DSA-2580-1 libxml2 -- buffer overflow

Related Vulnerabilities: CVE-2012-5134  

Jueri Aedla discovered a buffer overflow in the libxml XML library, which could result in the execution of arbitrary code. For the stable distribution (squeeze), this problem has been fixed in version 2.7.8.dfsg-2+squeeze6. For the unstable distribution (sid), this problem has been fixed in version 2.8.0+dfsg1-7. We recommend that you upgrade your libxml2 packages.

Debian Security Advisory

DSA-2580-1 libxml2 -- buffer overflow

Date Reported:
02 Dec 2012
Affected Packages:
libxml2
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2012-5134.
More information:

Jueri Aedla discovered a buffer overflow in the libxml XML library, which could result in the execution of arbitrary code.

For the stable distribution (squeeze), this problem has been fixed in version 2.7.8.dfsg-2+squeeze6.

For the unstable distribution (sid), this problem has been fixed in version 2.8.0+dfsg1-7.

We recommend that you upgrade your libxml2 packages.