt>Ubuntu 18.04 LTS<\/dt>\n<dd><a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\">libxslt1.1<\/a> &#8211; <a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\/1.1.29-5ubuntu0.2\">1.1.29-5ubuntu0.2<\/a><\/dd>\n<dt>Ubuntu 16.04 LTS<\/dt>\n<dd><a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\">libxslt1.1<\/a> &#8211; <a href=\"https:\/\/launchpad.net\/ubuntu\/+source\/libxslt\/1.1.28-2.1ubuntu0.3\">1.1.28-2.1ubuntu0.3<\/a><\/dd>\n<dt>Ubuntu 14.04 ESM<\/dt>\n<dd>libxslt1.1 &#8211; 1.1.28-2ubuntu0.2+esm1<\/dd>\n<dt>Ubuntu 12.04 ESM<\/dt>\n<dd>libxslt1.1 &#8211; 1.1.26-8ubuntu1.6<\/dd>\n<\/dl>\n<p>To update your system, please follow these instructions: <a href=\"https:\/\/wiki.ubuntu.com\/Security\/Upgrades\">https:\/\/wiki.ubuntu.com\/Security\/Upgrades<\/a>.<\/p>\n<p>In general, a standard system update will make all the necessary changes.<br \/>\nmake all the necessary changes.<\/p>\n<h2 id=\"references\">References<\/h2>\n<ul>\n<li><a href=\"https:\/\/people.canonical.com\/~ubuntu-security\/cve\/CVE-2019-13117\">CVE-2019-13117<\/a><\/li>\n<li><a href=\"https:\/\/people.canonical.com\/~ubuntu-security\/cve\/CVE-2019-13118\">CVE-2019-13118<\/a><\/li>\n<li><a href=\"https:\/\/people.canonical.com\/~ubuntu-security\/cve\/CVE-2019-18197\">CVE-2019-18197<\/a><\/li>\n<\/ul>\n<p>Source: <a href=\"https:\/\/usn.ubuntu.com\/4164-1\/\" target=\"_blank\" rel=\"noopener noreferrer\">USN-4164-1: Libxslt vulnerabilities<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<div class=\"mh-excerpt\"><p>USN-4164-1: Libxslt vulnerabilities libxslt vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 19.04 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Ubuntu 14.04 ESM Ubuntu 12.04 ESM Summary Several security issues were fixed in Libxslt. Software Description libxslt &#8211; XSLT processing library Details It was discovered that Libxslt incorrectly handled certain documents. An attacker could possibly use this issue to access sensitive information. This issue not affected Ubuntu 19.10. (CVE-2019-13117, CVE-2019-13118) It was discovered that Libxslt incorrectly handled certain documents. An attacker could possibly use this issue to execute arbitrary code. (CVE-2019-18197) Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.10 libxslt1.1 &#8211; 1.1.33-0ubuntu1.1 Ubuntu 19.04 libxslt1.1 &#8211; 1.1.32-2ubuntu0.2 Ubuntu 18.04 LTS libxslt1.1 &#8211; 1.1.29-5ubuntu0.2 Ubuntu 16.04 LTS libxslt1.1 &#8211; 1.1.28-2.1ubuntu0.3 Ubuntu 14.04 ESM libxslt1.1 &#8211; <a class=\"mh-excerpt-more\" href=\"https:\/\/jirak.net\/wp\/usn-4164-1-libxslt-vulnerabilities\/\" title=\"USN-4164-1: Libxslt vulnerabilities\">[ more&#8230; ]<\/a><\/p>\n<\/div>","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[586],"tags":[587],"class_list":["post-33472","post","type-post","status-publish","format-standard","hentry","category-ubuntu-usn","tag-ubuntu-usn"],"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts\/33472","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/comments?post=33472"}],"version-history":[{"count":1,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts\/33472\/revisions"}],"predecessor-version":[{"id":33473,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts\/33472\/revisions\/33473"}],"wp:attachment":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/media?parent=33472"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/categories?post=33472"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/tags?post=33472"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}