PT-2011-1060 · Xslt+2 · Libxslt+2
Aleksey Sanin
+1
·
Published
2011-04-03
·
Updated
2017-08-17
·
CVE-2011-1425
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
xmlsec1 versions prior to 1.2.17
xmlsec1-openssl versions 1.2.6 through 1.2.9
xmlsec1-openssl-devel versions 1.2.6 through 1.2.9
xmlsec1-gnutls versions 1.2.9
xmlsec1-gnutls-devel versions 1.2.9
xmlsec1-nss versions 1.2.9
xmlsec1-nss-devel versions 1.2.9
xmlsec1-devel versions 1.2.6 through 1.2.9
Description
The issue may lead to a breach of confidentiality, integrity, and availability of protected information. It can be exploited remotely. The vulnerability is related to the XSLT feature in the XML Security Library, which allows remote attackers to create or overwrite arbitrary files via vectors involving the libxslt output extension and a ds:Transform element during signature verification.
Recommendations
For xmlsec1 versions prior to 1.2.17, update to version 1.2.17 or later.
For xmlsec1-openssl versions 1.2.6 through 1.2.9, update to version 1.2.17 or later.
For xmlsec1-openssl-devel versions 1.2.6 through 1.2.9, update to version 1.2.17 or later.
For xmlsec1-gnutls versions 1.2.9, update to version 1.2.17 or later.
For xmlsec1-gnutls-devel versions 1.2.9, update to version 1.2.17 or later.
For xmlsec1-nss versions 1.2.9, update to version 1.2.17 or later.
For xmlsec1-nss-devel versions 1.2.9, update to version 1.2.17 or later.
For xmlsec1-devel versions 1.2.6 through 1.2.9, update to version 1.2.17 or later.
As a temporary workaround, consider disabling the XSLT feature until a patch is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Red Hat
Libxslt
Xmlsec1