Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-5969

Опубликовано: 11 апр. 2017
Источник: nvd
CVSS3: 4.7
CVSS2: 2.6
EPSS Низкий

Описание

libxml2 2.9.4, when used in recover mode, allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted XML document. NOTE: The maintainer states "I would disagree of a CVE with the Recover parsing option which should only be used for manual recovery at least for XML parser.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:xmlsoft:libxml2:2.9.4:*:*:*:*:*:*:*

EPSS

Процентиль: 84%
0.0263
Низкий

4.7 Medium

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 4.7
ubuntu
больше 9 лет назад

libxml2 2.9.4, when used in recover mode, allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted XML document. NOTE: The maintainer states "I would disagree of a CVE with the Recover parsing option which should only be used for manual recovery at least for XML parser.

CVSS3: 5.5
redhat
почти 10 лет назад

libxml2 2.9.4, when used in recover mode, allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted XML document. NOTE: The maintainer states "I would disagree of a CVE with the Recover parsing option which should only be used for manual recovery at least for XML parser.

CVSS3: 4.7
debian
больше 9 лет назад

libxml2 2.9.4, when used in recover mode, allows remote attackers to c ...

CVSS3: 4.7
github
больше 4 лет назад

** DISPUTED ** libxml2 2.9.4, when used in recover mode, allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted XML document. NOTE: The maintainer states "I would disagree of a CVE with the Recover parsing option which should only be used for manual recovery at least for XML parser."

CVSS3: 5.3
fstec
больше 9 лет назад

Уязвимость библиотеки Libxml2, связанная с ошибками разыменования указателя, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 84%
0.0263
Низкий

4.7 Medium

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-476