Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-1881

Опубликовано: 10 окт. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

GNOME libsvg before 2.39.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

РелизСтатусПримечание
devel

not-affected

2.40.0-1
lucid

ignored

end of life
precise

released

2.36.1-0ubuntu1.1
quantal

released

2.36.3-0ubuntu1.1
raring

ignored

end of life
saucy

released

2.36.4-2ubuntu0.1
upstream

released

2.40.0-1

Показывать по

EPSS

Процентиль: 92%
0.07767
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 12 лет назад

GNOME libsvg before 2.39.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

nvd
около 12 лет назад

GNOME libsvg before 2.39.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

debian
около 12 лет назад

GNOME libsvg before 2.39.0 allows remote attackers to read arbitrary f ...

suse-cvrf
около 10 лет назад

Security update for librsvg

github
больше 3 лет назад

GNOME libsvg before 2.39.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

EPSS

Процентиль: 92%
0.07767
Низкий

4.3 Medium

CVSS2