Oval Definition:oval:com.redhat.rhsa:def:20150100
Revision Date:2015-01-28Version:637
Title:RHSA-2015:0100: libyaml security update (Moderate)
Description:YAML is a data serialization format designed for human readability and interaction with scripting languages. LibYAML is a YAML parser and emitter written in C.

  • An assertion failure was found in the way the libyaml library parsed wrapped strings. An attacker able to load specially crafted YAML input into an application using libyaml could cause the application to crash. (CVE-2014-9130)

    All libyaml users are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. All running applications linked against the libyaml library must be restarted for this update to take effect.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2014-9130
    RHSA-2015:0100
    RHSA-2015:0100-00
    RHSA-2015:0100-02
    Platform(s):Red Hat Enterprise Linux 6
    Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • libyaml is earlier than 0:0.1.4-11.el7_0
  • AND libyaml is signed with Red Hat redhatrelease2 key
  • libyaml-devel is earlier than 0:0.1.4-11.el7_0
  • AND libyaml-devel is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND
  • libyaml is earlier than 0:0.1.3-4.el6_6
  • AND libyaml is signed with Red Hat redhatrelease2 key
  • libyaml-devel is earlier than 0:0.1.3-4.el6_6
  • AND libyaml-devel is signed with Red Hat redhatrelease2 key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 7 Client is installed
  • OR Red Hat Enterprise Linux 7 Server is installed
  • OR Red Hat Enterprise Linux 7 Workstation is installed
  • OR Red Hat Enterprise Linux 7 ComputeNode is installed
  • AND
  • libyaml is earlier than 0:0.1.4-11.el7_0
  • AND libyaml is signed with Red Hat redhatrelease2 key
  • libyaml-devel is earlier than 0:0.1.4-11.el7_0
  • AND libyaml-devel is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 6 Client is installed
  • OR Red Hat Enterprise Linux 6 Server is installed
  • OR Red Hat Enterprise Linux 6 Workstation is installed
  • OR Red Hat Enterprise Linux 6 ComputeNode is installed
  • AND
  • libyaml is earlier than 0:0.1.3-4.el6_6
  • AND libyaml is signed with Red Hat redhatrelease2 key
  • libyaml-devel is earlier than 0:0.1.3-4.el6_6
  • AND libyaml-devel is signed with Red Hat redhatrelease2 key
  • BACK