First published: Mon Feb 10 2020(Updated: )
It was discovered that libxml2 incorrectly handled certain XML files. An attacker could possibly use this issue to cause a denial of service. (CVE-2019-19956, CVE-2020-7595)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libxml2 | <2.9.4+dfsg1-7ubuntu3.1 | 2.9.4+dfsg1-7ubuntu3.1 |
=19.10 | ||
All of | ||
ubuntu/libxml2-utils | <2.9.4+dfsg1-7ubuntu3.1 | 2.9.4+dfsg1-7ubuntu3.1 |
=19.10 | ||
All of | ||
ubuntu/libxml2 | <2.9.4+dfsg1-6.1ubuntu1.3 | 2.9.4+dfsg1-6.1ubuntu1.3 |
=18.04 | ||
All of | ||
ubuntu/libxml2-utils | <2.9.4+dfsg1-6.1ubuntu1.3 | 2.9.4+dfsg1-6.1ubuntu1.3 |
=18.04 | ||
All of | ||
ubuntu/libxml2 | <2.9.3+dfsg1-1ubuntu0.7 | 2.9.3+dfsg1-1ubuntu0.7 |
=16.04 | ||
All of | ||
ubuntu/libxml2-utils | <2.9.3+dfsg1-1ubuntu0.7 | 2.9.3+dfsg1-1ubuntu0.7 |
=16.04 | ||
All of | ||
ubuntu/libxml2 | <2.9.1+dfsg1-3ubuntu4.13+esm1 | 2.9.1+dfsg1-3ubuntu4.13+esm1 |
=14.04 | ||
All of | ||
ubuntu/libxml2-utils | <2.9.1+dfsg1-3ubuntu4.13+esm1 | 2.9.1+dfsg1-3ubuntu4.13+esm1 |
=14.04 | ||
All of | ||
ubuntu/libxml2 | <2.7.8.dfsg-5.1ubuntu4.22 | 2.7.8.dfsg-5.1ubuntu4.22 |
=12.04 | ||
All of | ||
ubuntu/libxml2-utils | <2.7.8.dfsg-5.1ubuntu4.22 | 2.7.8.dfsg-5.1ubuntu4.22 |
=12.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for libxml2 vulnerabilities is CVE-2019-19956 and CVE-2020-7595.
The severity level of CVE-2019-19956 and CVE-2020-7595 is not specified.
An attacker can exploit CVE-2019-19956 and CVE-2020-7595 to cause a denial of service.
The affected versions of libxml2 are 2.9.4+dfsg1-7ubuntu3.1, 2.9.4+dfsg1-6.1ubuntu1.3, 2.9.3+dfsg1-1ubuntu0.7, 2.9.1+dfsg1-3ubuntu4.13+esm1, and 2.7.8.dfsg-5.1ubuntu4.22.
To fix the libxml2 vulnerabilities, update to version 2.9.4+dfsg1-7ubuntu3.1 for Ubuntu 19.10, version 2.9.4+dfsg1-6.1ubuntu1.3 for Ubuntu 18.04, version 2.9.3+dfsg1-1ubuntu0.7 for Ubuntu 16.04, version 2.9.1+dfsg1-3ubuntu4.13+esm1 for Ubuntu 14.04, and version 2.7.8.dfsg-5.1ubuntu4.22 for Ubuntu 12.04.