Oval Definition:oval:org.opensuse.security:def:80852
Revision Date:2019-02-14Version:1
Title:Security update for rubygem-loofah (Moderate)
Description:

This update for rubygem-loofah fixes the following issues:

Security issues fixed:

- CVE-2018-16468: Fixed XXS by removing the svg animate attribute `from` from the allowlist (bsc#1113969). - CVE-2018-8048: Fixed XSS vulnerability due to unescaped characters by libcxml2 (bsc#1085967).
Family:unixClass:patch
Status:Reference(s):1085967
1113969
CVE-2018-16468
CVE-2018-8048
SUSE-SU-2019:0394-1
Platform(s):SUSE OpenStack Cloud 7
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND ruby2.1-rubygem-loofah-2.0.2-3.5.1 is installed
  • BACK