PT-2011-1060 · Xslt+2 · Libxslt+2

Aleksey Sanin

+1

·

Published

2011-04-03

·

Updated

2017-08-17

·

CVE-2011-1425

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions xmlsec1 versions prior to 1.2.17 xmlsec1-openssl versions 1.2.6 through 1.2.9 xmlsec1-openssl-devel versions 1.2.6 through 1.2.9 xmlsec1-gnutls versions 1.2.9 xmlsec1-gnutls-devel versions 1.2.9 xmlsec1-nss versions 1.2.9 xmlsec1-nss-devel versions 1.2.9 xmlsec1-devel versions 1.2.6 through 1.2.9
Description The issue may lead to a breach of confidentiality, integrity, and availability of protected information. It can be exploited remotely. The vulnerability is related to the XSLT feature in the XML Security Library, which allows remote attackers to create or overwrite arbitrary files via vectors involving the libxslt output extension and a ds:Transform element during signature verification.
Recommendations For xmlsec1 versions prior to 1.2.17, update to version 1.2.17 or later. For xmlsec1-openssl versions 1.2.6 through 1.2.9, update to version 1.2.17 or later. For xmlsec1-openssl-devel versions 1.2.6 through 1.2.9, update to version 1.2.17 or later. For xmlsec1-gnutls versions 1.2.9, update to version 1.2.17 or later. For xmlsec1-gnutls-devel versions 1.2.9, update to version 1.2.17 or later. For xmlsec1-nss versions 1.2.9, update to version 1.2.17 or later. For xmlsec1-nss-devel versions 1.2.9, update to version 1.2.17 or later. For xmlsec1-devel versions 1.2.6 through 1.2.9, update to version 1.2.17 or later. As a temporary workaround, consider disabling the XSLT feature until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04089
BDU:2015-07637
BDU:2015-07638
BDU:2015-07639
BDU:2015-07640
BDU:2015-07641
BDU:2015-07642
BDU:2015-07643
BDU:2015-07644
BDU:2015-07645
BDU:2015-07646
BDU:2015-07647
BDU:2015-07648
BDU:2015-08728
BDU:2015-08729
BDU:2015-08730
BDU:2015-08731
BDU:2015-08732
BDU:2015-08733
BDU:2015-08734
BDU:2015-08735
BDU:2015-08736
BDU:2015-08737
BDU:2015-08738
BDU:2015-08739
CVE-2011-1425
DSA-2219-1
RHSA-2011:0486
RHSA-2011_0486

Affected Products

Red Hat
Libxslt
Xmlsec1