Количество 14
Количество 14

CVE-2022-29824
In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well.

CVE-2022-29824
In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well.

CVE-2022-29824
In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well.

CVE-2022-29824
CVE-2022-29824
In libxml2 before 2.9.14, several buffer handling functions in buf.c ( ...
GHSA-3rrw-pv9w-qgch
In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well.
ELSA-2022-5317
ELSA-2022-5317: libxml2 security update (MODERATE)
ELSA-2022-5250
ELSA-2022-5250: libxml2 security update (MODERATE)

BDU:2022-03033
Уязвимость компонентов buf.c и tree.c библиотеки libxml2, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

SUSE-SU-2022:2552-1
Security update for libxml2

SUSE-SU-2022:1833-1
Security update for libxml2

SUSE-SU-2022:1750-1
Security update for libxml2

ROS-20220516-08
Уязвимость libxml2

SUSE-SU-2023:2048-1
Security update for libxml2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2022-29824 In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well. | CVSS3: 6.5 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-29824 In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well. | CVSS3: 7.4 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-29824 In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well. | CVSS3: 6.5 | 0% Низкий | около 3 лет назад |
![]() | CVSS3: 6.5 | 0% Низкий | около 3 лет назад | |
CVE-2022-29824 In libxml2 before 2.9.14, several buffer handling functions in buf.c ( ... | CVSS3: 6.5 | 0% Низкий | около 3 лет назад | |
GHSA-3rrw-pv9w-qgch In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to open a crafted, multi-gigabyte XML file. Other software using libxml2's buffer functions, for example libxslt through 1.1.35, is affected as well. | CVSS3: 6.5 | 0% Низкий | около 3 лет назад | |
ELSA-2022-5317 ELSA-2022-5317: libxml2 security update (MODERATE) | почти 3 года назад | |||
ELSA-2022-5250 ELSA-2022-5250: libxml2 security update (MODERATE) | почти 3 года назад | |||
![]() | BDU:2022-03033 Уязвимость компонентов buf.c и tree.c библиотеки libxml2, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад |
![]() | SUSE-SU-2022:2552-1 Security update for libxml2 | почти 3 года назад | ||
![]() | SUSE-SU-2022:1833-1 Security update for libxml2 | около 3 лет назад | ||
![]() | SUSE-SU-2022:1750-1 Security update for libxml2 | около 3 лет назад | ||
![]() | ROS-20220516-08 Уязвимость libxml2 | 0% Низкий | около 3 лет назад | |
![]() | SUSE-SU-2023:2048-1 Security update for libxml2 | около 2 лет назад |
Уязвимостей на страницу