USN-3841-2: lxml vulnerability
USN-3841-1 fixed a vulnerability in lxml. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: It was discovered that lxml incorrectly handled certain HTML files. An attacker could possibly use this issue to conduct cross-site scripting (XSS) attacks.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability in lxml?
lxml incorrectly handles certain HTML files, allowing for potential cross-site scripting (XSS) attacks.
How does the USN-3841-2 vulnerability affect Ubuntu 12.04 ESM?
The USN-3841-2 vulnerability affects Ubuntu 12.04 ESM by exposing it to potential cross-site scripting (XSS) attacks if lxml is not updated to version 2.3.2-1ubuntu0.3.
How can I fix the USN-3841-2 vulnerability in Ubuntu 12.04 ESM?
To fix the USN-3841-2 vulnerability in Ubuntu 12.04 ESM, you need to update the python3-lxml and python-lxml packages to version 2.3.2-1ubuntu0.3.
What is the severity of the USN-3841-2 vulnerability?
The severity of the USN-3841-2 vulnerability is not specified in the information provided.
Where can I find more information about the USN-3841-2 vulnerability?
You can find more information about the USN-3841-2 vulnerability on the Ubuntu Security website and the launchpad.net Ubuntu source page.