CVE-2014-1626
Publication date 26 January 2014
Last updated 24 July 2024
Ubuntu priority
Description
XML External Entity (XXE) vulnerability in MARC::File::XML module before 1.0.2 for Perl, as used in Evergreen, Koha, perl4lib, and possibly other products, allows context-dependent attackers to read arbitrary files via a crafted XML file.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| libmarc-xml-perl | ||
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |
Patch details
| Package | Patch details |
|---|---|
| libmarc-xml-perl |