Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-8806

Опубликовано: 13 апр. 2016
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

dict.c in libxml2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via an unexpected character immediately after the "<!DOCTYPE html" substring in a crafted HTML document.

РелизСтатусПримечание
devel

not-affected

2.9.3+dfsg1-1.2
esm-infra-legacy/trusty

released

2.9.1+dfsg1-3ubuntu4.8
esm-infra/xenial

released

2.9.3+dfsg1-1ubuntu0.1
precise

released

2.7.8.dfsg-5.1ubuntu4.15
precise/esm

not-affected

2.7.8.dfsg-5.1ubuntu4.15
trusty

released

2.9.1+dfsg1-3ubuntu4.8
trusty/esm

released

2.9.1+dfsg1-3ubuntu4.8
upstream

needs-triage

vivid/stable-phone-overlay

ignored

end of life
vivid/ubuntu-core

DNE

Показывать по

EPSS

Процентиль: 91%
0.06052
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

dict.c in libxml2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via an unexpected character immediately after the "<!DOCTYPE html" substring in a crafted HTML document.

CVSS3: 7.5
nvd
почти 10 лет назад

dict.c in libxml2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via an unexpected character immediately after the "<!DOCTYPE html" substring in a crafted HTML document.

CVSS3: 7.5
debian
почти 10 лет назад

dict.c in libxml2 allows remote attackers to cause a denial of service ...

CVSS3: 7.5
github
больше 7 лет назад

Denial of service or RCE from libxml2 and libxslt

fstec
почти 10 лет назад

Уязвимость библиотеки libxml2, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 91%
0.06052
Низкий

5 Medium

CVSS2

7.5 High

CVSS3