CESA-2018:3335 -- centos 7 xerces-cID: oval:org.secpod.oval:def:205012 | Date: (C)2021-01-19 (M)2023-07-25 |
Class: PATCH | Family: unix |
Xerces-C is a validating XML parser written in a portable subset of C++. Xerces-C makes it easy to give your application the ability to read and write XML data. A shared library is provided for parsing, generating, manipulating, and validating XML documents. Security Fix: * xerces-c: Stack overflow when parsing deeply nested DTD For more details about the security issue, including the impact, a CVSS score, and other related information, refer to the CVE page listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.6 Release Notes linked from the References section.