Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-3627

Опубликовано: 17 мая 2016
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consumption, and application crash) via a crafted XML document.

РелизСтатусПримечание
devel

not-affected

2.9.3+dfsg1-1.2
esm-infra-legacy/trusty

released

2.9.1+dfsg1-3ubuntu4.8
esm-infra/xenial

released

2.9.3+dfsg1-1ubuntu0.1
precise

released

2.7.8.dfsg-5.1ubuntu4.15
precise/esm

not-affected

2.7.8.dfsg-5.1ubuntu4.15
trusty

released

2.9.1+dfsg1-3ubuntu4.8
trusty/esm

released

2.9.1+dfsg1-3ubuntu4.8
upstream

released

2.9.4
vivid/stable-phone-overlay

ignored

end of life
vivid/ubuntu-core

DNE

Показывать по

EPSS

Процентиль: 48%
0.00244
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

redhat
больше 9 лет назад

The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consumption, and application crash) via a crafted XML document.

CVSS3: 7.5
nvd
больше 9 лет назад

The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consumption, and application crash) via a crafted XML document.

CVSS3: 7.5
debian
больше 9 лет назад

The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earli ...

suse-cvrf
больше 9 лет назад

Security update for libxml2

suse-cvrf
больше 9 лет назад

Security update for libxml2

EPSS

Процентиль: 48%
0.00244
Низкий

5 Medium

CVSS2

7.5 High

CVSS3