Debian Security Advisory 2978-2

Debian Linux Security Advisory 2978-2 – It was discovered that the update released for libxml2 in DSA 2978 fixing CVE-2014-0191 was incomplete. This caused libxml2 to still fetch external entities regardless of whether entity substitution or validation is enabled.

Leave a Reply