[El-errata] ELSA-2012-1288 Moderate: Oracle Linux 5 libxml2 security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Sep 18 20:32:24 PDT 2012


Oracle Linux Security Advisory ELSA-2012-1288

https://rhn.redhat.com/errata/RHSA-2012-1288.html

The following updated rpms for Oracle Linux 5 have been uploaded to the 
Unbreakable Linux Network:

i386:
libxml2-2.6.26-2.1.15.0.1.el5_8.5.i386.rpm
libxml2-devel-2.6.26-2.1.15.0.1.el5_8.5.i386.rpm
libxml2-python-2.6.26-2.1.15.0.1.el5_8.5.i386.rpm

x86_64:
libxml2-2.6.26-2.1.15.0.1.el5_8.5.i386.rpm
libxml2-2.6.26-2.1.15.0.1.el5_8.5.x86_64.rpm
libxml2-devel-2.6.26-2.1.15.0.1.el5_8.5.i386.rpm
libxml2-devel-2.6.26-2.1.15.0.1.el5_8.5.x86_64.rpm
libxml2-python-2.6.26-2.1.15.0.1.el5_8.5.x86_64.rpm

ia64:
libxml2-2.6.26-2.1.15.0.1.el5_8.5.i386.rpm
libxml2-2.6.26-2.1.15.0.1.el5_8.5.ia64.rpm
libxml2-devel-2.6.26-2.1.15.0.1.el5_8.5.ia64.rpm
libxml2-python-2.6.26-2.1.15.0.1.el5_8.5.ia64.rpm


SRPMS:
http://oss.oracle.com/ol5/SRPMS-updates/libxml2-2.6.26-2.1.15.0.1.el5_8.5.src.rpm



Description of changes:

[2.6.26-2.1.15.0.1.el5_8.5 ]
- Add libxml2-enterprise.patch
- Replaced docs/redhat.gif in tarball with updated image

[2.6.26-2.1.15.el5_8.5]
- Implement some default limits in the XPath module (CVE-2011-1944)
- Change the XPath code to percolate allocation errors (CVE-2011-1944)

[2.6.26-2.1.15.el5_8.4]
- Fix an off by one pointer access (CVE-2011-3102)

[2.6.26-2.1.15.el5_8.3]
- Fix parser local buffers size problems (rhbz#843739)
- Fix entities local buffers size problems (rhbz#843739)
- Fix an error in previous commit (rhbz#843739)





More information about the El-errata mailing list