Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 06:41:07 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1615442756&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0912-advisories%2FMDVSA-2009-223-1.txt%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1615442756.1338187267.1338187267.1338187267.1%3B%2B__utmz%3D32867617.1338187267.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Mandriva Linux Security Advisory 2009-223 http://packetstormsecurity.org/files/83479/MDVSA-2009-223-1.txt http://packetstormsecurity.org/files/83479/MDVSA-2009-223-1.txt http://packetstormsecurity.org/files/83479/Mandriva-Linux-Security-Advisory-2009-223.html Sat, 05 Dec 2009 04:20:21 GMT Mandriva Linux Security Advisory 2009-223 - Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors involving nested parentheses and invalid byte values in simply nested DTD structures, as demonstrated by the Codenomicon XML fuzzing framework. This update provides a solution to this vulnerability. Packages for 2008.0 are being provided due to extended support for Corporate products.