Oval Definition:oval:com.redhat.rhsa:def:20091572
Revision Date:2009-11-10Version:638
Title:RHSA-2009:1572: 4Suite security update (Moderate)
Description:The 4Suite package contains XML-related tools and libraries for Python, including 4DOM, 4XSLT, 4XPath, 4RDF, and 4XPointer.

  • A buffer over-read flaw was found in the way 4Suite's XML parser handles malformed UTF-8 sequences when processing XML files. A specially-crafted XML file could cause applications using the 4Suite library to crash while parsing the file. (CVE-2009-3720)

    Note: In Red Hat Enterprise Linux 3, this flaw only affects a non-default configuration of the 4Suite package: configurations where the beta version of the cDomlette module is enabled.

    All 4Suite users should upgrade to this updated package, which contains a backported patch to correct this issue. After installing the updated package, applications using the 4Suite XML-related tools and libraries must be restarted for the update to take effect.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2009-3720
    RHSA-2009:1572
    RHSA-2009:1572-02
    RHSA-2009:1572-02
    Platform(s):Red Hat Enterprise Linux 3
    Red Hat Enterprise Linux 4
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND 4Suite is earlier than 0:0.11.1-15
  • AND 4Suite is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND 4Suite is earlier than 0:1.0-3.el4_8.1
  • AND 4Suite is signed with Red Hat master key
  • Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND 4Suite is earlier than 0:1.0-3.el4_8.1
  • AND 4Suite is signed with Red Hat redhatrelease2 key
  • BACK