Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-7595

Опубликовано: 21 янв. 2020
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

xmlStringLenDecodeEntities in parser.c in libxml2 2.9.10 has an infinite loop in a certain end-of-file situation.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libxml2Out of support scope
Red Hat Enterprise Linux 6libxml2Out of support scope
JBoss Core Services on RHEL 6jbcs-httpd24-curlFixedRHSA-2020:264422.06.2020
JBoss Core Services on RHEL 6jbcs-httpd24-httpdFixedRHSA-2020:264422.06.2020
JBoss Core Services on RHEL 6jbcs-httpd24-mod_cluster-nativeFixedRHSA-2020:264422.06.2020
JBoss Core Services on RHEL 6jbcs-httpd24-mod_http2FixedRHSA-2020:264422.06.2020
JBoss Core Services on RHEL 6jbcs-httpd24-mod_jkFixedRHSA-2020:264422.06.2020
JBoss Core Services on RHEL 6jbcs-httpd24-mod_mdFixedRHSA-2020:264422.06.2020
JBoss Core Services on RHEL 6jbcs-httpd24-mod_securityFixedRHSA-2020:264422.06.2020
JBoss Core Services on RHEL 6jbcs-httpd24-nghttp2FixedRHSA-2020:264422.06.2020

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-835
https://bugzilla.redhat.com/show_bug.cgi?id=1799786libxml2: infinite loop in xmlStringLenDecodeEntities in some end-of-file situations

EPSS

Процентиль: 64%
0.00466
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

xmlStringLenDecodeEntities in parser.c in libxml2 2.9.10 has an infinite loop in a certain end-of-file situation.

CVSS3: 7.5
nvd
около 6 лет назад

xmlStringLenDecodeEntities in parser.c in libxml2 2.9.10 has an infinite loop in a certain end-of-file situation.

CVSS3: 7.5
msrc
больше 5 лет назад

xmlStringLenDecodeEntities in parser.c in libxml2 2.9.10 has an infinite loop in a certain end-of-file situation.

CVSS3: 7.5
debian
около 6 лет назад

xmlStringLenDecodeEntities in parser.c in libxml2 2.9.10 has an infini ...

CVSS3: 7.5
github
почти 6 лет назад

libxml as used in Nokogiri has an infinite loop in a certain end-of-file situation

EPSS

Процентиль: 64%
0.00466
Низкий

7.5 High

CVSS3