Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-0338

Опубликовано: 19 фев. 2013
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6mingw32-libxml2Will not fix
Red Hat Enterprise Linux 5libxml2FixedRHSA-2013:058128.02.2013
Red Hat Enterprise Linux 6libxml2FixedRHSA-2013:058128.02.2013

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=912400libxml2: CPU consumption DoS when performing string substitutions during entities expansion

EPSS

Процентиль: 53%
0.00299
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

nvd
почти 13 лет назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

debian
почти 13 лет назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause ...

github
почти 4 года назад

libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.

oracle-oval
почти 13 лет назад

ELSA-2013-0581: libxml2 security update (MODERATE)

EPSS

Процентиль: 53%
0.00299
Низкий

4.3 Medium

CVSS2