Логотип exploitDog
bind:CVE-2024-34394
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-34394

Количество 2

Количество 2

nvd логотип

CVE-2024-34394

почти 2 года назад

libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namespaces() function (which invokes XmlNode::get_local_namespaces()) on a grand-child of a node that refers to an entity. This vulnerability can lead to denial of service and remote code execution.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-78h3-pg4x-j8cv

почти 2 года назад

libxmljs2 vulnerable to type confusion when parsing specially crafted XML

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-34394

libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namespaces() function (which invokes XmlNode::get_local_namespaces()) on a grand-child of a node that refers to an entity. This vulnerability can lead to denial of service and remote code execution.

CVSS3: 8.1
3%
Низкий
почти 2 года назад
github логотип
GHSA-78h3-pg4x-j8cv

libxmljs2 vulnerable to type confusion when parsing specially crafted XML

CVSS3: 8.1
3%
Низкий
почти 2 года назад

Уязвимостей на страницу