xmlrpc-c-1.51.0-5.el8.1
エラータID: AXSA:2022-3167:01
Release date:
Tuesday, May 3, 2022 - 05:03
Subject:
xmlrpc-c-1.51.0-5.el8.1
Affected Channels:
Asianux Server 8 for x86_64
Severity:
High
Description:
XML-RPC is a remote procedure call (RPC) protocol that uses XML to encode its
calls and HTTP as a transport mechanism. The xmlrpc-c packages provide a network
protocol to allow a client program to make a simple RPC (remote procedure call)
over the Internet. It converts an RPC into an XML document, sends it to a remote
server using HTTP, and gets back the response in XML.
Security Fix(es):
expat: Malformed 2- and 3-byte UTF-8 sequences can lead to arbitrary code
execution (CVE-2022-25235)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.
CVE(s):
CVE-2022-25235
Solution:
Update packages.
CVEs:
CVE-2022-25235
xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.
xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.
Additional Info:
N/A
Download:
SRPMS
- xmlrpc-c-1.51.0-5.el8.1.src.rpm
MD5: 514d2139ca1640e0b7eecbdf6be5459d
SHA-256: e049027858050f0d021378f7816194ff6e79dbb61749275feceb09f90e7b11db
Size: 638.84 kB
Asianux Server 8 for x86_64
- xmlrpc-c-1.51.0-5.el8.1.x86_64.rpm
MD5: c08b34e33ac6f4b6f263a9aa74da3d28
SHA-256: f8d9fcf233beb51b8f102c8800824798649b1a752093581ce2019dcc13e153a8
Size: 211.35 kB - xmlrpc-c-c++-1.51.0-5.el8.1.x86_64.rpm
MD5: 4ecbc81a019d99cee19dc7c130c2326f
SHA-256: 614d07f862c575bc9f664b8543bc4de886be9b106720089958e5e8e8bac9e1c1
Size: 127.50 kB - xmlrpc-c-client++-1.51.0-5.el8.1.x86_64.rpm
MD5: 1d6806436c71a162bbc80987ad44f8d7
SHA-256: 30bb57da71bbd4c75721fc68e73ca80310ad7fc1dd5551622a34222180377aad
Size: 53.43 kB - xmlrpc-c-client-1.51.0-5.el8.1.x86_64.rpm
MD5: 1eb3dbe65e41d085868cff482aee1330
SHA-256: 50749ac17405d2cc8188ba8e9f70aeb5428cce14a7e1821948670ec3f2a420d1
Size: 39.20 kB - xmlrpc-c-devel-1.51.0-5.el8.1.x86_64.rpm
MD5: 6d6b534f7c2dfdb76e1d246e16d4f6ee
SHA-256: 9914ad9ed4d7e910244272c982a3b70aef6c2284eadfd0735b9f8699c85d11ce
Size: 70.45 kB - xmlrpc-c-1.51.0-5.el8.1.i686.rpm
MD5: 9da9d321d5fa07446dcf2a20133c3fb3
SHA-256: 0ee5ca88b074b02a3966a1df732018ac96e47f0b87409b6bbb6518929a1eaa26
Size: 220.37 kB - xmlrpc-c-c++-1.51.0-5.el8.1.i686.rpm
MD5: 8d8da3d4ac333976db91f8ae459d877e
SHA-256: 4bb409099e4a1bd4aedff25707e2551ec10db308b7dccbc52f698859c4f38ee2
Size: 134.88 kB - xmlrpc-c-client++-1.51.0-5.el8.1.i686.rpm
MD5: be3f401410c3a695d786206977fbf998
SHA-256: 64bb3c7da2e6fe05092b6627fe8781ae458f3ce91d55a9ba79b27447c97ee5ff
Size: 55.66 kB - xmlrpc-c-client-1.51.0-5.el8.1.i686.rpm
MD5: 743f3ad6f616e728bdec5bd052fc22d2
SHA-256: b62e7d3434cf6b04f261586b4702b8740197277c06284ba80270b11563e97692
Size: 40.09 kB - xmlrpc-c-devel-1.51.0-5.el8.1.i686.rpm
MD5: afc16ae7ca1ac39342ceb8f48792975f
SHA-256: 9c330c51a452919c8133a05a802bb96223be32e5d5fdbebb6b2e86cd68918db4
Size: 70.31 kB