REDHAT-BUG-1338691: Use After Free
A vulnerability was found in the libxml2 library. A maliciously crafted file could cause the application to crash due to a Heap use-after-free in xmlSAX2AttributeNs.
References:
https://bugzilla.gnome.org/showbug.cgi?id=759020
Upstream fix:
https://git.gnome.org/browse/libxml2/commit/?id=38eae571111db3b43ffdeb05487c9f60551906fb
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1338691?
The severity of REDHAT-BUG-1338691 is considered critical due to the potential for application crashes from a use-after-free vulnerability.
How do I fix REDHAT-BUG-1338691?
To fix REDHAT-BUG-1338691, update to the latest version of the libxml2 library that has addressed this vulnerability.
Which software is affected by REDHAT-BUG-1338691?
The affected software for REDHAT-BUG-1338691 is the GNOME libxml2 library.
What type of vulnerability is REDHAT-BUG-1338691?
REDHAT-BUG-1338691 is a heap use-after-free vulnerability identified in the xmlSAX2AttributeNs function.
What are the potential impacts of REDHAT-BUG-1338691?
The potential impacts of REDHAT-BUG-1338691 include application crashes, leading to service disruptions and denial of service.