REDHAT-BUG-1301928: Medium severity libxml2 vulnerability
An out-of-bounds read flaw was reported in libxml2's htmlParseNameComplex() function:
http://seclists.org/oss-sec/2016/q1/199
A remote attacker could provide a specially crafted XML file that, when processed by an application linked against libxml2, could cause the application to disclose crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1301928?
The severity of REDHAT-BUG-1301928 is considered to be high due to the potential for remote code execution with specially crafted XML files.
How do I fix REDHAT-BUG-1301928?
To fix REDHAT-BUG-1301928, update the libxml2 package to the latest version that addresses the out-of-bounds read flaw.
What applications are affected by REDHAT-BUG-1301928?
Applications linked against the libxml2 library are affected by REDHAT-BUG-1301928.
What type of vulnerability is REDHAT-BUG-1301928?
REDHAT-BUG-1301928 is classified as an out-of-bounds read vulnerability.
Can REDHAT-BUG-1301928 be exploited remotely?
Yes, REDHAT-BUG-1301928 can be exploited remotely if the attacker provides a specially crafted XML file.