Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Debian: DSA-1433-2 Urgent: XML Parser Input Validation Vulnerability

debian
Calendar Grey December 16, 2007
Debian Logo
Resolving stack overflow vulnerabilities in syntax-checker permits unauthorized code execution; patch released for Ubuntu users.
Alin Rad Pop discovered that link-grammar, Carnegie Mellon University's link grammar parser for English, performed insufficient validation within its tokenizer, which could allow...

Summary


For the old stable distribution (sarge), this package was not present.

For the unstable distribution (sid), this problem was fixed in version
4.2.5-1.

We recommend that you upgrade your link-grammar package.


Upgrade instructions
- --------------------wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 4.0 alias etch

Size/MD5 checksum: 742163 798c165b7d7f26e60925c30515c45782
Size/MD5 checksum: 669 535a962c3aefbf92b3d09bd9355d3b57
Size/MD5 checksum: 8231 fa03dfbb7a2e0a47130c9f1385eb48d3

Architecture independent packages:

Size/MD5 checksum: 267530 52ef5d6278b5f8a5a0c08...

Read the Full Advisory

Severity
low
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here