Wind River Support Network

HomeDefectsLIN1021-46
Fixed

LIN1021-46 : Security Advisory - libxml2 - CVE-2021-3517

Created: May 17, 2021    Updated: Aug 25, 2021
Resolved Date: Jul 17, 2021
Found In Version: 10.21.20.1
Fix Version: 10.21.20.3
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

libxml2: heap-based buffer overflow in xmlEncodeEntitiesInternal() in entities.c

Reference:
https://gitlab.gnome.org/GNOME/libxml2/-/issues/235

Upstream patch:
https://gitlab.gnome.org/GNOME/libxml2/-/commit/bf22713507fe1fc3a2c4b525cf0a88c2dc87a3a2


CREATE(Triage):(User=admin) CVE-2021-3517 (https://nvd.nist.gov/vuln/detail/CVE-2021-3517)

CVEs


Live chat
Online