[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

libxml2 - (bulletinapr2019)

ID: oval:org.secpod.oval:def:2103897Date: (C)2019-12-31   (M)2024-04-17
Class: PATCHFamily: unix




The xz_head function in xzlib.c in libxml2 before 2.9.6 allows remote attackers to cause a denial of service (memory consumption) via a crafted LZMA file, because the decoder functionality does not restrict memory usage to what is required for a legitimate file.

Platform:
Sun Solaris 11
Product:
library/python/libxml2-34
library/python/libxml2-27
library/libxml2
Reference:
bulletinapr2019
CVE-2017-18258
CVE    1
CVE-2017-18258
CPE    1
cpe:/o:oracle:solaris:11

© SecPod Technologies