LWN.net Logo

Advertisement

GStreamer, Embedded Linux, Android, VoD, Smooth Streaming, DRM, RTSP, HEVC, PulseAudio, OpenGL. Register now to attend.

Advertise here

libxml2: denial of service

Package(s):libxml2 CVE #(s):CVE-2013-2877
Created:July 15, 2013 Updated:July 24, 2013
Description: From the CVE entry:

parser.c in libxml2 before 2.9.0, as used in Google Chrome before 28.0.1500.71 and other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a document that ends abruptly, related to the lack of certain checks for the XML_PARSER_EOF state.

Alerts:
Ubuntu USN-1904-1 2013-07-15
Ubuntu USN-1904-2 2013-07-17
Debian DSA-2724-1 2013-07-18
openSUSE openSUSE-SU-2013:1221-1 2013-07-19
Mageia MGASA-2013-0218 2013-07-21
Mandriva MDVSA-2013:198 2013-07-24
openSUSE openSUSE-SU-2013:1246-1 2013-07-24
Gentoo 201309-16 2013-09-24

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds