Логотип exploitDog
bind:CVE-2024-34391
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-34391

Количество 2

Количество 2

nvd логотип

CVE-2024-34391

почти 2 года назад

libxmljs is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking a function on the result of attrs() that was called on a parsed node. This vulnerability might lead to denial of service (on both 32-bit systems and 64-bit systems), data leak, infinite loop and remote code execution (on 32-bit systems with the XML_PARSE_HUGE flag enabled).

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-6433-x5p4-8jc7

почти 2 года назад

libxmljs vulnerable to type confusion when parsing specially crafted XML

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-34391

libxmljs is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking a function on the result of attrs() that was called on a parsed node. This vulnerability might lead to denial of service (on both 32-bit systems and 64-bit systems), data leak, infinite loop and remote code execution (on 32-bit systems with the XML_PARSE_HUGE flag enabled).

CVSS3: 8.1
3%
Низкий
почти 2 года назад
github логотип
GHSA-6433-x5p4-8jc7

libxmljs vulnerable to type confusion when parsing specially crafted XML

CVSS3: 8.1
3%
Низкий
почти 2 года назад

Уязвимостей на страницу