REDHAT-BUG-1277146: Medium severity Gnome libxml2 vulnerability
Published Nov 2, 2015
·Updated
A vulnerability in libxml2 when parsing specially crafted XML document if XZ support is enabled causing DoS of application was found.
CVE request (including reproducer):
http://seclists.org/oss-sec/2015/q4/206
Affected Software
1 affected component
Gnome libxml2
Event History
Nov 2, 2015
Data Sourced
via Red Hat·01:45 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1277146?
The severity of REDHAT-BUG-1277146 is classified as a Denial of Service (DoS) vulnerability.
2
How do I fix REDHAT-BUG-1277146?
To fix REDHAT-BUG-1277146, update libxml2 to the latest version that addresses this vulnerability.
3
What causes the vulnerability REDHAT-BUG-1277146?
REDHAT-BUG-1277146 is caused by improper handling of specially crafted XML documents when XZ support is enabled.
4
What software is affected by REDHAT-BUG-1277146?
The affected software for REDHAT-BUG-1277146 is GNOME libxml2.
5
Can REDHAT-BUG-1277146 be exploited remotely?
Yes, REDHAT-BUG-1277146 can potentially be exploited remotely through specially crafted XML documents.