Описание
The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.
Релиз | Статус | Примечание |
---|---|---|
devel | released | 2.9.2+zdfsg1-4ubuntu2 |
esm-infra-legacy/trusty | released | 2.9.1+dfsg1-3ubuntu4.6 |
precise | released | 2.7.8.dfsg-5.1ubuntu4.13 |
trusty | released | 2.9.1+dfsg1-3ubuntu4.6 |
trusty/esm | released | 2.9.1+dfsg1-3ubuntu4.6 |
upstream | released | 2.9.3 |
vivid | released | 2.9.2+dfsg1-3ubuntu0.2 |
vivid/stable-phone-overlay | released | 2.9.2+dfsg1-3ubuntu0.2 |
vivid/ubuntu-core | DNE | |
wily | released | 2.9.2+zdfsg1-4ubuntu0.2 |
Показывать по
EPSS
6.4 Medium
CVSS2
Связанные уязвимости
The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.
The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.
The xmlNextChar function in libxml2 2.9.2 does not properly check the ...
The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) or obtain sensitive information via crafted XML data.
Уязвимость библиотеки libxml2, позволяющая нарушителю вызвать отказ в обслуживании или получить конфиденциальную информацию
EPSS
6.4 Medium
CVSS2