REDHAT-BUG-1338711: Medium severity libxml2 vulnerability
Published May 23, 2016
·Updated
A vulnerability was found in the libxml2 library. A heap-based buffer overread could happen in xmlNextChar.
References:
https://bugzilla.gnome.org/showbug.cgi?id=759671
Upstream fix:
https://git.gnome.org/browse/libxml2/commit/?id=a7a94612aa3b16779e2c74e1fa353b5d9786c602
Affected Software
1 affected component
Gnome libxml2
Event History
May 23, 2016
Data Sourced
via Red Hat·10:03 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1338711?
REDHAT-BUG-1338711 has been classified as a moderate severity vulnerability.
2
How do I fix REDHAT-BUG-1338711?
To fix REDHAT-BUG-1338711, update the libxml2 library to the latest version provided by your distribution's package manager.
3
What are the potential impacts of REDHAT-BUG-1338711?
The potential impacts of REDHAT-BUG-1338711 include heap-based buffer overread which could lead to information leakage or application crashes.
4
Which software is affected by REDHAT-BUG-1338711?
The software affected by REDHAT-BUG-1338711 is the GNOME libxml2 library.
5
When was REDHAT-BUG-1338711 reported?
REDHAT-BUG-1338711 was reported in 2016.