CVE Vulnerabilities

CVE-2008-4226

Published: Nov 25, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the xmlSAX2Characters function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a large XML document.

Affected Software

NameVendorStart VersionEnd Version
LibxmlXmlsoft2.7.2 (including)2.7.2 (including)
Red Hat Enterprise Linux 2.1RedHatlibxml2-0:2.4.19-12.ent*
Red Hat Enterprise Linux 3RedHatlibxml2-0:2.5.10-14*
Red Hat Enterprise Linux 4RedHatlibxml2-0:2.6.16-12.6*
Red Hat Enterprise Linux 5RedHatlibxml2-0:2.6.26-2.1.2.7*
Libxml2Ubuntudapper*
Libxml2Ubuntugutsy*
Libxml2Ubuntuhardy*
Libxml2Ubuntuintrepid*

References