USN-1153-1: libxml2 vulnerability

16 June 2011

libxml2 vulnerability

Packages

  • libxml2 - GNOME XML library

Details

Chris Evans discovered that libxml2 incorrectly handled memory allocation.
If an application using libxml2 opened a specially crafted XML file, an
attacker could cause a denial of service or possibly execute code as the
user invoking the program.

Update instructions

The problem can be corrected by updating your system to the following package versions:

Ubuntu 8.04
Ubuntu 11.04
Ubuntu 10.10
Ubuntu 10.04

After a standard system update you need to restart your session to make
all the necessary changes.

References