CVE Vulnerabilities

CVE-2008-4225

Published: Nov 25, 2008 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Integer overflow in the xmlBufferResize function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (infinite loop) via a large XML document.

Affected Software

Name Vendor Start Version End Version
Libxml Xmlsoft 2.7.2 (including) 2.7.2 (including)
Libxml2 Ubuntu dapper *
Libxml2 Ubuntu gutsy *
Libxml2 Ubuntu hardy *
Libxml2 Ubuntu intrepid *
Red Hat Enterprise Linux 2.1 RedHat libxml2-0:2.4.19-12.ent *
Red Hat Enterprise Linux 3 RedHat libxml2-0:2.5.10-14 *
Red Hat Enterprise Linux 4 RedHat libxml2-0:2.6.16-12.6 *
Red Hat Enterprise Linux 5 RedHat libxml2-0:2.6.26-2.1.2.7 *

References