Описание
Libxml2: unbounded relaxng include recursion leading to stack overflow
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| azl3 libxml2 2.11.5-9 on Azure Linux 3.0 | - | |
| azl3 libxml2 2.11.5-10 on Azure Linux 3.0 | - | |
| cbl2 libxml2 2.10.4-11 on CBL-Mariner 2.0 |
Показывать по
EPSS
3.7 Low
CVSS3
Связанные уязвимости
A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursion during parsing. This may lead to stack exhaustion and application crashes, creating a denial-of-service risk.
A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursion during parsing. This may lead to stack exhaustion and application crashes, creating a denial-of-service risk.
A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursion during parsing. This may lead to stack exhaustion and application crashes, creating a denial-of-service risk.
A flaw was identified in the RelaxNG parser of libxml2 related to how ...
EPSS
3.7 Low
CVSS3