Oval Definition:oval:org.opensuse.security:def:58087
Revision Date:2021-03-01Version:1
Title:Security update for perl-XML-Twig (Moderate)
Description:

This update for perl-XML-Twig fixes the following issues:

- Security fix [bsc#1008644, CVE-2016-9180] * Added: the no_xxe option to XML::Twig::new, which causes the parse to fail if external entities are used (to prevent malicious XML to access the filesystem). * Setting expand_external_ents to 0 or -1 currently doesn't work as expected; To completely turn off expanding external entities use no_xxe. * Update documentation for XML::Twig to mention problems with expand_external_ents and add information about new no_xxe argument
Family:unixClass:patch
Status:Reference(s):1008644
1013882
1042037
1045160
1048575
1049825
1052916
1057406
1073230
1076017
1083488
1085114
1085447
1101676
1101677
1101678
1103342
1104662
1109663
1109847
1109893
1110542
1111319
1112368
1112397
1112417
1112421
1112432
1112911
1113296
1115034
1116686
1116995
1118754
1120629
1120630
1120631
1120813
1122319
1127155
1127458
1131823
1132666
1133114
1133145
1134226
1136037
1137977
1138459
1140039
1142772
1144524
1145521
1145692
1149332
1160305
1160467
1160468
1160498
1165784
1166847
1167373
1171878
1172085
1173304
1173998
1176013
1177914
CVE-2016-9180
CVE-2016-9843
CVE-2017-13166
CVE-2017-2885
CVE-2017-7659
CVE-2017-9789
CVE-2018-1000004
CVE-2018-1000802
CVE-2018-1068
CVE-2018-14647
CVE-2018-20532
CVE-2018-20533
CVE-2018-20534
CVE-2018-3058
CVE-2018-3063
CVE-2018-3064
CVE-2018-3066
CVE-2018-3143
CVE-2018-3156
CVE-2018-3174
CVE-2018-3251
CVE-2018-3282
CVE-2018-7566
CVE-2019-1010180
CVE-2019-10160
CVE-2019-11365
CVE-2019-11366
CVE-2019-13456
CVE-2019-14896
CVE-2019-14897
CVE-2019-17015
CVE-2019-17016
CVE-2019-17017
CVE-2019-17021
CVE-2019-17022
CVE-2019-17024
CVE-2019-17026
CVE-2019-17185
CVE-2019-18860
CVE-2019-2529
CVE-2019-2537
CVE-2019-3840
CVE-2019-6116
CVE-2020-10029
CVE-2020-13753
CVE-2020-14059
CVE-2020-15999
CVE-2020-9802
CVE-2020-9803
CVE-2020-9805
CVE-2020-9806
CVE-2020-9807
CVE-2020-9843
CVE-2020-9850
SUSE-SU-2017:2129-1
SUSE-SU-2018:0261-1
SUSE-SU-2018:1031-1
SUSE-SU-2019:0144-1
SUSE-SU-2019:0553-1
SUSE-SU-2019:1091-1
SUSE-SU-2019:2048-1
SUSE-SU-2019:2053-1
SUSE-SU-2019:2265-1
SUSE-SU-2019:2914-1
SUSE-SU-2020:0068-1
SUSE-SU-2020:1803-1
SUSE-SU-2020:2069-1
SUSE-SU-2020:2391-1
SUSE-SU-2020:2998-1
SUSE-SU-2020:3024-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND liblzo2-2-2.10-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • bluez-5.48-lp151.8.6 is installed
  • OR bluez-auto-enable-devices-5.48-lp151.8.6 is installed
  • OR bluez-cups-5.48-lp151.8.6 is installed
  • OR bluez-devel-5.48-lp151.8.6 is installed
  • OR bluez-devel-32bit-5.48-lp151.8.6 is installed
  • OR bluez-test-5.48-lp151.8.6 is installed
  • OR libbluetooth3-5.48-lp151.8.6 is installed
  • OR libbluetooth3-32bit-5.48-lp151.8.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_121-default-5-2 is installed
  • OR kgraft-patch-3_12_74-60_64_121-xen-5-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_36-5-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libsoup-2.54.1-5.3 is installed
  • OR libsoup-2_4-1-2.54.1-5.3 is installed
  • OR libsoup-2_4-1-32bit-2.54.1-5.3 is installed
  • OR libsoup-lang-2.54.1-5.3 is installed
  • OR typelib-1_0-Soup-2_4-2.54.1-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libmysqlclient18-10.0.38-29.27 is installed
  • OR libmysqlclient18-32bit-10.0.38-29.27 is installed
  • OR mariadb-10.0.38-29.27 is installed
  • OR mariadb-client-10.0.38-29.27 is installed
  • OR mariadb-errormessages-10.0.38-29.27 is installed
  • OR mariadb-tools-10.0.38-29.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libdcerpc-binding0-4.4.2-38.25 is installed
  • OR libdcerpc-binding0-32bit-4.4.2-38.25 is installed
  • OR libdcerpc0-4.4.2-38.25 is installed
  • OR libdcerpc0-32bit-4.4.2-38.25 is installed
  • OR libndr-krb5pac0-4.4.2-38.25 is installed
  • OR libndr-krb5pac0-32bit-4.4.2-38.25 is installed
  • OR libndr-nbt0-4.4.2-38.25 is installed
  • OR libndr-nbt0-32bit-4.4.2-38.25 is installed
  • OR libndr-standard0-4.4.2-38.25 is installed
  • OR libndr-standard0-32bit-4.4.2-38.25 is installed
  • OR libndr0-4.4.2-38.25 is installed
  • OR libndr0-32bit-4.4.2-38.25 is installed
  • OR libnetapi0-4.4.2-38.25 is installed
  • OR libnetapi0-32bit-4.4.2-38.25 is installed
  • OR libsamba-credentials0-4.4.2-38.25 is installed
  • OR libsamba-credentials0-32bit-4.4.2-38.25 is installed
  • OR libsamba-errors0-4.4.2-38.25 is installed
  • OR libsamba-errors0-32bit-4.4.2-38.25 is installed
  • OR libsamba-hostconfig0-4.4.2-38.25 is installed
  • OR libsamba-hostconfig0-32bit-4.4.2-38.25 is installed
  • OR libsamba-passdb0-4.4.2-38.25 is installed
  • OR libsamba-passdb0-32bit-4.4.2-38.25 is installed
  • OR libsamba-util0-4.4.2-38.25 is installed
  • OR libsamba-util0-32bit-4.4.2-38.25 is installed
  • OR libsamdb0-4.4.2-38.25 is installed
  • OR libsamdb0-32bit-4.4.2-38.25 is installed
  • OR libsmbclient0-4.4.2-38.25 is installed
  • OR libsmbclient0-32bit-4.4.2-38.25 is installed
  • OR libsmbconf0-4.4.2-38.25 is installed
  • OR libsmbconf0-32bit-4.4.2-38.25 is installed
  • OR libsmbldap0-4.4.2-38.25 is installed
  • OR libsmbldap0-32bit-4.4.2-38.25 is installed
  • OR libtevent-util0-4.4.2-38.25 is installed
  • OR libtevent-util0-32bit-4.4.2-38.25 is installed
  • OR libwbclient0-4.4.2-38.25 is installed
  • OR libwbclient0-32bit-4.4.2-38.25 is installed
  • OR samba-4.4.2-38.25 is installed
  • OR samba-client-4.4.2-38.25 is installed
  • OR samba-client-32bit-4.4.2-38.25 is installed
  • OR samba-doc-4.4.2-38.25 is installed
  • OR samba-libs-4.4.2-38.25 is installed
  • OR samba-libs-32bit-4.4.2-38.25 is installed
  • OR samba-winbind-4.4.2-38.25 is installed
  • OR samba-winbind-32bit-4.4.2-38.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_56-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_17-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • automake-1.13.4-6 is installed
  • OR m4-1.4.16-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND squid-3.5.21-26.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND perl-XML-Twig-3.44-5.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • freeradius-server-3.0.15-2.14 is installed
  • OR freeradius-server-doc-3.0.15-2.14 is installed
  • OR freeradius-server-krb5-3.0.15-2.14 is installed
  • OR freeradius-server-ldap-3.0.15-2.14 is installed
  • OR freeradius-server-libs-3.0.15-2.14 is installed
  • OR freeradius-server-mysql-3.0.15-2.14 is installed
  • OR freeradius-server-perl-3.0.15-2.14 is installed
  • OR freeradius-server-postgresql-3.0.15-2.14 is installed
  • OR freeradius-server-python-3.0.15-2.14 is installed
  • OR freeradius-server-sqlite-3.0.15-2.14 is installed
  • OR freeradius-server-utils-3.0.15-2.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libwireshark9-2.4.15-48.48 is installed
  • OR libwiretap7-2.4.15-48.48 is installed
  • OR libwscodecs1-2.4.15-48.48 is installed
  • OR libwsutil8-2.4.15-48.48 is installed
  • OR wireshark-2.4.15-48.48 is installed
  • OR wireshark-gtk-2.4.15-48.48 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND ruby-2.1-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND atftp-0.7.0-160.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND ucode-intel-20190618-13.47 is installed
  • BACK