USN-1782-1: libxml2 vulnerability

28 March 2013

libxml2 could be made to hang if it received specially crafted input.

Releases

Packages

Details

It was discovered that libxml2 incorrectly handled XML entity expansion.
An attacker could use this flaw to cause libxml2 to consume large amounts
of resources, resulting in a denial of service.

Update instructions

The problem can be corrected by updating your system to the following package versions:

Ubuntu 8.04
Ubuntu 12.10
Ubuntu 12.04
Ubuntu 11.10
Ubuntu 10.04

After a standard system update you need to reboot your computer to make
all the necessary changes.

References