Описание
The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consumption, and application crash) via a crafted XML document.
Missing recursive loop detection checks were found in the xmlParserEntityCheck() and xmlStringGetNodeList() functions of libxml2, causing application using the library to crash by stack exhaustion while building the associated data. An attacker able to send XML data to be parsed in recovery mode could launch a Denial of Service on the application.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | libxml2 | Will not fix | ||
Red Hat JBoss Core Services | httpd | Affected | ||
Red Hat JBoss Enterprise Web Server 3 | libxml2 | Will not fix | ||
Red Hat Enterprise Linux 6 | libxml2 | Fixed | RHSA-2016:1292 | 23.06.2016 |
Red Hat Enterprise Linux 7 | libxml2 | Fixed | RHSA-2016:1292 | 23.06.2016 |
Text-Only JBCS | Fixed | RHSA-2016:2957 | 15.12.2016 |
Показывать по
Дополнительная информация
Статус:
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consumption, and application crash) via a crafted XML document.
The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consumption, and application crash) via a crafted XML document.
The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earli ...
EPSS
4.3 Medium
CVSS2