Debian Security Update DSA-5142 libxml2 - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,969
Reaction score
80
Credits
-1,257
Felix Wilhelm reported that several buffer handling functions in libxml2, a library providing support to read, modify and write XML and HTML files, don't check for integer overflows, resulting in out-of-bounds memory writes if specially crafted, multi-gigabyte XML files are processed. An attacker can take advantage of this flaw for denial of service or execution of arbitrary code.

Continue reading...
 


Follow Linux.org

Staff online

Members online


Top