vulnerability
Ubuntu: USN-5674-1 (CVE-2017-1000061): XML Security Library vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:M/Au:N/C:P/I:N/A:P) | Jul 17, 2017 | Oct 14, 2022 | Mar 27, 2026 |
Severity
6
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:P)
Published
Jul 17, 2017
Added
Oct 14, 2022
Modified
Mar 27, 2026
Description
xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansion when parsing crafted input documents, resulting in possible information disclosure or denial of service
Solutions
ubuntu-pro-upgrade-libxmlsec1ubuntu-pro-upgrade-xmlsec1
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.