MDVSA-2009:219 -- Mandriva kompozerID: oval:org.secpod.oval:def:300613 | Date: (C)2012-01-07 (M)2024-02-29 |
Class: PATCH | Family: unix |
A vulnerability was found in xmltok_impl.c that with specially crafted XML could be exploited and lead to a denial of service attack. Related to CVE-2009-2625. Additionally on 2009.0 a patch was added to prevent kompozer from crashing , on 2009.1 a format string patch was added to make it build with the -Wformat -Werror=format-security gcc optimization switch added in 2009.1 This update fixes these issues.
Platform: |
Mandriva Linux 2009.0 |
Mandriva Linux 2009.1 |