Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-3281

Опубликовано: 27 авг. 2008
Источник: debian
EPSS Низкий

Описание

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libxml2fixed2.6.32.dfsg-3package
chromium-browserfixed5.0.375.29~r46008-1package

EPSS

Процентиль: 73%
0.00802
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

redhat
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

CVSS3: 6.5
nvd
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

CVSS3: 6.5
github
около 3 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

oracle-oval
почти 17 лет назад

ELSA-2008-0836: libxml2 security update (MODERATE)

EPSS

Процентиль: 73%
0.00802
Низкий