First published: Thu Jan 16 2025(Updated: )
Xisco Fauli discovered that libxml2 incorrectly handled custom SAX handlers. A remote attacker could possibly use this issue to perform XML External Entity (XXE) attacks.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libxml2 | <2.12.7+dfsg-3ubuntu0.1 | 2.12.7+dfsg-3ubuntu0.1 |
Ubuntu Ubuntu | =24.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.