REDHAT-BUG-1338696: Use After Free
A vulnerability was found in the libxml2 library. A maliciously crafted file could cause the application to crash due to a Heap use-after-free in htmlParsePubidLiteral and htmlParseSystemiteral
References:
https://bugzilla.gnome.org/showbug.cgi?id=760263
Upstream fix:
https://git.gnome.org/browse/libxml2/commit/?id=11ed4a7a90d5ce156a18980a4ad4e53e77384852
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1338696?
The severity of REDHAT-BUG-1338696 is classified as critical due to the potential for application crashes.
How do I fix REDHAT-BUG-1338696?
To fix REDHAT-BUG-1338696, you should update the libxml2 library to the latest patched version.
What vulnerabilities are associated with REDHAT-BUG-1338696?
REDHAT-BUG-1338696 is associated with heap use-after-free vulnerabilities in the libxml2 library.
Which applications are affected by REDHAT-BUG-1338696?
Applications using the libxml2 library are affected by REDHAT-BUG-1338696.
How can I identify if my system is vulnerable to REDHAT-BUG-1338696?
You can identify if your system is vulnerable to REDHAT-BUG-1338696 by checking the version of the libxml2 library installed on your system.