Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x9c5-c5mj-wjjx

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

Ссылки

EPSS

Процентиль: 73%
0.00802
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-776

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

redhat
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

CVSS3: 6.5
nvd
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.

CVSS3: 6.5
debian
почти 17 лет назад

libxml2 2.6.32 and earlier does not properly detect recursion during e ...

oracle-oval
почти 17 лет назад

ELSA-2008-0836: libxml2 security update (MODERATE)

EPSS

Процентиль: 73%
0.00802
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-776