Bug#632973: xml-security-c: CVE-2011-2516: buffer overflows signing or verifying with large keys

Dominic Hargreaves dom at earth.li
Thu Jul 7 14:11:25 UTC 2011


Package: xml-security-c
Version: 1.6.0-2
Severity: grave
Tags: security
Justification: user security hole

Full advisory at
<http://santuario.apache.org/secadv/CVE-2011-2516.txt>
including links to patches in upstream SVN.

Also assumed to affect stable and oldstable.





More information about the Pkg-shibboleth-devel mailing list