Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-3627

Опубликовано: 29 окт. 2009
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

РелизСтатусПримечание
dapper

released

3.48-1ubuntu0.1
devel

not-affected

3.64-1
hardy

released

3.56-1ubuntu0.1
intrepid

released

3.56-1ubuntu2.1
jaunty

released

3.59-1ubuntu1.1
karmic

released

3.61-1ubuntu0.1
upstream

released

3.63

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

nvd
около 16 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

debian
около 16 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allo ...

github
больше 3 лет назад

The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial of service (infinite loop) via an incomplete SGML numeric character reference, which triggers generation of an invalid UTF-8 character.

4.3 Medium

CVSS2