Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3281 (Libxml2)

BugsAlert Home > CVE-2008-3281 (Libxml2)
 
 

libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3281

Learn more about CVE-2008-3281 (Libxml2)
 
Tags: cve-2008-3281 libxml2

Related Items

      Debian: New centericq packages fix execution of code

      NamoInstaller ActiveX Control NamoInstall Class "Install()" Insecure Method

      Mandriva: Updated wireshark packages fix denial of service

      FrSIRT - rPath Linux Security Update Fixes PHP Code Execution Vulnerabilities

      CVE-2008-2136 (Kernel)

      HTML_AGENT.ALYT

      CVE-2008-5047 (rental_script)

 

Pixel