FreeBSD : apache-xml-security-c -- heap overflow (279e5f4b-d823-11e2-928e-08002798f6ff)
High Nessus Plugin ID 66918
SynopsisThe remote FreeBSD host is missing a security-related update.
DescriptionThe Apache Software Foundation reports :
A heap overflow exists in the processing of the PrefixList attribute optionally used in conjunction with Exclusive Canonicalization, potentially allowing arbitary code execution. If verification of the signature occurs prior to actual evaluation of a signing key, this could be exploited by an unauthenticated attacker.
SolutionUpdate the affected package.