Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pvmp-h985-7qh3

Опубликовано: 05 мая 2022
Источник: github
Github: Не прошло ревью

Описание

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

EPSS

Процентиль: 49%
0.00254
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 12 лет назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

redhat
больше 12 лет назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

nvd
больше 12 лет назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

debian
больше 12 лет назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause ...

oracle-oval
больше 12 лет назад

ELSA-2013-0581: libxml2 security update (MODERATE)

EPSS

Процентиль: 49%
0.00254
Низкий

Дефекты

CWE-119