Wind River Support Network

HomeDefectsLIN5-15417
Fixed

LIN5-15417 : Security Advisory - libxml2 - CVE-2013-1969

Created: May 2, 2013    Updated: Dec 19, 2017
Resolved Date: Jul 25, 2013
Previous ID: LIN3-8995
Found In Version: 5.0
Fix Version: 5.0.1.6
Severity: Severe
Applicable for: Wind River Linux 5
Component/s: Userspace

Description

Multiple use-after-free vulnerabilities in libxml2 2.9.0 and possibly other versions might allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to the (1) htmlParseChunk and (2) xmldecl_done functions, as demonstrated by a buffer overflow in the xmlBufGetInputBase function.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-1969

Workaround

Unknown

Steps to Reproduce

Unknown

Other Downloads


Live chat
Online