A vulnerability was found in the libxml2 library. The parser would fetch content of an external entity while not in validating mode. References: https://bugzilla.gnome.org/show_bug.cgi?id=761430 Upstream fix: https://git.gnome.org/browse/libxml2/commit/?id=b1d34de46a11323fccffa9fadeb33be670d602f5
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Red Hat Enterprise Linux 7 Via RHSA-2016:1292 https://access.redhat.com/errata/RHSA-2016:1292
Created libxml2 tracking bugs for this issue: Affects: fedora-all [bug 1349794]
Created mingw-libxml2 tracking bugs for this issue: Affects: fedora-all [bug 1349795]
This issue has been addressed in the following products: Via RHSA-2016:2957 https://rhn.redhat.com/errata/RHSA-2016-2957.html