[Bug 835863] CVE-2012-2807 libxml2 (64-bit): Multiple integer overflows, leading to DoS or possibly other unspecified impact

bugzilla at redhat.com bugzilla at redhat.com
Fri Jan 4 10:35:49 UTC 2013


Product: Security Response
https://bugzilla.redhat.com/show_bug.cgi?id=835863

Huzaifa S. Sidhpurwala <huzaifas at redhat.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Whiteboard|impact=moderate,public=2012 |impact=moderate,public=2012
                   |0626,reported=20120627,sour |0626,reported=20120627,sour
                   |ce=cve,cvss2=5.1/AV:N/AC:H/ |ce=cve,cvss2=5.1/AV:N/AC:H/
                   |Au:N/C:P/I:P/A:P,rhel-5/lib |Au:N/C:P/I:P/A:P,rhel-5/lib
                   |xml2=affected,rhel-6/libxml |xml2=affected,rhel-6/libxml
                   |2=affected,openshift-1/libx |2=affected,openshift-1/libx
                   |ml2=new,fedora-all/libxml2= |ml2=new,fedora-all/libxml2=
                   |affected,fedora-all/libxml= |affected,fedora-all/libxml=
                   |notaffected                 |notaffected
         Whiteboard|rhel-6/mingw32-libxml2=affe |rhel-6/mingw32-libxml2=nota
                   |cted,epel-5/mingw32-libxml2 |ffected,epel-5/mingw32-libx
                   |=affected,fedora-all/mingw3 |ml2=affected,fedora-all/min
                   |2-libxml2=affected          |gw32-libxml2=affected

--- Comment #20 from Huzaifa S. Sidhpurwala <huzaifas at redhat.com> ---
This flaw affects x86_64 version of libxml2 only, however mingw32-libxml2 is
only shipped as x86 (32-bit) and therefore it is not affected.


Statement:

This issue affected the version of libxml2 as shipped with Red Hat Enterprise
Linux 5 and 6 has been addressed via RHSA-2012:1288. This issue does not affect
the version of mingw32-libxml2 as shipped with Red Hat Enterprise Linux 6.

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=Sr33m7fSDB&a=cc_unsubscribe


More information about the mingw mailing list