Oval Definition:oval:org.opensuse.security:def:81642
Revision Date:2018-03-16Version:1
Title:Security update for xmltooling (Moderate)
Description:

This update for xmltooling fixes the following issues:

- CVE-2018-0489: Fixed a security bug when xmltooling mishandled digital signatures of user data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via crafted XML data. NOTE: this issue exists because of an incomplete fix for CVE-2018-0486. (bsc#1083247)
Family:unixClass:patch
Status:Reference(s):1083247
CVE-2018-0486
CVE-2018-0489
SUSE-SU-2018:0720-1
Platform(s):SUSE Linux Enterprise Server 12 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libxmltooling6-1.5.6-3.6.1 is installed
  • OR xmltooling-schemas-1.5.6-3.6.1 is installed
  • BACK