First published: Mon Nov 02 2015(Updated: )
A vulnerability in libxml2 when parsing specially crafted XML document if XZ support is enabled causing DoS of application was found. CVE request (including reproducer): <a href="http://seclists.org/oss-sec/2015/q4/206">http://seclists.org/oss-sec/2015/q4/206</a>
Affected Software | Affected Version | How to fix |
---|---|---|
libxml2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1277146 is classified as a Denial of Service (DoS) vulnerability.
To fix REDHAT-BUG-1277146, update libxml2 to the latest version that addresses this vulnerability.
REDHAT-BUG-1277146 is caused by improper handling of specially crafted XML documents when XZ support is enabled.
The affected software for REDHAT-BUG-1277146 is GNOME libxml2.
Yes, REDHAT-BUG-1277146 can potentially be exploited remotely through specially crafted XML documents.