Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-54c8-wpg2-cf22

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.

The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.

EPSS

Процентиль: 80%
0.01475
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 9 лет назад

The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.

redhat
почти 10 лет назад

The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.

nvd
больше 9 лет назад

The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.

debian
больше 9 лет назад

The xmlNextChar function in libxml2 2.9.2 does not properly check the ...

fstec
больше 9 лет назад

Уязвимость библиотеки libxml2, позволяющая нарушителю вызвать отказ в обслуживании или получить конфиденциальную информацию

EPSS

Процентиль: 80%
0.01475
Низкий

Дефекты

CWE-119