Bug 64362 (CVE-2004-0989)

Summary: VUL-0: CVE-2004-0989: libxml: missing patches
Product: [Novell Products] SUSE Security Incidents Reporter: Thomas Biege <thomas>
Component: IncidentsAssignee: Thomas Biege <thomas>
Status: RESOLVED FIXED QA Contact: Security Team bot <security-team>
Severity: Normal    
Priority: P3 - Medium CC: ke, patch-request, security-team
Version: unspecified   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard: CVE-2004-0989: CVSS v2 Base Score: 10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Found By: --- Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---
Attachments: libxml_1.8.17-2-secfix.diff
patchinfo.xml
patchinfo-box.xml

Description Thomas Biege 2004-12-17 19:33:09 UTC
Hi Karl,  
we misse some patches in libxml that we already appplies to libxml2. 
 
bug 49572 
bug 62670 
 
CAN-2004-0989 
CAN-2004-0110
Comment 1 Thomas Biege 2004-12-17 19:33:09 UTC
<!-- SBZ_reproduce  -->
see older bugs.
Comment 2 Thomas Biege 2004-12-17 19:33:44 UTC
Created attachment 27162 [details]
libxml_1.8.17-2-secfix.diff
Comment 3 Thomas Biege 2004-12-17 19:43:32 UTC
SM-Tracker-75 
Comment 4 Thomas Biege 2004-12-17 20:02:10 UTC
Created attachment 27167 [details]
patchinfo.xml
Comment 5 Thomas Biege 2004-12-17 20:02:28 UTC
Created attachment 27168 [details]
patchinfo-box.xml
Comment 6 Thomas Biege 2004-12-18 00:20:08 UTC
Absent     : Fri 2004-12-17 - Mon 2004-12-20 
             Tue 2004-12-21 
             Wed 2004-12-22 - Tue 2004-12-28 
             Fri 2004-12-31 
             Fri 2004-12-24 
             Fri 2004-12-31 
 
Comment 7 Thomas Biege 2004-12-20 16:24:27 UTC
I'll make the update... 
Comment 8 Thomas Biege 2004-12-20 20:00:48 UTC
packages submitted. 
Comment 9 Karl Eichwalder 2004-12-29 16:58:23 UTC
thanks for taking over fixing the package (sorry for ignoring libxml1).
Comment 10 Ludwig Nussel 2005-01-04 21:57:32 UTC
packages released 
Comment 11 Thomas Biege 2009-10-13 20:06:17 UTC
CVE-2004-0989: CVSS v2 Base Score: 10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C)