Skip to content

Security Advisory 重要(Important):libxml2のセキュリティアップデート

アップデートID:

RHSA-2008:0032-3

タイプ:Security Advisory
重大性:重要/Important
発行日:2008年1月11日
最終更新日:2008年1月11日
影響のある製品: RHEL Desktop Workstation (v. 5 client)
Red Hat Desktop (v. 3)
Red Hat Desktop (v. 4)
Red Hat Enterprise Linux (v. 5 server)
Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux AS (v. 3)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux Desktop (v. 5 client)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux ES (v. 3)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux WS (v. 2.1)
Red Hat Enterprise Linux WS (v. 3)
Red Hat Enterprise Linux WS (v. 4)
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor
OVAL: https://rhn.redhat.com/errata/RHSA-2008-0032.html
CVEs (cve.mitre.org): CVE-2007-6284


詳細

セキュリティ問題を修正したlibxml2のアップデートパッケージが利用可能になりました。

このアップデートは、レッドハットセキュリティ対策チームによって、深刻度「重要(Important)」のセキュリティ問題と評価されています。

libxml2パッケージはXMLファイルの操作を可能にするライブラリを提供します。XMLおよびHTMLファイルの読み取り、変更、および書き込みのサポートが含まれています。

libxml2が特定のコンテンツを処理する方法にサービス拒否の欠陥が見つかりました。libxml2にリンクされているアプリケーションが不正なXMLコンテンツを処理すると、アプリケーションが応答を停止する可能性があります。(CVE-2007-6284)

Red Hatは、この問題の責任ある公表について、Googleセキュリティチームに感謝します。

ユーザは、この問題を解決するバックポートパッチを含む上記アップデートパッケージにアップグレードしてください。


解決法


このアップデートを適用する前に、ご使用のシステムに関係するリリース済みのエラータ/Errataがすべて適用されていることを確認してください。

このアップデートは、Red Hat Networkを通じて入手できます。


アップデートパッケージ

RHEL Desktop Workstation (v. 5 client)

IA-32:
libxml2-devel-2.6.26-2.1.2.1.i386.rpm     9674d0b337adca0de843749ff8e98f28
 
x86_64:
libxml2-devel-2.6.26-2.1.2.1.i386.rpm     9674d0b337adca0de843749ff8e98f28
libxml2-devel-2.6.26-2.1.2.1.x86_64.rpm     f53af8a54da8eb0d06bcc2d0e28bb2f9
 
Red Hat Desktop (v. 3)

SRPMS:
libxml2-2.5.10-8.src.rpm     939a1f46278baa95b3de3723d40019c4
 
IA-32:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-devel-2.5.10-8.i386.rpm     550e452b03253ccaf7ba52f7511ebc5d
libxml2-python-2.5.10-8.i386.rpm     b929b1a63bd09f9b3d21e96fc670d5c5
 
x86_64:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-2.5.10-8.x86_64.rpm     c91c6928783c63df7f70d8277f751925
libxml2-devel-2.5.10-8.x86_64.rpm     18f09a3c5cda2b624f49500fe6e0d684
libxml2-python-2.5.10-8.x86_64.rpm     1ae1e24b69c16a0c58ef19163577ae05
 
Red Hat Desktop (v. 4)

SRPMS:
libxml2-2.6.16-10.1.src.rpm     df1702b32a9d46f37012d2dce590a225
 
IA-32:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-devel-2.6.16-10.1.i386.rpm     af6b81c1d8a273438e5ae1e3eb2a3614
libxml2-python-2.6.16-10.1.i386.rpm     49f53c4b4092c22af8763eedd060e5c6
 
x86_64:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-2.6.16-10.1.x86_64.rpm     9b7c14ccd048aa9330e5761100445ff3
libxml2-devel-2.6.16-10.1.x86_64.rpm     139fb3afc29df8ce2c4c9c70da120b52
libxml2-python-2.6.16-10.1.x86_64.rpm     12794c8a639d507cbd447e45da5af69f
 
Red Hat Enterprise Linux (v. 5 server)

SRPMS:
libxml2-2.6.26-2.1.2.1.src.rpm     5aad06f5da72005bfc76afc3e58cd814
 
IA-32:
libxml2-2.6.26-2.1.2.1.i386.rpm     dd2667db8b0236f21e782c7894ae3bb5
libxml2-devel-2.6.26-2.1.2.1.i386.rpm     9674d0b337adca0de843749ff8e98f28
libxml2-python-2.6.26-2.1.2.1.i386.rpm     a47d6267d1e259b4ef88bc68e9257fdc
 
IA-64:
libxml2-2.6.26-2.1.2.1.i386.rpm     dd2667db8b0236f21e782c7894ae3bb5
libxml2-2.6.26-2.1.2.1.ia64.rpm     c793fd227f9fdfb4d36e9b6d8ecbe1c6
libxml2-devel-2.6.26-2.1.2.1.ia64.rpm     558748461abbe48525187ed7f42a7470
libxml2-python-2.6.26-2.1.2.1.ia64.rpm     c368065abb6c751ba911ca1f2550a8d5
 
PPC:
libxml2-2.6.26-2.1.2.1.ppc.rpm     8b00fc9eb57824013c51c7d967e88cad
libxml2-2.6.26-2.1.2.1.ppc64.rpm     a52fde0869606e88c833d0adfb2db1c4
libxml2-devel-2.6.26-2.1.2.1.ppc.rpm     521398b3ea427754bfc9da8af5a9d0c7
libxml2-devel-2.6.26-2.1.2.1.ppc64.rpm     753900c310e893034fe08b58485ef0ce
libxml2-python-2.6.26-2.1.2.1.ppc.rpm     e13bcd85d63441df6ddd72395972301b
 
s390x:
libxml2-2.6.26-2.1.2.1.s390.rpm     ac4327028f72fbffa57813e205a45f81
libxml2-2.6.26-2.1.2.1.s390x.rpm     f34dfc42f6c885030c6010b45854ad20
libxml2-devel-2.6.26-2.1.2.1.s390.rpm     4f11006337f0b6fe5a121ad3e84afdfb
libxml2-devel-2.6.26-2.1.2.1.s390x.rpm     f2f98bad020a2a2ac493292be4f775de
libxml2-python-2.6.26-2.1.2.1.s390x.rpm     7a7529770b0f9e4bd47960d191594f96
 
x86_64:
libxml2-2.6.26-2.1.2.1.i386.rpm     dd2667db8b0236f21e782c7894ae3bb5
libxml2-2.6.26-2.1.2.1.x86_64.rpm     54cfd128ed6858a66b90b4c0b6003572
libxml2-devel-2.6.26-2.1.2.1.i386.rpm     9674d0b337adca0de843749ff8e98f28
libxml2-devel-2.6.26-2.1.2.1.x86_64.rpm     f53af8a54da8eb0d06bcc2d0e28bb2f9
libxml2-python-2.6.26-2.1.2.1.x86_64.rpm     b3c2faaae4d607d7643ed3dac189a01b
 
Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
libxml2-2.4.19-7.ent.src.rpm     bf403177cee141a80b50b04353835063
 
IA-32:
libxml2-2.4.19-7.ent.i386.rpm     dd19c6d8d0a0997e7c6a14263e1ba337
libxml2-devel-2.4.19-7.ent.i386.rpm     4c863c4329554aa89507d87490482b5b
libxml2-python-2.4.19-7.ent.i386.rpm     d77516e1c8a462788f46b671e615d92a
 
IA-64:
libxml2-2.4.19-7.ent.ia64.rpm     066c4d23cc0a462bf5bd83bcf6c17de5
libxml2-devel-2.4.19-7.ent.ia64.rpm     5ab27dd1feec0a78e205bf8972724897
libxml2-python-2.4.19-7.ent.ia64.rpm     34210f74f671ced0e116310f12d2a6f7
 
Red Hat Enterprise Linux AS (v. 3)

SRPMS:
libxml2-2.5.10-8.src.rpm     939a1f46278baa95b3de3723d40019c4
 
IA-32:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-devel-2.5.10-8.i386.rpm     550e452b03253ccaf7ba52f7511ebc5d
libxml2-python-2.5.10-8.i386.rpm     b929b1a63bd09f9b3d21e96fc670d5c5
 
IA-64:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-2.5.10-8.ia64.rpm     ae130cec05b894f05f807c649d2a960c
libxml2-devel-2.5.10-8.ia64.rpm     83b68dddcdd794c3e5b2f99c273ca7af
libxml2-python-2.5.10-8.ia64.rpm     1ad01e72c0cf281ab1caca3e182cc496
 
PPC:
libxml2-2.5.10-8.ppc.rpm     74fdcdf55373637eaad0bc88b0259cec
libxml2-2.5.10-8.ppc64.rpm     5ad4b678aac630deaec87ce61a717d9c
libxml2-devel-2.5.10-8.ppc.rpm     ee6aca2b43b4f72f264c3f387f09c4fc
libxml2-python-2.5.10-8.ppc.rpm     63b0fff29d44b576db2eb901f3056ae8
 
s390:
libxml2-2.5.10-8.s390.rpm     2c310f385d3e1381eb311529755568f8
libxml2-devel-2.5.10-8.s390.rpm     028c3b9a54a6598b38de5db8eee082f1
libxml2-python-2.5.10-8.s390.rpm     a254ce6989fa528eb505d3819cde490d
 
s390x:
libxml2-2.5.10-8.s390.rpm     2c310f385d3e1381eb311529755568f8
libxml2-2.5.10-8.s390x.rpm     386227756a2f297cdb6b480a618332d7
libxml2-devel-2.5.10-8.s390x.rpm     9f832342b7fbe529f466e659482ecf44
libxml2-python-2.5.10-8.s390x.rpm     234ebaf97ff36e3b97e52a71cf030170
 
x86_64:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-2.5.10-8.x86_64.rpm     c91c6928783c63df7f70d8277f751925
libxml2-devel-2.5.10-8.x86_64.rpm     18f09a3c5cda2b624f49500fe6e0d684
libxml2-python-2.5.10-8.x86_64.rpm     1ae1e24b69c16a0c58ef19163577ae05
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
libxml2-2.6.16-10.1.src.rpm     df1702b32a9d46f37012d2dce590a225
 
IA-32:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-devel-2.6.16-10.1.i386.rpm     af6b81c1d8a273438e5ae1e3eb2a3614
libxml2-python-2.6.16-10.1.i386.rpm     49f53c4b4092c22af8763eedd060e5c6
 
IA-64:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-2.6.16-10.1.ia64.rpm     a18fb1e04d010da00b0f3e9664c3f51e
libxml2-devel-2.6.16-10.1.ia64.rpm     466f12bd7265c7e7090ac2f93a2e14e8
libxml2-python-2.6.16-10.1.ia64.rpm     ec54da4642cad4e3a1c32f81ed1370b1
 
PPC:
libxml2-2.6.16-10.1.ppc.rpm     f81d6b0405bd9592102d20ba634b9753
libxml2-2.6.16-10.1.ppc64.rpm     7264152db859edf8f458b3c6e6b794b6
libxml2-devel-2.6.16-10.1.ppc.rpm     180116c0c42dcdaaa24a8757b08433a2
libxml2-python-2.6.16-10.1.ppc.rpm     20fddfb651c46aa8a390f3e347b98a6c
 
s390:
libxml2-2.6.16-10.1.s390.rpm     c80751b866903d8c1da9496fd8cbdd26
libxml2-devel-2.6.16-10.1.s390.rpm     0dcab8265a50a54e537d4744d73d032f
libxml2-python-2.6.16-10.1.s390.rpm     35a3d50e33489e3511dd034e711951ab
 
s390x:
libxml2-2.6.16-10.1.s390.rpm     c80751b866903d8c1da9496fd8cbdd26
libxml2-2.6.16-10.1.s390x.rpm     c44f77f4daaad13c4e2e86d38539985a
libxml2-devel-2.6.16-10.1.s390x.rpm     2f9c80aad9567fe6646b06282c96c466
libxml2-python-2.6.16-10.1.s390x.rpm     bdcd60273043c391877153898474ef20
 
x86_64:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-2.6.16-10.1.x86_64.rpm     9b7c14ccd048aa9330e5761100445ff3
libxml2-devel-2.6.16-10.1.x86_64.rpm     139fb3afc29df8ce2c4c9c70da120b52
libxml2-python-2.6.16-10.1.x86_64.rpm     12794c8a639d507cbd447e45da5af69f
 
Red Hat Enterprise Linux Desktop (v. 5 client)

SRPMS:
libxml2-2.6.26-2.1.2.1.src.rpm     5aad06f5da72005bfc76afc3e58cd814
 
IA-32:
libxml2-2.6.26-2.1.2.1.i386.rpm     dd2667db8b0236f21e782c7894ae3bb5
libxml2-python-2.6.26-2.1.2.1.i386.rpm     a47d6267d1e259b4ef88bc68e9257fdc
 
x86_64:
libxml2-2.6.26-2.1.2.1.i386.rpm     dd2667db8b0236f21e782c7894ae3bb5
libxml2-2.6.26-2.1.2.1.x86_64.rpm     54cfd128ed6858a66b90b4c0b6003572
libxml2-python-2.6.26-2.1.2.1.x86_64.rpm     b3c2faaae4d607d7643ed3dac189a01b
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
libxml2-2.4.19-7.ent.src.rpm     bf403177cee141a80b50b04353835063
 
IA-32:
libxml2-2.4.19-7.ent.i386.rpm     dd19c6d8d0a0997e7c6a14263e1ba337
libxml2-devel-2.4.19-7.ent.i386.rpm     4c863c4329554aa89507d87490482b5b
libxml2-python-2.4.19-7.ent.i386.rpm     d77516e1c8a462788f46b671e615d92a
 
Red Hat Enterprise Linux ES (v. 3)

SRPMS:
libxml2-2.5.10-8.src.rpm     939a1f46278baa95b3de3723d40019c4
 
IA-32:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-devel-2.5.10-8.i386.rpm     550e452b03253ccaf7ba52f7511ebc5d
libxml2-python-2.5.10-8.i386.rpm     b929b1a63bd09f9b3d21e96fc670d5c5
 
IA-64:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-2.5.10-8.ia64.rpm     ae130cec05b894f05f807c649d2a960c
libxml2-devel-2.5.10-8.ia64.rpm     83b68dddcdd794c3e5b2f99c273ca7af
libxml2-python-2.5.10-8.ia64.rpm     1ad01e72c0cf281ab1caca3e182cc496
 
x86_64:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-2.5.10-8.x86_64.rpm     c91c6928783c63df7f70d8277f751925
libxml2-devel-2.5.10-8.x86_64.rpm     18f09a3c5cda2b624f49500fe6e0d684
libxml2-python-2.5.10-8.x86_64.rpm     1ae1e24b69c16a0c58ef19163577ae05
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
libxml2-2.6.16-10.1.src.rpm     df1702b32a9d46f37012d2dce590a225
 
IA-32:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-devel-2.6.16-10.1.i386.rpm     af6b81c1d8a273438e5ae1e3eb2a3614
libxml2-python-2.6.16-10.1.i386.rpm     49f53c4b4092c22af8763eedd060e5c6
 
IA-64:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-2.6.16-10.1.ia64.rpm     a18fb1e04d010da00b0f3e9664c3f51e
libxml2-devel-2.6.16-10.1.ia64.rpm     466f12bd7265c7e7090ac2f93a2e14e8
libxml2-python-2.6.16-10.1.ia64.rpm     ec54da4642cad4e3a1c32f81ed1370b1
 
x86_64:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-2.6.16-10.1.x86_64.rpm     9b7c14ccd048aa9330e5761100445ff3
libxml2-devel-2.6.16-10.1.x86_64.rpm     139fb3afc29df8ce2c4c9c70da120b52
libxml2-python-2.6.16-10.1.x86_64.rpm     12794c8a639d507cbd447e45da5af69f
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
libxml2-2.4.19-7.ent.src.rpm     bf403177cee141a80b50b04353835063
 
IA-32:
libxml2-2.4.19-7.ent.i386.rpm     dd19c6d8d0a0997e7c6a14263e1ba337
libxml2-devel-2.4.19-7.ent.i386.rpm     4c863c4329554aa89507d87490482b5b
libxml2-python-2.4.19-7.ent.i386.rpm     d77516e1c8a462788f46b671e615d92a
 
Red Hat Enterprise Linux WS (v. 3)

SRPMS:
libxml2-2.5.10-8.src.rpm     939a1f46278baa95b3de3723d40019c4
 
IA-32:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-devel-2.5.10-8.i386.rpm     550e452b03253ccaf7ba52f7511ebc5d
libxml2-python-2.5.10-8.i386.rpm     b929b1a63bd09f9b3d21e96fc670d5c5
 
IA-64:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-2.5.10-8.ia64.rpm     ae130cec05b894f05f807c649d2a960c
libxml2-devel-2.5.10-8.ia64.rpm     83b68dddcdd794c3e5b2f99c273ca7af
libxml2-python-2.5.10-8.ia64.rpm     1ad01e72c0cf281ab1caca3e182cc496
 
x86_64:
libxml2-2.5.10-8.i386.rpm     076ffa4f6bfcbe0872ebe9a26d21359c
libxml2-2.5.10-8.x86_64.rpm     c91c6928783c63df7f70d8277f751925
libxml2-devel-2.5.10-8.x86_64.rpm     18f09a3c5cda2b624f49500fe6e0d684
libxml2-python-2.5.10-8.x86_64.rpm     1ae1e24b69c16a0c58ef19163577ae05
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
libxml2-2.6.16-10.1.src.rpm     df1702b32a9d46f37012d2dce590a225
 
IA-32:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-devel-2.6.16-10.1.i386.rpm     af6b81c1d8a273438e5ae1e3eb2a3614
libxml2-python-2.6.16-10.1.i386.rpm     49f53c4b4092c22af8763eedd060e5c6
 
IA-64:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-2.6.16-10.1.ia64.rpm     a18fb1e04d010da00b0f3e9664c3f51e
libxml2-devel-2.6.16-10.1.ia64.rpm     466f12bd7265c7e7090ac2f93a2e14e8
libxml2-python-2.6.16-10.1.ia64.rpm     ec54da4642cad4e3a1c32f81ed1370b1
 
x86_64:
libxml2-2.6.16-10.1.i386.rpm     cfdcdf9f9a78a7ff30efb60aa2e68931
libxml2-2.6.16-10.1.x86_64.rpm     9b7c14ccd048aa9330e5761100445ff3
libxml2-devel-2.6.16-10.1.x86_64.rpm     139fb3afc29df8ce2c4c9c70da120b52
libxml2-python-2.6.16-10.1.x86_64.rpm     12794c8a639d507cbd447e45da5af69f
 
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor

SRPMS:
libxml2-2.4.19-7.ent.src.rpm     bf403177cee141a80b50b04353835063
 
IA-64:
libxml2-2.4.19-7.ent.ia64.rpm     066c4d23cc0a462bf5bd83bcf6c17de5
libxml2-devel-2.4.19-7.ent.ia64.rpm     5ab27dd1feec0a78e205bf8972724897
libxml2-python-2.4.19-7.ent.ia64.rpm     34210f74f671ced0e116310f12d2a6f7
 
(The unlinked packages above are only available from the Red Hat Network)


バグフィックス (詳細は、bugzilla/バグジラ[英語]を御覧ください。)

425927 - CVE-2007-6284 libxml2: infinite loop in UTF-8 decoding


参照





ここに在るパッケージはセキュリティの為、Red Hat, Inc. によって、GPG認証されています。
認証キー及び詳細は以下を御覧下さい。
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/