[Bug 1277146] New: libxml2: DoS when parsing specially crafted XML document if XZ support is enabled

bugzilla at redhat.com bugzilla at redhat.com
Mon Nov 2 13:45:30 UTC 2015


https://bugzilla.redhat.com/show_bug.cgi?id=1277146

            Bug ID: 1277146
           Summary: libxml2: DoS when parsing specially crafted XML
                    document if XZ support is enabled
           Product: Security Response
         Component: vulnerability
          Keywords: Security
          Severity: medium
          Priority: medium
          Assignee: security-response-team at redhat.com
          Reporter: amaris at redhat.com
                CC: athmanem at gmail.com, c.david86 at gmail.com,
                    erik-fedora at vanpienbroek.nl,
                    fedora-mingw at lists.fedoraproject.org,
                    ktietz at redhat.com, lfarkas at lfarkas.org,
                    ohudlick at redhat.com, rjones at redhat.com,
                    veillard at redhat.com



A vulnerability in libxml2 when parsing specially crafted XML document if XZ
support is enabled causing DoS of application was found.

CVE request (including reproducer):

http://seclists.org/oss-sec/2015/q4/206

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=5GhAg1MnGX&a=cc_unsubscribe


More information about the mingw mailing list