Overview
Request 479022 accepted
- Added patch libxslt-CVE-2016-4738.patch
* Fix heap overread in xsltFormatNumberConversion: An empty
decimal-separator could cause a heap overread. This can be
exploited to leak a couple of bytes after the buffer that holds
the pattern string.
* bsc#1005591 CVE-2016-4738
- Created by pmonrealgonzalez
- In state accepted
- Package maintainers: david.anes and pmonrealgonzalez
Loading...
Login required, please
login
in order to comment
Request History
pmonrealgonzalez created request
- Added patch libxslt-CVE-2016-4738.patch
* Fix heap overread in xsltFormatNumberConversion: An empty
decimal-separator could cause a heap overread. This can be
exploited to leak a couple of bytes after the buffer that holds
the pattern string.
* bsc#1005591 CVE-2016-4738
scarabeus_iv accepted request