ELSA-2012-1265

ELSA-2012-1265 - libxslt security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2012-09-13

Description


[1.1.26-2.0.2.el6_3.1]
- Increment release to avoid ULN conflict with previous release.

[1.1.26-2.0.1.el6_3.1]
- Added libxslt-oracle-enterprise.patch and replaced doc/redhat.gif in tarball

[1.1.26-2.el6_3.1]
- fixes CVE-2011-1202 CVE-2011-3970 CVE-2012-2825 CVE-2012-2871 CVE-2012-2870
- Fix direct pattern matching bug
- Fix popping of vars in xsltCompilerNodePop
- Fix bug 602515
- Fix generate-id() to not expose object addresses (CVE-2011-1202)
- Fix some case of pattern parsing errors (CVE-2011-3970)
- Fix a bug in selecting XSLT elements (CVE-2012-2825)
- Fix portability to upcoming libxml2-2.9.0
- Fix default template processing on namespace nodes (CVE-2012-2871)
- Cleanup of the pattern compilation code (CVE-2012-2870)
- Hardening of code checking node types in various entry point (CVE-2012-2870)
- Hardening of code checking node types in EXSLT (CVE-2012-2870)
- Fix system-property with unknown namespace
- Xsltproc should return an error code if xinclude fails
- Fix a dictionary string usage
- Avoid a heap use after free error


Related CVEs


CVE-2011-1202
CVE-2011-3970
CVE-2012-2825
CVE-2012-2870
CVE-2012-2871

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) libxslt-1.1.17-4.0.1.el5_8.3.src.rpme65d44c59889b5291607df2521eecde0-
libxslt-1.1.17-4.0.1.el5_8.3.i386.rpma6e1ee9344cdb62cbfc66ac051f1004a-
libxslt-devel-1.1.17-4.0.1.el5_8.3.i386.rpm87a37151711db525d6c9c71b41304eed-
libxslt-python-1.1.17-4.0.1.el5_8.3.i386.rpmd923916495857531a7237ad6e014d9f0-
Oracle Linux 5 (ia64) libxslt-1.1.17-4.0.1.el5_8.3.src.rpme65d44c59889b5291607df2521eecde0-
libxslt-1.1.17-4.0.1.el5_8.3.i386.rpma6e1ee9344cdb62cbfc66ac051f1004a-
libxslt-1.1.17-4.0.1.el5_8.3.ia64.rpm81266b7ab530ed47d88513783029bc76-
libxslt-devel-1.1.17-4.0.1.el5_8.3.ia64.rpm2e83cfe6b92ae1768e4f366d59bcb5fd-
libxslt-python-1.1.17-4.0.1.el5_8.3.ia64.rpm2f3b8398886f0023c18c1090e5171fbb-
Oracle Linux 5 (x86_64) libxslt-1.1.17-4.0.1.el5_8.3.src.rpme65d44c59889b5291607df2521eecde0-
libxslt-1.1.17-4.0.1.el5_8.3.i386.rpma6e1ee9344cdb62cbfc66ac051f1004a-
libxslt-1.1.17-4.0.1.el5_8.3.x86_64.rpm819e87f42ed06a00ebc3137ad2b25e3f-
libxslt-devel-1.1.17-4.0.1.el5_8.3.i386.rpm87a37151711db525d6c9c71b41304eed-
libxslt-devel-1.1.17-4.0.1.el5_8.3.x86_64.rpm0763cb046cf3822c57d5809570222943-
libxslt-python-1.1.17-4.0.1.el5_8.3.x86_64.rpmc73f7515f50e48bcda5278ce297e631a-
Oracle Linux 6 (i386) libxslt-1.1.26-2.0.2.el6_3.1.src.rpmb18cf81ebd93e2c8e8a94abf689112a6-
libxslt-1.1.26-2.0.2.el6_3.1.i686.rpm7df997b7292c956b8200168a7b5cec87-
libxslt-devel-1.1.26-2.0.2.el6_3.1.i686.rpmf8e7edff01cb5d057b19086883c74d2d-
libxslt-python-1.1.26-2.0.2.el6_3.1.i686.rpm443a66f05e669fb12ff064f63402dc2b-
Oracle Linux 6 (x86_64) libxslt-1.1.26-2.0.2.el6_3.1.src.rpmb18cf81ebd93e2c8e8a94abf689112a6-
libxslt-1.1.26-2.0.2.el6_3.1.i686.rpm7df997b7292c956b8200168a7b5cec87-
libxslt-1.1.26-2.0.2.el6_3.1.x86_64.rpmf02eede420a61483cf7f65daf66d538e-
libxslt-devel-1.1.26-2.0.2.el6_3.1.i686.rpmf8e7edff01cb5d057b19086883c74d2d-
libxslt-devel-1.1.26-2.0.2.el6_3.1.x86_64.rpmb3728353e9b8c0f6cf8ee4427633fa0b-
libxslt-python-1.1.26-2.0.2.el6_3.1.x86_64.rpmac392273743a6dc5670283f54176bee4-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete