vulnerability
SUSE: CVE-2019-9628: SUSE Linux Security Advisory
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:N/I:N/A:P) | Mar 26, 2019 | Apr 11, 2019 | Feb 4, 2022 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Mar 26, 2019
Added
Apr 11, 2019
Modified
Feb 4, 2022
Description
The XMLTooling library all versions prior to V3.0.4, provided with the OpenSAML and Shibboleth Service Provider software, contains an XML parsing class. Invalid data in the XML declaration causes an exception of a type that was not handled properly in the parser class and propagates an unexpected exception type.
Solutions
suse-upgrade-libxmltooling-develsuse-upgrade-libxmltooling-lite9suse-upgrade-libxmltooling6suse-upgrade-libxmltooling7suse-upgrade-libxmltooling9suse-upgrade-xmltooling-schemas
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.