Oval Definition:oval:org.mitre.oval:def:23896
Revision Date:2014-07-21Version:6
Title:DSA-2885-1 libyaml-libyaml-perl - security update
Description:Ivan Fratric of the Google Security Team discovered a heap-based buffer overflow vulnerability in LibYAML, a fast YAML 1.1 parser and emitter library. A remote attacker could provide a specially-crafted YAML document that, when parsed by an application using libyaml, would cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2014-2525
DSA-2885-1
Platform(s):Debian GNU/kFreeBSD 6.0
Debian GNU/kFreeBSD 7
Debian GNU/Linux 6.0
Debian GNU/Linux 7
Product(s):libyaml-libyaml-perl
Definition Synopsis
  • Debian 6.0 release section
  • Debian 6.0 is installed
  • AND GNU/Linux or GNU/kFreeBSD kernel
  • Debian GNU/Linux is installed
  • OR Debian GNU/kFreeBSD is installed
  • AND libyaml-libyaml-perl DPKG is earlier than 0:0.33-1+squeeze3
  • Debian 7.x release section
  • Debian 7 is installed
  • AND GNU/Linux or GNU/kFreeBSD kernel
  • Debian GNU/Linux is installed
  • OR Debian GNU/kFreeBSD is installed
  • AND libyaml-libyaml-perl DPKG is earlier than 0:0.38-3+deb7u2
  • BACK